
Dashboard with health status and overview
Lumiverse Security Watchdog Lite is a lightweight yet powerful WordPress security plugin designed to detect early signs of compromise and reduce common attack surfaces.
It runs automated background scans and alerts you when something suspicious is detected.
✔ Malware signatures (JS & PHP)
Scans files for known malware patterns including injectors, obfuscated scripts, and common webshell families.
✔ Changed JavaScript files
Detects modified .js files and analyzes them for suspicious behavior.
✔ Plugins (new, deleted, suspicious)
– Detects newly installed or removed plugins
– Flags suspicious plugin names (e.g. random/hash-based folders)
– Detects known fake plugin families (WP Default, Cache Engine, Slick Popup, etc.)
✔ Core integrity checks
– Flags important WordPress core files modified recently
– Scans recent core PHP files for suspicious patterns
✔ Uploads directory scanning
– Detects PHP files inside uploads (common malware location)
– Detects executable files (php, phtml, phar, etc.)
✔ Admin user monitoring
– Detects new admin accounts
– Flags suspicious admin usernames or invalid emails
✔ Database backdoor indicators
– Detects suspicious _pre_user_id entries used by hidden admin exploits
Reduce attack surface with one-click protections:
✔ Block XML-RPC
✔ Disable application passwords
✔ Disable file editing (wp-admin editor)
✔ Disable plugin/theme installation & updates (optional)
✔ Disable plugin/theme deletion
✔ Hide login error messages
✔ Limit login attempts (basic brute-force protection)
✔ Block pingbacks
✔ Block user enumeration
✔ Block comments sitewide
✔ Block password reset for administrators
✔ Email notifications when threats are detected
✔ Alerts if “Anyone can register” is enabled
✔ Optional auto-fix to disable user registration
✔ Admin hygiene warnings (e.g. weak usernames)
✔ Fast Mode: scan only recently modified files
✔ Lightweight: no heavy server load
✔ Designed to work alongside plugins like Wordfence
This plugin does NOT automatically clean malware.
It is a detection and monitoring tool that helps you:
– detect compromises early
– understand what changed
– take action before damage spreads