[OSCP] Post-Exploitation 2026ver
© 2026 zzer0. All rights reserved. No part of this publication may be reproduced, modified, or distributed for commercial purposes without permission from the author. File Transfer Linux → Windo...
© 2026 zzer0. All rights reserved. No part of this publication may be reproduced, modified, or distributed for commercial purposes without permission from the author. File Transfer Linux → Windo...
© 2026 zzer0. All rights reserved. No part of this publication may be reproduced, modified, or distributed for commercial purposes without permission from the author. Initial Access & Shell S...
© 2026 zzer0. All rights reserved. No part of this publication may be reproduced, modified, or distributed for commercial purposes without permission from the author. Port Scanning Host Discovery...
by Claude Quick Lookup (빠른 접근) GTFOBins (Linux SUID/sudo) https://gtfobins.github.io/ LOLBAS (Windows LOLBins) https://lolbas-project.github.io/ WADComs (Windows/AD...
포트 스캔 sudo nmap -Pn -p- --min-rate 1000 -T4 -oN scans/initial_Pn 192.168.106.229 PORT STATE SERVICE 22/tcp open ssh 80/tcp open http 초기 침투 디렉토리 브루트포스 /uploads/ 경로 확인 feroxbuster -u h...
A foothold on the target will be gained by using a writable SMB share to execute a URI file attack. Following this, SYSTEM privilege will be elevated by abusing write access on a Group Policy Objec...
To compromise this lab, you will exploit an SQL injection vulnerability in a Ruby on Rails web application then escalate your privileges by exploiting insecure folder permissions in the BarracudaDr...
Methods for uncovering potential vulnerabilities are employed in this lab. It focuses on web enumeration, web exploitation, and MySQL enumeration, along with practicing privilege escalation for una...
A foothold on the target system will be established by exploiting a directory traversal vulnerability in the DVR software to access an SSH key. Privileges will then be elevated by decoding the Admi...
To exploit this lab, you’ll leverage credential disclosure on a web application endpoint to gain an initial foothold. This lab helps you understand how to exploit credential disclosures, crack pass...