22
posted ago by nomoremasks +22 / -0

The platform they use is called WordPress, a popular platform for blogs, news shops etc.

When not configured properly, it allows enumerating posts based on the 'p' variable, which is an integer starting at 1.

So, first post will be:

https://kraken-wood.com/?p=1 Just hello world. https://kraken-wood.com/?p=2 Sample page https://kraken-wood.com/?p=3 404

The counter is just a plugin you can put before you launch a new site. Nothing fancy here, you just declare a random date and it will count it in Javascript.

Now, let's check the upload directory, where all uploaded files should go:

https://kraken-wood.com/wp-content/uploads/2020/11 https://kraken-wood.com/wp-content/uploads/2020/12

Again, just images, memes, and other garbage from news sites.

Nothing to see there, at least not in the near future.

The platform they use is called WordPress, a popular platform for blogs, news shops etc. When not configured properly, it allows enumerating posts based on the 'p' variable, which is an integer starting at 1. So, first post will be: https://kraken-wood.com/?p=1 Just hello world. https://kraken-wood.com/?p=2 Sample page https://kraken-wood.com/?p=3 404 The counter is just a plugin you can put before you launch a new site. Nothing fancy here, you just declare a random date and it will count it in Javascript. Now, let's check the upload directory, where all uploaded files should go: https://kraken-wood.com/wp-content/uploads/2020/11 https://kraken-wood.com/wp-content/uploads/2020/12 Again, just images, memes, and other garbage from news sites. Nothing to see there, at least not in the near future.
Comments (10)
sorted by:
7
sillBag 7 points ago +7 / -0

Doesnt mean they dont plan to upload an entire new root folder....

5
MrKraken 5 points ago +5 / -0

permalinks can be changed with one click.. don't underestimate the Kraken bro

-5
deleted -5 points ago +2 / -7
4
shtpostinalotofmemes 4 points ago +4 / -0

kek it's a domain name, you can point it anywhere lol

3
4
deleted 4 points ago +4 / -0
3
Throwaway_Test 3 points ago +3 / -0

Holy cow! A Tucows reference!

2
Fuckoffgoogle 2 points ago +2 / -0

The website is live. If you reverse image search it will tell you they are stock images, some links contain malware it appears as pedes are reporting in other threads.

4
nomoremasks [S] 4 points ago +5 / -1

No malware there. Just bunch of stock images. Some files are named Virus, referring to China virus.

Malware is virtually impossible to embed in jpg images, you will need an exploit for that, but that's another topic.

2
Fuckoffgoogle 2 points ago +2 / -0

Good to know. Some people said they got warnings idk. I’m not getting outta bed to check it’s too late for me tonight. Long week. Thanks for clarifying