wpscan

$ wpscan --url http://raven.local/wordpress/ -e

$ wpscan --url http://www.midwest.htb/ -U admin -P ~/Documents/pass2 -t 50

$ wpscan --url http://10.0.2.30/wordpress/ --api-token ******************************************* 

$ wpscan --url http://10.0.2.15/assets/fonts/blog/ --plugins-detection aggressive

api注册地址 https://wpscan.com/register

api查看 https://wpscan.com/profile


靶机推荐:

https://www.vulnhub.com/entry/loly-1,538/

https://www.vulnhub.com/entry/midwest-101,692/