{"id":1838,"date":"2026-04-15T00:13:04","date_gmt":"2026-04-15T06:13:04","guid":{"rendered":"https:\/\/nube.ninja\/enterate\/?p=1838"},"modified":"2026-04-15T00:24:55","modified_gmt":"2026-04-15T06:24:55","slug":"proteccion-contra-ataques-de-bots-crawlers-maliciosos-wordpress-woocommerce","status":"publish","type":"post","link":"https:\/\/nube.ninja\/enterate\/proteccion-contra-ataques-de-bots-crawlers-maliciosos-wordpress-woocommerce","title":{"rendered":"Protecci\u00f3n contra Ataques de Bots (Crawlers) Maliciosos WordPress\/Woocommerce"},"content":{"rendered":"<p>En entornos WordPress y WooCommerce con tr\u00e1fico real, el problema no es \u00fanicamente el ataque directo, sino el consumo in\u00fatil de recursos causado por crawlers agresivos, scrapers, librer\u00edas HTTP automatizadas, navegadores headless y agentes falsificados. Una estrategia s\u00f3lida en <code>.htaccess<\/code> permite detener buena parte de ese tr\u00e1fico <strong>antes de que cargue WordPress, PHP o MySQL<\/strong>.<\/p>\n<p>La l\u00f3gica correcta no consiste en bloquear \u201cbots\u201d de forma gen\u00e9rica. Consiste en construir una secuencia t\u00e9cnica con cuatro objetivos:<\/p>\n<ul>\n<li>rechazar automatizaci\u00f3n hostil evidente,<\/li>\n<li>permitir bots leg\u00edtimos necesarios para indexaci\u00f3n y previews,<\/li>\n<li>endurecer rutas y archivos sensibles del CMS,<\/li>\n<li>reducir superficie de exposici\u00f3n a nivel Apache.<\/li>\n<\/ul>\n<h2>1. Bloqueo inmediato de user-agents automatizados<\/h2>\n<p>La primera capa debe ejecutarse al inicio del archivo y cortar solicitudes primitivas o abiertamente automatizadas. Esto reduce carga antes de que el sitio procese la petici\u00f3n.<\/p>\n<pre><code>&lt;IfModule mod_rewrite.c&gt;<br>RewriteEngine On<br><br># User-Agent vac\u00edo o sospechoso<br>RewriteCond %{HTTP_USER_AGENT} ^-?$ [NC,OR]<br>RewriteCond %{HTTP_USER_AGENT} ^$ [NC,OR]<br><br># Librer\u00edas HTTP y herramientas automatizadas<br>RewriteCond %{HTTP_USER_AGENT} ^python-requests [NC,OR]<br>RewriteCond %{HTTP_USER_AGENT} ^python-urllib [NC,OR]<br>RewriteCond %{HTTP_USER_AGENT} ^curl\/ [NC,OR]<br>RewriteCond %{HTTP_USER_AGENT} ^wget\/ [NC,OR]<br>RewriteCond %{HTTP_USER_AGENT} ^Go-http-client [NC,OR]<br>RewriteCond %{HTTP_USER_AGENT} ^node-fetch [NC,OR]<br>RewriteCond %{HTTP_USER_AGENT} ^axios [NC,OR]<br>RewriteCond %{HTTP_USER_AGENT} ^Scrapy [NC,OR]<br>RewriteCond %{HTTP_USER_AGENT} ^HeadlessChrome [NC,OR]<br>RewriteCond %{HTTP_USER_AGENT} ^PhantomJS [NC]<br><br>RewriteRule .* - [F,L]<br>&lt;\/IfModule&gt;<\/code><\/pre>\n<p>Este bloque corta una gran porci\u00f3n de tr\u00e1fico no humano que normalmente no aporta valor comercial al sitio. T\u00e9cnicamente, su ventaja es que niega antes de que el CMS inicialice sesiones, rutas internas, plugins o consultas a base de datos.<\/p>\n<h3>Qu\u00e9 protege esta secci\u00f3n<\/h3>\n<ul>\n<li>scraping automatizado de cat\u00e1logo,<\/li>\n<li>enumeraci\u00f3n masiva de URLs,<\/li>\n<li>pruebas ofensivas b\u00e1sicas,<\/li>\n<li>consumo innecesario de CPU y procesos PHP.<\/li>\n<\/ul>\n<h2>2. Whitelist expl\u00edcita para bots leg\u00edtimos<\/h2>\n<p>Un error com\u00fan es permitir tr\u00e1fico amplio usando cadenas gen\u00e9ricas como <code>Mozilla<\/code>. Eso no es una validaci\u00f3n confiable. Lo correcto es definir una whitelist expl\u00edcita de bots y servicios \u00fatiles.