Privilege Escalation

From DevilSec
  1. wget https://cdn.discordapp.com/attachments/677681926752043037/678004400408625192/vpn-update.zip
  2. unzip vpn-update.zip
  3. openvpn --config client.ovpn
  4. Start enumerating 10.8.0.1



Notes: User tun0 interface


Document these:

Open ports:

(Tool hint: nmap)


What are the directories on the webserver?

(Tool hint: gobuster)


Interesting files?




Resources:

http://pentestmonkey.net/cheat-sheet/shells/reverse-shell-cheat-sheet - reverse shells

https://github.com/OJ/gobuster - directory enumerations

https://github.com/rebootuser/LinEnum - enumeration for priv esc <<<<------ use this

https://blog.ropnop.com/upgrading-simple-shells-to-fully-interactive-ttys/ - FIX YOUR SHELL/SHELL UPGRADING