Common Operations (tty, SSH, rbash)

chown chmod su ; windows prefer C:\ instead of /

generate shell

rdp


proxychains xfreerdp /d:sandbox(.local) /u:alex /p:'xxx' /v:10.5.5.20 +clipboard +drives /tls-seclevel:0

/pth:hash <-> /p:'pwd'

sudo crackmapexec smb 10.69.88.23 -u user -p password -M rdp -o ACTION=enable
(-H nthash)

Check "File transfer" for drive share

Link for wget correct architecture of useful tools onto victim

Setup nc listener with a opened port from nmap to avoid firewall block from victim

rev shell methods

TTY interactive shell

full interactive

socat

nc

PATH and SHELL fix

.c compiling

add -static if version GLIBC not found error

Compatible SSH

Interactive session (escape rbash)

Windows short path when can't use ""

Windows firewall

reboot

Last updated