In this video walk-through, we covered the enumeration of Redis NoSQL database server and exploitation using SSH. Postman is an easy difficulty Linux machine, which features a Redis server running without authentication. This service can be leveraged to write an SSH public key to the user's folder. An encrypted SSH private key is found, which can be cracked to gain user access. The user is found to have a login for an older version of Webmin. This is exploited through command injection to gain root privileges.
*************
Receive Cyber Security Field Notes and Special Training Videos
/ @motasemhamdan
*******
Writeup
https://motasem-notes.net/redis-nosql...
HackTheBox Postman
https://www.hackthebox.com/machines/p...
*********
Instagram
/ dev.stuxnet
Twitter
/ manmotasem
Facebook
/ motasemhamdantty
LinkedIn
[1]: / motasem-hamdan-7673289b
[2]: / motasem-eldad-ha-bb42481b2
Website
https://www.motasem-notes.net
Patreon
https://www.patreon.com/motasemhamdan...
Backup channel
/ @themastermindclips
My Movie channel:
/ @themastermindbooks
******