firezgi / team-spider-man

3 stars 2 forks source link

Team B | Vulnerability 2: XMLRPC-Pingback exploit #34

Open garetshough14 opened 2 years ago

garetshough14 commented 2 years ago

Problem: By sending a large number of pingbacks from multiple hosts the site can be out of service or we can say – make it unavailable for the users(DDoS attacks).

XML-RPC: XML-RPC on WordPress is actually an API that allows developers who make 3rd party applications and services the ability to interact with your WordPress site.

Report: https://docs.google.com/document/d/1xGBAfUe2yIJiU5FI4azXSVpJQWhrq7ZDyBq_nWh-GFM/edit#heading=h.g0z0emwprhs8