HTTP Spoofing - Python
HTTP Spoofing (MITM Attack).
HTTP Spoofing (MITM Attack).
HTTP Sniffer (MITM Attack).
Forward Shell Script.
DNS Sniffer (MITM Attack).
DNS Poisoning (MITM Attack).
Browser Stealer Script.
ARP Scanner Script.
ARP Poisoning (MITM Attack).
In this machine, we are exploiting an IDOR with RCE. With respect to privilege escalation, we are taking advantage of leaked credential files and exploiting SUID files through PATH Hijacking.
Apuntes de la vulnerabilidad ShellShock (Spanish)