Crocodile - Hack The Box // Walkthrough & Solution // Kali Linux

Поделиться
HTML-код
  • Опубликовано: 8 сен 2024
  • In this box, and using Kali Linux, the target computer has a weak access control vulnerability that allowed active user credentials to be harvested through FTP. The same credentials might be used to access a restricted area of the online application.
    FTP (File Transfer Protocol) attacks target FTP servers and clients. FTP is a popular protocol for transferring files over the internet, and it is often used by corporations and organizations to distribute huge data across several sites.
    An attacker may employ a variety of FTP techniques to compromise an FTP server or client. Among the most frequent are:
    Brute force attacks: A brute force attack occurs when an attacker use automated tools to attempt to guess the FTP login credentials (username and password) by continually attempting various character combinations.
    Packet sniffing attacks include capturing and analyzing network communication between an FTP client and server in order to acquire login passwords or other sensitive data.
    FTP bounce attacks: In an FTP bounce attack, an attacker uses a weak FTP server to relay instructions to other servers, so indirectly attacking another server or network.
    Attackers may also exploit weaknesses in the FTP protocol to execute arbitrary code, upload or download data, or gain unauthorized access to the server.
    It is critical to utilize strong FTP login passwords, maintain FTP servers and clients up to current with the latest security updates, and monitor network traffic for signals of unusual behaviour to avoid FTP compromises. Encryption and secure file transfer protocols, such as SFTP or FTPS, may also aid to secure FTP file transfers.
    🤓 Follow Me:
    / danduran.me
    / danduran.me
    / danduran-ca
    / danduran.me
    / danduran
    DanDuran.me
    #HackTheBox #PentestingTutorials #kalilinux

Комментарии • 8

  • @j2r5d
    @j2r5d 4 месяца назад

    What would be the reason of the "name or service not known" error when attempting to ftp anonymous?

  • @CR7-Suuilll
    @CR7-Suuilll 10 месяцев назад

    Which I can come to your house everyday and learn….😅 even help you clean the house

  • @ruslanbedoev9264
    @ruslanbedoev9264 6 месяцев назад +1

    Question from a complete beginner. In the start of your video you say that you have "everything activated". D you mean that you VM and Kali Linux are up and running or are they anything else that you are running?

    • @GetCyber
      @GetCyber  6 месяцев назад

      No worries. This channel is 100% for beginners!

  • @jorgecoimbra347
    @jorgecoimbra347 7 месяцев назад +1

    no entedi nada de lo que desias pero thank you

    • @GetCyber
      @GetCyber  7 месяцев назад

      Gracias! ☺️