πΊMustacchio
License
0 - Introduction
1 - Port Scans
1a - Discovery
βββ(kaliγΏkali)-[~]
ββ$ sudo nmap -sS -T4 -p- -Pn mustacchio.thm
Starting Nmap 7.94SVN ( https://nmap.org ) at 2024-05-21 18:56 EEST
Nmap scan report for mustacchio.thm (10.10.75.137)
Host is up (0.100s latency).
Not shown: 65532 filtered tcp ports (no-response)
PORT STATE SERVICE
22/tcp open ssh
80/tcp open http
8765/tcp open ultraseek-http
Nmap done: 1 IP address (1 host up) scanned in 111.50 seconds1b - Versioning and OS fingerprinting
1c - Vulners
2 - Port 80
2a - Dirbusting

2b - Opening users.bak

3 - Port 8765
3a - Logging in



3b - Comment input
3bi - Probing



3c - XXE powered exfiltration

4 - SSH
4a - SSH key cracking
4b - Foothold!
5 - PrivEsc
5a - Looking around
5b - Weaponizing and Escalation
Last updated