0:00 Start
0:19 Locating the machine IP
2:11 Initial scans
4:40 Brute forcing attacking the SMB user
7:42 Verifying the user credentials
10:50 Explaining the Winrm service
12:00 Initial access via evil-winrm program
14:31 Privilege escalation
16:24 Brute forcing the admin user password
19:01 Runas program
21:45 Runas alternative - RunasCs
27:09 We are admin
27:59 Wrapup
You can download the challenge VM from the following link:
https://downloads.hackmyvm.eu/liar.zip
Download the file, then unzip the file and deploy the VM using VirtualBox or VMware. You will also need to have an "attacker" VM with security tools installed on it, e.g., Kali Linux, deployed to the same VM network.
The following links are related to topics covered in this challenge:
Brute Forcing with Netexec:
https://www.netexec.wiki/getting-star...
Runascs Github Project:
https://github.com/antonioCoco/RunasCs
Join this channel to get access to perks:
/ @theshyhat
Donations:
https://streamlabs.com/theshyhat/tip
Donations are always appreciated, but never required! All donations will go towards developing new HackerFrogs courses and cybersecurity video content!
HackerFrogs Links:
Twitch:
/ theshyhat
Kick:
https://kick.com/theshyhat
Reddit:
/ hackerfrogs
Watch video HackMyVM: Liar - WinRM and Runas Command Hacking - Windows Hacking online without registration, duration hours minute second in high quality. This video was added by user theshyhat 12 February 2025, don't forget to share it with your friends and acquaintances, it has been viewed on our site 63 once and liked it 7 people.