Step 1 – Evaluating if a Website is using WordPress
If you don’t know if a Website is using WordPress or not, there mostly is a very easy way to find that out.
You can simply type: www.addressofthewebsite.com/wp-admin
Which in most cases will bring up a wp-admin login gui, except the admin has disabled it.
Another great way to check if a Website is running WordPress is by using wpscan. Wpscan comes pre-installed in both Kali and ParrotSec.
As you can see, it clearly indicates that the site is using WordPress. Also, it presents you with 46 identified vulnerabilities. Now, most hosters and recent versions of WordPress will block a scan like this by default. So most likely this is only going to work with outdated WordPress versions without any protection from a hoster.
Well, I dont want to anybody can hack any webpage for free, so… if you want know how to protect your site can search for me on th web.
greetings from NoisyBoy
