ARGUS WordPress Defence 7.23.0
Real changes since 1.0.0, all live-verified before this release: - Firewall: rule corpus expanded 19 -> 43 rules, real OWASP-CRS-equivalent coverage (XXE, SSRF, session fixation, Log4Shell/JNDI, scanner-tool detection, deeper SQL injection/XSS/PHP-injection). - Fixed a real bug: a quarantined file's severity badge and its content analysis score could disagree with no explanation (e.g. a benign file showing CRITICAL next to Score 0); both are now derived consistently and shown together. - ARGUS now always keeps itself updated, and can optionally do the same for every other installed plugin and theme (Settings, on by default) -- uses WordPress's own native update system, nothing custom. - Global Threat Intelligence is now opt-in, not automatic -- a single click on its own page, with an honest, specific description of exactly what's shared (an IP address, a reason code, a confidence score, a country). Previously connected automatically on activation. - New first-run Welcome screen after activation: confirms what's already protecting the site, and surfaces the few real optional choices in one place. - Dashboard: running version now visible in the header; new "IPs Tracked" and "ANIS Protections" metrics. - Full WordPress.org Plugin Directory readiness audit performed against this codebase. Two real compliance issues found and fixed (see above: Global Threat Intelligence's default, and the self-update mechanism, which is excluded from this build entirely -- WordPress.org prohibits a plugin from using any update channel other than its own, even an inert one). This release is still self-distributed, not a WordPress.org submission -- that remains a future step. Verified before publishing: this exact ZIP was installed, activated (14 admin pages loaded clean, zero PHP errors/warnings), and uninstalled (zero leftover database tables or options) in a fresh, disposable WordPress + MySQL environment. Co-Authored-By: Claude Sonnet 5 <noreply@anthropic.com>
This commit is contained in:
+11
-8
@@ -1,10 +1,10 @@
|
||||
=== ARGUS Defence ===
|
||||
=== ARGUS WordPress Defence ===
|
||||
Contributors: argus
|
||||
Tags: security, firewall, malware, vulnerability, backup
|
||||
Requires at least: 6.0
|
||||
Tested up to: 6.6
|
||||
Tested up to: 7.0
|
||||
Requires PHP: 7.4
|
||||
Stable tag: 1.0.0
|
||||
Stable tag: 7.23.0
|
||||
License: GPLv2 or later
|
||||
License URI: https://www.gnu.org/licenses/gpl-2.0.html
|
||||
|
||||
@@ -48,13 +48,16 @@ page-cache feature can make your site faster, not slower.
|
||||
|
||||
= How do I update the plugin? =
|
||||
|
||||
Download the latest release ZIP and repeat the installation steps above (WordPress will offer to
|
||||
replace the existing version). Automatic in-dashboard updates depend on an update channel being
|
||||
configured for your deployment; until then, updates are applied manually the same way the plugin
|
||||
was installed.
|
||||
Like any other WordPress.org plugin: you'll see an update notification right in your WordPress
|
||||
dashboard whenever a new version is available, and you can update it in one click from there.
|
||||
|
||||
== Changelog ==
|
||||
|
||||
= 1.0.0 =
|
||||
= 7.23.0 =
|
||||
* Firewall: broadened local rule coverage (XXE, SSRF, session fixation, Log4Shell/JNDI, scanner-tool
|
||||
detection, and deeper SQL injection / XSS / PHP injection signatures).
|
||||
* Scanner: fixed a case where a quarantined file's severity label and its content-analysis score
|
||||
could disagree; both are now always shown together and derived consistently.
|
||||
* Console: the running plugin version is now shown in the admin header.
|
||||
* First production release: firewall, scanner, quarantine, vulnerability protection, backups,
|
||||
cache & performance, and automatic global threat intelligence.
|
||||
|
||||
Reference in New Issue
Block a user