<\/p>\n<pre><code>&lt;IfModule mod_rewrite.c&gt;<br>RewriteEngine On<br><br>RewriteCond %{HTTP_USER_AGENT} Googlebot [NC,OR]<br>RewriteCond %{HTTP_USER_AGENT} AdsBot-Google [NC,OR]<br>RewriteCond %{HTTP_USER_AGENT} Googlebot-Image [NC,OR]<br>RewriteCond %{HTTP_USER_AGENT} Google-InspectionTool [NC,OR]<br>RewriteCond %{HTTP_USER_AGENT} bingbot [NC,OR]<br>RewriteCond %{HTTP_USER_AGENT} Applebot [NC,OR]<br>RewriteCond %{HTTP_USER_AGENT} facebookexternalhit [NC,OR]<br>RewriteCond %{HTTP_USER_AGENT} Twitterbot [NC,OR]<br>RewriteCond %{HTTP_USER_AGENT} LinkedInBot [NC,OR]<br>RewriteCond %{HTTP_USER_AGENT} WhatsApp [NC,OR]<br>RewriteCond %{HTTP_USER_AGENT} UptimeRobot [NC]<br>RewriteRule .* - [L]<br>&lt;\/IfModule&gt;<\/code><\/pre>\n<p>Esta secci\u00f3n permite indexaci\u00f3n org\u00e1nica, revisi\u00f3n t\u00e9cnica, anuncios, previews sociales y monitoreo, sin dejar abierta la puerta a cualquier agente que simplemente se autodenomine navegador.<\/p>\n<h3>Qu\u00e9 protege esta decisi\u00f3n<\/h3>\n<ul>\n<li>evita falsos positivos contra SEO leg\u00edtimo,<\/li>\n<li>conserva previews en WhatsApp, Facebook, X y LinkedIn,<\/li>\n<li>mantiene rastreo funcional para buscadores reales.<\/li>\n<\/ul>\n<h2>3. Bloqueo de m\u00e9todos HTTP innecesarios<\/h2>\n<p>Muchos ataques, pruebas de reconocimiento o debugging remoto utilizan m\u00e9todos HTTP que un sitio comercial no necesita exponer p\u00fablicamente. Negarlos es una medida simple y efectiva.<\/p>\n<pre><code>&lt;IfModule mod_rewrite.c&gt;<br>RewriteEngine On<br>RewriteCond %{REQUEST_METHOD} ^(TRACE|TRACK|DEBUG|CONNECT) [NC]<br>RewriteRule .* - [F,L]<br>&lt;\/IfModule&gt;<\/code><\/pre>\n<p>Esto reduce superficie de ataque y corta interacciones an\u00f3malas que no deber\u00edan formar parte del tr\u00e1fico normal de un WordPress o WooCommerce p\u00fablico.<\/p>\n<h2>4. Endurecimiento espec\u00edfico de WordPress<\/h2>\n<p>Una protecci\u00f3n seria debe entender el CMS que est\u00e1 defendiendo. WordPress expone rutas y archivos hist\u00f3ricamente abusados. El objetivo no es romper el core, sino cerrar acceso a zonas que no deben ser accesibles desde fuera.<\/p>\n<h3>Bloqueo de <code>xmlrpc.php<\/code><\/h3>\n<pre><code>&lt;Files \"xmlrpc.php\"&gt;<br>&nbsp;&nbsp;&nbsp;&nbsp;&lt;IfModule mod_authz_core.c&gt;<br>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;Require all denied<br>&nbsp;&nbsp;&nbsp;&nbsp;&lt;\/IfModule&gt;<br>&nbsp;&nbsp;&nbsp;&nbsp;&lt;IfModule !mod_authz_core.c&gt;<br>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;Order allow,deny<br>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;Deny from all<br>&nbsp;&nbsp;&nbsp;&nbsp;&lt;\/IfModule&gt;<br>&lt;\/Files&gt;<\/code><\/pre>\n<p>Este punto es importante porque <code>xmlrpc.php<\/code> sigue siendo un vector cl\u00e1sico para fuerza bruta, amplificaci\u00f3n y abuso automatizado.<\/p>\n<h3>Protecci\u00f3n de rutas internas del core<\/h3>\n<pre><code>&lt;IfModule mod_rewrite.c&gt;<br>RewriteEngine On<br>RewriteRule ^wp-admin\/includes\/ - [F,L]<br>RewriteRule ^wp-includes\/[^\/]+\\.php$ - [F,L]<br>RewriteRule ^wp-includes\/js\/tinymce\/langs\/.+\\.php - [F,L]<br>RewriteRule ^wp-includes\/theme-compat\/ - [F,L]<br>&lt;\/IfModule&gt;<\/code><\/pre>\n<p>La l\u00f3gica aqu\u00ed es impedir que archivos internos o rutas auxiliares sean invocados directamente desde el exterior.<\/p>\n<h3>Bloqueo de ejecuci\u00f3n de PHP en <code>uploads<\/code><\/h3>\n<pre><code>&lt;IfModule mod_rewrite.c&gt;<br>RewriteEngine On<br>RewriteRule ^wp-content\/uploads\/.*\\.(php|php\\.[0-9]+|phtml|phar)$ - [F,L,NC]<br>&lt;\/IfModule&gt;<\/code><\/pre>\n<p>Esta regla es cr\u00edtica en instalaciones donde existe riesgo de subida maliciosa de archivos. El directorio <code>uploads<\/code> debe almacenar contenido, no ejecutar c\u00f3digo.<\/p>\n<h2>5. Protecci\u00f3n contextual para WooCommerce y plugins<\/h2>\n<p>No todos los abusos buscan comprometer el servidor; muchos buscan disparar funciones del negocio de forma automatizada. WooCommerce y extensiones de wishlist suelen ser un blanco frecuente.