WPrecon (Wordpress Recon)
Hello! Welcome. Wprecon (Wordpress Recon), is a vulnerability recognition tool in CMS Wordpress, 100% developed in Go.
Features • Compile & Install • License • Author
Version: 1.4.0a
Warning
I recently found out that my tool has the same name as a website ... which has the same "subject" as my tool. But I already warn you that this wprecon that you see on github has nothing to do with this site. I don't have a website yet!
Features & Tasks List
All that are already marked, are already on wprecon. But since they are not, it is for the reason that they are still in development.
- Detection WAF
- Fuzzing Backup Files
- Fuzzing Passwords (xml-rpc)
- Fuzzing Passwords (wp-login)
- Random User Agent
- Plugin(s) Enumerator
- Theme(s) Enumerator
- Scripts
- Tor Proxy
- User(s) Enumerator
- Vulnerability Version Checking (Plugins) (Beta)
—————————————————— Task List ——————————————————
-
🔨 — More Scripts Web Exploits - More Vulnerabilities (Plugins)
- Vulnerability Version Checking (Theme)
WPrecon running
$ wprecon -u https://xxxx.com/ --agressive-mode --tor --random-agent