Discussion in 'Missions Center' started by BlackSite, Jun 10, 2018.

  1. BlackSite

    I'm currently past the MITM target credential intercept.

    How do you now use the information obtained to brute force your target password?
  2. BlackSite

    Figured it out. Lol
  3. DanLyonsX

    how did you do it ? having same problem
  4. BlackSite

    I will pm you.
  5. Vorpol

    Im stuck on locating and querying the Active Directory. I used the Social Engineering tool, got an ip, got in, but when I use the WMI tool and dig in Active Directory it is not Vulnerable. How else would you query and locate it?

    Edit: I have already used the MITM and completed the 3rd task but not the 2nd
  6. BlackSite

    PM inbound.
  7. VirminLord

    I'm in the same place as Vorpol. Starting to think there's a bug or something.
  8. c0re

    Same here, RIP
  9. c0re

    Thanks to Blacksite for pointing me in the right direction!
  10. Whemever

    Ok can someone point me in the right direction, I've managed to get all the way to having figured out what the password is, I just can't find anyway to log in to extract the data - hints would be greatly appreciated
  11. Whemever

    I sorted that, now trying to get the permanent VPN, foxacid doesnt seem to work on the spearfished system, so i don't know what to do - hint?
  12. cikulisu

    you need to probe the internal net for servers that aren't exposed to the outside and aren't indexed.

    there's a tool you can use you may not have used before, it's under information gathering AFAIK.
  13. Killkeny

    I´m also stuck in the first mission of Operation Minerva. I have run SET succesfully, and also figured out the third objective (the mitm). My questions are:
    1-) I have run the wmi, but the Active Directory isn´t vulnerable... i don´t know what to do. Any hint please?
    2-) I think i figured out some passwords for the financial staff, but i don´t know how to use it. I think i need to connect to, and i have the username and password. But how can i connect to that url??
    Thanks, and sorry my english...
  14. zaelong

    id refer you to the active directory module for part one, and the fileserver module for part two of your question
  15. Killkeny

    Hey @zaelong thanks bro! That was the trail i need!!

