WordPress sensitive information disclosure dork

Rapid SafeGuard
2 min readJul 22, 2020

Every Saturday I would like to spend time to discover new dorks‍ such as google dork‍, shodan‍ Fofa‍ and many other search engines. This Saturday I have spent my time to find dork of wordpress‍ with shodan‍.

WordPress is a website creation tool — an online open source CMS that comes cost-effectively. WordPress is completely free, and it’s easily accessible for all the non-technical users. Experts believe that it is a simplified version of HTML. On the other hand, WordPress also allows the integration of different type of content like traditional mailing lists and forums, online stores, and media galleries.

One loophole exploit entire website. Using this dork, an attacker get the sensitive information of the website such as Database username, password, Auth secret key, Email credentials and many other sensitive information. I would like to say in one word that all configuration about the web application.

#ShodanDork : html:"You don't have to use the web site, you can *"

Result : 22
Twitter
WordPress Dork
WordPress Results
WordPress PoC

If you like Dork series then clap :)

Twitter: Rapidsafeguard
Instagram:
Rapidsafeguard
Facebook:
Theeasyhack
YouTube:
Rapidsafeguard
LinkedIn:
Rapidsafeguard
Blog : Easyhack.in

--

--