Open navigation menu
Close suggestions
Search
Search
en
Change Language
Upload
Sign in
Sign in
Download free for days
0 ratings
0% found this document useful (0 votes)
243 views
14 pages
WordPress Penetration Testing
Uploaded by
LENIN HITLER RAMIREZ SANTA CRUZ
AI-enhanced title
Copyright
© © All Rights Reserved
We take content rights seriously. If you suspect this is your content,
claim it here
.
Available Formats
Download as PDF or read online on Scribd
Download
Save
Save WordPress Penetration testing For Later
0%
0% found this document useful, undefined
0%
, undefined
Embed
Share
Print
Report
0 ratings
0% found this document useful (0 votes)
243 views
14 pages
WordPress Penetration Testing
Uploaded by
LENIN HITLER RAMIREZ SANTA CRUZ
AI-enhanced title
Copyright
© © All Rights Reserved
We take content rights seriously. If you suspect this is your content,
claim it here
.
Available Formats
Download as PDF or read online on Scribd
Carousel Previous
Carousel Next
Download
Save
Save WordPress Penetration testing For Later
0%
0% found this document useful, undefined
0%
, undefined
Embed
Share
Print
Report
Download now
Download
You are on page 1
/ 14
Search
Fullscreen
Mastering WordPress Penetration Testing: A Step-by-Step Guide In this comprehensive guide, we'll explore various aspects of WordPress penetration testing. Starting with gathering information using tools like Wappalyzer and WPintel. We'll then dive into WordPress penetration testing with tools such as NMAP, FFuF, Nuclei, and Wpscan to uncover vulnerabilities. We'll discuss exploiting specific vulnerabilities, manual approaches like username enumeration, and XML-RPC vulnerabilities. Understanding Cross-Site Port Attacks (XSPA) will enhance our knowledge. Lastly, we'll explore online platforms to scan WordPress sites, providing a complete view of WordPress security. HOWTO PERFORM Sgt Pa STEP-BY-STEP GUIDE Gather Information — Browser Extensions WappalyzerTECHNOLOGIES MORE INFO cms @ WordPress 53 Database managers &° Adminer 4.62 Blogs @®) WordPress 5.3 Font scripts Twitter Emoji s I F (rwemajiy = Miscellaneous a ae WpPintel & Export Programming languages pho PHP 7.1.33 Operating systems © Debian Databases ‘MySQL JavaScript libraries Underscore,js 183 © jQuery ul 1.114 (© jQuery Migrate 1.4.1i WordPress ——— Srceadnal WordPress Detected! VERSION & VULNERABILITIES THEMES & PLUGINS INFORMATION ENUMERATE USERNAMES. CHECK FOR USER REGISTRATION CHECK FOR PATH DISCLOSURE « RETURN TO MAIN MENU | WordPress Penetration Testing — Tools NMAPnmap -sS domain. com Starting Nmap 7.94 ( https://nmap.org ) at 2023-08-12 20:29 IST Nmap scan report for 192.168.194.135 (192.168.194.135) Host is up (@.004@s latency). Not shown: 999 closed tcp ports (reset) Osta UES ABCs 8@/tcp open http MAC Address: @0:0C:29:F5:BC:39 (VMware) NT ee CET hoe ce DE UL Be eS Coe > Tools ff FFuF ffuf -w wordlist.txt -u http: //domain.com/FUZZ -mc 200 ety Calibration ortRS. zendengine| Nuclei nuclei -u https: //domain.com© 127.0.0.1:31337/adminer.php See ee Language: (English Adminer 4.6.2 4.8.1 Login Server [localhost sd Username |] Password |) batabase |) Login ] (J Permanent login Wpscanwpscan --url http: //domain.com --api-token wpscan_token Pseee