Index of WordPress domains with active xmlrpc.php endpoints susceptible to brute-force multicall attacks and pingback amplification.
xmlrpc.php) can be exploited for DDoS amplification attacks, brute-force password attacks via the system.multicall method, and pingback abuse. Consider disabling it if not required by mobile apps or remote publishing plugins.