Full WordPress Penetration

Job ID: 40578511

Budget: ₹1,500 – ₹12,500 INR

My WordPress site requires a thorough penetration test across every component, from the public-facing pages to the admin dashboard and database layer. The primary focus is a realistic simulation of real-world attacks so I can clearly see where the platform, plugins, themes, and server stack are vulnerable.

Key test scenarios I must see covered:
• Brute force attack simulation on the login and registration endpoints
• SQL injection testing, particularly against authentication and data-handling functions

Please conduct any additional checks you consider essential for a complete assessment, but keep the site online and functional throughout. Industry-standard tooling such as WPScan, Burp Suite, OWASP ZAP, or equivalent is expected; include every command, request, or script you run so results can be reproduced later.

Deliverables:
• A detailed report outlining each vulnerability, its CVSS-style severity rating, proof-of-concept evidence, and clear remediation steps
• A concise executive summary suitable for non-technical stakeholders
• A follow-up verification pass (after I patch issues) to confirm fixes are effective

All testing must remain ethical, legal, and within the agreed scope.