Pivoting
Metasploit
Check routes on a win machine
C:\Windows\system32>route print route print =========================================================================== Interface List 12...08 00 27 ae c1 68 ......Intel(R) PRO/1000 MT Desktop Adapter 1...........................Software Loopback Interface 1 =========================================================================== IPv4 Route Table =========================================================================== Active Routes: Network Destination Netmask Gateway Interface Metric 0.0.0.0 0.0.0.0 192.168.57.1 10.0.2.15 25 10.0.2.0 255.255.255.0 On-link 10.0.2.15 281 10.0.2.15 255.255.255.255 On-link 10.0.2.15 281 10.0.2.255 255.255.255.255 On-link 10.0.2.15 281 127.0.0.0 255.0.0.0 On-link 127.0.0.1 331 127.0.0.1 255.255.255.255 On-link 127.0.0.1 331 127.255.255.255 255.255.255.255 On-link 127.0.0.1 331 224.0.0.0 240.0.0.0 On-link 127.0.0.1 331 224.0.0.0 240.0.0.0 On-link 10.0.2.15 281 255.255.255.255 255.255.255.255 On-link 127.0.0.1 331 255.255.255.255 255.255.255.255 On-link 10.0.2.15 281 =========================================================================== Persistent Routes: None IPv6 Route Table =========================================================================== Active Routes: If Metric Network Destination Gateway 1 331 ::1/128 On-link 12 281 fe80::/64 On-link 12 281 fe80::857:534f:3bb0:8fce/128 On-link 1 331 ff00::/8 On-link 12 281 ff00::/8 On-link =========================================================================== Persistent Routes: NoneInterface: 10.0.2.15 --- 0xc Internet Address Physical Address Type 10.0.2.3 08-00-27-35-94-d3 dynamic 10.0.2.4 08-00-27-fc-72-e9 dynamic 10.0.2.5 08-00-27-7f-90-90 dynamic 10.0.2.8 08-00-27-1d-d2-98 dynamic 10.0.2.255 ff-ff-ff-ff-ff-ff static 192.168.57.1 52-54-00-12-35-00 dynamic 224.0.0.22 01-00-5e-00-00-16 static 224.0.0.251 01-00-5e-00-00-fb static 224.0.0.252 01-00-5e-00-00-fc static 239.255.255.250 01-00-5e-7f-ff-fa static 255.255.255.255 ff-ff-ff-ff-ff-ff static[+] 10.0.2.5: - 10.0.2.5:445 - TCP OPEN [*] 10.0.2.5: - Scanned 1 of 1 hosts (100% complete) [*] Auxiliary module execution completed
Reverse port forwarding and Session Passing with Metasploit having initial shell on Covenant
Shuttle
Chisel
Pivoting with Chisel
Resources
Last updated