Red Team

SECURE YOUR WORDPRESS

Scan target sites for obsolete CMS core versions, vulnerable plugins database references, active theme disclosures, and critical misconfigurations.

WordPress Audit Configuration

Ownership Verification

Verify asset ownership before scanning

We require a same-organization work email plus a DNS TXT or HTTP file proof on your target domain.

1. Start2. Email3. Proof4. Scan

Use a company-managed email that matches the target domain or one of its approved subdomains.

What this checks

  • Email-domain match
  • Domain control proof
  • WHOIS / RDAP / DNS context

DNS and CDN changes can take time to propagate. If your proof is newly published, wait a few minutes and run the proof check again instead of starting a brand-new scan.

Audit Scope Info

  • Resolves version headers to cross-reference against known WordPress core vulnerabilities.
  • Fingerprints active plugins directories to audit outdated or exploit-susceptible code.
  • Audits common file exposures (wp-config.php backup files, readme.html disclosures).