2015-11-30 at 5:59 PM UTC
So a bit ago before my intertube connection kicked the bucket i found some lulzy things. There is a site, and this site is on a server, the server is connected to a local network. It so happens the site is vulnerable to OS command injection. I can do some magic and get a pseudo shell easily enough but to get to the most juicy data we are going to have to pivot into the network. So i was thinking, we get payload handler running on a jump box, and generate a reverse tcp meterpreter, configured to connect back to the jump box we have our handler on. Which i will then pull down using the pseudo shell i got through command injection. Then we cqn either use metasploit native modules to see if we can spawn some shells or meterpreter sessions on the network itself or usw proxychains and the proxy4a module to run any other kind of tools we may need through the box we got our meterpreter session on. I was considering a rootkit, since hackimg team had a dank one for Linux systems but the logistics of that would be a little more involved than just pulling down a meterpreter. Noobs need not apply and opsec is mandatory, hence the jump box etc.
2015-11-30 at 6:07 PM UTC
I would do it on my own but i do not have a jump box to act as proxy for our meterpreter, the beauty of course being is that you can send your commands to the payload handler through tor since it is but text.
2015-11-30 at 11:39 PM UTC
I was going to say 'shenanigans' reminded me of Super Troopers. Anyway, I am a noob posting from a shitty cellphone, I am no good to you. Though I am a lvl 17 cleric and could caste spells of luck and increases treasure finds +5 or a duration of 45 minutes. I dont see where my spells of stonewall would help here, but I could caste that too. You might walk away with super awesome data with my spell to increase luck and treasure finds. It might even be the holy grail of loli porn. You could really use a cleric like me in your party of 'shenanigan' doing cocksuckers. Anyway, Good luck.
2015-12-01 at 3:15 AM UTC
kroz
weak whyte, frothy cuck, and former twink
Im up for some of teh shennanagins!11
2015-12-01 at 12:29 PM UTC
Damn, some of my early posts on this site were cringeworthy as fuck
Post last edited by Kolokol-1 at 2017-04-23T12:28:17.276507+00:00
2015-12-02 at 3:42 PM UTC
^SHUT THE FUCK UP.
Also, definitely up for the cheeky nandos.