[Boards: 3 / a / aco / adv / an / asp / b / biz / c / cgl / ck / cm / co / d / diy / e / fa / fit / g / gd / gif / h / hc / his / hm / hr / i / ic / int / jp / k / lgbt / lit / m / mlp / mu / n / news / o / out / p / po / pol / qa / r / r9k / s / s4s / sci / soc / sp / t / tg / toy / trash / trv / tv / u / v / vg / vp / vr / w / wg / wsg / wsr / x / y ] [Home]
4chanarchives logo
>General pentesting and remote exploitation thread. With
Images are sometimes not shown due to bandwidth/network limitations. Refreshing the page usually helps.

You are currently reading a thread in /g/ - Technology

Thread replies: 69
Thread images: 21
File: meterpps[1].jpg (493 KB, 2296x950) Image search: [Google]
meterpps[1].jpg
493 KB, 2296x950
>General pentesting and remote exploitation thread.

With an open Meterpreter shell, what's the best way to make the computer automatically run a batch script upon booting? I suppose you could do this and thus give yourself a backdoor upon the computer booting, should the batch script be your own Meterpreter payload. Persistence and Metsvc don't really work with Windows Defender and AV. They're too noisy and I suppose engineering the shell to automatically install your own backdoor is probably easier.
>>
>>54440821
OP here. One side note is that you can also just configure it to run a batch script that spams the word niggerlicious or something 50,000 times upon boot. Anything that will make a certain file execute upon booting is fine.
>>
>>54440821
OP is a faggot skit. Fuck pentesters
#antisec

Sage all fields
>>
>>54440821
ITT: script kiddies
>>
>>54440903
>>54440894
>Samefagging this hard.
>>
>>54440903
"Anyone who seeks help in accomplishing one pentesting task that I've learned to do in the past is a script kiddie." Say something useful or get the fuck out faggot.
>>
>>54440990
fucking whitehats thinking they are elite
>>
>>54440969
>thinking its the same guy
Top kek
>>
File: Lenny_face.png (41 KB, 581x263) Image search: [Google]
Lenny_face.png
41 KB, 581x263
>>
File: 1460310366444.png (311 KB, 652x669) Image search: [Google]
1460310366444.png
311 KB, 652x669
>>
File: 1461733629800.jpg (138 KB, 500x430) Image search: [Google]
1461733629800.jpg
138 KB, 500x430
>>
File: anon.jpg (90 KB, 556x716) Image search: [Google]
anon.jpg
90 KB, 556x716
>>
File: 1462006297574.jpg (61 KB, 600x554) Image search: [Google]
1462006297574.jpg
61 KB, 600x554
>>
File: mailbox3.jpg (421 KB, 751x570) Image search: [Google]
mailbox3.jpg
421 KB, 751x570
IP = 127.138.255.92
Hack me bbrou
>>
File: _20160506_120220.jpg (430 KB, 1770x1200) Image search: [Google]
_20160506_120220.jpg
430 KB, 1770x1200
>>54441212
"m-m-m-metasploit doesn't work heh i guess you're secure"
>>
File: memes.png (336 KB, 448x458) Image search: [Google]
memes.png
336 KB, 448x458
>>
File: 1418458442819.jpg (53 KB, 510x532) Image search: [Google]
1418458442819.jpg
53 KB, 510x532
>>
File: 1287612.jpg (59 KB, 600x800) Image search: [Google]
1287612.jpg
59 KB, 600x800
>>54440821
sup ryan the script kid
>>
File: 1436205427851.jpg (36 KB, 300x360) Image search: [Google]
1436205427851.jpg
36 KB, 300x360
>>54441252
naw its Jason broski.. his name is Jason
>>
File: stopped_reading1.png (72 KB, 250x272) Image search: [Google]
stopped_reading1.png
72 KB, 250x272
>>54440821
>Meterpreter shell
>>
File: image_12.jpg (110 KB, 500x649) Image search: [Google]
image_12.jpg
110 KB, 500x649
>>
>>54440832
I don't really like this idea. I mean I have to learn more about Windows reconnaissance anyway. Also but all of these other faggots. They're the real script kiddies. People who souly rely on security software apposed to actually running pentests are usually fucking idiots. Check out the BTFM & RTFM, security tube ect. for tips.
>>
wewlad
>>
Instead of learning something useful and playing CTF these faggots watch anime and jack off to cp lmao
>>
File: accurate.jpg (519 KB, 1920x1080) Image search: [Google]
accurate.jpg
519 KB, 1920x1080
>>54441367
>PAJEET tube
Great hackeroo buddo would totally hire you for a pentest cause I know you fucking use real techiques... fuckoff
>>
>>54441403
Is CTF just fuzzing applications on the server and finding a way to elevate your shell to a superuser?
>>
>>54441403
They why post your shit theeat about a shit topic which can be easily found in google? Keep shit faggot, you'll never be a hacker if you can't research the simplest shit on your own.

