00:00 - Introduction
01:00 - Start of Nmap
03:00 - Playing with the web page, but everything is static doing a VHOST Bruteforce to discover
07:10 - Discovering the view parameter and suspecting File Disclosure, testing by including and seeing the source code
09:20 - Since this is a Windows, try to include a file off a SMB Share and steal the NTLMv2 Hash of the webserver then crack it
13:30 - Running CrackMapExec (CME) checking shares, doing a Spider_Plus to see the files in users
18:30 - Running CrackMapExec (CME) to create a list of users on the box then doing a password spray to discover a duplicate password
20:20 - Checking the shares with and discovering we can write to the Shared Directory
21:30 - Using NTLM_Theft to create a bunch of files that would attempt to steal NTLM Hashes of users when browsing to a directory getting ’s creds with
26:18 - can write to Web, dropping a reverse shell
29:30 - Reverse shell r
7 views
234
60
7 days ago 00:04:15 1
This Switch Is So Smart It Might Hack Your Brain | NETGEAR GS728TP Review (PoE Beast Mode) - YouTube
2 weeks ago 00:21:15 1
I Spent $5,000,000 So You Can Go To Space For FREE
2 weeks ago 00:02:08 1
8 Ball Pool Hack/MOD APK iOS & Android - How to Get 8 Ball Pool Aim Hack Tool 2025
1 month ago 00:15:09 1
The SECRET that NOKIA Manufacturer Doesn’t Tell You That Their Old Phone Can Do This
3 months ago 00:07:06 1
I’VE GOT HACKED (Watch whole video. Important message!)