Exploring Metasploit 3 and the New and Improved Web Interface - Part 1

in
0
Your rating: None
Sorry, you need to install flash to see this content.

In this video we explore the revised MSFWeb interface for the Metasploit Framework 3.0. We specifically take a look at running auxiliary modules against a server running MSSQL, and then we'll take a look at using the MSFweb GUI to run the idq exploit with the meterpreter payload. What is unique about the idq bug is that it will NOT give you administrator or system on the box, but you can use the rev2self command in meterpreter to elevate your privileges from IUSR_MACHINENAME to SYSTEM. While we're at it, we also dump the hashes using hashdump for a little extra fun.

NOTE: Check your volume as the music may be a little loud.

Recent tutorial posts