Descripción
Con Hide My WP Ghost Pro, proteges WordPress reescribiendo rutas como wp-admin, wp-login, wp-content y wp-json, aplicando firewall 7G/8G y reduciendo señales visibles para escáneres automatizados. El plugin está dirigido a quienes necesitan dificultar el fingerprinting, bloquear intentos de acceso sospechosos y controlar puntos sensibles del sitio sin modificar archivos centrales de la instalación.
Características Principales de Hide My WP Ghost Pro
- Ocultación de rutas
Reescribe URLs predeterminadas de inicio de sesión, administración, contenido, cargas y API REST. - Firewall 7G/8G
Aplica reglas en el servidor contra consultas maliciosas, XSS y SQL injection. - Bloqueo de XML-RPC
Cierra un vector común de fuerza bruta y solicitudes automatizadas. - Mapeo de textos
Sustituye clases, rutas y rastros de WordPress en el código renderizado. - Registro de eventos
Monitorea inicios de sesión, cambios, activaciones y acciones relevantes dentro del panel.
Beneficios de Hide My WP Ghost Pro
- Menos exposición pública
Dificulta la identificación automática de la tecnología utilizada en el sitio. - Inicio de sesión más protegido
Reduce los ataques recurrentes contra URLs predecibles de autenticación. - Respuesta más rápida
Facilita el seguimiento de eventos sospechosos antes de que se conviertan en incidentes mayores. - Configuración reversible
Permite ajustar las protecciones sin modificar archivos centrales de WordPress.
¿Para Quién Está Indicado Hide My WP Ghost Pro?
- Quienes mantienen sitios WordPress expuestos a bots, escáneres e intentos frecuentes de inicio de sesión.
- Tú, que necesitas ocultar rastros técnicos de WordPress sin modificar el core de la instalación.
- Agencias y desarrolladores que configuran protección estandarizada en varios sitios de clientes.
Cómo Descargar Hide My WP Ghost Pro
Hide My WP Ghost Pro está disponible para descargar aquí en Ultrapack. Después de descargar el archivo .zip, instálalo en Plugins > Añadir nuevo > Subir plugin, selecciona el .zip y actívalo. Después de la activación, configura las rutas y reglas de seguridad en el panel del plugin.
Hide My WP Ghost Pro se destaca por combinar la ocultación de footprint, el endurecimiento de URLs y los filtros de firewall en una capa práctica para WordPress. Para quienes dependen de un sitio menos predecible para bots y escáneres, el plugin ayuda a reducir puntos obvios de ataque, monitorear eventos sensibles y mantener la instalación protegida con ajustes controlados desde el panel.
Preguntas frecuentes
¿El plugin Hide My WP Ghost Pro es GPL?
Sí. Hide My WP Ghost Pro se distribuye bajo la licencia GPL (GNU General Public License). Puedes usarlo, modificarlo y redistribuirlo legalmente en todos los sitios que quieras.
¿Puedo usar el plugin Hide My WP Ghost Pro en más de un sitio?
Sí. Puedes instalar Hide My WP Ghost Pro en todos los sitios que quieras. Solo las actualizaciones automáticas con Ultrapack Auto Updater tienen límite: de 3 a 80 sitios, según el plan.
¿Cuánto cuesta el plugin Hide My WP Ghost Pro en Ultrapack?
Hide My WP Ghost Pro cuesta US$ 2,99 en la compra individual, y también está incluido en los planes de suscripción desde US$12/mes (VIP I).
¿El plugin Hide My WP Ghost Pro incluye actualizaciones?
Sí. La versión actual de Hide My WP Ghost Pro es la 9.0.06, publicada en Ultrapack el 30/06/2026. Los suscriptores actualizan directamente desde el panel de WordPress con UAU (Ultrapack Auto Updater).
¿Es seguro descargar e instalar el plugin Hide My WP Ghost Pro en mi WordPress?
Sí. Cada versión de Hide My WP Ghost Pro pasa por un análisis de malware (ClamAV y reglas YARA, en UltraHub) antes de publicarse.
Qué cambió en esta versión
Versión 9.0.06
- Latest WP Ghost release with the full Hack Prevention suite, 8G Firewall, Brute Force protection, 2FA and Passkeys.
Versión 7.0.03 02 June 2026
- Fix - WPML/Polylang with a custom or renamed REST API path: WPML Advanced Translation Editor and other REST API calls no longer fail with a network error in the admin
- Fix - REST API requests made through the ?rest_route= form are no longer mistakenly treated as normal page requests and blocked
- Fix - Renamed REST API path: legacy, cached and external clients still calling the default wp-json path are now recognized correctly instead of being 404'd
- Fix - Compatibility module for WPML: the Advanced Translation Editor sync routes and WPML/ICL admin-ajax requests are no longer rewritten with the active language prefix
- Fix - Some sites could show a blank page when source code optimization was enabled; the header/tag find & replace is now fail-safe and never blanks the output on a regex error
- Fix - Prefetch/speculation rules cleanup now removes the wp-admin and wp-*.php entries without leaving the rules JSON invalid
- Security - Hardened REST API detection: the firewall can no longer be bypassed by appending /wp-json/ (or ?rest_route=) to the query string of another request
- Security - Brute force protection also covers REST API Application Password authentication
- Security - Fixed unauthenticated Open Redirect via the `redirect_to` parameter on the custom logout URL.
