HackTheBox ~ Buff Walkthrough

Publié le: 21 novembre 2020
sur la chaîne: Parity InfoSec
758
15

#Buff up your enumeration skills! We walk through a very CVE focused box but touch on how to modify public exploits to run in a python3 environment. We touch on #basics like building a payload with msfvenom and port forwarding with Plink. I did get beat up on by the #demogods, but sometimes you just have to work through the issues to get root!

#bridgingthegap #cybersecurity #htb #hackthebox


00:00 Intro
02:57 NMap
03:30 Enum: website [8080]
05:47 CVE: Gym Management Software 1.0
07:42 Dirty Porting Scripts; py2.7 to py3
10:18 Exploit Gym Management Software
12:41 Upgrade shell via netcat
15:31 ~~USER.TXT~~
15:44 USER: Enumerate system [tasklist/netstat]
19:02 CVE: CloudMe 1.11.2
21:31 msfvenom: build payload executing netcat
25:00 Plink: Remote port forwarding [8888]
29:22 msfvenom: rebuild payload...again
30:41 Admin Shell access
31:12 ~~ROOT.TXT~~
31:15 Summary


Sur cette page du site, vous pouvez voir la vidéo en ligne HackTheBox ~ Buff Walkthrough durée heure minute seconde en bonne qualité , qui a été Téléchargé par l'utilisateur Parity InfoSec 21 novembre 2020, Partagez le lien avec vos amis et connaissances, sur youtube cette vidéo a déjà été regardée 758 fois et il a aimé 15 téléspectateurs. Bon visionnage!