Rabu, 18 Januari 2012

how to Brute force Wordpress & Joomla websites Online

So today we will learn how to Brute force Wordpress & Joomla websites ( As title says )

Many people have been asking me how to brute force it and well you will know now

We will be using a perl script to do this so you'll be needing Active Perl

Download Here ===> http://www.activestate.com/activeperl/downloads

First of all what is Brute forcing?

It is a trial and error method used by application programs to decode encrypted data such as passwords or Data Encryption Standard (DES) keys.

Exactly just as a hacker might break into, or "crack" a safe by trying many possible combinations, a brute force cracking application proceeds through all possible combinations of legal characters in sequence.

Lets go!

You'll be needing the Perl Brute forcer Made by B47CHGURU (Credits to him)

Download Here====>
http://www.mediafire.com/?xahst95wx4v1o75

Extract all the files to " C:\ " (or any where)

Now open CMD (Command Prompt)

Go to your Path ( where u extracted the zip file, e.g " C:\Invectus " )

Type in the command " perl brute.pl "

Now it will ask you:

Do you want to do reverseip or load website list from file..?(y/n)>

You can load a website list such as list.txt or you could enter the IP address and it will scan the whole server, i prefer choosing reverseip option cause it scans everything on server

For website list enter " n "
For reverseip enter " y "

So lets say we enter " y "

IP/Website you want to reverse..? >

Now just enter the IP or Website URL you want to reverse

It will start scanning, directly after scanning it will show you the results in a HTML File (invectus.html)

It will come up as

http://www.site.com/administrator or /wp-login.php (It depends) admin 123456

And now you can login and do whatever you want

Hope you enjoyed reading this tutorial!

0 comments:

Posting Komentar