>implying you play ctfs
you cant even find a stack overflow on an outdated system with no protection.
>>
>>54441420
I don't even use a fucking pentesting distro, retard.
They're usually bloated, unstable and all of the pentesting tools I use are available in almost any repo. I'm a dev for the Gentoo Linux community and I do get paid to audit networks sooooo yeah, eat shit kiddo.
>>
File: tell_lies_on_the_internet.jpg (47 KB, 453x576) Image search: [Google]
tell_lies_on_the_internet.jpg
47 KB, 453x576
>>54441453
kek saging harder now lying POS
>>
>>54441450
I'm not OP and yes, I play CTF.
>>
File: 1462635878636.jpg (7 KB, 263x192) Image search: [Google]
1462635878636.jpg
7 KB, 263x192
>>54441420
guess how I can tell this image was made by a buttblasted debiannigger
>>
>>54441475
Signing up and not doing challs is not participating. You're just a writeup whore

Sage
>>
>>54441212
I've taken out four bank loans in your name in Russia under an assumed identity and I'm fucking your girl right now.
>>
>>54441495
WEW LAD
>>
This thred is wew
>>
>>54441443
No. There's jeopardy CTF where you get points for completing different tasks and there's CTF classic, which can last for days and involves incidence response, reverse engineering, forensics, pentesting ect. You make it sound boring.
>>
Pentesting is stupid there is literally no device on the market that doesn't have critical security problems.

Nothing anyone makes it secure it is literally all theater at this point.
>>
>>54441154
The person that have made this is not retarded. He/she just don't know how to code.
>>
>>54441515
A CTF is just so unskilled NEETs feel happy they find bugs on purposely vulnerable software.
>>
>>54441489
>>54441526
Don't act like you even know wtf you're talking about.
>>
>>54441517
Yup. Even more brou.. When you hire an expensive company and they have pentesters like OP who just hand you in nessus reports... METASPLOIT COULDNT EXPLOIT OT.. UR SAFE... 4 months later, got Mandiant up in the bitch fixing an APT. This thread and OPs life is a joke
>>
>>54441544
whatever u say Z3r0 c00l h3h3h3 m0m 1m a h4xx0r
>>
>>54441578
You sound cranky. I think it's past your bed time.
>>
sage
a
g
e
>>
in alllll fiiiields ssaaaaggggrr
>>
Wew
>>
>>54441515
Ah ok, i had a look at the stackhack ctf and it was pretty full on, without a moderate understanding of asm, debugging and making shellcode its definitly not something beginners can jump into, i'm interested, just don't have enough time to go hard :/
>>
>>54441620
then fuck off and get and join pajeet in tech support nigger
>>
>>54441620
Kill yourself
>>
>>54441628
I literally am buddy, doing jnr sysadmin work, better than being a full time shitposter and anime-ricer lol
>>
>>54441652
k Radak go get curry
>>
>>54441652
Amit pls fix mi spyware
>>
>>54441620
It's pretty fun. Honestly, getting a community that works well together can be one of the hardest aspects for some people. Once you have that you guys can set up micro CTF jeopardy style to train and after so long and practicing with CTF classic then sign up for Defcon and pwn.
>>
File: goodgoy.jpg (25 KB, 480x360) Image search: [Google]
goodgoy.jpg
25 KB, 480x360
>>54441652
Shouldn't you be shilling Windows 10 right now Pajeet?

-5 rupees
>>
>>54441682
>bullshit, the post
>>
>>54441691
What are you getting out of this tantrum?
>>
>>54441682
https://encyclopediadramatica.se/Jeff_Moss
>>
>>54441747
This post gave me cancer
>>
Aside from these retards posting maymays, I think there's a folder in Windblows that executes programs upon boot, forgot the name.
>>
>>54441420
Why the fuck would you associate Stallman and Gentoo, it's a proprietary distro.
>>
>61 replies
>9 posters
Someone is literally talking to themselves lmao
>>
>inhouse pentesters test our shit
>get report back
>following open ports are a security threat: ...,22,...80,...,443

Fuck those scriptkiddies.
>>
>>54440821
There's a registry entry somewhere (can't remember off the top of my head) that does startup executables. You could edit the registry and put something in there couldn't you?
>>
Why do pentest threads meet an immediate Great Wall of sneering disapproval yet the exp(n)th thread on consumer electronics and derptops ot rattle stations is immediately covered in jizz and the OP shoulder lifted off to Valhalla?
>>
>>54442562
%AppData% > Roaming\Microsoft\Windows\Start Menu\Programs\Startup
>>
File: 1461312912307-2.png (515 KB, 600x600) Image search: [Google]
1461312912307-2.png
515 KB, 600x600
>>54442965
There is script kiddies, and there is just plain downs syndrome.
>>
>>54442965
You think if you close down those ports you can get all of those "pentesters" fired once all the havoc ensues?
>>
File: 63082856.jpg (92 KB, 400x400) Image search: [Google]
63082856.jpg
92 KB, 400x400
>>54440821
> OP
Thread replies: 69
Thread images: 21

banner
banner
[Boards: 3 / a / aco / adv / an / asp / b / biz / c / cgl / ck / cm / co / d / diy / e / fa / fit / g / gd / gif / h / hc / his / hm / hr / i / ic / int / jp / k / lgbt / lit / m / mlp / mu / n / news / o / out / p / po / pol / qa / r / r9k / s / s4s / sci / soc / sp / t / tg / toy / trash / trv / tv / u / v / vg / vp / vr / w / wg / wsg / wsr / x / y] [Home]

All trademarks and copyrights on this page are owned by their respective parties. Images uploaded are the responsibility of the Poster. Comments are owned by the Poster.
If a post contains personal/copyrighted/illegal content you can contact me at [email protected] with that post and thread number and it will be removed as soon as possible.
DMCA Content Takedown via dmca.com
All images are hosted on imgur.com, send takedown notices to them.
This is a 4chan archive - all of the content originated from them. If you need IP information for a Poster - you need to contact them. This website shows only archived content.