Sinisterly
Uploading a Shell - OpenCart - Printable Version

+- Sinisterly (https://sinister.li)
+-- Forum: Hacking (https://sinister.li/Forum-Hacking)
+--- Forum: Tutorials (https://sinister.li/Forum-Tutorials)
+--- Thread: Uploading a Shell - OpenCart (/Thread-Uploading-a-Shell-OpenCart)



Uploading a Shell - OpenCart - Third_Eye - 12-08-2012



Biggrin


Uploading a Shell - OpenCart - Third_Eye - 12-08-2012



Biggrin


RE: Uploading a Shell - OpenCart - Faner - 12-08-2012

Nice, thanks for sharing. Even thought most difficult part was gaining access to admin panel. Biggrin
Could you share with us how u did that? Reseted admin's password, and then brute-forced?


RE: Uploading a Shell - OpenCart - vqoley - 12-18-2012

(12-08-2012, 04:57 PM)Faner Wrote: Nice, thanks for sharing. Even thought most difficult part was gaining access to admin panel. Biggrin
Could you share with us how u did that? Reseted admin's password, and then brute-forced?

brute force take long time, use wordlist for short time.


RE: Uploading a Shell - OpenCart - vqoley - 12-18-2012

(12-08-2012, 04:57 PM)Faner Wrote: Nice, thanks for sharing. Even thought most difficult part was gaining access to admin panel. Biggrin
Could you share with us how u did that? Reseted admin's password, and then brute-forced?

brute force take long time, use wordlist for short time.


RE: Uploading a Shell - OpenCart - Faner - 12-18-2012

(12-18-2012, 03:12 PM)vqoley Wrote:
(12-08-2012, 04:57 PM)Faner Wrote: Nice, thanks for sharing. Even thought most difficult part was gaining access to admin panel. Biggrin
Could you share with us how u did that? Reseted admin's password, and then brute-forced?

brute force take long time, use wordlist for short time.

Mate,
Quote: Reseted admin's password, and then brute-forced?
see this? It means that first he resets password, then opencart use md5(rand()); and saves result as a code. Also that code is sent to admin's email. But since on windows rand() max value is something about 32k, he can make script with loop, try every counter from 1 to 32900 to encode in md5 and check if it's correct. To check whole 33k of possibilities could take up to few hours. And what wordlist would you advice in this case? Biggrin


RE: Uploading a Shell - OpenCart - Faner - 12-18-2012

(12-18-2012, 03:12 PM)vqoley Wrote:
(12-08-2012, 04:57 PM)Faner Wrote: Nice, thanks for sharing. Even thought most difficult part was gaining access to admin panel. Biggrin
Could you share with us how u did that? Reseted admin's password, and then brute-forced?

brute force take long time, use wordlist for short time.

Mate,
Quote: Reseted admin's password, and then brute-forced?
see this? It means that first he resets password, then opencart use md5(rand()); and saves result as a code. Also that code is sent to admin's email. But since on windows rand() max value is something about 32k, he can make script with loop, try every counter from 1 to 32900 to encode in md5 and check if it's correct. To check whole 33k of possibilities could take up to few hours. And what wordlist would you advice in this case? Biggrin