Bad File Extensions

Bad File Extensions

What It Does

This module blocks uploads of dangerous file types that could contain malicious code. It maintains a list of forbidden file extensions (like .exe, .php, .sh) and prevents these files from being uploaded to your website.

Why It Matters

When attackers want to hack into a WordPress site, they search for all available information.

Disclosing sensitive information makes it easier for attackers to find vulnerabilities and exploit them.

Protecting sensitive data prevents information disclosure that could be used against your website.

How to Use

Activate this module in the Sensitive Data section of SecuPress settings.

Once activated, the module works automatically and provides protection for your website.

If you encounter any issues after activation, you can temporarily deactivate the module. The module will automatically remove its protection rules when deactivated.