<\/p>\n<h3>Ejemplo: bloquear una acci\u00f3n sensible por GET<\/h3>\n<pre><code>&lt;IfModule mod_rewrite.c&gt;<br>RewriteEngine On<br>RewriteCond %{QUERY_STRING} add_to_wishlist [NC]<br>RewriteCond %{REQUEST_METHOD} GET<br>RewriteRule .* - [F,L]<br>&lt;\/IfModule&gt;<\/code><\/pre>\n<p>Este enfoque obliga a que ciertas acciones ocurran en flujos m\u00e1s controlados, normalmente AJAX o POST, y evita invocaciones masivas desde bots que ejecutan enlaces directos.<\/p>\n<h3>Ejemplo: bloquear combinaciones an\u00f3malas de par\u00e1metros<\/h3>\n<pre><code>&lt;IfModule mod_rewrite.c&gt;<br>RewriteEngine On<br>RewriteCond %{QUERY_STRING} add_to_wishlist=.*add-to-cart= [NC]<br>RewriteCond %{HTTP_USER_AGENT} !(Mozilla|Chrome|Safari|Firefox) [NC]<br>RewriteRule .* - [F,L]<br>&lt;\/IfModule&gt;<\/code><\/pre>\n<p>La idea aqu\u00ed es identificar combinaciones impropias de par\u00e1metros que suelen delatar automatizaci\u00f3n no deseada o pruebas masivas sobre flujos del eCommerce.<\/p>\n<h2>6. Detecci\u00f3n de suplantaci\u00f3n de agentes conocidos<\/h2>\n<p>Un bot malicioso no siempre llega con identidad honesta. Muchos intentan suplantar servicios leg\u00edtimos, especialmente agentes de previsualizaci\u00f3n social. Por ello, no basta con confiar en el nombre declarado en el <code>User-Agent<\/code>; tambi\u00e9n debe revisarse el origen.<\/p>\n<pre><code>&lt;IfModule mod_rewrite.c&gt;<br>RewriteEngine On<br>RewriteCond %{HTTP_USER_AGENT} meta-externalagent [NC]<br>RewriteCond %{REMOTE_ADDR} !^66\\.220\\. [NC]<br>RewriteCond %{REMOTE_ADDR} !^69\\.63\\. [NC]<br>RewriteCond %{REMOTE_ADDR} !^69\\.171\\. [NC]<br>RewriteCond %{REMOTE_ADDR} !^157\\.240\\. [NC]<br>RewriteCond %{REMOTE_ADDR} !^173\\.252\\. [NC]<br>RewriteCond %{REMOTE_ADDR} !^31\\.13\\. [NC]<br>RewriteRule .* - [F,L]<br>&lt;\/IfModule&gt;<\/code><\/pre>\n<p>La protecci\u00f3n aqu\u00ed no depende de lo que el cliente afirma ser, sino de si su origen t\u00e9cnico es coherente con esa identidad. Esta t\u00e9cnica es particularmente \u00fatil contra falsificaci\u00f3n de agentes de vista previa.<\/p>\n<h2>7. Protecci\u00f3n de archivos ocultos y extensiones sensibles<\/h2>\n<p>Los bots agresivos prueban rutas previsibles buscando archivos de entorno, respaldos, configuraciones, logs o residuos de despliegue. Ese acceso debe negarse expl\u00edcitamente.<\/p>\n<h3>Bloqueo de dot files<\/h3>\n<pre><code>&lt;IfModule mod_rewrite.c&gt;<br>RewriteEngine On<br>RewriteRule \"(^|\/)\\.(?!well-known\/)\" - [F,L]<br>&lt;\/IfModule&gt;<\/code><\/pre>\n<p>Esta regla evita la exposici\u00f3n de archivos ocultos, salvo la excepci\u00f3n necesaria para <code>.well-known<\/code> cuando se utilizan validaciones o certificados.<\/p>\n<h3>Bloqueo de extensiones sensibles<\/h3>\n<pre><code>&lt;FilesMatch \"\\.(env|log|ini|bak|sql|sh|git|svn|htpasswd|DS_Store)$\"&gt;<br>&nbsp;&nbsp;&nbsp;&nbsp;&lt;IfModule mod_authz_core.c&gt;<br>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;Require all denied<br>&nbsp;&nbsp;&nbsp;&nbsp;&lt;\/IfModule&gt;<br>&nbsp;&nbsp;&nbsp;&nbsp;&lt;IfModule !mod_authz_core.c&gt;<br>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;Order allow,deny<br>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;Deny from all<br>&nbsp;&nbsp;&nbsp;&nbsp;&lt;\/IfModule&gt;<br>&lt;\/FilesMatch&gt;<\/code><\/pre>\n<p>Esto evita exposici\u00f3n accidental de artefactos operativos o credenciales indirectas.<\/p>\n<h2>8. Headers de seguridad a nivel Apache<\/h2>\n<p>Una estrategia bien construida en <code>.htaccess<\/code> no solo bloquea tr\u00e1fico; tambi\u00e9n le dice al navegador c\u00f3mo debe comportarse frente al sitio.