⚡ Target:
functions.php
🔒 Tested: WP 6.6+ / PHP 8.2+
💻 Lang: PHP
XML-RPC in WordPress is frequently targeted by brute-force attacks and DDoS amplification vulnerabilities. If you are not using the WordPress mobile app or Jetpack, disabling XML-RPC significantly improves site security and reduces server load.