Criminal Intelligence
Wil Allsopp · 2017
Using non-compiled scripting languages can be a useful way to avoid more advanced malware detection platforms. One could use VBScript merely as a means to deliver and execute a PowerShell payload. This is a simple but powerful attack. It looks like a web page, yet can give his/her command execution without displaying warnings to the target and without triggering the antivirus software. When command execution has been obtained on a target workstation, the first goal is to escalate one's privileges to obtain the highest permissions possible locally. This allows one to obtain password hashes, modify the host's configuration, use raw sockets, and generally make network colonization smoother. In this chapter, the author divided the attention as follows: local exploit; flawed installation method; scheduled tasks; vulnerable services; dynamic link library (DLL) hijacking; and registry checks. Finally, he discusses the Raspberry Pi 3B device and its configuration and application in penetration testing activities.