<\/p>\n<pre><code>&lt;IfModule mod_headers.c&gt;<br>&nbsp;&nbsp;&nbsp;&nbsp;Header always set Strict-Transport-Security \"max-age=31536000; includeSubDomains\"<br>&nbsp;&nbsp;&nbsp;&nbsp;Header always set X-Content-Type-Options \"nosniff\"<br>&nbsp;&nbsp;&nbsp;&nbsp;Header always set X-Frame-Options \"SAMEORIGIN\"<br>&nbsp;&nbsp;&nbsp;&nbsp;Header always set Referrer-Policy \"strict-origin-when-cross-origin\"<br>&nbsp;&nbsp;&nbsp;&nbsp;Header always unset X-Powered-By<br>&nbsp;&nbsp;&nbsp;&nbsp;Header always set Permissions-Policy \"geolocation=(), microphone=(), camera=()\"<br>&lt;\/IfModule&gt;<\/code><\/pre>\n<p>Este bloque endurece la respuesta HTTP y reduce exposici\u00f3n innecesaria. No detiene crawlers por s\u00ed mismo, pero s\u00ed forma parte de una postura de seguridad madura.<\/p>\n<h2>9. El orden de las reglas importa<\/h2>\n<p>Uno de los puntos m\u00e1s importantes es la secuencia de ejecuci\u00f3n. Un <code>.htaccess<\/code> defensivo debe seguir una jerarqu\u00eda l\u00f3gica:<\/p>\n<ol>\n<li>bloqueo inmediato de automatizaci\u00f3n evidente,<\/li>\n<li>whitelist controlada para bots \u00fatiles,<\/li>\n<li>restricci\u00f3n de m\u00e9todos HTTP,<\/li>\n<li>endurecimiento espec\u00edfico del CMS,<\/li>\n<li>protecci\u00f3n de archivos sensibles,<\/li>\n<li>headers de seguridad.<\/li>\n<\/ol>\n<p>Si el orden se altera, es f\u00e1cil generar falsos positivos, romper tr\u00e1fico leg\u00edtimo o dejar huecos por prioridad incorrecta entre condiciones.<\/p>\n<h2>10. Qu\u00e9 se logra t\u00e9cnicamente con este enfoque<\/h2>\n<ul>\n<li>menos carga sobre Apache, PHP-FPM y MySQL,<\/li>\n<li>menos ruido en logs y m\u00e9tricas,<\/li>\n<li>menor exposici\u00f3n de rutas internas de WordPress,<\/li>\n<li>reducci\u00f3n de scraping automatizado y crawlers agresivos,<\/li>\n<li>preservaci\u00f3n de SEO, previews sociales y monitoreo leg\u00edtimo.<\/li>\n<\/ul>\n<h2>Conclusi\u00f3n t\u00e9cnica<\/h2>\n<p>Un <code>.htaccess<\/code> bien dise\u00f1ado no sustituye al hardening del servidor, al monitoreo ni a la actualizaci\u00f3n del CMS. Pero s\u00ed cumple una funci\u00f3n decisiva: <strong>filtra tr\u00e1fico hostil en la capa m\u00e1s temprana posible<\/strong>. En instalaciones WordPress y WooCommerce con exposici\u00f3n p\u00fablica, esa diferencia se traduce en menos consumo, menos superficie de abuso y mayor control operativo.<\/p>\n<p>La clave no est\u00e1 en bloquear \u201ctodo\u201d, sino en <strong>clasificar con precisi\u00f3n<\/strong>: qu\u00e9 debe entrar, qu\u00e9 debe salir de inmediato, qu\u00e9 rutas jam\u00e1s deben responder y qu\u00e9 se\u00f1ales t\u00e9cnicas delatan automatizaci\u00f3n maliciosa.<\/p>\n<h2>Nube Ninja, protege tus sitios por t\u00ed<\/h2>\n<p><a href=\"\/\">Si deseas que te ayudemos con la parte t\u00e9cnica, puedes unirte a nuestro selecto club de clientes en el hosting m\u00e1s seguro y estable de M\u00e9xico.<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>En entornos WordPress y WooCommerce con tr\u00e1fico real, el problema no es \u00fanicamente el ataque directo, sino el consumo in\u00fatil de recursos causado por crawlers agresivos, scrapers, librer\u00edas HTTP automatizadas, &#8230; <a title=\"Protecci\u00f3n contra Ataques de Bots (Crawlers) Maliciosos WordPress\/Woocommerce\" class=\"read-more\" href=\"https:\/\/nube.ninja\/enterate\/proteccion-contra-ataques-de-bots-crawlers-maliciosos-wordpress-woocommerce\" aria-label=\"Leer m\u00e1s sobre Protecci\u00f3n contra Ataques de Bots (Crawlers) Maliciosos WordPress\/Woocommerce\">Leer