Versión 7.0.02 11 May 2026
- Fix - Compatibility with WPML and Polylang: static asset URLs (wp-content, wp-includes) no longer get the language prefix prepended (e.g. /en/wp-content/...) when "Change Relative URLs to Absolute URLs" is enabled
- Fix - Password-protected pages (built-in WordPress post password) now submit correctly on Nginx and other servers without server-level rewrites when the login URL is customized
- Fix - Refreshed knowledge base links across admin notices to point to the new documentation
- Fix - Minor bugs and typos
Versión 7.0.01 15 April 2026
- Update - Added the option to roll back to the last stable version in the Backup/Restore page
- Fix - Corrected the colors in the dark mode style
- Fix - Rewrite rules not correctly displayed in the notification bar when rules must be added manually to the server config
- Fix - Typos and minor bugs
Versión 7.0.00 31 March 2026
- Major Release: Security Score, Login Page Designer, Passkey 2FA, Security Threats Log, User Events Log, GEO Threats Map, and expanded 7G/8G Firewall rules. Free update for all users.
- New - Security Optimization Score (0-100) with dynamic gauge on the Overview dashboard and Security Check page
- New - Security Threats Log to track blocked attacks and malicious requests (limited view)
- New - User Events Log to track login activity and user changes (limited view)
- New - GEO Threats Map with top 5 threat countries on the Overview dashboard
- New - Country filter in Security Threats Log and User Events Log
- New - Login Page Designer with custom logo, background image, colors, and color scheme presets
- New - Contextual upgrade suggestions based on your site's actual threat data
- New - Two-Factor Authentication by Passkey (Face ID, Touch ID, Windows Hello)
- New - Each user can select their preferred 2FA method from their profile
- New - Trust current browser option for 2FA, skip verification on trusted devices
- New - Hide WordPress Common Paths with file extension filtering (html, txt, lock)
- New - Hide User Enumeration to block author discovery scans
- New - Dark mode support (browser-based)
- New - Translation in Indonesian (id_ID) language
- New - Translation in Turkish (tr_TR) language
- Firewall & Security Updates
- Update - Expanded 7G & 8G Firewall rules to block SQL injection, XSS, file inclusion, directory traversal, and automated vulnerability scans
- Update - Firewall rules optimized for reduced overhead under high attack traffic
- Update - Improved threat detection to stop malicious requests before WordPress core execution
- Update - Security Headers updated with latest best practices
- Compatibility
- Update - Compatibility with WordPress 7.0 and PHP 8.5
- Update - Compatibility with WooCommerce 10.6
- Update - Compatibility with Elementor, Bricks Builder, Blocksy, Nicepage, Avada, and Riode themes
- Update - Compatibility with WP Rocket, LiteSpeed, Nitropack, SiteGround Optimizer, and Cloudflare
- Update - Compatibility with Wordfence, Sucuri, and Solid Security
- Update - Compatibility with WP Engine, Kinsta, CloudPanel, Ploi.io, and IIS servers
- Update - Compatibility with WPML and Polylang for multilingual Brute Force, 2FA, and Magic Login texts
- Update - Translations updated in all 14 supported languages
- UI & Experience
- Update - Redesigned Overview dashboard with Security Optimization Score, threat chart, and GEO map
- Update - Improved Security Check page with numeric score and actionable task list
- Update - Reorganized Logs section into Security Threats and User Events
- Update - Translations updated in all 16 supported languages: Arabic, Brazilian Portuguese, Chinese (Simplified), Dutch, Finnish, French, German, Indonesian, Italian, Japanese, Portuguese, Romanian, Russian, Spanish, Turkish, and English (default).
- Fix - Dropdown and Help icon in the RTL languages
Notas de versión publicadas por el desarrollador.
Cómo instalar
Actualización automática: este ítem se actualiza con el Ultrapack Auto Updater. Con él instalado, la versión nueva aparece en tu panel como cualquier otra actualización de WordPress (cómo configurarlo).
- Descarga el archivo
hide-my-wp-ghost.zip. - En el panel de WordPress, ve a Plugins > Añadir nuevo > Subir plugin.
- Selecciona el archivo
hide-my-wp-ghost.zipy haz clic en Instalar ahora. - Haz clic en Activar.
- Este elemento ya viene activado. Si alguna pantalla pide licencia, escribe cualquier código; donde haya un campo de correo electrónico, sirve cualquier correo electrónico.
¿Te trabaste en algún paso? Abre un ticket diciendo en cuál te detuviste.

UAU Ready