How to find admin panel/page of a website using websploit tutorial-By Spirit

Video is ready, Click Here to View ×


So, hello guys

My name is spirit as you all know and today i am gonna show you how you can find a admin page/panel of any website(not every) using websploit in your kali linux
————————————————————————————————————
This tutorial is for educational purpose only. I’ll not responsible for any harm.
————————————————————————————————————
Use your skills…

39 Comments

  1. You are using phpmyadmin from a Metasploitable Linux
    What are the default Credentials for Metasploitable Phpmyadmin
    I used root as Default and Left Password blank But It didn't work.
    Help Me

  2. hi sir
    it is showng :-
    Traceback (most recent call last):
    File "/usr/bin/websploit", line 165, in <module>
    start()
    File "/usr/bin/websploit", line 163, in start
    main()
    File "/usr/bin/websploit", line 96, in main
    phpmyadmin.phpmyadmin()
    File "/usr/share/websploit/modules/phpmyadmin.py", line 24, in phpmyadmin
    phpmyadmin()
    File "/usr/share/websploit/modules/phpmyadmin.py", line 135, in phpmyadmin
    conn.request("GET", path)
    File "/usr/lib/python2.7/httplib.py", line 1042, in request
    self._send_request(method, url, body, headers)
    File "/usr/lib/python2.7/httplib.py", line 1082, in _send_request
    self.endheaders(body)
    File "/usr/lib/python2.7/httplib.py", line 1038, in endheaders
    self._send_output(message_body)
    File "/usr/lib/python2.7/httplib.py", line 882, in _send_output
    self.send(msg)
    File "/usr/lib/python2.7/httplib.py", line 844, in send
    self.connect()
    File "/usr/lib/python2.7/httplib.py", line 821, in connect
    self.timeout, self.source_address)
    File "/usr/lib/python2.7/socket.py", line 557, in create_connection
    for res in getaddrinfo(host, port, 0, SOCK_STREAM):
    socket.gaierror: [Errno -2] Name or service not known

    what can i do?

  3. /phpMyAdmin and /admin, you don't websploit to find that, a kid can do that. this admin finder is not sophisticated, they just matching /admin and bla bla bla to find if one in their dictionary is match, sucks.. what if their page admin is not in their list, what if they hide the page admin, .. what if they change the name "admin" with something else, that what is call sophisticated.
    and this admin finder is mostly not working on custom websites.
    this kid just trying to be smartass scriptkiddie.

  4. Line 10904: 73009,mina kriakes,po box 2751,Virgina,Alabama,20195_0751,United States,4264289886206459,1016,320,571 435 7707,NULL,1,1,1916

    Line 10857: 72962,Carol Blanas,1684 abington lane,North aurora,Illinois,60542,United States,4264280722388353,0219,999,6306083020,NULL,21,4,1980 =low

    Line 10768: 72873,Leslie Adams,9951 Birchwood Lane,Waynesboro,Pennsylvania,17268,United States,4264281342984332,0118,171,7174917037,NULL,1,1,1916

    Line 10598: 72703,Adrienne N Lackey,6701 Burlington Blvd.,Fort Worth,Texas,76131,United States,4264276555934876,0818,900,817 889 5518,NULL,13,8,1991

    Line 8352: 72337,Steven Sacks,109 Orchard St,Portsmouth,New Hampshire,03801,United States,5466328823459416,0118,305,603-224-7751,NULL,2,9,1952

    Line 5421: 69412,Rebecca DeGarmo,15510 Spring Street,Union Grove,Wisconsin,53182,United States,5466322638457653,0418,253,2629894030,NULL,15,11,1976 = dead

    Line 4624: 68615,VALERIE L LARKIN,1425 E LOSEY STREET,Galesburg,Illinois,61401,United States,5466320734993498,0116,93,3093351054,NULL,26,5,1955

    Line 4515: 68506,Timothy Healey,17 Orchard St.,Bloomfield,New Jersey,07003,United States,5466322987373,0218,770,973 489 6872,NULL,21,1,1957

    Line 2175: 66166,Irisa A. Roze,7639 St. George Blvd.,Fishers,Indiana,46038,United States,546631345987654,0418,685,317-698-4021,NULL,1,11,1962

  5. Nice Project but when i try the same it gives me this error and not work ate all can you tell me why and how to fix this problem:

    Traceback (most recent call last):
    File "/usr/bin/websploit", line 160, in <module>
    start()
    File "/usr/bin/websploit", line 158, in start
    main()
    File "/usr/bin/websploit", line 135, in main
    main()
    File "/usr/bin/websploit", line 132, in main
    main()
    File "/usr/bin/websploit", line 95, in main
    phpmyadmin.phpmyadmin()
    File "/usr/share/websploit/modules/phpmyadmin.py", line 31, in phpmyadmin
    phpmyadmin()
    File "/usr/share/websploit/modules/phpmyadmin.py", line 24, in phpmyadmin
    phpmyadmin()
    File "/usr/share/websploit/modules/phpmyadmin.py", line 135, in phpmyadmin
    conn.request("GET", path)
    File "/usr/lib/python2.7/httplib.py", line 1001, in request
    self._send_request(method, url, body, headers)
    File "/usr/lib/python2.7/httplib.py", line 1035, in _send_request
    self.endheaders(body)
    File "/usr/lib/python2.7/httplib.py", line 997, in endheaders
    self._send_output(message_body)
    File "/usr/lib/python2.7/httplib.py", line 850, in _send_output
    self.send(msg)
    File "/usr/lib/python2.7/httplib.py", line 812, in send
    self.connect()
    File "/usr/lib/python2.7/httplib.py", line 793, in connect
    self.timeout, self.source_address)
    File "/usr/lib/python2.7/socket.py", line 553, in create_connection
    for res in getaddrinfo(host, port, 0, SOCK_STREAM):
    socket.gaierror: [Errno -2] Name or service not known

  6. Yeahhh , fuck cloudflare 🙂 🙂

    Siverstripe admin login: (http or https)
    Example:
    http://www.mywebsite.com/Security/login?BackURL=%2Fadmin%2Fpages
    The String:
    Security/login?BackURL=%2Fadmin%2Fpages

    Works on most WP website – but not of all !
    WordPress admin login: (http or https)
    Example:
    http://www.mywebsite.com/wp-login.php?redirect_to=https%3A%2F%2Fwordpress.com%2Fpage%2F105338069%2Fnew%2F
    The String:
    wp-login.php?redirect_to=https%3A%2F%2Fwordpress.com%2Fpage%2F105338069%2Fnew%2F

Leave a Reply

Your email address will not be published.


*