m\u00e1s<\/a><\/p>\n","protected":false},"author":2,"featured_media":1840,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[2],"tags":[],"class_list":["post-1838","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-enterate","infinite-scroll-item","generate-columns","tablet-grid-50","mobile-grid-100","grid-parent","grid-33"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.2 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>Protecci\u00f3n contra Ataques de Bots (Crawlers) Maliciosos Wordpress\/Woocommerce - Nube Ninja<\/title>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/nube.ninja\/enterate\/proteccion-contra-ataques-de-bots-crawlers-maliciosos-wordpress-woocommerce\" \/>\n<meta property=\"og:locale\" content=\"es_MX\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Protecci\u00f3n contra Ataques de Bots (Crawlers) Maliciosos Wordpress\/Woocommerce - Nube Ninja\" \/>\n<meta property=\"og:description\" content=\"En entornos WordPress y WooCommerce con tr\u00e1fico real, el problema no es \u00fanicamente el ataque directo, sino el consumo in\u00fatil de recursos causado por crawlers agresivos, scrapers, librer\u00edas HTTP automatizadas, ... Leer m\u00e1s\" \/>\n<meta property=\"og:url\" content=\"https:\/\/nube.ninja\/enterate\/proteccion-contra-ataques-de-bots-crawlers-maliciosos-wordpress-woocommerce\" \/>\n<meta property=\"og:site_name\" content=\"Nube Ninja\" \/>\n<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/NubeNinja\" \/>\n<meta property=\"article:published_time\" content=\"2026-04-15T06:13:04+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2026-04-15T06:24:55+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/nube.ninja\/enterate\/wp-content\/uploads\/2026\/04\/crawler-Pequeno.png\" \/>\n\t<meta property=\"og:image:width\" content=\"846\" \/>\n\t<meta property=\"og:image:height\" content=\"480\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/png\" \/>\n<meta name=\"author\" content=\"Soporte ANDO\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@NubeNinja\" \/>\n<meta name=\"twitter:site\" content=\"@NubeNinja\" \/>\n<meta name=\"twitter:label1\" content=\"Escrito por\" \/>\n\t<meta name=\"twitter:data1\" content=\"Soporte ANDO\" \/>\n\t<meta name=\"twitter:label2\" content=\"Tiempo de lectura\" \/>\n\t<meta name=\"twitter:data2\" content=\"5 minutos\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\/\/nube.ninja\/enterate\/proteccion-contra-ataques-de-bots-crawlers-maliciosos-wordpress-woocommerce#article\",\"isPartOf\":{\"@id\":\"https:\/\/nube.ninja\/enterate\/proteccion-contra-ataques-de-bots-crawlers-maliciosos-wordpress-woocommerce\"},\"author\":{\"name\":\"Soporte ANDO\",\"@id\":\"https:\/\/nube.ninja\/enterate\/#\/schema\/person\/4fe7638197cabb10d7e782c1e5da1035\"},\"headline\":\"Protecci\u00f3n contra Ataques de Bots (Crawlers) Maliciosos WordPress\/Woocommerce\",\"datePublished\":\"2026-04-15T06:13:04+00:00\",\"dateModified\":\"2026-04-15T06:24:55+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\/\/nube.ninja\/enterate\/proteccion-contra-ataques-de-bots-crawlers-maliciosos-wordpress-woocommerce\"},\"wordCount\":1085,\"publisher\":{\"@id\":\"https:\/\/nube.ninja\/enterate\/#organization\"},\"image\":{\"@id\":\"https:\/\/nube.ninja\/enterate\/proteccion-contra-ataques-de-bots-crawlers-maliciosos-wordpress-woocommerce#primaryimage\"},\"thumbnailUrl\":\"https:\/\/nube.ninja\/enterate\/wp-content\/uploads\/2026\/04\/crawler-Pequeno.png\",\"articleSection\":[\"Ent\u00e9rate\"],\"inLanguage\":\"es\"},{\"@type\":\"WebPage\",\"@id\":\"https:\/\/nube.ninja\/enterate\/proteccion-contra-ataques-de-bots-crawlers-maliciosos-wordpress-woocommerce\",\"url\":\"https:\/\/nube.ninja\/enterate\/proteccion-contra-ataques-de-bots-crawlers-maliciosos-wordpress-woocommerce\",\"name\":\"Protecci\u00f3n contra Ataques de Bots (Crawlers) Maliciosos