updated plugin Jetpack Protect
version 1.3.0
This commit is contained in:
@ -4,7 +4,7 @@ Tags: jetpack, protect, security, malware, scan
|
||||
Requires at least: 6.0
|
||||
Requires PHP: 5.6
|
||||
Tested up to: 6.1
|
||||
Stable tag: 1.2.0
|
||||
Stable tag: 1.3.0
|
||||
License: GPLv2 or later
|
||||
License URI: http://www.gnu.org/licenses/gpl-2.0.html
|
||||
|
||||
@ -12,21 +12,59 @@ Free daily malware scanning and WordPress site security. Jetpack Protect leverag
|
||||
|
||||
== Description ==
|
||||
|
||||
Jetpack Protect is a free security plugin for WordPress that scans your site and warns you about vulnerabilities, keeping your site one step ahead of security threats and malware.
|
||||
== TOTAL SITE SECURITY FROM WORDPRESS EXPERTS ==
|
||||
|
||||
== What does Jetpack Protect check for? ==
|
||||
Jetpack Protect is a free and essential WordPress security plugin that scans your site and warns you about vulnerabilities, keeping your site one step ahead of security threats. It’s easy to use; setup requires just a few clicks!
|
||||
|
||||
By upgrading Protect, you also unlock malware scanning with one-click fixes for most issues and instant notifications when threats are detected. Our automated Web Application Firewall (WAF) also protects your site from bad actors around the clock.
|
||||
|
||||
Jetpack Protect is created by WordPress experts; our parent company Automattic is behind Jetpack, WordPress.com, WooCommerce, WPScan, and much more. There is no better company to understand the security needs of WordPress sites.
|
||||
|
||||
== WHAT DOES JETPACK PROTECT (FREE) CHECK FOR? ==
|
||||
|
||||
Jetpack Protect scans your site on a daily basis and warns you about:
|
||||
|
||||
- The version of WordPress installed, and any associated vulnerabilities
|
||||
- What plugins are installed and any related vulnerabilities
|
||||
- What themes are installed and any associated vulnerabilities
|
||||
- What plugins are installed, and any related vulnerabilities
|
||||
- What themes are installed, and any associated vulnerabilities
|
||||
|
||||
== Over 25,000 registered malware and vulnerabilities in our database ==
|
||||
= What are vulnerabilities? Why do I need to scan my site regularly? =
|
||||
Site vulnerabilities are flaws in a website's code that weaken the site's overall security. These can be introduced to a site in various ways, in most cases unintentionally.
|
||||
|
||||
WordPress security is something that evolves over time. Jetpack Protect leverages the extensive database of WPScan, an Automattic brand. All vulnerabilities and malwares are entered into our database by dedicated WordPress security professionals and updated constantly as new information becomes available.
|
||||
Some of the ways vulnerabilities can be introduced to a site are:
|
||||
- Poorly written site code
|
||||
- Plugin and theme bugs
|
||||
- WordPress version bugs
|
||||
- System misconfigurations
|
||||
|
||||
== Easy to setup and use ==
|
||||
If a bad actor detects a vulnerability on your site, they can exploit it to access sensitive information, update your site, and more to damage your business or brand.
|
||||
|
||||
That’s why it’s essential to use a reputable and reliable vulnerability & malware site scanner like Jetpack Protect to safeguard your site.
|
||||
|
||||
== UPGRADE PROTECT TO REMOVE MALWARE IN ONE CLICK AND BE PROTECTED BY OUR WAF ==
|
||||
By upgrading Protect, you unlock total site security from WordPress experts:
|
||||
- Automated daily malware scanning in addition to vulnerability checks
|
||||
- One-click fixes for most issues
|
||||
- Web Application Firewall (WAF) with automatic rule updates
|
||||
- Instant email notifications when threats are detected
|
||||
- Priority support from WordPress experts
|
||||
|
||||
= What is malware? Why do I need to protect against it? =
|
||||
Malware is malicious code or software that has been created by bad actors to disrupt, damage, or gain access to your site. There are many ways that malware can get onto your WordPress site. The most common method is through attackers using vulnerable plugins or themes to install malware.
