Back with another video – this time we hack into a Windows server running Adobe Cold Fusion!

I demonstrate and explain the following hacking techniques:

  • Nmap for port scanning
  • Connecting to non-standard HTTP ports
  • Searchsploit for vulnerability research
  • Python to steal the admin password hash
  • John the Ripper to crack the hash
  • Msfvenom for creating a custom java payload
  • Abusing “scheduled tasks” to upload a shell
  • Finally, using a kernel exploit to upgrade my shell to NT Authority/System and pwning the machine!

Enjoy!

Leave a Reply

Fill in your details below or click an icon to log in:

WordPress.com Logo

You are commenting using your WordPress.com account. Log Out /  Change )

Twitter picture

You are commenting using your Twitter account. Log Out /  Change )

Facebook photo

You are commenting using your Facebook account. Log Out /  Change )

Connecting to %s