The platform they use is called WordPress, a popular platform for blogs, news shops etc.
When not configured properly, it allows enumerating posts
based on the 'p' variable, which is an integer starting at 1.
So, first post will be:
https://kraken-wood.com/?p=1 Just hello world.
https://kraken-wood.com/?p=2 Sample page
https://kraken-wood.com/?p=3 404
The counter is just a plugin you can put before you
launch a new site. Nothing fancy here, you just declare
a random date and it will count it in Javascript.
Now, let's check the upload directory, where all uploaded
files should go:
https://kraken-wood.com/wp-content/uploads/2020/11
https://kraken-wood.com/wp-content/uploads/2020/12
Again, just images, memes, and other garbage from news
sites.
Nothing to see there, at least not in the near future.
The platform they use is called WordPress, a popular platform for blogs, news shops etc.
When not configured properly, it allows enumerating posts
based on the 'p' variable, which is an integer starting at 1.
So, first post will be:
https://kraken-wood.com/?p=1 Just hello world.
https://kraken-wood.com/?p=2 Sample page
https://kraken-wood.com/?p=3 404
The counter is just a plugin you can put before you
launch a new site. Nothing fancy here, you just declare
a random date and it will count it in Javascript.
Now, let's check the upload directory, where all uploaded
files should go:
https://kraken-wood.com/wp-content/uploads/2020/11
https://kraken-wood.com/wp-content/uploads/2020/12
Again, just images, memes, and other garbage from news
sites.
Nothing to see there, at least not in the near future.
Doesnt mean they dont plan to upload an entire new root folder....
permalinks can be changed with one click.. don't underestimate the Kraken bro
kek it's a domain name, you can point it anywhere lol
https://www.whois.com/whois/kraken-wood.com
Holy cow! A Tucows reference!
The website is live. If you reverse image search it will tell you they are stock images, some links contain malware it appears as pedes are reporting in other threads.
No malware there. Just bunch of stock images. Some files are named Virus, referring to China virus.
Malware is virtually impossible to embed in jpg images, you will need an exploit for that, but that's another topic.
Good to know. Some people said they got warnings idk. I’m not getting outta bed to check it’s too late for me tonight. Long week. Thanks for clarifying