Author | Rich Jones |
---|---|
Compatibility | Xymon 4.3 (likely will work on earlier versions also) |
Requirements | Bash, Ruby, WpScan |
Download | None |
Last Update | 2017-11-10 |
A server side plugin that performs automated WpScan vulnerability tests against Wordpress websites.
Nothing to do on the client side, although you want to have some Wordpress sites to monitor.
Ensure you have WpScan installed https://wpscan.org/
Create a cronjob to auto-update the WpScan database
Place wpscan.sh in /usr/lib/xymon/server/ext (or wherever you have Xymon installed) and ensure it has the correct permissions.
Add the task to tasks.cfg
Add wpscan to the hosts you want to scan in your hosts.cfg
Parse the results and show the appropriate status colour