Wordpress\/Woocommerce - Nube Ninja\",\"isPartOf\":{\"@id\":\"https:\/\/nube.ninja\/enterate\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\/\/nube.ninja\/enterate\/proteccion-contra-ataques-de-bots-crawlers-maliciosos-wordpress-woocommerce#primaryimage\"},\"image\":{\"@id\":\"https:\/\/nube.ninja\/enterate\/proteccion-contra-ataques-de-bots-crawlers-maliciosos-wordpress-woocommerce#primaryimage\"},\"thumbnailUrl\":\"https:\/\/nube.ninja\/enterate\/wp-content\/uploads\/2026\/04\/crawler-Pequeno.png\",\"datePublished\":\"2026-04-15T06:13:04+00:00\",\"dateModified\":\"2026-04-15T06:24:55+00:00\",\"breadcrumb\":{\"@id\":\"https:\/\/nube.ninja\/enterate\/proteccion-contra-ataques-de-bots-crawlers-maliciosos-wordpress-woocommerce#breadcrumb\"},\"inLanguage\":\"es\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/nube.ninja\/enterate\/proteccion-contra-ataques-de-bots-crawlers-maliciosos-wordpress-woocommerce\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"es\",\"@id\":\"https:\/\/nube.ninja\/enterate\/proteccion-contra-ataques-de-bots-crawlers-maliciosos-wordpress-woocommerce#primaryimage\",\"url\":\"https:\/\/nube.ninja\/enterate\/wp-content\/uploads\/2026\/04\/crawler-Pequeno.png\",\"contentUrl\":\"https:\/\/nube.ninja\/enterate\/wp-content\/uploads\/2026\/04\/crawler-Pequeno.png\",\"width\":846,\"height\":480},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/nube.ninja\/enterate\/proteccion-contra-ataques-de-bots-crawlers-maliciosos-wordpress-woocommerce#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Inicio\",\"item\":\"https:\/\/nube.ninja\/enterate\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Protecci\u00f3n contra Ataques de Bots (Crawlers) Maliciosos WordPress\/Woocommerce\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/nube.ninja\/enterate\/#website\",\"url\":\"https:\/\/nube.ninja\/enterate\/\",\"name\":\"Nube Ninja\",\"description\":\"Cloud Hosting, Infraestructura Tecnol\u00f3gica y Ciberseguridad\",\"publisher\":{\"@id\":\"https:\/\/nube.ninja\/enterate\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/nube.ninja\/enterate\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"es\"},{\"@type\":\"Organization\",\"@id\":\"https:\/\/nube.ninja\/enterate\/#organization\",\"name\":\"Nube Ninja S.A. de C.V.\",\"url\":\"https:\/\/nube.ninja\/enterate\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"es\",\"@id\":\"https:\/\/nube.ninja\/enterate\/#\/schema\/logo\/image\/\",\"url\":\"https:\/\/nube.ninja\/enterate\/wp-content\/uploads\/2022\/07\/cloud_ninja_logo.png\",\"contentUrl\":\"https:\/\/nube.ninja\/enterate\/wp-content\/uploads\/2022\/07\/cloud_ninja_logo.png\",\"width\":2000,\"height\":423,\"caption\":\"Nube Ninja S.A. de C.V.\"},\"image\":{\"@id\":\"https:\/\/nube.ninja\/enterate\/#\/schema\/logo\/image\/\"},\"sameAs\":[\"https:\/\/www.facebook.com\/NubeNinja\",\"https:\/\/x.com\/NubeNinja\",\"https:\/\/www.linkedin.com\/company\/nube-ninja\/\",\"https:\/\/www.youtube.com\/channel\/UCyKf5uAUk-RKsAP5LykFnWQ\",\"https:\/\/www.instagram.com\/nube.ninja\/\"]},{\"@type\":\"Person\",\"@id\":\"https:\/\/nube.ninja\/enterate\/#\/schema\/person\/4fe7638197cabb10d7e782c1e5da1035\",\"name\":\"Soporte ANDO\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"es\",\"@id\":\"https:\/\/secure.gravatar.com\/avatar\/2d6af12702ad328f21ced7a8678a26336fa7477fa74a512f5a3d36ade873f284?s=96&d=mm&r=g\",\"url\":\"https:\/\/secure.gravatar.com\/avatar\/2d6af12702ad328f21ced7a8678a26336fa7477fa74a512f5a3d36ade873f284?s=96&d=mm&r=g\",\"contentUrl\":\"https:\/\/secure.gravatar.com\/avatar\/2d6af12702ad328f21ced7a8678a26336fa7477fa74a512f5a3d36ade873f284?s=96&d=mm&r=g\",\"caption\":\"Soporte