{"id":64,"date":"2025-07-09T20:48:04","date_gmt":"2025-07-09T20:48:04","guid":{"rendered":"https:\/\/blog.blipscan.io\/?p=64"},"modified":"2025-07-10T05:05:27","modified_gmt":"2025-07-10T05:05:27","slug":"future-functionality","status":"publish","type":"post","link":"https:\/\/blog.blipscan.io\/future-functionality\/","title":{"rendered":"Blip is LIVE. What&#8217;s next?"},"content":{"rendered":"<p>It&#8217;s been a long wait but we are now officially LIVE. We have been testing and refining Blip&#8217;s functionality in our spare time since May. In June we did a soft launch which has been really helpful thanks to all the feedback we have got from people who&#8217;ve tried it, and usage has been growing steadily too. A question we&#8217;ve been asked about quite often is <strong>what functionality we plan to include in future versions of Blip<\/strong>. I&#8217;ll come to that in this article, but first, here is the functionality currently available on Blip and some of its applications:<\/p>\n<p>&nbsp;<\/p>\n<p><strong>1. Detect plugins on WordPress websites instantly, and without having to install any invasive plugin yourself<\/strong>. It&#8217;s not 100% accurate, but it provides the most replete results of all the WordPress scanners we&#8217;ve found. This is useful for lots of reasons, like if you want to see what plugins are being used on a website to perform certain functions, or if you just want to quickly check whether the plugins on your own website are all up to date.<\/p>\n<p>&nbsp;<\/p>\n<p><strong>2. Detects the latest CVs \/ WordPress plugin vulnerabilities<\/strong>. When a plugin vulnerability is disclosed publicly, Blip will display them within 5 minutes of the disclosure. Clicking on any vulnerable plugins lets you see what the vulnerability is and what the patch is.<\/p>\n<p>&nbsp;<\/p>\n<h2><strong>Future functionality<\/strong><\/h2>\n<p>The free version of Blip which is available now is a small part of the functionality on a security research tool I wrote. The full version I use lets me scan several hundred thousand WordPress websites every 20 minutes or so, logging which ones have potential vulnerabilities on them. That&#8217;s how I&#8217;ve been able to find the zero day exploits and other CVs since I began doing security research as a hobby this year. Ultimately I&#8217;d love to make this functionality publicly available and we are looking at ways to do this because it will require a lot of time and probably some investment too. If we are able to make this happen it should help a lot of research analysts, including aspiring ones to be more effective in their work finding them bug bounties.<\/p>\n<p>&nbsp;<\/p>\n<p>A request we have had a few times is if we can reverse the logic lookup so that <strong>plugins can be searched for by their name<\/strong>, providing a list of WordPress websites which have the plugin installed. And yip, we can build this and it&#8217;s definitely something we will look at introducing in a future version of Blip. Having this would mean you can get a list of hundreds of thousands of WordPress websites which use a certain plugin.<\/p>\n<p><strong>Subdomain discovery<\/strong> is definitely on our radar. We&#8217;ve got it in trial mode currently and will look at rolling it out in the future. This will allow you find subdomains you might not have even known were there along with any possible vulnerabilities on them.<\/p>\n<p>And, something we&#8217;ve been asked lots of time from agency users is whether we can provide <strong>reporting<\/strong> functionality. We can definitely do this and it would probably be part of the wider rollout of functionality described above.<\/p>\n<p>&nbsp;<\/p>\n<h2><strong>Request a feature<\/strong><\/h2>\n<p>If you want to see some new functionality added to Blip, we&#8217;d love to hear. You can send it to us on the &#8216;Request a feature&#8217; popup in the footer.<\/p>\n<p>&nbsp;<\/p>\n<p>&nbsp;<\/p>\n","protected":false},"excerpt":{"rendered":"<p>It&#8217;s been a long wait but we are now officially LIVE. We have been testing and refining Blip&#8217;s functionality in our spare time since May. In June we did a soft launch which has been really helpful thanks to all the feedback we have got from people who&#8217;ve tried it, and usage has been growing [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":73,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"footnotes":""},"categories":[1],"tags":[9,8,10],"class_list":["post-64","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-uncategorized","tag-detect-wordpress-plugins","tag-subdomain-discovery","tag-wordpress-cvs"],"acf":{"thumbnail_text":"Future functionality "},"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v25.4 - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ -->\n<title>Finding WordPress plugin vulnerabilities instantly is just the beginning<\/title>\n<meta name=\"description\" content=\"The free version of Blip which is available now is a small part of the functionality on a security research tool I wrote. The full version I use lets me scan several hundred thousand WordPress websites every 20 minutes or so, logging which ones have potential vulnerabilities on them.