eee eet ceeaieras Peer) ees dPress/wordpre! Peer Corres restate copies Exploit CVE-2020-8772 1. This is the front part of the WordPress application. You can see that we have not logged into the admin panel of the WordPress site.Damn Vulnerable WordPress Sample Page Just another WordPress site pis Poot Q UNCATEGORIZED Hack Me If You Can & Byadmin€3 August 12,2023 © 1Comment ‘Welcome to Dama Vulnerable WordPress. This is your first post. Edit or delete it, then start writing! The Screenshot shows the WordPress application page[/caption] 2. Create the base64 code using the below JSON Payload. Payload: {“iwp_action”:”add_site”,”params”: {“username”:”admin”}} Command: echo '{"iwp_action":"add_site", "params": {"username":"admin"}}! | base64 3. Refresh the WordPress site and intercept the request using Burp Suite. 4, Append the base64-generated payload (that you got from the above steps) with the provided string found in the exploit URL like this. Payload: _IWP_JSON_PREFIX_eyJpd3BfYWNOaW9uTjoiYWRkX3NpdGUiLCJwYXIhbXMi 5. Right-click on the Burp Suite’s interceptor tab, and click on “change request method” to modify the request from GET to POST.6. As shown below, replace the payload with the above payload. 2 Pomeatemeure1aox3i30 Few Oe EEE actor Oren vost ZAP S Reape Lanuane! tren S89, ers-0.8 (Sate: ooh ipa Shaheen ces S-DiaSOTeROp2UTANOERINF 2 Content-Type pp cate forn-uerceded 2 a 350 FREED. pssarmtauTotBCpSGLCOMLRORM nee eSraKOLRTE ELA 7. Click on “Intercept is on” to forward the request. Once you forward the request, you will see something like this. 8, Now, Navigate to the Homepage of the WordPress site. The attack was successful, and now you have access to the admin dashboard. Damn Vulnerable WordPress. Jost nother Worsress ste Hack Me If You Can Brasnin 63 Aust t2,2028 © 1Comment ‘Welcome to Datna Vulnerable WordPress. This is your ise post, dit or delete i then sare writing! wea As evident, we have successfully accessed the admin panel without the need to input a username and password.Welcome to WordPress! WordPress Penetration Testing — Manual Username Enumeration ?rest_route=/wp/v2/users Jwp-json/wp/v2/usersPee a eens Common Vulnerabilities in XML-RPC BruteForce attack a a a Right now, the initial step is to send a “POST” request. This request helps us find out what things we can do on a website. It’s like checking a menu before ordering food. We do this to see what methods we can use, and we might find one that we can use to attack the site. To see all these methods,we send a POST request and include some specific information along with it. When we do this, the website sends back a message telling us all the different methods that are enabled on the server.
system. ListMethods
wp.getUserBlogs metaWeblog.getUsersBlogs wp.getCategories
wp. getUsersBlogs
admin
pass
Ge owe vet et — ae oe he Pe ee are ea HOS cues on pes ines SEESETENASss me wo at to moma Teele odin amanaentanracarnimecromeinn oe ia ee SS Sac, Tn hci tae: etyEy aren + spppmeraommcmect ee Ce nee acne ere Sie ea ee See ee SE Simeecmmammnn eee eee (Shine sivedeates Cross Site Port Attack — XSPA Pingback. ping Eat wesw ex 1 endear asonturiptn 3S Scsgateetatrercestsnenaes 2 Stucsircparm mfaloesnimleie 2 Soucstrcppget erwin gerinettrinsine Sires te “Schism geemeorin ip,
