Coming soon - Get a detailed view of why an account is flagged as spam!
view details

This post has been de-listed (Author was flagged for spam)

It is no longer included in search results and normal feeds (front page, hot posts, subreddit posts, etc). It remains visible only via the author's post history.

4
Resources for web app attacks in AD boxes?
Post Body

Hello,

I took the exam a few weeks ago and couldn’t get past the AD box’s web app (hence I failed) so now I’m going back to the labs to try to get the bonus 10 points get more practice. So now I’m stuck at the lab exercises for AD that also has a web app vulnerability that needs to be exploited and I truly have run out of ideas on what to do? (I suspect I need to get a web shell somehow but I don’t know how)

I feel like I’ve been throwing everything & the kitchen sink at these web apps but can’t get anything. I’m pretty weak at web app attacks and I’ve been watching Ippsec’s videos on Youtube but he makes XSS etc look so easy but I can’t seem to do it myself…

I somehow made it past the Web App Attacks (Chapter 9) but when the web app is attached to AD boxes I just… can’t?!

Any advice?

Thanks!

Author
Account Strength
0%
Account Age
5 years
Verified Email
Yes
Verified Flair
No
Total Karma
12,180
Link Karma
5,331
Comment Karma
5,216
Profile updated: 8 months ago
Posts updated: 11 months ago

Subreddit

Post Details

We try to extract some basic information from the post title. This is not always successful or accurate, please use your best judgement and compare these values to the post title and body for confirmation.
Posted
2 years ago