Why do we need to find a website admin panel?
OkadminFinder. A very simple tool written in python but very useful. It scans the target website to find out the admin panel. For some websites, it finds out the admin panel in a few seconds but for websites with huge resources, it takes some time to complete its scanning process.
Why you should consider using this tool?
There are many tools available on the internet that can help you to do the same work as this tool does. But most of them are not secure and effective. OkadminFinder gives the option to flow the traffic through a Tor circuit which can help you to stay anonymous during the scan.
It also has some interesting features such as multithreading for faster work, classifies admin panel links depending on popularity.
But you have to manually set up the Tor to work with it.
Let’s see how we can configure OkadminFinder to work with Kali Linux.
Configure OkAdminFinder in Kali Linux
apt-get install python3-socks
Scanning a Website for Admin Panel
python3 okadminfinder3.py -u ‘target URL‘ –p 127.0.0.1:9050 -r
Here in the place of the ‘target URL‘ paste the target site URL without a comma. By default, the Tor listens for SOCKS on the port 9050. It is safer to use SOCKS connections rather than HTTP connections.
If the proxy gives any error. It may give an error because the Tor proxy is too slow. You can manually route all of your Kali Linux traffic to go through Tor. You can do that by using different anonymizer tools. Visit our anonymizer tools section for an error-free guide.
Or to scan without proxy you can use the following command.
python3 okadminfinder3.py -u ‘target URL‘ -r
We got the result! The application successfully pulled out one link to the admin panel. It could continue the scan to find more URLs but we didn’t need and quit the process.
You can also do that if your target is completed.
The tutorial you found on this website is only for educational purposes. Misuse of this information can lead you to jail or punishment. Anything you damage, we are not responsible for that. Do use it on your own property. If you want to test it on other’s property, take written permission from them.