|
||||
|
||||
Similar to the vulnerabilities listed above, bad actors can use malware to capture sensitive information, damage your site, and harm your business or brand.
|
||||
|
||||
Jetpack Protect instantly notifies you of any threats detected, with one-click fixes for most issues.
|
||||
|
||||
= What is a Web Application Firewall (WAF)? =
|
||||
A web application firewall blocks traffic and malicious requests to your site from known bad actors.
|
||||
|
||||
As threats are detected, new rules are added to Jetpack Protect’s firewall, which provides around-the-clock protection for your WordPress site.
|
||||
|
||||
== OVER 38,393 REGISTERED VULNERABILITIES IN OUR DATABASE ==
|
||||
|
||||
WordPress security is something that evolves over time. Jetpack Protect leverages the extensive database of WPScan, an Automattic brand. All vulnerabilities are entered into our database by dedicated WordPress security professionals and updated constantly as new information becomes available.
|
||||
|
||||
== JETPACK PROTECT IS EASY TO SETUP AND USE ==
|
||||
|
||||
There’s nothing to configure – the setup process is as easy as:
|
||||
1. Install and activate the plugin
|
||||
@ -40,11 +78,10 @@ This is just the start!
|
||||
|
||||
We are working hard to bring more features and improvements to Jetpack Protect. Let us know your thoughts and ideas!
|
||||
|
||||
== Further reading ==
|
||||
== FURTHER READING ==
|
||||
|
||||
- [Jetpack: Security, performance, and growth tools made for WordPress sites by the WordPress experts.](https://jetpack.com/)
|
||||
- You can follow the [Jetpack Twitter](https://twitter.com/jetpack?lang=en) account to catch up on our latest WordPress
|
||||
security recommendations and updates.
|
||||
- You can follow the [Jetpack Twitter](https://twitter.com/jetpack?lang=en) account to catch up on our latest WordPress security recommendations and updates.
|
||||
- [WordPress Security: How to Protect Your Site From Hackers](https://jetpack.com/blog/category/security/page/3/)
|
||||
- [Should You Use Jetpack for WordPress Security?](https://jetpack.com/blog/should-you-use-jetpack-for-wordpress-security/)
|
||||
- [Jetpack Acquires WordPress Vulnerability Database WPScan](https://jetpack.com/blog/jetpack-acquires-wordpress-vulnerability-database-wpscan/#more-139339)
|
||||
@ -55,23 +92,25 @@ security recommendations and updates.
|
||||
|
||||
Protect is a free WordPress security and malware scanner plugin that scans your site and lets you know possible malware and security threats on your installed plugins, themes, and core files.
|
||||
|
||||
The free plan scans your site for WordPress version, plugin, and theme vulnerabilities from our extensive vulnerability database (38,393) that is powered by WPScan.
|
||||
|
||||
By upgrading Protect, you gain access to WordPress malware scanning with one-click fixes, instant threat notifications, and our Web application Firewall (WAF) that protects your site around the clock.
|
||||
|
||||
= Does this plugin require the Jetpack plugin to work? =
|
||||
|
||||
Jetpack Protect does not require the Jetpack plugin to run and secure your site.
|
||||
|
||||
= What are the differences between Jetpack Protect, Jetpack Scan, and WPScan plugins? =
|
||||
|
||||
Jetpack Protect and Scan do not have any limit on the number of plugins and themes you can scan. WPScan has a daily cap based on your API usage.
|
||||
Jetpack Protect is a new WordPress security plugin from Jetpack containing our security features only. You can start with Jetpack Protect’s free vulnerability scanning features and upgrade Jetpack Protect to access automated malware scanning and our web application firewall. By upgrading Protect, you are enabling Jetpack Scan to the plugin.
|
||||
|
||||
For now, in Jetpack Protect, you can track your scan results only through the plugin’s dashboard. Jetpack Scan and WPScan have additional notifications such as email.
|
||||
Jetpack Scan is a product that can be purchased for use in conjunction with the main Jetpack plugin or Jetpack Protect. Jetpack Scan includes automated malware scanning and our web application firewall but does not contain the vulnerability scanning feature from the Protect plugin. If you purchase Jetpack Security or Jetpack Complete, Jetpack Scan is also included in those bundles.
