Posts: 5
Threads: 1
Joined: Mar 2024
I did some enumeration with Burpsuite and Nmap but nothing else, how do I proceed? the website is gurukul.org and edu.gurukul.org.
I'm always using tor + proxy chains when doing anything with that site so, I should be safe. I do know some of the basics of hacking. I have hacked another school website before but it was much easier to hack because it had sql injection. But this one is a bit more complex...
Posts: 2,205
Threads: 8
Joined: Jul 2023
(Mar 23, 2024, 03:17 PM)alphaze Wrote: I did some enumeration with Burpsuite and Nmap but nothing else, how do I proceed? the website is gurukul.org and edu.gurukul.org.
I'm always using tor + proxy chains when doing anything with that site so, I should be safe. I do know some of the basics of hacking. I have hacked another school website before but it was much easier to hack because it had sql injection. But this one is a bit more complex...
Don't post your targets publicly on the forum if you want to avoid someone tipping them off.
Try talking about which technologies the target web server uses and take it from there, rather than disclosing actual domain/subdomain.
#s3gt_translate_tooltip_mini { display: none !important; }This forum account is currently banned. Ban Length: Permanent (N/A Remaining) Ban Reason: Self-Ban
Posts: 5
Threads: 1
Joined: Mar 2024
(Mar 23, 2024, 04:23 PM)willywonka Wrote: (Mar 23, 2024, 03:17 PM)alphaze Wrote: I did some enumeration with Burpsuite and Nmap but nothing else, how do I proceed? the website is gurukul.org and edu.gurukul.org.
I'm always using tor + proxy chains when doing anything with that site so, I should be safe. I do know some of the basics of hacking. I have hacked another school website before but it was much easier to hack because it had sql injection. But this one is a bit more complex...
Don't post your targets publicly on the forum if you want to avoid someone tipping them off.
Try talking about which technologies the target web server uses and take it from there, rather than disclosing actual domain/subdomain.
#s3gt_translate_tooltip_mini { display: none !important; }
Thank you for your advice! The site uses wordpress 6.4.3
Posts: 34
Threads: 0
Joined: Sep 2023
(Mar 23, 2024, 03:17 PM)alphaze Wrote: I did some enumeration with Burpsuite and Nmap but nothing else, how do I proceed? the website is gurukul.org and edu.gurukul.org.
I'm always using tor + proxy chains when doing anything with that site so, I should be safe. I do know some of the basics of hacking. I have hacked another school website before but it was much easier to hack because it had sql injection. But this one is a bit more complex...
we ain't ur private army bruh
Posts: 43
Threads: 0
Joined: Jul 2023
Ah sweet you have posted your target website and not only made a datapoint for any brain dead analyst to find it. First learn OPSEC and then start hacking stuff my guy.
Posts: 13
Threads: 3
Joined: Jun 2024
Migth want to consider something else then the proxychains + tor .. youll be too loud. Any decent admin will spot the attack a mile away.
Posts: 127
Threads: 51
Joined: Jul 2024
(Mar 24, 2024, 02:51 AM)alphaze Wrote: (Mar 23, 2024, 04:23 PM)willywonka Wrote: (Mar 23, 2024, 03:17 PM)alphaze Wrote: I did some enumeration with Burpsuite and Nmap but nothing else, how do I proceed? the website is gurukul.org and edu.gurukul.org.
I'm always using tor + proxy chains when doing anything with that site so, I should be safe. I do know some of the basics of hacking. I have hacked another school website before but it was much easier to hack because it had sql injection. But this one is a bit more complex...
Don't post your targets publicly on the forum if you want to avoid someone tipping them off.
Try talking about which technologies the target web server uses and take it from there, rather than disclosing actual domain/subdomain.
#s3gt_translate_tooltip_mini { display: none !important; }
Thank you for your advice! The site uses wordpress 6.4.3
Here is something you might find useful or interesting, here is some vulnerability's in wordpress 6.4.3: https://wpscan.com/wordpress/643/
|