Ross ROSS = Recommend OSS · open-source software intelligence for agents

Moham3dRiahi/XAttacker

X Attacker Tool ☣ Website Vulnerability Scanner & Auto Exploiter observed · 2026-08-28

github.com/Moham3dRiahi/XAttacker · Perl observed · 2026-08-28

Health v2 · maintenance only

32/100

  • Activity 0
  • Release rhythm 35
  • Longevity 100

Flags: no_releases no_license

How is this computed?

round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10) — computed 2026-09-03. Adoption (stars, forks) is never an input.

  • gap_med: n/a
  • age_days: 3221
  • days_rel: n/a
  • days_push: 1060
  • n_releases_24m: 0

Full methodology

Adoption not part of the score

1757 stars · 468 forks observed · 2026-08-28

What it is AI-extracted, prompt v1, taxonomy v1, 2026-08-30, confidence not recorded

XAttacker is a Perl-based command-line tool that scans websites for vulnerabilities and automatically exploits them. It detects the target's CMS (WordPress, Joomla, Drupal, PrestaShop, Lokomedia) and attempts known exploits against it, reporting exploit links to the user.

Use cases

  • scan a website for known CMS vulnerabilities
  • auto-exploit vulnerable WordPress plugins
  • test a list of websites for exploitable CMS flaws
  • detect which CMS a target site runs
  • find exploitable Joomla or Drupal components
  • generate plain-text reports of found vulnerabilities

When to choose

  • you need a quick automated scanner plus exploiter for common CMS vulnerabilities in a lab or authorized pentest
  • you want a lightweight Perl script with no complex dependencies
  • you are testing many targets from a list at once

When to avoid

  • you need a modern, maintained scanner with CVE database integration
  • you require a license-compliant tool for commercial use (no license is provided)
  • you need stealth, depth, or accuracy beyond known public CMS exploits
  • you lack explicit authorization to test the target

Facets

cli-tool · maturity maintenance

vulnerability-scanning penetration-testing security security penetration-testing web-development cli windows auto-exploiter cms-vulnerabilities wordpress joomla drupal prestashop perl hacking-tool educational linux macos

1 source

Member repositories

RepositoryRoleHealth v2
Moham3dRiahi/XAttackermain32

For agents

markdown · JSON · MCP: product_card(name="Moham3dRiahi/XAttacker")

Data as of 2026-08-30T08:39:29.467469+00:00 · Report a problem