Subscribe to:
Post Comments (Atom)
Exploiting Weak WEBDAV Configurations
The server we are going to audit has the following fingerprint. 80/tcp open http Apache httpd 2.2.8 ((Ubuntu) DAV/2) Next we need t...
-
Our goal is to exploit the local file include vulnerability and gain shell access to the remote machine. We see that the 'page' pa...
-
Scanning the Remote Host We can use NMAP to scan the remote IMAP server and run enumeration scripts agaisnt it to see what all the server i...
-
Scanning the remote host We can use NMAP to scan the remote host and run enumeration scripts against the POP3 server. root@asus:~/unix% ...
-
The place you want to start is at iana.org. iana.org is the authrotive registery for all the Top Level Domains on the net. The Idea here is...
-
In bWAPP There is a module for RFI and LFI injections. Our goal is to exploit these vulnerabilities and get local access to the remote mac...
-
Alot of times we will come upon anonymous ftp servers and would have to check out the permissions of the server to see if any vulnerabiliti...
-
Creating a tar archive To create an archive file from a file or list of files you would use the ‘-c’ and ‘-f’ options. The ‘-c’ option tel...
-
This version of apache webserver is vulnerable with the version of PHP which is installed. You can see the vulnerable version information b...
-
$PATH Variable PATH is an eviroment variable in Linux that tells the shell which directories to search for excutable files. Whenever a us...
-
Sometimes you may come across a situation where all you have from your OSINT phase is a list of first and last names. you can use pre-built...














No comments:
Post a Comment