Hiding in plain sight

OSCP practice: Vulnhub – Kioptrix Level 1

Hashcat password cracking quick start: Download from here. Install on Windows machine. Search the example hashes to find the code matching the hash you located. hashcat64 -m {code} {path to the hash you found} {path to your password file} –force Example command: hashcat64 -m 1600 c:\Users\cd\Desktop\hashes.txt c:\Users\cd\Desktop\rockyou.txt –force

Every Pen-Test: Enumeration Reminders

WEB dirb http://site.com {wordlist-optional} /usr/share/dirb/wordlists /usr/share/dirb/wordlists/vulns eg: /usr/share/dirb/wordlists/vulns/coldfusion.txt nikto -h if wordpress: wpscan General connection enumeration: nc 80 (then) HEAD / HTTP/1.0 For SSL: openssl s_client -quiet -connect site.com:443 If WebDAV davtest -cleanup -url cadaver (webdav client) DNS Zone transfer: dig server.domain.com domain.com axfr FTP nmap -sV -Pn -vv -p 21 –script=ftp-anon,ftp-bounce,ftp-libopie,ftp-proftpd-backdoor,ftp-vsftpd-backdoor,ftp-vuln-cve2010-4221 … [Read more…]

The archive

