🏨Living off The Land
There are currently two websites that aggregate information on Living off the Land binaries:
LOLBAS
We need to listen on a port on our attack host for incoming traffic using Netcat and then execute certreq.exe to upload a file.
Upload win.ini to our Attackbox
And in our netcat session ->
If we have an error, the version we are using may not contain the -Post
parameter. We can download an updated version here and try again.
GTFOBins
We need to create a certificate in our pwnbox and start a server in our Pwnbox.
Cert ->
Server up ->
Now we need to download the file from the target machine ->
Last updated