Tag Archives: WordPress

WPForce – WordPress Attack Suite

WPForce is a suite of Wordpress Attack tools. Currently this contains 2 scripts the first to brute forces logins via the API, and Yertle.

CMSeeK – CMS Detection and Exploitation suite

CMSeeK is a content management system (CMS) manages the creation and modification of digital content. it supports multiple users.

HiddenEye – Modern Phishing Framework

HiddenEye is a modern phishing framework that will allow user to create phishing website , run a keylogger to collect credentials, collect information about victims

CMSmap – CMS Security Scanner

CMSmap is a python open source CMS scanner that automates the process of detecting security flaws of the most popular CMSs.

Droopescan – CMS Plugin-based Security Scanner

Droopescan is a plugin-based scanner that aids security researchers in identifying issues with several CMS.

WPSeku – WordPress Security Scanner

WPSeku is a WordPress vulnerability scanner that allows penetration tester to scan target and search for vulnerabilities.

Several Compromised WordPress sites Serving Malwares

Any system that will not have security updates and patches can be exposed to hackers this including webservers. Malwarebytes have spotted over this week several wordpress websites that were used to serve malicious content to promote malwares. Compromised wordpress have