
تعزيز أمان أي تثبيت ووردبريس.
قم بتعزيز أمان أي تثبيت ووردبريس.
❮ ملاحظة ❯ تصدر هذه الأداة إصدارات جديدة بانتظام. تأكد من تحديث تبعياتك بشكل متكرر للحصول على أحدث إصدار. اطّلع على سجل التغييرات أو CHANGELOG.md للتعرف على الميزات الجديدة.
يتطلب تثبيت WPHardening تنفيذ أمر وحدة تحكم واحد:
$ pip install -r requirements.txt
$ python wphardening.py -h
__ _______ _ _ _ _
\ \ / / __ \| | | | | | (_)
\ \ /\ / /| |__) | |__| | __ _ _ __ __| | ___ _ __ _ _ __ __ _
\ \/ \/ / | ___/| __ |/ _` | '__/ _` |/ _ \ '_ \| | '_ \ / _` |
\ /\ / | | | | | | (_| | | | (_| | __/ | | | | | | | (_| |
\/ \/ |_| |_| |_|\__,_|_| \__,_|\___|_| |_|_|_| |_|\__, |
__/ |
Fortify the security of any WordPress installation. |___/
Caceria de Spammers - http://www.caceriadespammers.com.ar
Usage: python wphardening.py [options]
Options:
--version show program's version number and exit
-h, --help show this help message and exit
-v, --verbose Active verbose mode output results
--update Check for WPHardening latest stable version
Target:
This option must be specified to modify the package WordPress.
-d DIRECTORY, --dir=DIRECTORY
**REQUIRED** - Working Directory.
--load-conf=FILE Load file configuration.
Hardening:
Different tools to hardening WordPress.
-c, --chmod Chmod 755 in directory and 644 in files.
-r, --remove Remove files and directory.
-b, --robots Create file robots.txt
-f, --fingerprinting
Deleted fingerprinting WordPress.
-t, --timthumb Find the library TimThumb.
--chown=user:group Changing file and directory owner.
--wp-config Wizard generated wp-config.php
--plugins Download Plugins Security.
--proxy=PROXY Use a HTTP proxy to connect to the target url for
--plugins and --wp-config.
--indexes It deny you to display the contents of directories.
--minify Compressing static file .css and .js
--malware-scan Malware Scan in WordPress project.
--6g-firewall 6G Firewall.
--rest-api Disable REST API.
Miscellaneous:
-o FILE, --output=FILE
Write log report to FILE.log
قبل استخدام الأداة، يجب التأكد من أن دليل العمل الخاص بنا هو WordPress.
$ python wphardening.py -d /home/path/to/wordpress -v
هذا الخيار لإضافة الصلاحيات الصحيحة للملفات والدلائل.
$ python wphardening.py -d /home/path/to/wordpress --chmod -v
جزء من تعزيز أي نظام هو إزالة تلك الملفات أو الدلائل أو المكونات غير الضرورية.
$ python wphardening.py -d /home/path/to/wordpress --remove -v
ووردبريس الافتراضي لا يتضمن ملف robots.txt، مع هذا الخيار يمكننا تخصيص ملف robots.txt الخاص بنا.
$ python wphardening.py -d /home/path/to/wordpress --robots -v
لمزيد من المعلومات robots.txt
$ python wphardening.py -d /home/path/to/wordpress --fingerprinting -v
$ python wphardening.py -d /home/path/to/wordpress --timthumb -v
يتم إنشاء هذا الملف كوسيلة لمنع التصفح في دليل.
$ python wphardening.py -d /home/path/to/wordpress --indexes -v
فيما يلي قائمة بإضافات الأمان الأكثر استخدامًا والتي يمكنك تنزيلها تلقائيًا:
$ python wphardening.py -d /home/path/to/wordpress --plugins
يقوم هذا الأمر تلقائيًا بإنشاء ملف باسم wp-config-wphardening.php يمكنك إعادة تسميته لاحقًا.
$ python wphardening.py -d /home/path/to/wordpress --wp-config
$ python wphardening.py -d /home/path/to/wordpress --6g-firewall
$ python wphardening.py -d /home/path/to/wordpress --rest-api
باستخدام هذا الخيار يمكنك دائمًا الحصول على أحدث إصدار من WPHardening.
$ python wphardening.py --update
$ python wphardening.py -d /home/path/to/wordpress -c -r -f -t --wp-config --indexes --plugins --6g-firewall --rest-api -o /home/user/wphardening.log
https://github.com/elcodigok/wphardening