aress31 / xmlrpc-bruteforcer

Multi-threaded XMLRPC brute forcer using amplification attacks targeting WordPress installations prior to version 4.4.
Apache License 2.0
116 stars 41 forks source link

'no match found' potential issue #1

Closed AnotherWayIn closed 6 years ago

AnotherWayIn commented 6 years ago

Hey, thanks for the tool! I'm having some problems getting it to work most of the time. The first few times I tried it worked fine running at the default -c 1999, but after a few more tries I now need to limit it to -c 1 for it to recognise the password. I'm testing from an Amazon kali -> Amazon wordpress (version 4.9.6) so there is a chance it could be them blocking maybe as it worked fine for the first few attempts. Have you experienced anything similar? Thanks