A guided tour to someone else's network
Step 4: What to Do Once You're In
So you've successfully compromised a host, executed a local attack, and gained root access. Now what? For most attackers, the answer is simple: Install a rootkit [20] to maintain access and then keep going. With access to internal systems (such as file servers), an attacker can create links to shared files, which on Windows, for example, will be executed with "Intranet" if it is within the same network, thus bypassing many of the security protections.
Even if the attacker only has access to a limited web server within your domain, the assailant will be able to attack the network infrastructure (such as routers and switches) directly and spoof email more easily. Alternatively, an attacker might simply use your systems as part of a botnet to attack other hosts and networks, send spam, and harvest personal information. The possibilities are endless.
Infos
- "Ten Things Everyone Should Know About Lockpicking & Physical Security" by Deviant Ollam: http://www.blackhat.com/presentations/bh-europe-08/Deviant_Ollam/Whitepaper/bh-eu-08-deviant_ollam-WP.pdf
- "Blogs Falling in an Empty Forest": http://www.nytimes.com/2009/06/07/fashion/07blogs.html
- DojoSec: http://www.dojosec.com/
- DojoSec monthly briefings, April 2009, Joseph McCray: http://vimeo.com/4109188
- "Sysadmin: Nmap Scripting" by Eric Amberg, Linux Magazine, February 2008, pg. 68
- "Sysadmin: Nmap Methods" by Christian Ney, Linux Magazine, January 2006, pg. 62
- Nessus: http://nessus.org/nessus/
- "Metasploit: How Hacking Got Easy" by Kurt Seifried, Linux Magazine, November 2008, pg. 62
- Common Vulnerabilities and Exposures: http://cve.mitre.org/cve/
- Open Source Vulnerability Database: http://osvdb.org/
- Milw0rm: http://www.milw0rm.com/
- PacketStorm Security: http://packetstormsecurity.com/exploits100.html
- Top 10 web vulnerability scanners: http://sectools.org/web-scanners.html
- SQL Injection Cheat Sheet: http://ferruh.mavituna.com/sql-injection-cheatsheet-oku/
- SQLMap: http://sqlmap.sourceforge.net/
- "Attack of the CSRF" by Kurt Seifried, Linux Magazine, Febraury 2009, pg. 66
- Http parameter pollution: http://www.owasp.org/images/b/ba/AppsecEU09_CarettoniDiPaola_v0.8.pdf
- Disabling JavaScript in Adobe Reader: http://blogs.adobe.com/psirt/2009/04/update_on_adobe_reader_issue.html
- Didier Stevens' blog: "PDF Tools" http://blog.didierstevens.com/programs/pdf-tools/
- "Fourth-Generation Rootkits" by Kurt Seifried, Linux Magazine, December 2008, pg. 64
Buy this article as PDF
(incl. VAT)
Buy Linux Magazine
Subscribe to our Linux Newsletters
Find Linux and Open Source Jobs
Subscribe to our ADMIN Newsletters
Find SysAdmin Jobs
News
-
Kubuntu Focus Announces XE Gen 2 Linux Laptop
Another Kubuntu-based laptop has arrived to be your next ultra-portable powerhouse with a Linux heart.
-
MNT Seeks Financial Backing for New Seven-Inch Linux Laptop
MNT Pocket Reform is a tiny laptop that is modular, upgradable, recyclable, reusable, and ships with Debian Linux.
-
Ubuntu Flatpak Remix Adds Flatpak Support Preinstalled
If you're looking for a version of Ubuntu that includes Flatpak support out of the box, there's one clear option.
-
Gnome 44 Release Candidate Now Available
The Gnome 44 release candidate has officially arrived and adds a few changes into the mix.
-
Flathub Vying to Become the Standard Linux App Store
If the Flathub team has any say in the matter, their product will become the default tool for installing Linux apps in 2023.
-
Debian 12 to Ship with KDE Plasma 5.27
The Debian development team has shifted to the latest version of KDE for their testing branch.
-
Planet Computers Launches ARM-based Linux Desktop PCs
The firm that originally released a line of mobile keyboards has taken a different direction and has developed a new line of out-of-the-box mini Linux desktop computers.
-
Ubuntu No Longer Shipping with Flatpak
In a move that probably won’t come as a shock to many, Ubuntu and all of its official spins will no longer ship with Flatpak installed.
-
openSUSE Leap 15.5 Beta Now Available
The final version of the Leap 15 series of openSUSE is available for beta testing and offers only new software versions.
-
Linux Kernel 6.2 Released with New Hardware Support
Find out what's new in the most recent release from Linus Torvalds and the Linux kernel team.