z3tssu
  • README
  • Cybersecurity Certifications & Notes
    • Cybersecurity Knowledge Base
      • IPPSEC's Video Search for Hacking Methods
      • Finding Someone's Location with Seeker
      • Nishang Project
      • Hacktricks
    • ๐Ÿ“œCertifications & Courses
      • ๐ŸŸขHackthebox - CPTS
        • Getting Started
          • General
          • Tmux
          • Vim
          • Service Scanning
        • Penetration Testing Process
        • Network Enumeration with Nmap
          • Host Discovery
          • Host and Port Scanning
          • Saving the Nmap Scanning Results
          • Service Enumeration
          • Nmap Scripting Engine
            • Update the Scripting Engine
            • Nmap Script Locations
          • Performance Tags
          • Firewall and IDS/IPS Evasion
        • ๐Ÿ‘ฃFootprinting
          • ๐Ÿ”ŽHost-Based Service Enumeration
            • FTP [21]
              • Basics
                • vsFTPd Detailed Output
                • Hiding IDs - YES
              • Footprinting FTP
                • Nmap FTP Script Scanning
                • Service Interaction
              • FTP Commands
            • SMB [139/445]
              • Basics
                • Default Configuration
                • Create and Manage Samba Share
                • smbstatus
              • Footprinting SMB
                • SMB Nmap Scan
                • Smbclient
                • RPCclient
                  • Useful Commands
                  • Basic Enumeration
                  • Enumerate Users
                  • Group Information
                  • Bruteforcing User RIDs
                • smbmap
                • CrackMapExec
                • Enum4Linux-ng
            • NFS [111,2049]
              • Basics
                • Default Configuration of NFS
                • Creating an NFS Entry
                • Dangerous Settings
              • Footprinting NFS
                • nmap
                  • Basic Scan
                  • NFS Script Scan
                • Mount an NFS Share
                • Unmount NFS
            • DNS [53]
              • Basics
                • DNS Records
                • Default Configuration
                • Dangerous Settings
              • Footprinting DNS
                • DIG - NS QUERY
                • DIG - Version Query
                • DIG - Any Query
                • DIG - AXFR Zone Transfer
                • DIG - AXFR Zone Transfer - Internal
                • Subdomain Bruteforcing (For Loop with Seclists)
                • Subdomain Bruteforce (DNSenum)
            • SMTP (25,587)
              • Telnet SMTP
                • Telnet - HELO/EHLO
                • Telnet - VRFY
                • Telnet - Send an Email
              • Nmap Telnet
              • FTP User Enumeration
            • IMAP/POP3 [110,995,143,993]
              • Default Configuration
            • SNMP[161]
            • MySQL [3306]
            • MSSQL [1433]
            • Oracle TNS [1521]
            • IPMI [623]
            • SSH [22]
            • Rsync [873]
            • R-Services [512, 513, 514]
            • RDP [3389]
            • WinRM [5985, 5986]
            • WMI [135]
          • Introduction
            • Enumeration Principles
            • Enumeration Methodology
          • Infrastructure Enumeration
            • Domain Information
            • Cloud Resource
            • Staff
        • ๐Ÿ•ธ๏ธWeb Information Gathering
          • ๐Ÿคทโ€โ™‚๏ธWHOIS
          • ๐ŸงฌDNS
            • ๐ŸงฌDIG
          • ๐Ÿ“šSubdomain Enumeration
            • DNS Zone Transfer
            • Sub Domain Bruteforcing
            • Virtual Hosts
              • Gobuster vhosts brutefoce
              • Add Vhosts to /etc/hosts
            • Certificate Transparency Logs
          • ๐Ÿ–๏ธFingerprinting
            • Banner Grabbing
            • Web Application Firewall (Wafw00f)
            • Nikto
          • Crawling
            • robots.txt
            • .Well-Known URIs
            • Popular Web-Crawlers
              • Scrapy (ReconSpider)
              • Apache Nutch (Scalable Crawler)
              • Burp Suite Spider
              • OWASP ZAP (ZED Attack Proxy)
          • ๐Ÿ”ฅAutomating Recon
            • FinalRecon
