WordPress 0day Add Admin mass exploiting

11.58 Add Comment


Salam All

i hope all fine inchaAllah

i coded mass exploiting for exploit add admin in wordpress this exploit exist on  27 themes

exploit discovered by NULL_Pointer  link : here

how to use my script :

php script.php list.txt theme
list.txt : is list of ur sites
theme : is theme on sites

and write ur email like picture :

result :

go to http://www.site.com/wp-login.php?action=register, you will see the registration form
choose your username & email address and register.
go to your email, you will find your password.
then login & and upload your shell

Link Tool : Here

Konzept mass exploiting

04.43 Add Comment

Salam Guys

i hope all fine

i coded mass script for exploiting Konzept theme exploit on wordpress

the exploit discover by NULL_Pointer exploit link : Here

how to use my script :

php name.php list.txt

name.php = name of script
list.txt = list of ur sites

and edite the code of script here :


u must have shell.jpg and named it on code to shell.php




Result :


i hope all is clear if u have any error write it on comment

Script linke : Here

joomla com_Jdowloads Auto exploiter

17.12 Add Comment

Salam

this days i saw in zone-h some hackers use exploit on joomla for upload image on

sites and mirror it . This exploit is com_Jdowloads upload file and i coded auto exploiter

scan site + upload gif + mirror on zone-h . this exploit is just for zone-h lover

i will explain how to use my tool


they are the file of my tool

make ur gif image and write on it hacked by u and archive it on zip  and copy ur sites on list.txt

than let's edite the code


edite the important var in $file1 write name of zip on $file2 write name of ur image and write ur name on

zone-h like picture


Tool linke : Here 


Revslider scanner

15.32 Add Comment
Salam All

Among the best exploits on wordpress now is wordpress revslider LFI

this exploit allow us to dowload config of site

that u can connect database and change the admin user and pass infos

and login on DashBoard  site.**/wp-login.php and upload shell ...

i coded tool on PHP can scaning sites a mass scan and get just important info from config like

db-user , db-pass , db-host  and db-name

Link : Here


Wordpress checker v1.0

15.22 Add Comment
Salam All

Today i will present for u good tool coded by for get some infos about wordpress sites

tool get version of wordpress and theme and plugin .

if u target any site i should u to use it for know the theme and plugin that u can searsh on security site

for exploits to theme and plugin

this is just v1.0 i willl devlop it inchaAllah

Link : Here

Welcome

14.52 Add Comment



Welcome to all in My blog

in This blog incha'Allah i will post all my news in Hacking and some exploits

and scripts coded by me . Dont forget to visit my blog and share link of my blog