Senin, 24 September 2012

Practice Exploiting Windows XP SP3


Hy friends...right now we are gonna learn how to exploit windows xp service pack 3 running on virtual box just for practicing not to other purpose. Before we do it make sure you have a connection from xp 

  
into host using ping test

also make sure you have an application that we want to practice that is WarFTP running on xp

ok after all media are set. Now we are ready to practice exploiting windows XP by WarFTP
1. Information Gathering using nmap


2. Above step also inform us about service enumeration running on XP
3. The 3rd step should be VA on the nmap list shown, but in this case we wan't to practice decided VA that is WarFTP vulnerablity. So we can skip the rest..^^

4. The next step is to exploit it using metasploit
The result of msf console searching shows 2 kind of exploits for WarFTP.
We can use info exploit/windows/ftp/warftpd_165_user command to know how to use the exploit and show payloads to list payload for windows that we can use. Then the steps we can saw from the Sshot.

 
Set RHOST, LHOST and TARGET
  and...DONE....we inside the sistem..^^

Tidak ada komentar:

Posting Komentar