pingback.ping
http: //
:
http: //
<
Online Websites to scan WordPress websites There are websites that can help you check your WordPress website’s security for free. You just need to enter your website’s address, and these websites will show you the results. https://sitecheck.sucuri.net https://wpsec.com/scan/ https://hackertarget.com/wordpress-security-scan/
You might also like
File Upload Vulnerability in DVWA: Lab Experiment - 8
PDF
No ratings yet
File Upload Vulnerability in DVWA: Lab Experiment - 8
6 pages
Cross Site Scripting (Portswigger Apprentice Manual)
PDF
No ratings yet
Cross Site Scripting (Portswigger Apprentice Manual)
12 pages
WIFI Hacking Walkthrough-2100
PDF
No ratings yet
WIFI Hacking Walkthrough-2100
49 pages
Website Development Using PHP & Mysql: Fcait BCA
PDF
100% (1)
Website Development Using PHP & Mysql: Fcait BCA
21 pages
Web Application Penetration Testing
PDF
No ratings yet
Web Application Penetration Testing
40 pages
Black-Box Penetration Test 1
PDF
No ratings yet
Black-Box Penetration Test 1
29 pages
WsCube Tech - Penetration Testing (WS-PEN) Course
PDF
100% (1)
WsCube Tech - Penetration Testing (WS-PEN) Course
6 pages
Bug Bounty Checklist Fillable
PDF
No ratings yet
Bug Bounty Checklist Fillable
5 pages
Kali Linux - Website Penetration Testing - Tutorialspoint
PDF
No ratings yet
Kali Linux - Website Penetration Testing - Tutorialspoint
23 pages
Laporan Praktikum Keamanan Siber - Tugas 4 - Kelas C - Kelompok 3
PDF
No ratings yet
Laporan Praktikum Keamanan Siber - Tugas 4 - Kelas C - Kelompok 3
69 pages
Hi!! I Am A VIRUS!!
PDF
100% (1)
Hi!! I Am A VIRUS!!
46 pages
SQL Injection 3
PDF
100% (1)
SQL Injection 3
19 pages
Wpscan Usage Example (Enumeration + Exploit) : Cyberpunk Vulnerability Analysis
PDF
100% (1)
Wpscan Usage Example (Enumeration + Exploit) : Cyberpunk Vulnerability Analysis
21 pages
PHP Login Tutorial
PDF
No ratings yet
PHP Login Tutorial
68 pages
Bugbounty Compressed
PDF
No ratings yet
Bugbounty Compressed
36 pages
Linux Web Server and Domain Configuration Tutorial
PDF
100% (1)
Linux Web Server and Domain Configuration Tutorial
33 pages
API - Penetration - Testing - Report - EthicalCheck - Online Banking REST API CVVV - 02212023
PDF
No ratings yet
API - Penetration - Testing - Report - EthicalCheck - Online Banking REST API CVVV - 02212023
11 pages
Automatic Subdomain Enum
PDF
No ratings yet
Automatic Subdomain Enum
17 pages
How To Become A Virtual Assistant
PDF
No ratings yet
How To Become A Virtual Assistant
4 pages
Create Apache Web Server
PDF
No ratings yet
Create Apache Web Server
2 pages
White Hat Hacking
PDF
No ratings yet
White Hat Hacking
10 pages
Bug Bounty Course LEAK 2023
PDF
No ratings yet
Bug Bounty Course LEAK 2023
1 page
UG@Magazin
PDF
No ratings yet
UG@Magazin
200 pages
Wordpress Security: Define ('DISALLOW - UNFILTERED - HTML', True)
PDF
100% (1)
Wordpress Security: Define ('DISALLOW - UNFILTERED - HTML', True)
11 pages
Burp Suite Download Links & Older Versions
PDF
No ratings yet
Burp Suite Download Links & Older Versions
2 pages
LFI Vulnerability
PDF
100% (1)
LFI Vulnerability
7 pages
Hacking Module 03
PDF
100% (1)
Hacking Module 03
