The Stapler - Pentest skills
easy
27 tasks
1 hours
This lab is designed to enhance your penetration testing and ethical hacking skills. It emulates a realistic scenario, providing an excellent opportunity to apply techniques and methodologies for discovering and exploiting common security weaknesses.
List of tasks
- Tasks
- Lab Overview
- Information Gathering: Nmap Scanning
- Exploring FTP
- Anonymous FTP Login
- FTP File Discovery
- Brute-forcing FTP Credentials
- Logging into FTP with Credentials
- SMB Enumeration
- Accessing Windows Shares
- Practicing with smbclient
- Port 666 Enumeration
- Download The Content with wget
- Web Enumeration with Nikto
- Identifying CMS
- Scanning WordPress with WPScan
- Brute-forcing WordPress Login
- Exploiting File Upload Vulnerability
- Setting Up a Reverse Shell Connection
- Identifying OS and Kernel Version
- Searching for Exploits with Searchsploit
- Downloading Exploit from Searchsploit
- Transferring Exploit using Python
- Compiling and Running the Exploit
- Exploring User Directories for Privilege Escalation Clues
- Extracting Critical Information from Commands History
- Gaining Root Access via Sudo Privileges
- Retrieve the Final Flag