At Blackploit they have published a very interesting tutorial video made by José Antonio Pérez (Japtron) where it teaches us how to obtain a session in Windows 7 and how to escalate privileges to reach the System user.
The video shows how, using SET (Social Engineer Toolkit), they duplicate a website so that the victim believes it is the original (Phishing). This is when a malicious Java Applet is executed and infects the victim.
Then from Metasploit you get the desired shell, but without administrator privileges, watch the video and learn how to escalate privileges
Blog of José Antonio Pérez (Japtron) http://exploitsandsecurity.blogspot.com/
Seen in: http://blackploit.blogspot.com/
Comments