Skip to main content

linux commands: find / -name ls &, ps, netstat

>useradd -d /home/fred fred
>system-config-users
>id <username> = to list the id number for the user/group
>passwd
>whoami
> sh <root_username>
> linux file system structure = 2 b added
> ls -la = diferent color means diferent things = 2 be added.
> how to mount cdrom or flash drive = 2 b added
> locate <program_name>
> find / -name <file_to_look_for>..find / -name ls &...runs in the background using the & after the cmd intervention
> less <file_to_see_the_content_of>; ls /dev | less
> echo $PATH
> which ls = u can c where ls commands are being run from
> ps aux | less or top
> bg or fg = to start the program in  the background or foreground
> jobs = to list all process running in the background
> gedit /etc/sysconfig/network-scripts/ifcfg-eth0
> service network restart
> netstat -nap | less = show listeining ports;
> /usr/sbin/lsof -i |  less = list of open files, close to above cmd
> tar xvf archieve.tar or tar xvfz archieve.tar.gz or achieve.tgz
> rpm -i <packagename> or -e for erase
> ./configure; make; make install = to compile and install components or some program
> grep root * = find files in the current dir. that contains the word root
> netstat -nap | grep 777  to see if anything is listening on port 777
> ps aux | grep bash =  to c if u have any process named "bash"
> man ls or info ls
> whatis <command> = what does this command do
> apropas network = to search for topics and the command related to network
> man -k network = same as apropas network
> shutdown -h now or -r for reboot

Comments

Popular posts from this blog

VM 9 : PHP Include And Post Exploitation

Walkthrough 1.        https://medium.com/@Kan1shka9/pentesterlab-php-include-and-post-exploitation-walkthrough-8a85bcfa7b1d 2.        Ine [] 3.        http://megwhite.com.au/pentester-lab-bootcamp-walkthrough-php-include-post-exploitation/ 4.        http://fallensnow-jack.blogspot.com/2014/07/pentester-lab-php-lfi-post-exploitation.html Notes: root@kali:~# nmap 10.0.0.12 Starting Nmap 7.40 ( https://nmap.org ) at 2017-05-30 12:23 EDT Nmap scan report for 10.0.0.12 Host is up (0.00035s latency). Not shown: 999 filtered ports PORT    STATE SERVICE 80/tcp open   http MAC Address: 08:00:27:1F:12:24 (Oracle VirtualBox virtual NIC) Nmap done: 1 IP address (1 host up) scanned in 5.31 seconds root@kali:~# Enumerating port 80 Run dirb root@kali:~# dirb http://10.0.0.12/ ----------------- DIRB v2.22 By The Dark Raver...

VM 5: Vulnix :

Walkthru: A. https://mrh4sh.github.io/vulnix-solution [SMTP and Finger enumeration, creating linux user with specific UID, root squashing, ssh pwd cracking using medusa & hydra, logging using ssh keys, updating /usr/sbin/exportfs] B. http://overflowsecurity.com/hacklab-vulnix/ [ same as above. create ssh keys for root and copied to victim to login as root w/o recovering pwd] C. https://www.rebootuser.com/?p=988[ local bash shell from nfs] B. https://www.vulnhub.com/?q=vulnix&sort=date-des&type=vm [list of solutions] D. https://www.rebootuser.com/?p=988 [User Enumeration #1 – SMTP, Finger; Entry Point including hydra, Putty(using rlogin service), nfs (showmount,mount) ] Notes: - As you can see the root user is the only account which is logged on the remote  host.Now that we have a specific username we can use it in order to obtain more information about this user with the command  finger root@host . -  Another effective use of the finger...

VM 13 : Basic Pentest 1 csec

Notes: Walkthru: 1. https://medium.com/@evire/basic-pentesting-1-7251fb3e3f9e [ w/metasploi t using Wordpress t] 2. https://prasannakumar.in/infosec/vulnhub-basic-pentesting-1-writeup/ [ w/metasploit using ftp ] 3.  https://www.ceos3c.com/hacking/basic-pentesting-1-walkthrough/ [ by uploading php-reverse-shell in wordpress ] 4. http://k3ramas.blogspot.com/2018/02/basic-pentesting-1-walkthrough.html [  access wordpress config file to get pwd and access the DB ] 5.  https://cowsayroot.com/walkthrough-basic-pentesting-1/ [ Wpscan, ftp metasploit vulnerability, phpbash ] 6.   http://www.hackingarticles.in/hack-the-basic-penetration-vm-boot2root-challenge/    [use msfvenom to create  to create php shell to be uploaded in Wordpress ] 7.   https://d7x.promiselabs.net/2018/01/30/ctf-basic-pentesting-a-guide-for-beginners/ [adding command using using PHP] Notes:  Ports - 21...ProFTPD 1.3.3c - 22 openSSH 7.2p2 ubuntu ...