Very quick dig on krassentwins public web presence:
-
Slight DNS variation in webserver resource records; seems brian has a catchall setup for subdomains as well:
briankrassenstein.com. 60 IN A 185.151.30.133
edkrassenstein.com. 60 IN A 185.151.30.133
www.briankrassenstein.com. 60 IN A 185.151.30.133
www.edkrassenstein.com. 60 IN A 104.239.213.7
www.edkrassenstein.com. 60 IN A 198.105.244.11
abc123.briankrassenstein.com. 60 IN A 185.151.30.133
-
If you believe the HTML returned, both sites run an out-dated version of word-press; latest wordpress is v5.1.x:
<meta name="generator" content="WordPress 4.9.9">
-
WP-JSON API endpoint public availability is turned on:
http://edkrassenstein.com/wp-json
http://briankrassenstein.com/wp-json
-
Wordpress theme is out-dated Radiate theme, Version 1.2.7 2018-03-22; current Radiate is v1.3.0:
http://edkrassenstein.com/wp-content/themes/radiate/readme.txt
http://briankrassenstein.com/wp-content/themes/radiate/readme.txt
Note: the sites use the free version and not the paid pro edition; confirmed due to version number differences between editions.
Sauce: https://themegrill.com/changelogs/radiate-changelog/