WordPress for Pentesters
This Asset we are sharing with you is WordPress for Pentesters free download link. This is a premium product and you will get it free on here. CoursesGhar was made to help people like graphic designers, video creators, web developers, freelancers, filmmakers, etc. On our website, you will find lots of premium assets free like Free-course/tutorials, Tutorials and Tech News, Udemy Premium Courses, and Much Much More.
What you’ll learn
-
Enumerate WordPress
-
Enumerate Users , Themes , Plugins in WordPress
-
Bruteforce Attacks using XMLRPC , Python , BurpSuite and Hydra
-
Bruteforce Attacks using Metasploit
-
Exploit Themes , Plugins and Pop a Shell
-
Shell Upload using Metasploit
Requirements
-
No Prerequisites needed but web and python fundamentals are optional
Description
This course teaches you how to enumerate WordPress CMS.
WordPress cms is one of most popular cms to build blogs , shopping websites and more
WordPress comes with lot of 3rd party plugins and themes
so does vulnerabilities and misconfigurations
We need to know how hackers attack wordpress thus protecting ourself from the attacks
We will see how to enumerate and bruteforce with python , burp , wpscan , metasploit etc
tools like wpscan does awesome job at enumeration and also at bruteforce attacks thus testing our password security
Metasploit have some auxiliary scanners and wordpress exploits to test aganist wordpress
we can script our code in python to bruteforce the login credentials and hence some what faster than burp community edition
Burp professional edition have the option of multi threading thus testing passwords faster
but in this course we will not discuss about professional edition as it is not free
we will also get the reverse shell from the vulnerable wordpress machine
Bonus video includes how we attack a Drupal CMS using droopescan
we can use droopescan to scan wordpress , joomla , drupal , moodle etc
but for wordpress we better use wpscan first
later we see some try hack me writeup which involves pentesting wordpress cms and exploiting it
after this course you can try mrrobot room from tryhackme and test your skills
Who this course is for:
- Anyone who is interested in Pentesting
- Anyone who wants to learn how to pentest WordPress or any other CMS
Sale Page: