Cyber Security | Ethical Hacking | Pentesting | Vulnhub | Walkthrough | HackInOS | Python
Pentesting Lab Exercises Series – Vulnhub
Virtual Machine Name: HackInOS: 1
Link: https://www.vulnhub.com/entry/hackinos-1,295/
My Twitter:@ junhua_cyber
Tips:
1. Manipulate MIME type by adding magic header:
https://en.wikipedia.org/wiki/List_of_file_signatures
2. Use Python to brute force file. (Requests and hashlib module) I thinks Python is more powerful than shell scripting.
Very weird thing was that I should repeat the process to find the uploaded file and get shell)
Views : 49
cyber security