Tutor Deface Metode Wp-Content Chameleon + Live Target



Halo Gays Balik Lagi Ama gw Youe yg sangad gans :v.. Kali ini gw bakal share tutorial Deface Metode wp-content chameleon langsung aja ke step by stepnya

Bahan :

- Hp/pc 
- Dork : inurl:/wp-content/themes/cameleon
- CSRF Exploiter Klik Disini Bujank
- exploit : /wp-content/themes/cameleon/includes/fileuploader/upload_handler.php

- jaringan internet
- kesabaran :v
- live target http://jhdlaw.com

Step By Step :

1. Masukin Dork Ke gugel ea..



2. Nah Klo udh Pilih web yg menurut kalian vuln :v.. btw gw pake live target ya :)


3. nah kalo sudah masuk webnya.. kalian masukkan exploit yg diatas di akhir domain web tersebut.. contoh  http://website.com/wp-content/themes/cameleon/includes/fileuploader/upload_handler.php
jika muncul tulian "error no were file upload" berarti web itu vuln.. kek gini :v


4. Kalian Langsung Buka Csrf exploiternya ( link diatas td ) dan kalian copy web target kalian dan paste di bagian url target.. dan Post File kalian tulis aja qqfile kek gini


5. nah kalo udh kalian pilih sc deface yang mau kalian upload.. kalo udah langsung aja klik upload.. Like This N00b :v


6. Tandanya file berhasil terupload kek gini

7. Nah kalo udh kek gitu tinggal kita akses aja hasil deface nya :) contoh : http://website.com/wp-content/uploads/tahun/bulan/namasckalian.html

8. Dan booomm.. berhasil..
    yg mau liat hsil deface ku http://jhdlaw.com/wp-content/uploads/2019/06/-,.htm


Makasih Buat Kalian Yg Udah Mampir Ya..
semoga Bermanfaat :)
Gr33tz : all member D45H7
LihatTutupKomentar