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/blog.blipscan.io\/future-functionality\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Finding WordPress plugin vulnerabilities instantly is just the beginning\" \/>\n<meta property=\"og:description\" content=\"The free version of Blip which is available now is a small part of the functionality on a security research tool I wrote. The full version I use lets me scan several hundred thousand WordPress websites every 20 minutes or so, logging which ones have potential vulnerabilities on them.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/blog.blipscan.io\/future-functionality\/\" \/>\n<meta property=\"og:site_name\" content=\"Blip Blog\" \/>\n<meta property=\"article:published_time\" content=\"2025-07-09T20:48:04+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2025-07-10T05:05:27+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/blog.blipscan.io\/wp-content\/uploads\/2025\/07\/WP-vulnerabilities-womeninsoccer.png\" \/>\n\t<meta property=\"og:image:width\" content=\"2336\" \/>\n\t<meta property=\"og:image:height\" content=\"714\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/png\" \/>\n<meta name=\"author\" content=\"admin\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"admin\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"3 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"WebPage\",\"@id\":\"https:\/\/blog.blipscan.io\/future-functionality\/\",\"url\":\"https:\/\/blog.blipscan.io\/future-functionality\/\",\"name\":\"Finding WordPress plugin vulnerabilities instantly is just the beginning\",\"isPartOf\":{\"@id\":\"https:\/\/blog.blipscan.io\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\/\/blog.blipscan.io\/future-functionality\/#primaryimage\"},\"image\":{\"@id\":\"https:\/\/blog.blipscan.io\/future-functionality\/#primaryimage\"},\"thumbnailUrl\":\"https:\/\/blog.blipscan.io\/wp-content\/uploads\/2025\/07\/WP-vulnerabilities-womeninsoccer.png\",\"datePublished\":\"2025-07-09T20:48:04+00:00\",\"dateModified\":\"2025-07-10T05:05:27+00:00\",\"author\":{\"@id\":\"https:\/\/blog.blipscan.io\/#\/schema\/person\/261014f260ebd82e40490682ed19bd6b\"},\"description\":\"The free version of Blip which is available now is a small part of the functionality on a security research tool I wrote. The full version I use lets me scan several hundred thousand WordPress websites every 20 minutes or so, logging which ones have potential vulnerabilities on them.\",\"breadcrumb\":{\"@id\":\"https:\/\/blog.blipscan.io\/future-functionality\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/blog.blipscan.io\/future-functionality\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/blog.blipscan.io\/future-functionality\/#primaryimage\",\"url\":\"https:\/\/blog.blipscan.io\/wp-content\/uploads\/2025\/07\/WP-vulnerabilities-womeninsoccer.png\",\"contentUrl\":\"https:\/\/blog.blipscan.io\/wp-content\/uploads\/2025\/07\/WP-vulnerabilities-womeninsoccer.png\",\"width\":2336,\"height\":714,\"caption\":\"Detect WordPress vulnerabilities instantly\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/blog.blipscan.io\/future-functionality\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\/\/blog.blipscan.io\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Blip is LIVE. What&#8217;s next?\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/blog.blipscan.io\/#website\",\"url\":\"https:\/\/blog.blipscan.io\/\",\"name\":\"Blip Blog\",\"description\":\"\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/blog.blipscan.io\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Person\",\"@id\":\"https:\/\/blog.blipscan.io\/#\/schema\/person\/261014f260ebd82e40490682ed19bd6b\",\"name\":\"admin\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/blog.blipscan.io\/#\/schema\/person\/image\/\",\"url\":\"https:\/\/secure.gravatar.com\/avatar\/20c3763336d14228f7c9802a52be4eaaefb602e8e4c9a180f363f260fe243eb0?s=96&d=mm&r=g\",\"contentUrl\":\"https:\/\/secure.gravatar.com\/avatar\/20c3763336d14228f7c9802a52be4eaaefb602e8e4c9a180f363f260fe243eb0?s=96&d=mm&r=g\",\"caption\":\"admin\"},\"sameAs\":[\"http:\/\/localhost:8000\"],\"url\":\"https:\/\/blog.blipscan.io\/author\/admin\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Finding WordPress plugin vulnerabilities instantly is just the beginning","description":"The free version of Blip which is available now is a small part of the functionality on a security research tool I wrote. The full version I use lets me scan several hundred thousand WordPress websites every 20 minutes or so, logging which ones have potential vulnerabilities on them.