GOAD-Light OSCP Series: 2024 Exploit development using Python and Pwntools

Published: 20 July 2024
on channel: Hack the Clown
5,181
242

This is an extension of the part 3 video.

   • GOAD-Light OSCP Series: File upload exploi...  

I will show you the process on how I create the one click exploit for the file upload vulnerability in castle black.

This is a basic exploit only and although this was originally intended for people starting with ethical hacking, others will find this valuable as well.

// Tags

#oscp #ethicalhacking #activedirectory #windows #fileupload #asp

// Chapters

0:00 - Intro
0:44 - Python basics and interacting with web services
2:59 - Investigating failed request using Burp
3:40 - What is multipart/form-data?
4:55 - ASP view state
5:09 - HTTP Sessions
6:24 - Searching through HTML via python RE module
7:32 - Catching reverse shell via PWNTools
8:38 - TROUBLESHOOTING TIP
9:38 - Windows CRLF again!
10:26 - Threads, thread, threads everywhere ...
10:50 - Creating a multi-threaded program

// Links

None for now sorry.


On this page of the site you can watch the video online GOAD-Light OSCP Series: 2024 Exploit development using Python and Pwntools with a duration of hours minute second in good quality, which was uploaded by the user Hack the Clown 20 July 2024, share the link with friends and acquaintances, this video has already been watched 5,181 times on youtube and it was liked by 242 viewers. Enjoy your viewing!