ANDO\"},\"url\":\"https:\/\/nube.ninja\/enterate\/author\/hostmaster\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Protecci\u00f3n contra Ataques de Bots (Crawlers) Maliciosos Wordpress\/Woocommerce - Nube Ninja","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/nube.ninja\/enterate\/proteccion-contra-ataques-de-bots-crawlers-maliciosos-wordpress-woocommerce","og_locale":"es_MX","og_type":"article","og_title":"Protecci\u00f3n contra Ataques de Bots (Crawlers) Maliciosos Wordpress\/Woocommerce - Nube Ninja","og_description":"En entornos WordPress y WooCommerce con tr\u00e1fico real, el problema no es \u00fanicamente el ataque directo, sino el consumo in\u00fatil de recursos causado por crawlers agresivos, scrapers, librer\u00edas HTTP automatizadas, ... Leer m\u00e1s","og_url":"https:\/\/nube.ninja\/enterate\/proteccion-contra-ataques-de-bots-crawlers-maliciosos-wordpress-woocommerce","og_site_name":"Nube Ninja","article_publisher":"https:\/\/www.facebook.com\/NubeNinja","article_published_time":"2026-04-15T06:13:04+00:00","article_modified_time":"2026-04-15T06:24:55+00:00","og_image":[{"width":846,"height":480,"url":"https:\/\/nube.ninja\/enterate\/wp-content\/uploads\/2026\/04\/crawler-Pequeno.png","type":"image\/png"}],"author":"Soporte ANDO","twitter_card":"summary_large_image","twitter_creator":"@NubeNinja","twitter_site":"@NubeNinja","twitter_misc":{"Escrito por":"Soporte ANDO","Tiempo de lectura":"5 minutos"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/nube.ninja\/enterate\/proteccion-contra-ataques-de-bots-crawlers-maliciosos-wordpress-woocommerce#article","isPartOf":{"@id":"https:\/\/nube.ninja\/enterate\/proteccion-contra-ataques-de-bots-crawlers-maliciosos-wordpress-woocommerce"},"author":{"name":"Soporte ANDO","@id":"https:\/\/nube.ninja\/enterate\/#\/schema\/person\/4fe7638197cabb10d7e782c1e5da1035"},"headline":"Protecci\u00f3n contra Ataques de Bots (Crawlers) Maliciosos WordPress\/Woocommerce","datePublished":"2026-04-15T06:13:04+00:00","dateModified":"2026-04-15T06:24:55+00:00","mainEntityOfPage":{"@id":"https:\/\/nube.ninja\/enterate\/proteccion-contra-ataques-de-bots-crawlers-maliciosos-wordpress-woocommerce"},"wordCount":1085,"publisher":{"@id":"https:\/\/nube.ninja\/enterate\/#organization"},"image":{"@id":"https:\/\/nube.ninja\/enterate\/proteccion-contra-ataques-de-bots-crawlers-maliciosos-wordpress-woocommerce#primaryimage"},"thumbnailUrl":"https:\/\/nube.ninja\/enterate\/wp-content\/uploads\/2026\/04\/crawler-Pequeno.png","articleSection":["Ent\u00e9rate"],"inLanguage":"es"},{"@type":"WebPage","@id":"https:\/\/nube.ninja\/enterate\/proteccion-contra-ataques-de-bots-crawlers-maliciosos-wordpress-woocommerce","url":"https:\/\/nube.ninja\/enterate\/proteccion-contra-ataques-de-bots-crawlers-maliciosos-wordpress-woocommerce","name":"Protecci\u00f3n contra Ataques de Bots (Crawlers) Maliciosos Wordpress\/Woocommerce - Nube Ninja","isPartOf":{"@id":"https:\/\/nube.ninja\/enterate\/#website"},"primaryImageOfPage":{"@id":"https:\/\/nube.ninja\/enterate\/proteccion-contra-ataques-de-bots-crawlers-maliciosos-wordpress-woocommerce#primaryimage"},"image":{"@id":"https:\/\/nube.ninja\/enterate\/proteccion-contra-ataques-de-bots-crawlers-maliciosos-wordpress-woocommerce#primaryimage"},"thumbnailUrl":"https:\/\/nube.ninja\/enterate\/wp-content\/uploads\/2026\/04\/crawler-Pequeno.png","datePublished":"2026-04-15T06:13:04+00:00","dateModified":"2026-04-15T06:24:55+00:00","breadcrumb":{"@id":"https:\/\/nube.ninja\/enterate\/proteccion-contra-ataques-de-bots-crawlers-maliciosos-wordpress-woocommerce#breadcrumb"},"inLanguage":"es","potentialAction":[{"@type":"ReadAction","target":["https:\/\/nube.ninja\/enterate\/proteccion