Forward Shell - Python
Forward Shell Script.
Forward Shell Script.
DNS Sniffer (MITM Attack).
DNS Poisoning (MITM Attack).
Browser Stealer Script.
ARP Scanner Script.
ARP Poisoning (MITM Attack).
In this machine, we are exploiting an IDOR with RCE. With respect to privilege escalation, we are taking advantage of leaked credential files and exploiting SUID files through PATH Hijacking.
Apuntes de la vulnerabilidad ShellShock (Spanish)
Apuntes de la vulnerabilidad Mass-Asignment o Parameter Binding (Spanish)
Apuntes de abuso de subidas de archivos (Spanish)