69 pages
Fragmentation Attack On A Wireless Networkdoc968
PDF
No ratings yet
Fragmentation Attack On A Wireless Networkdoc968
34 pages
Manual - Netgear ReadyNAS Pro 6 RNDP6000
PDF
No ratings yet
Manual - Netgear ReadyNAS Pro 6 RNDP6000
132 pages
WordPress Performance Tuning
PDF
No ratings yet
WordPress Performance Tuning
91 pages
Automate SQL Injection With Sqlmap
PDF
No ratings yet
Automate SQL Injection With Sqlmap
18 pages
2024 Cybersecurity Career Roadmap
PDF
No ratings yet
2024 Cybersecurity Career Roadmap
48 pages
Top Linux Monitoring Tools
PDF
100% (1)
Top Linux Monitoring Tools
38 pages
Squid, Squidguard, and Lightsquid On Pfsense 2.3 & 2.4: January 2017 Hangout Jim Pingle
PDF
No ratings yet
Squid, Squidguard, and Lightsquid On Pfsense 2.3 & 2.4: January 2017 Hangout Jim Pingle
29 pages
SQL Map (-1
PDF
No ratings yet
SQL Map (-1
6 pages
Oswap Zap
PDF
No ratings yet
Oswap Zap
12 pages
Wordpress Penetration Testing Using Wpscan and Metasploit
PDF
No ratings yet
Wordpress Penetration Testing Using Wpscan and Metasploit
16 pages
Web Application Penetration Testing Course URLs
PDF
No ratings yet
Web Application Penetration Testing Course URLs
10 pages
ZAP Scanning Report
PDF
No ratings yet
ZAP Scanning Report
11 pages
And Run Main - PHP Create Data Base in Mysql From Placementdb - SQL File
PDF
No ratings yet
And Run Main - PHP Create Data Base in Mysql From Placementdb - SQL File
39 pages
WiFi Penetration Testing Guide 1691371226
PDF
No ratings yet
WiFi Penetration Testing Guide 1691371226
11 pages
FlashcatUSB Manual
PDF
No ratings yet
FlashcatUSB Manual
39 pages
Install Cpanel With OCR
PDF
No ratings yet
Install Cpanel With OCR
1 page
API Penetration Testing
PDF
No ratings yet
API Penetration Testing
15 pages
Penetration Testing of An FTP Server PDF
PDF
No ratings yet
Penetration Testing of An FTP Server PDF
35 pages
Lab - CTF - Basic Pentesting
PDF
No ratings yet
Lab - CTF - Basic Pentesting
12 pages
Link
PDF
No ratings yet
Link
2 pages
ESET Windows Exploit
PDF
No ratings yet
ESET Windows Exploit
26 pages
GgggMore GHDB
PDF
No ratings yet
GgggMore GHDB
5 pages
Instalación DVWA
PDF
No ratings yet
Instalación DVWA
14 pages
Designing A Captcha System With PHP and MySQL
PDF
No ratings yet
Designing A Captcha System With PHP and MySQL
9 pages
LPT Brochure
PDF
No ratings yet
LPT Brochure
15 pages
Linux Radius
PDF
No ratings yet
Linux Radius
4 pages
© 2020 Caendra Inc. - Hera For Waptxv2 - XML Injection Labs
PDF
No ratings yet
© 2020 Caendra Inc. - Hera For Waptxv2 - XML Injection Labs
10 pages
About Penteration Testing
PDF
No ratings yet
About Penteration Testing
11 pages
The Perfect Server - Debian 9 (Stretch) With Apache, BIND, Dovecot, PureFTPD and ISPConfig 3.1
PDF
No ratings yet
The Perfect Server - Debian 9 (Stretch) With Apache, BIND, Dovecot, PureFTPD and ISPConfig 3.1
20 pages
PHP Login Form With Anti SQL Injection Script
PDF
No ratings yet
PHP Login Form With Anti SQL Injection Script
4 pages
6.6.8 Configure Port Security 3
PDF
No ratings yet
6.6.8 Configure Port Security 3
1 page
Cross Site Scripting - XSS
PDF
No ratings yet
Cross Site Scripting - XSS
6 pages
Apache Web Server Myanmar Version
PDF
No ratings yet
Apache Web Server Myanmar Version
2 pages