Exploitation
Last updated
Last updated
I was unable to find the system, the sam, and security files to do a hashdump of them. Regardless I realized that the machine wasnt running SMB so this would have been futile. Moreover I realized that just like Linux, ssh idrsa.pub keys are stored in the folder of the Users/.ssh/id_rsa.pub.
This is something I will keep in mind if i ever encounter LFI on Windows.
I deduced that the name was "Viewer" because of the panel here.
I got the id_rsa and changed the permissions to 400. Just SShed into it.
Request: