xmlrpc.php &wp-cron.php files are enabled, and will used for (DDOS),(DOS) and broutforce users attack. security issue

Post Reply
Shane1145
Posts: 1854
Joined: Wed Sep 25, 2024 2:31 pm

xmlrpc.php &wp-cron.php files are enabled, and will used for (DDOS),(DOS) and broutforce users attack. security issue

Post by Shane1145 »

The xmlrpc.php and wp-cron.php files in WordPress are often targets for attackers due to their potential misuse for DDoS, DoS, and brute-force attacks. When enabled, they can be exploited to overload the server, disrupt service, or attempt unauthorized logins, posing significant security risks.


https://hackerone.com/reports/2299069
Post Reply