Printer Exploitation via SNMP and Telnet | CTF Walkthrough

Опубликовано: 01 Октябрь 2024
на канале: Motasem Hamdan | Cyber Security & Tech
1,445
24

In this video walk-through, we covered a printer exploitation scenario where we started with telnet protocol then we used SNMP to grab the hex representation of the password through a vulnerability that targeted HP JetDirect printers. We got a telnet shell and from there we used the available commands to spawn a reverse shell along with Metasploit. We discovered a local printing service running on port 631 which as a vulnerability that enables full ability to read any file on the target system. We used Metasploit portforwarding to be able to access and interact with this service (CUPS 1.6.1)
***************
Receive Cyber Security Field Notes and Special Training Videos
   / @motasemhamdan  
**********
Resources
Writeup
https://motasem-notes.net/printer-exp...
HackTheBox Antique
https://app.hackthebox.com/machines/400
CUPS 1.6.1 Vulnerability
https://www.rapid7.com/db/modules/pos...
Getting a JetDirect password remotely using the SNMP vulnerability
http://www.irongeek.com/i.php?page=se...
********
Patreon
https://www.patreon.com/motasemhamdan...
Instagram
  / dev.stuxnet  
Twitter
  / manmotasem  
Facebook
  / motasemhamdantty  
LinkedIn
[1]:   / motasem-hamdan-7673289b  
[2]:   / motasem-eldad-ha-bb42481b2  
Website
https://www.motasem-notes.net
Backup channel
   / @themastermindclips  
My Movie channel:
   / @themastermindbooks  
******