Of the successful leaked password login attempts on WordPress sites, 48% are bot-driven. The remaining 52% of successful logins on WordPress sites originate from legitimate, non-bot users.
CloudflarePassword reuse is rampant: nearly half of observed user logins are compromised ·Mar 17, 2025
Only 5% of leaked password login attempts result in access being denied. 90% of these denied requests are bot-driven. The remaining 19% of login attempts fall under other outcomes, such as timeouts or users who changed their passwords
CloudflarePassword reuse is rampant: nearly half of observed user logins are compromised ·Mar 17, 2025
Based on Cloudflare's observed traffic between September - November 2024, 41% of successful logins across websites protected by Cloudflare involve compromised passwords.
CloudflarePassword reuse is rampant: nearly half of observed user logins are compromised ·Mar 17, 2025
PasswordsCredentialsLogin attemptLeaked password
76% of leaked password login attempts for websites built on WordPress are successful.
CloudflarePassword reuse is rampant: nearly half of observed user logins are compromised ·Mar 17, 2025