Ok ppl have a question,
i'm doing a pentest on a gov instance and founs some intresting stuff...
For now i'm focusing on VNC, i was able to runs the vnc 4.1 bypass exploit so am able to get the login screen of a 2k3 server.
My question is: is there a way to use some other exploit on the vnc or trough the vnc or inject something in there so i can get acces to the machine? think of a command shell or add users etc.
pls advice!
YES!!!!
it's a project i've scoredso i'm allowed to test their security (externaly)
anyway any advice?
Of what country ?
Is it possible you could slip me a pm with the name of the company you work for so maybe I could apply for a job there too?
To be successful here you should read all of the following.
ForumRules
ForumFAQ
If you are new to Back|Track
Back|Track Wiki
Failure to do so will probably get your threads deleted or worse.
Code:net use \\ipaddress /u:user passwordThis will get you the encrypted password. Then use vncpwdump.exe to decrypt it.Code:regread.exe \\ipaddress software\orl\winvnc3\default Password | grep -v [g-zG-Z] | tr -d [:blank:]
William
To be successful here you should read all of the following.
ForumRules
ForumFAQ
If you are new to Back|Track
Back|Track Wiki
Failure to do so will probably get your threads deleted or worse.
Maybe I'm being overly harsh but I call BS.
How do you land a Gov't contract with the skills (writing and technical) demonstrated in the original post?
No it's not just you. I often end up adblocking things like that.
Huh? It's just him but you'd ban them if you could?
Oh looky looky, sig pic is in a list'able directory (as are the parent directories):
http://home.hccnet.nl/ea.abbink/images/alien/
Even better, seemingly way out of date apache server:Code:Apache/1.3.26 Server at home.hccnet.nl Port 80
I'm a compulsive post editor, you might wanna wait until my post has been online for 5-10 mins before quoting it as it will likely change.
I know I seem harsh in some of my replies. SORRY! But if you're doing something illegal or posting something that seems to be obvious BS I'm going to call you on it.
Well I thought the same thing, but I was hoping to get rich quick and be able to tell some tales of the ol' tiger team hax0rs the big bad gov.
OOPS! Maybe that was not meant to be seen, or maybe it's part of a uber leet honeypot!Oh looky looky, sig pic is in a list'able directory (as are the parent directories):
http://home.hccnet.nl/ea.abbink/images/alien/
Even better, seemingly way out of date apache server:Code:Apache/1.3.26 Server at home.hccnet.nl Port 80
To be successful here you should read all of the following.
ForumRules
ForumFAQ
If you are new to Back|Track
Back|Track Wiki
Failure to do so will probably get your threads deleted or worse.