WPBrute [Automated WordPress Brute Force Tool] 04-29-2017, 01:38 PM
#1
| WPBrute [Automated WordPress Brute Force Tool] filter_list | |
RE: WPBrute [Automated WordPress Brute Force Tool] 04-30-2017, 11:19 AM
#2
This is nice, just a question, doesn't WP block the IP after a few requests? If so, maybe you could add an option for proxy usage?
~~ Might be back? ~~
RE: WPBrute [Automated WordPress Brute Force Tool] 06-02-2017, 10:15 AM
#4
Adding proxy support and perhaps support for the Wordpress XML-RPC "Multicall" trick would be an interesting project. Especially if it was threaded or multiprocessed and could run autonomously - scraping Google, feeding sites into a queue, and then automatically trying to pwn them. The XML-RPC MultiCall trick gives you a way faster bruteforce 
Example of the XML-RPC MultiCall Bruteforce: https://github.com/1N3/Wordpress-XMLRPC-...ce-Exploit

Example of the XML-RPC MultiCall Bruteforce: https://github.com/1N3/Wordpress-XMLRPC-...ce-Exploit


![[Image: YDyoy2.png]](http://i.hizliresim.com/YDyoy2.png)
![[+]](https://sinister.li/images/modern/collapse_collapsed.png)












Maybe hosting service block the requests but hey WP doesn't block the IP. Even so I'll add proxy support