I Hacked an e-commerce website and need help to pawn a shell its WordPress and I am not sure what next. i need help to how I was pawn a shell or access MySQL
Im not hacked this with metasploit and i tried to get mysql creds and tried too connect but it failedYou can spawn a shell by using metasploit framework for example, or manually. After that, you need to read wp-config.php file, where credentials to the database is stored, when you can easily connect to the database locally or remotely, depending on the configuration settings.
thank you. it's really useful.May be this can help
.....
give more details
https://www.hackingarticles.in/wordpress-reverse-shell/![]()
How to upload a shell in Wordpress
After getting Wordpress admin credentials, you will need to upload a shell. You can do that by uploading a fake Wordpress plugin containing the PHP shell. Or you can go to the Appearance menu and then went to the Editor. On the top of the list, you wwikihak.com