this open source python version of xmlrpc brute very speical its bot you can target multi site
Its smart tools can detect wordpress users, so if none are detected, the wordpress wp-user fail tools will use the default username login as admin and brute force with the list password (that you can customize in the main folder named wordlist).
and XMLRPC is a very good way to attack without a captcha or locking your IP down.
Why are many hackers still XMLRPC brute-force active in 2023


Its smart tools can detect wordpress users, so if none are detected, the wordpress wp-user fail tools will use the default username login as admin and brute force with the list password (that you can customize in the main folder named wordlist).
and XMLRPC is a very good way to attack without a captcha or locking your IP down.
Why are many hackers still XMLRPC brute-force active in 2023


drcrypter.ru