BBQ Firewall (Block Bad Queries) is a popular, lightweight Web Application Firewall (WAF) plugin for WordPress. It provides protection against malicious requests—no configuration required.
Key Features:
- Ultra-lightweight & performant — firewall code is under 10 KB and won’t slow down your site
- Zero setup — install, activate, and instantly get powerful protection
- Blocks critical threats — defends against SQL injection, file execution, directory traversal, XSS, bots, referrers, and more
- Compatible — works seamlessly with other security plugins (e.g., Wordfence)
- Take full control — customize rules, patterns, whitelists, and logging via UI
- Monitoring tools — view hit stats by rule, and test patterns live .
- Actionable alerts — receive emails when incidents occur.
- Tailored defense — block long requests, manage responses, and display custom messages.