MSF client Penetration (eight): Durable backdoor, Mimikatz use, get PHP server Shell

Source: Internet
Author: User
Tags php server

Continuous back Door

Get a session First

Generate a continuous backdoor on the target host

Set Listening parameters

Start listening

Restarting the host being attacked

Gets to session when an attacker is started

Use of Mimikatz

Mimikatz is a tool developed by Russian organizations

Load Mimikatz

Help View commands

MSV get user name and hash

Wdigest getting clear-text password information in memory

Kerberos Gets the plaintext password information in memory

View Hash

View Bootkey

View the processes running on the attacked host

View services running on the attacked host

To view the encryption criteria for the attacked host

PHP Shell

Generate a payload file

Copy to the home directory of the PHP server

Turn on Listen

Open Browser Access a.php

You get a session.

Enter the shell

MSF client Penetration (eight): Durable backdoor, Mimikatz use, get PHP server Shell

Contact Us

The content source of this page is from Internet, which doesn't represent Alibaba Cloud's opinion; products and services mentioned on that page don't have any relationship with Alibaba Cloud. If the content of the page makes you feel confusing, please write us an email, we will handle the problem within 5 days after receiving your email.

If you find any instances of plagiarism from the community, please send an email to: info-contact@alibabacloud.com and provide relevant evidence. A staff member will contact you within 5 working days.

A Free Trial That Lets You Build Big!

Start building with 50+ products and up to 12 months usage for Elastic Compute Service

  • Sales Support

    1 on 1 presale consultation

  • After-Sales Support

    24/7 Technical Support 6 Free Tickets per Quarter Faster Response

  • Alibaba Cloud offers highly flexible support services tailored to meet your exact needs.