          • ๐Ÿ”Search Engine Discovery
            • ๐Ÿ”Google Dorking
            • ๐Ÿ”Search Operators
          • Web Archives
          • Questions
            • Question 4
            • Question 5
        • Vulnerability Assessment
          • Vulnerability Scanning Tools
            • Nessus
              • Installing and Starting Nessus
              • Nessus Scan Types
              • Nessus Polices
                • Creating a Nessus Policy
              • Nessus Plugins
                • Creating a Plugin Rule
              • Credentialed Scanning
                • HTB Credentials for Nessus
              • Exporting Nessus Scans
              • Scanning Issues
            • OpenVAS
              • Installing OpenVAS
              • OpenVAS Scan
              • Exporting Scans
            • Nexpose
            • Qualys
          • Security Assessments
          • Vulnerability Assessment
          • Assessment Standards
          • Common Vulnerability Scoring System (CVSS)
          • Common Vulnerabilities and Exposures (CVE)
            • Open Vulnerability Assessment Language (OVAL)
          • Reporting
        • ๐Ÿ“‚File Transfers
          • File Transfer Methods
            • Windows File Transfer Methods
              • โฌ‡๏ธDownload Operations
                • ๐ŸชŸ PowerShell Base64 Encode & Decode
                • ๐ŸŒ PowerShell Web Downloads -
                • ๐Ÿ“ฆ SMB Downloads
                • ๐ŸŒ FTP Downloads
              • โ†—๏ธUpload Operations
                • ๐Ÿ” Encode File Using PowerShell
                • ๐ŸŒ PowerShell Web Uploads
                • ๐Ÿงฌ PowerShell Base64 Web Upload
                • ๐ŸŒ SMB Uploads with WebDAV Twist
                • ๐Ÿ“ก FTP Uploads
            • Linux File Transfer Methods
              • Download Operations
                • ๐Ÿ“ฆ Base64 Encoding / Decoding for File Transfers
                • ๐ŸŒ Web Downloads with Wget and cURL
                • ๐Ÿ’ฃ Fileless Attacks in Linux โ€“ Execute Directly
                • ๐Ÿš Download with Bash using /dev/tcp
                • ๐Ÿ” SSH Downloads with scp
                  • More Usage on SCP
              • Upload Operations
                • ๐ŸŒ Web Upload with HTTPS ๐Ÿš€
                • ๐Ÿ› ๏ธ Quick Web File Transfer Method
                • ๐Ÿ”„ SCP Upload
            • Transferring Files with Code
              • Downloading Files
              • Uploading Files
            • Transfer Files with Netcat, Ncat, RDP
            • Powershell Session File Transfer
            • RDP File Transfer
            • Protected File Transfers
            • Sending Files over HTTP/S
            • Upload and Download with Built in OS Tools
          • Detect or Be Detected
            • Detection
            • Evade Detection
        • ๐ŸšShells & Payloads
          • The Shell Basics
            • Bind Shell
            • Reverse Shell
          • Creating Payloads
            • Introduction to Payloads
            • Metasploit Payloads
            • Crafting Payloads with MSFvenom
          • Infiltrating Windows
            • ๐Ÿ› ๏ธ MS17-010 EternalBlue
          • Infiltrating Unix/Linux
            • ๐Ÿ Spawning a TTY Shell with Python
            • Spawing Interactive Shells
          • Web Shells
            • ๐Ÿงช Laudanum โ€“ "One Web Shell to Rule Them All"
            • ๐Ÿง  Antak Webshell + ASPX Concepts
            • ๐Ÿ˜ PHP Web Shells
            • Shells & Payloads - The Live Engagement
          • Detection and Prevention
        • ๐Ÿ‘พMetasploit
          • Introduction
            • ๐Ÿงฐ Introduction to Metasploit Framework (MSF)
            • MSF Engagement Structure
          • MSF Components
            • ๐Ÿงฐ Modules
            • ๐ŸŽฏ Targets
            • ๐Ÿง  Payloads
            • ๐Ÿ”ง Encoders?
            • ๐Ÿ—„๏ธ Database
            • ๐Ÿ”Œ Plugins
          • MSF Sessions
            • ๐Ÿ” Sessions
            • ๐Ÿ› ๏ธ Meterpreter
          • Additional Features
            • ๐Ÿ› ๏ธ Installing & Importing Custom Metasploit Modules
            • ๐Ÿง  Porting Scripts into Metasploit Modules
            • ๐Ÿ’ฅ Introduction to MSFVenom
            • ๐Ÿ›ก๏ธ Firewall and IDS/IPS Evasion
        • โš”๏ธPassword Attacks
          • Where Credentials are Stored?