|
||||
|
||||
Jetpack Protect runs daily automated scans. Jetpack Scan and WPScan provide on-demand scan options on top of automatic scans.
|
||||
If you are already a Jetpack Scan, Jetpack Security, or Jetpack Complete customer, you can also take advantage of Jetpack Protect’s vulnerability scanning feature by installing the Jetpack Protect plugin.
|
||||
|
||||
Jetpack Scan has one-click fixers for most vulnerabilities. Protect does not have any fixers at this time, but it provides “how-to-fix” guides so that you can fix vulnerabilities manually.
|
||||
WPScan is an enterprise vulnerability scanning solution. It is not recommended for small to medium-sized businesses. If you are an enterprise company looking for custom WordPress site protection solutions, please visit: https://wpscan.com/
|
||||
|
||||
Jetpack Protect and WPScans are standalone plugins that don’t need additional plugins to run, while Jetpack Scan needs the [Jetpack plugin](https://jetpack.com/) to work.
|
||||
|
||||
Jetpack Protect is a free plugin, and WPScan has free and paid options. On the other hand, Jetpack Scan is a paid plugin that you can purchase with a 14-day money-back guarantee. As with other paid Jetpack plugins, Scan users also have access to our [priority support](https://jetpack.com/features/security/expert-priority-support/).
|
||||
For small to medium-sized businesses, you can access our vulnerability scanning solution in the Jetpack Protect plugin.
|
||||
|
||||
= Will Jetpack Protect work on my local site?
|
||||
|
||||
@ -83,7 +122,9 @@ You can visit Jetpack Protect dashboard in your WordPress admin panel to see the
|
||||
|
||||
= What do I do if Jetpack Protect finds a security threat? =
|
||||
|
||||
When the malware scanner finds a security threat, you can view the recommended actions on the Jetpack Protect dashboard to secure your sites.
|
||||
When the vulnerability scanner finds a security threat, you can view the recommended actions on the Jetpack Protect dashboard to secure your sites.
|
||||
|
||||
If you have upgraded Protect, your site will also be automatically scanned for malware each day, and you will be notified instantly via email if any threats are detected. You will be able to fix most issues in one click.
|
||||
|
||||
= Can I set the time of the daily security scan? =
|
||||
|
||||
@ -100,21 +141,26 @@ To learn how to achieve better WordPress security, [see this guide](https://jetp
|
||||
= Is Jetpack Protect the same thing as the Protect feature in the Jetpack plugin?
|
||||
|
||||
The new Jetpack Protect plugin is different from the Jetpack feature formerly known as [Protect](https://jetpack.com/support/protect/) (now renamed [Brute Force Attack Protection](https://jetpack.com/support/protect/)).
|
||||
The features of the new Jetpack Protect plugin are not included in the [Jetpack plugin](https://wordpress.org/plugins/jetpack/), and both plugins can be installed together without any issues.
|
||||
|
||||
== Screenshots ==
|
||||
|
||||
1. Focus on running your business while Jetpack Protect automatically scans your site.
|
||||
2. Keep your site one step ahead of security threats and malware.
|
||||
3. View all the found vulnerabilities in your site and learn how to fix them.
|
||||
4. The Jetpack Firewall is a web application firewall (known as WAF) designed to protect your WordPress site from malicious requests.
|
||||
|
||||
== Changelog ==
|
||||
### 1.2.0 - 2023-01-16
|
||||
### 1.3.0-beta2 - 2023-03-08
|
||||
#### Added
|
||||
- Add web application firewall (WAF) features
|
||||
- Add progress bar to site scannnig screen
|
||||
- Add link to pricing page for getting started with an existing plan or license key.
|
||||
|
||||
#### Changed
|
||||
- Updated package dependencies.
|
||||
- Update to React 18.
|
||||
- Use `flex-start`/`flex-end` instead of `start`/`end` for better browser compatibility.
|
||||
|
||||
#### Fixed
|
||||
- Poll for scan status while scanner is provisioning
|
||||
- Bug fixes
|
||||
- Remove unnecessary full path from example in UI.
|
||||
- Fix connection button loading indicators.
|
||||
- Fix Protect status report caching.
|
||||
|
||||
|
Reference in New Issue
Block a user