DC-2
author:leadlife
data:2023/5/12
blog:https://tripse.github.io/
demonstration:密码复用同时存在于本地登陆情况和外部登陆情况
本次测试使用到的工具如下:
- 信息收集:nmap,fscan,cmseek,cewl,searchsploit,burpsuite
- 获取 SHELL:ssh
- 内部信息收集:无
- 权限提升:无
外部信息收集
Nmap ICMP 扫描发现主机
其中 IP 10.10.10.129 为靶机 IP
sudo nmap -sP 10.10.10.0/24 -T4 --min-rate 10000
Starting Nmap 7.93 ( https://nmap.org ) at 2023-05-12 15:12 CST
Nmap scan report for 10.10.10.129
Host is up (0.00018s latency).
MAC Address: 08:00:27:BC:F8:72 (Oracle VirtualBox virtual NIC)
Nmap scan report for 10.10.10.254
Host is up (0.000041s latency).
MAC Address: 00:50:56:E9:03:7F (VMware)
Nmap scan report for 10.10.10.1
Host is up