Developed a project to demonstrate web application-penetration testing.
-
Updated
Apr 14, 2023
Developed a project to demonstrate web application-penetration testing.
WPScan is a free, for non-commercial use, black box WordPress Vulnerability Scanner written for security professionals and blog maintainers to test the security of their WordPress websites.
Various code snippets
# Web Application Penetration Testing Methodology A comprehensive step-by-step guide to performing professional web application penetration testing with essential tools and commands.
Security plugin for Wordpress: No User Enumeration. https://wordpress.org/plugins/no-user-enumeration/
EventON (Free < 2.2.8, Premium < 4.5.5) - Information Disclosure
A professional shell-based cybersecurity toolkit for recon, exploitation, post-exploitation, malware analysis, and network monitoring.
A fully self-contained Docker image that orchestrates 20 security tools — Nuclei, ZAP, Dalfox, Arjun, WPScan, sqlmap, Nikto, testssl.sh, Shodan, and more — into a single 16-step scan pipeline. Passive recon, parameter discovery, XSS, SQLi, secrets detection, and full vulnerability coverage with one command.
🚀 (Simple, clear, and straight to the point)
MCP server for WPScan - WordPress security scanner
MCP Server for the WPScan (wpscan.com) API
Assistant work tool for wpscan.
A Wordpress vulnerability scanner
a small wp brute forcing tool by ELAQ and I554M
Add a description, image, and links to the wpscan topic page so that developers can more easily learn about it.
To associate your repository with the wpscan topic, visit your repo's landing page and select "manage topics."