-contra-ataques-de-bots-crawlers-maliciosos-wordpress-woocommerce"]}]},{"@type":"ImageObject","inLanguage":"es","@id":"https:\/\/nube.ninja\/enterate\/proteccion-contra-ataques-de-bots-crawlers-maliciosos-wordpress-woocommerce#primaryimage","url":"https:\/\/nube.ninja\/enterate\/wp-content\/uploads\/2026\/04\/crawler-Pequeno.png","contentUrl":"https:\/\/nube.ninja\/enterate\/wp-content\/uploads\/2026\/04\/crawler-Pequeno.png","width":846,"height":480},{"@type":"BreadcrumbList","@id":"https:\/\/nube.ninja\/enterate\/proteccion-contra-ataques-de-bots-crawlers-maliciosos-wordpress-woocommerce#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Inicio","item":"https:\/\/nube.ninja\/enterate\/"},{"@type":"ListItem","position":2,"name":"Protecci\u00f3n contra Ataques de Bots (Crawlers) Maliciosos WordPress\/Woocommerce"}]},{"@type":"WebSite","@id":"https:\/\/nube.ninja\/enterate\/#website","url":"https:\/\/nube.ninja\/enterate\/","name":"Nube Ninja","description":"Cloud Hosting, Infraestructura Tecnol\u00f3gica y Ciberseguridad","publisher":{"@id":"https:\/\/nube.ninja\/enterate\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/nube.ninja\/enterate\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"es"},{"@type":"Organization","@id":"https:\/\/nube.ninja\/enterate\/#organization","name":"Nube Ninja S.A. de C.V.","url":"https:\/\/nube.ninja\/enterate\/","logo":{"@type":"ImageObject","inLanguage":"es","@id":"https:\/\/nube.ninja\/enterate\/#\/schema\/logo\/image\/","url":"https:\/\/nube.ninja\/enterate\/wp-content\/uploads\/2022\/07\/cloud_ninja_logo.png","contentUrl":"https:\/\/nube.ninja\/enterate\/wp-content\/uploads\/2022\/07\/cloud_ninja_logo.png","width":2000,"height":423,"caption":"Nube Ninja S.A. de C.V."},"image":{"@id":"https:\/\/nube.ninja\/enterate\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/www.facebook.com\/NubeNinja","https:\/\/x.com\/NubeNinja","https:\/\/www.linkedin.com\/company\/nube-ninja\/","https:\/\/www.youtube.com\/channel\/UCyKf5uAUk-RKsAP5LykFnWQ","https:\/\/www.instagram.com\/nube.ninja\/"]},{"@type":"Person","@id":"https:\/\/nube.ninja\/enterate\/#\/schema\/person\/4fe7638197cabb10d7e782c1e5da1035","name":"Soporte ANDO","image":{"@type":"ImageObject","inLanguage":"es","@id":"https:\/\/secure.gravatar.com\/avatar\/2d6af12702ad328f21ced7a8678a26336fa7477fa74a512f5a3d36ade873f284?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/2d6af12702ad328f21ced7a8678a26336fa7477fa74a512f5a3d36ade873f284?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/2d6af12702ad328f21ced7a8678a26336fa7477fa74a512f5a3d36ade873f284?s=96&d=mm&r=g","caption":"Soporte ANDO"},"url":"https:\/\/nube.ninja\/enterate\/author\/hostmaster"}]}},"_links":{"self":[{"href":"https:\/\/nube.ninja\/enterate\/wp-json\/wp\/v2\/posts\/1838","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/nube.ninja\/enterate\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/nube.ninja\/enterate\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/nube.ninja\/enterate\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/nube.ninja\/enterate\/wp-json\/wp\/v2\/comments?post=1838"}],"version-history":[{"count":0,"href":"https:\/\/nube.ninja\/enterate\/wp-json\/wp\/v2\/posts\/1838\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/nube.ninja\/enterate\/wp-json\/wp\/v2\/media\/1840"}],"wp:attachment":[{"href":"https:\/\/nube.ninja\/enterate\/wp-json\/wp\/v2\/media?parent=1838"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/nube.ninja\/enterate\/wp-json\/wp\/v2\/categories?post=1838"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/nube.ninja\/enterate\/wp-json\/wp\/v2\/tags?post=1838"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}