All-In-One Security Premium Release 1.0.4 Release
The latest release from AIOS includes a new IP lookup function that will help developers identify suspicious activity such as password resets.
New IP lookup function
Section titled New IP lookup functionOur new IP lookup function informs web owners of the IP address of anyone who tries to reset your password, or lockdown your site. If that happens, you’ll receive an immediate email containing this crucial security information. This will help you identify any suspicious or potentially malicious activity. For example, if the IP address comes from an unrecognised country, it’s likely fraudulent.
Security fixes
Section titled Security fixesThe release also includes a security fix to remove unnecessary uses of the tab
query parameter on various admin menu pages. This helps to prevent cross-site scripting vulnerabilities. Cross site scripting allows malicious users to inject unwanted scripts into your website, in this case through the AIOS admin page. Thank you to Matthew Rollings for disclosing the vulnerability.
Premium release 1.0.4 also contains a number of smaller tweaks and fixes, full details of which can be found below.
Changelog
Section titled Changelog- SECURITY: Removed unnecessary use of the
tab
query parameter on various admin menu pages to prevent a XSS vulnerability. Thanks to Matthew Rollings for disclosing this defect. - FEATURE: Added Reverse IP Lookup location data to login lockdown notification email
- Feature: Enhance reset password email by adding IP info
- Fix: A fatal error on PHP 8.0+ when you have premium active but not the free version
- Fix: Smart 404 blocking does not work if time zone other than UTC set.
- Tweak: Various tweaks to get codebase up to coding standards
- Tweak: Removed some unused files
About the author

TeamUpdraft
Our team consists of WordPress developers, marketers, and industry experts committed to providing you with the resources and skills you need to succeed online. Whether you’re just starting out or seeking advanced strategies, we’re here to enhance your WordPress journey and support you at every stage.
Categories
AIOS
Comprehensive, feature-rich, security for WordPress. Malware scanning, firewall, an audit log and much more. Powerful, trusted and easy to use.
From just $70 for the year.
More stories
-
Three things to do this World Backup Day
This World Backup Day, take the time to ensure your website is protected. From automating backups to connecting to remote storage, these three steps will keep your data safe. Plus, enjoy a 10% discount on UpdraftPlus Premium for a limited time!
-
Same team, different name. Welcome to TeamUpdraft (for affiliates)
Attention affiliates! TeamUpdraft is here, combining UpdraftPlus, WP-Optimize, and AIOS. Explore new ways to earn with our unified brand.
-
Same team, different name. Welcome to TeamUpdraft
UpdraftPlus, WP-Optimize & AIOS are now under TeamUpdraft! Find out what’s changed, how to log in, and where to get support.
-
WP-Optimize release v4.0.0
WP-Optimize v4.0.0 is here! This update introduces JavaScript execution delay, minimum requirements changes, and performance improvements.