0:00 Start
0:19 Locating the machine IP
2:11 Initial scans
4:40 Brute forcing attacking the SMB user
7:42 Verifying the user credentials
10:50 Explaining the Winrm service
12:00 Initial access via evil-winrm program
14:31 Privilege escalation
16:24 Brute forcing the admin user password
19:01 Runas program
21:45 Runas alternative - RunasCs
27:09 We are admin
27:59 Wrapup
You can download the challenge VM from the following link:
https://downloads.hackmyvm.eu/liar.zip
Download the file, then unzip the file and deploy the VM using VirtualBox or VMware. You will also need to have an "attacker" VM with security tools installed on it, e.g., Kali Linux, deployed to the same VM network.
The following links are related to topics covered in this challenge:
Brute Forcing with Netexec:
https://www.netexec.wiki/getting-star...
Runascs Github Project:
https://github.com/antonioCoco/RunasCs
Join this channel to get access to perks:
/ @theshyhat
Donations:
https://streamlabs.com/theshyhat/tip
Donations are always appreciated, but never required! All donations will go towards developing new HackerFrogs courses and cybersecurity video content!
HackerFrogs Links:
Twitch:
/ theshyhat
Kick:
https://kick.com/theshyhat
Reddit:
/ hackerfrogs
Смотрите видео HackMyVM: Liar - WinRM and Runas Command Hacking - Windows Hacking онлайн без регистрации, длительностью часов минут секунд в хорошем качестве. Это видео добавил пользователь theshyhat 12 Февраль 2025, не забудьте поделиться им ссылкой с друзьями и знакомыми, на нашем сайте его посмотрели 63 раз и оно понравилось 7 людям.