Posts

Showing posts with the label powershell script chaining

Hack the Box - Optimum - Walkthrough

Image
Introduction Today we're going to be doing a pentest walkthrough of the Optimum machine hosted at https://hackthebox.eu. For this pentest, we'll be using a Kali Linux virtual machine as our attacking system and the Optimum machine as the victim system. After connecting to the Hack the Box network via VPN, we see that our target is located at 10.129.1.127 Scanning and Enumeration We'll start by scanning for open ports with Nmap : sudo nmap -T4 -p- 10.129.1.127 Now we'll do another Nmap scan, this time specifying the ports and picking up service names and version numbers: sudo nmap -T4 -p80 10.129.1.127 This is an unusual type of server software, so let's do a Searchsploit on it: searchsploit http file server 2.3 Looks like there are some Remote Command Execution exploits for this software.  Let's take a look at one of these scritpts: cat /usr/share/exploitdb/exploits/windows/remote/39161.py Finding a Way In Looks like we'll need to do four things before w...