Home Cerberus Notes
Post
Cancel

Cerberus Notes

Cerberus Notes


Information gathering



Scope: 10.10.11.205/32 (Windows Machine)

TCP Nmap scan: 65,535 ports

  • Open ports:

    • 8080/http-proxy:
      • Banner grabbing
      • Server: Apache/2.4.52 (Ubuntu) (172.16.22.2:80)
        • Server mounted on a different network
        • Redirection: http://icinga.cerberus.local:8080/icingaweb2
        • Add to Local DNS server:
      • Web Service enumeration:
        • Firefox:
        • Curl Url scrapping:
        • Service: Icinga web2:

Vulnerability assessment



Exploitation



Post-exploitation



Lateral movement



Proof of concept



This post is licensed under CC BY 4.0 by the author.