Monday, August 24, 2015

Hack a website's admin panel.

Today's my new tutorial is on how to hack admin panel or any login page of any website except some websites having high security level for e.g. Google, Facebook etc.

Requirements:-
1. Burpsuite. Burpsuite pro(recommended)
2. Laptop or PC with a good configuration for a better result.
3. A stable internet connection.
4. Wordlist (Can be created or downloaded from internet.)

Note:- This article is for educational purpose only. If you use this knowledge for cyber crime or cyber terrorism, I will not responsible.

Steps:-
1. Fire up your mozilla firefox.
2. Go to settings > Advanced > Network > Settings > Mark Manual Proxy option.
3. In the field fill IP address i.e. 127.0.0.1 and in port type 80.
4. Click Ok.
5. Now fire up your burpsuite or burpsuite pro if possible.
6. In burpsuite click on Proxy tab and then Intercept tab.
7. Minimize the burpsuite tab.
8. Now in firefox open the victim's page using google dorks.
9. Now in the login page.
10. Now maximize burpsuite and select Intercept is on.
11. Now in firefox enter any username and password, click on submit.
12. Now you will get an info in burpsuite.
13. Now go to burpsuite, Right click on the empty place in burpsuite and select Send to Intruder option.
14. Now click on Intercept is off.
15. Now in firefox you will get notification about invalid username/password.
16. Now minimize firefox and maximize burpsuite.
17. Now click on Intruder tab, and click on clear button.
18. Now select password and username you entered and click on Add.
19. Go to its adjacent tab, and select your wordlist for both username and password.
20. Click on attack button.
21. Wait for sometime and bingo!!!!

I hope you understand the process. If you can't then visit my youtube page www.youtube.com/rajeshmjmdrhacks .

Thanks!!! If you have any tutorials you want to learn and any suggestion, Comment me or email me @ rajeshmjmdr02@gmail.com

2 comments:

test said...

Should i use my ip? or fake

test said...

when i open my victim's page it says "the proxy server is refusing connections"