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/blog.blipscan.io\/future-functionality\/","og_locale":"en_US","og_type":"article","og_title":"Finding WordPress plugin vulnerabilities instantly is just the beginning","og_description":"The free version of Blip which is available now is a small part of the functionality on a security research tool I wrote. The full version I use lets me scan several hundred thousand WordPress websites every 20 minutes or so, logging which ones have potential vulnerabilities on them.","og_url":"https:\/\/blog.blipscan.io\/future-functionality\/","og_site_name":"Blip Blog","article_published_time":"2025-07-09T20:48:04+00:00","article_modified_time":"2025-07-10T05:05:27+00:00","og_image":[{"width":2336,"height":714,"url":"https:\/\/blog.blipscan.io\/wp-content\/uploads\/2025\/07\/WP-vulnerabilities-womeninsoccer.png","type":"image\/png"}],"author":"admin","twitter_card":"summary_large_image","twitter_misc":{"Written by":"admin","Est. reading time":"3 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"WebPage","@id":"https:\/\/blog.blipscan.io\/future-functionality\/","url":"https:\/\/blog.blipscan.io\/future-functionality\/","name":"Finding WordPress plugin vulnerabilities instantly is just the beginning","isPartOf":{"@id":"https:\/\/blog.blipscan.io\/#website"},"primaryImageOfPage":{"@id":"https:\/\/blog.blipscan.io\/future-functionality\/#primaryimage"},"image":{"@id":"https:\/\/blog.blipscan.io\/future-functionality\/#primaryimage"},"thumbnailUrl":"https:\/\/blog.blipscan.io\/wp-content\/uploads\/2025\/07\/WP-vulnerabilities-womeninsoccer.png","datePublished":"2025-07-09T20:48:04+00:00","dateModified":"2025-07-10T05:05:27+00:00","author":{"@id":"https:\/\/blog.blipscan.io\/#\/schema\/person\/261014f260ebd82e40490682ed19bd6b"},"description":"The free version of Blip which is available now is a small part of the functionality on a security research tool I wrote. The full version I use lets me scan several hundred thousand WordPress websites every 20 minutes or so, logging which ones have potential vulnerabilities on them.","breadcrumb":{"@id":"https:\/\/blog.blipscan.io\/future-functionality\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/blog.blipscan.io\/future-functionality\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/blog.blipscan.io\/future-functionality\/#primaryimage","url":"https:\/\/blog.blipscan.io\/wp-content\/uploads\/2025\/07\/WP-vulnerabilities-womeninsoccer.png","contentUrl":"https:\/\/blog.blipscan.io\/wp-content\/uploads\/2025\/07\/WP-vulnerabilities-womeninsoccer.png","width":2336,"height":714,"caption":"Detect WordPress vulnerabilities instantly"},{"@type":"BreadcrumbList","@id":"https:\/\/blog.blipscan.io\/future-functionality\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/blog.blipscan.io\/"},{"@type":"ListItem","position":2,"name":"Blip is LIVE. What&#8217;s next?"}]},{"@type":"WebSite","@id":"https:\/\/blog.blipscan.io\/#website","url":"https:\/\/blog.blipscan.io\/","name":"Blip Blog","description":"","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/blog.blipscan.io\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Person","@id":"https:\/\/blog.blipscan.io\/#\/schema\/person\/261014f260ebd82e40490682ed19bd6b","name":"admin","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/blog.blipscan.io\/#\/schema\/person\/image\/","url":"https:\/\/secure.gravatar.com\/avatar\/20c3763336d14228f7c9802a52be4eaaefb602e8e4c9a180f363f260fe243eb0?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/20c3763336d14228f7c9802a52be4eaaefb602e8e4c9a180f363f260fe243eb0?s=96&d=mm&r=g","caption":"admin"},"sameAs":["http:\/\/localhost:8000"],"url":"https:\/\/blog.blipscan.io\/author\/admin\/"}]}},"_links":{"self":[{"href":"https:\/\/blog.blipscan.io\/wp-json\/wp\/v2\/posts\/64","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/blog.blipscan.io\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/blog.blipscan.io\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/blog.blipscan.io\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/blog.blipscan.io\/wp-json\/wp\/v2\/comments?post=64"}],"version-history":[{"count":14,"href":"https:\/\/blog.blipscan.io\/wp-json\/wp\/v2\/posts\/64\/revisions"}],"predecessor-version":[{"id":80,"href":"https:\/\/blog.blipscan.io\/wp-json\/wp\/v2\/posts\/64\/revisions\/80"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/blog.blipscan.io\/wp-json\/wp\/v2\/media\/73"}],"wp:attachment":[{"href":"https:\/\/blog.blipscan.io\/wp-json\/wp\/v2\/media?parent=64"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/blog.blipscan.io\/wp-json\/wp\/v2\/categories?post=64"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/blog.blipscan.io\/wp-json\/wp\/v2\/tags?post=64"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}