Preventing Malicious Login Attempts to Your Miva Administrator

This articles goes over preventing ongoing attempts to login to your Miva 5 administrator with a username that is known by a malicous user.  This applies to our Shared Miva Plans, Cloud, and Dedicated environments.  You can view more information about Miva here.

  1. Login to your Miva Administartor.
  2. Create a new user with admin rights and rights to create new users.
  3. Change the Store Manager to the new username you created in Step 2.
  4. Log out.
  5. Log back in as the new user.
  6. Remove the old user.

This tactic will work because of the way the lockout feature works in Miva. You can read more about this here. The Failed Login Attempts Allowed only applies to the username attempting to login. If they login as an invalid user, this lockout won't apply. If the malicious user knows your username, and attempts to login; it will apply to your username. Performing the aforementioned steps will keep you from being locked out due to a malicious user knowing your username.