SM Fix – Security Incident Response for WordPress
SM Fix – Security Incident Response for WordPress
★ 0stars
0forks
Install
The author publishes release zips, so WP-CLI can install straight from GitHub:
wp plugin install https://github.com/shehuphd/sm-fix/releases/download/v1.1.5/sm-fix.zipFrom the readme
Investigate, trace, and remediate WordPress security incidents. Get a forensic report, quarantine threats, and fix issues with one click.
Something happened to your WordPress site. Maybe you noticed unfamiliar admin accounts. Maybe your host flagged suspicious files. Maybe a visitor told you your site was redirecting somewhere it shouldn't.
SM Fix is what you run next.
It investigates your site for signs of compromise, produces a severity-ranked forensic report, and gives you one-click automated fixes for everything that's safe to automate — with plain-English manual instructions for everything that isn't.
What SM Fix checks
File system — PHP files in uploads, recently modified files, suspicious filenames, world-writable permissions
Database — unknown admin accounts, elevated user capabilities, malware payload patterns in wpoptions
Configuration — WPDEBUG in production, file editor status, debug logging, SSL enforcement
Plugins and themes — nulled plugins, recently modified files, inactive installs
Users and authentication — default admin usernames, application passwords, accounts with no email
Network and output — injected outbound URLs, hidden iframes, script tag injec
Read the full README on GitHub →
Releases
| Tag | Published | Asset | Downloads |
|---|---|---|---|
| v1.1.5 | Jul 12, 2026 | sm-fix.zip | 0 |