Thread: Bypassing a Cisco IOS firewall
-
12-13-2010, 06:45 PM #21Garage Addict

- Join Date
- Sep 2010
- Location
- Lucknow,India
- Posts
- 350
- Blog Entries
- 2
- Thanks
- 147
- Thanked 119 Times in 67 Posts
bro i just love the way you document ....listing all the ideas and plans .. countering one with other .. this helps so much !!
Keep rocking !!Tetris taught me that errors pile up, and accomplishments disappear fast
-
01-24-2011, 11:53 AM #22Garage Newcomer
- Join Date
- Dec 2010
- Posts
- 2
- Thanks
- 0
- Thanked 0 Times in 0 Posts
There is a bit of confusion in your story....
when you say you have dumped the password hashes using fgdump and cracked it. My question to you is very simple. How did you dump the hashes with fgdump because, fgdump asks you the administrative priviledged account password for dumping the hashes.
So, if you already know the administrator password, why did you crack it?
how did fgdump work without providing the password???
-
01-24-2011, 03:13 PM #23Security Researcher

- Join Date
- Jul 2010
- Location
- India
- Posts
- 535
- Blog Entries
- 15
- Thanks
- 268
- Thanked 135 Times in 65 Posts
If you check the second line of my post I have mentioned
NT-Authority System privileges is system account which hold more power than Admin accounts, if we could run codes in context of an installed admin service this is possiblea webshell, "a non interactive .php shell" on a webserver the shell was having NT-Authority System privileges.
here php helped in attaining system acess.
Nice thought though.Hacking Is a Matter of Time Knowledge and Patience
-
01-25-2011, 08:17 PM #24Garage Newcomer
- Join Date
- Dec 2010
- Posts
- 2
- Thanks
- 0
- Thanked 0 Times in 0 Posts
-
01-27-2011, 10:28 PM #25InfoSec Consultant
- Join Date
- Jul 2010
- Location
- the blue no-where
- Posts
- 140
- Blog Entries
- 1
- Thanks
- 35
- Thanked 30 Times in 11 Posts
Like master like follower........ its just FB1 version of B0nd's - Boot to Remote Root. I am not comparing anything here... but what I all see is you both share the same passion when it comes to hacking...
awesome...... and i was one of those luckiest person who were there not to read but to listen this idea... watch this idea live....... I felt so enlightened and inspired that i can not explain in words.....i wont say awesome share . or keep it up or anything... all i have for these guys is a big FAT THANK YOU....ACCESS is GOD
-
06-27-2011, 01:06 AM #26Garage Newcomer
- Join Date
- Jun 2011
- Posts
- 1
- Thanks
- 0
- Thanked 0 Times in 0 Posts
Thanks for sharing dude its worth appreciating



LinkBack URL
About LinkBacks



Reply With Quote

Research Resources for MS...
Today, 12:25 PM in Web Application Penetration Testing