{"repo":"chrispetrou/FastAudit","free":true,"listed":false,"github":"https://github.com/chrispetrou/FastAudit","clone":"git clone https://github.com/chrispetrou/FastAudit.git","description":":shipit: A wordpress security auditor! Audit your wordpress application for security issues with even 1 request.","language":"Python","stars":40,"topics":["wordpress-security","security","wordpress","tool","auditing","enumeration","shodan","wpscan-vulnerability-database","vulnerabilities","username-checker"],"license":"GPL-3.0","category":"security-tools","readme_excerpt":"A simple and minimal wordpress security auditor! Audit your wordpress application for security issues with even 1 request. FastAudit is a simple wordpress enumeration tool and security auditor, able to detect possible security issues with even one web-request. It is inspired by the amazing WPScan tool and is of course powered by the WPScan Vulnerability Database to identify possible plugin/theme/wpVersion -related vulnerabilities. It performs basic enumeration based on classic techniques and It's nice to use for a fast scan to enumerate the basics. What is special about this tool is that in order to identify possible vulnerabilities ( using -ep option ), it makes only one web-request to the application, so it doesn't slow it down in any way and doesn't mess with its functionality. This tool is only for enumeration and not for exploitation - so it doesn't perform any kind of brute-force attack or any other attack in general. This tool can be used by developers and security engineers to scan their wordpress applications for possible vulberabilities (e.g. old plugins etc...) and fix them as soon as possible - that's all! --- Features enumerates wp- version/theme/users/plugins based on the aboved results uses WPScan Vulnerability Database to search for potential vulnerabilities utilizes shodan-API to search for additional vulnerabilities ( shodan account required for this feature , may also give false positives sometimes) utilizes haveibeenpwned service to search if a password ( ","default_branch":null,"files":null,"tree":[],"storefront":"/r/chrispetrou","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/chrispetrou/FastAudit/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}