General
After beeing root, do the following to gain additional information.
- Copy / break /etc/shadow or SAM
- Investigate all /home directories and /root
-
ls -lahR /home/
- Are there SSH keys?
-
- Investigate all databases and get / break their users and passwords
- Check cronjobs/-tabs
- Enumerate programs
- and determine where credentials could be.
- Enumerate the user’s mail
- Enumerate WWW directories
- Get all hashes
Enumerate network connections
See the Sniffing network traffic post.
Windows
- Try post/windows/gather/enum_ie
Leave a Reply
You must be logged in to post a comment.