          • John The Ripper
          • Remote Password Attacks
            • ๐Ÿ–ฅ๏ธ Network Services
              • WinRM [5985, 5986]
              • SSH [22]
              • RDP [3389]
              • SMB [139,445]
              • Questions
            • ๐Ÿ” Password Mutations & Wordlist Generation
            • ๐Ÿ” Password Reuse & Default Passwords
          • Windows Local Password Attacks
            • Attacking SAM (Security Account Manager)
            • Attacking LSASS
      • TCM Security - PNPT
      • Cisco Ethical Hacker
      • Introduction to Hacking Methodology
    • Pentesting Services
    • Pentesting Web
      • CBBH
      • TCM Security - Practical Web Hacking
    • Pentesting Wi-Fi
      • OSWP
      • Wireless Penetration Test (WPA2)
    • Pentesting Cloud
    • Network Defense
      • Blue Team Level 1
    • ๐ŸScripting with Python
    • โ˜ข๏ธActive Directory Penetration Testing
      • Initial Attack Vectors
      • Post Compromise Enumeration
    • Cybersecurity Job Skills
      • Information Security Officer Guide
    • ๐Ÿ”IP Address Investigation
      • WHOIS
      • Reverse DNS
      • Geolocation of the IP
      • Check If IP is Active and has Services Running
      • Check the IP Reputation
      • Check Passive DNS History
      • Confirm the Actual Server Location
    • Cybersecurity Projects
      • Wireless Penetration Test (WPA2)
      • AWS Honeypot
      • SOC Analyst Home Lab
      • Threat Management with Wazuh SIEM
    • Cybersecurity Books
    • ๐Ÿ”„SOC
  • IT Certifications & Notes
    • Certifications
      • MS-900 Microsoft 365 Fundamentals
        • Describe Microsoft security and compliance capabilities
          • Describe the functions and identity types of Microsoft Entra ID
          • Describe access management capabilities of Microsoft Entra
            • Introduction
            • Describe Conditional Access
            • Describe Global Secure Access in Microsoft Entra
            • Describe Microsoft Entra roles and role-based access control (RBAC)
      • CISSP
      • ITIL
        • ITIL 4 Foundations
      • CCNA
        • David Bombal - Udemy
        • CCNA Training - Jeremy's IT Lab
          • Resources
          • Cisco Packet Tracer Labs
            • Cisco Packet Tracer Overview
            • Packet Tracer Lab 1
      • MCSE Certification Options
      • AZ-900
    • IT Projects & Training
      • Windows Server 2016 - Active Directory Lab Build
      • Windows Server 2022 Fundamentals
        • Introduction to Server Manager
          • Installing and Configuring Server Manager
          • Creating a VM on Microsoft Azure for Server 2022
        • Introduction to Active Directory
          • Active Directory and Setting up
          • Active Directory Overview
          • Delegation Rights for Active Directory
          • Active Directory Administrative Center
          • Common cmd commands for IT Support
        • Group Policy Management
          • How to apply basic GPO
        • Introduction to Share Folders
          • Creating Share Folders on Server Manager
          • Share Folder Permissions for Users
          • Map a Network Drive (locally)
          • Map a Network Drive through Active Directory
        • Understanding Windows/Common AD Issues
          • Installing RSAT Tools
          • Joining a PC to the Domain
        • Real Life IT Support Issues
          • When a User Gets locked out their accounts
          • Change Password of a User
      • Office 365 For IT Support
        • Office 365 Overview
      • Microsoft Azure Training
        • Getting Started in the Azure Portal
        • Introduction to Microsoft Azure Services
        • Basic Usage of Azure Services
        • Azure Deploy Sql Database Overview
        • Azure AD Connect Overview
        • Azure Microsoft File Share/Map Drives
        • Deploy Windows 11 to Azure
        • Microsoft Azure Basic Fundamentals (Azure Active Directory)
        • Introduction to Vnet (Overview)
        • Microsoft Azure Network/Security
        • Microsoft Azure Tagging (Final Course)
      • Networking Projects with Cisco Packet Tracer
        • Build a Basic Network
        • Webserver Project
      • Setup and Router and Switch
    • IT Knowledge Base
  • CTF/Box WRITEUPS
    • Tryhackme
    • HTB
      • Footprinting Lab - Easy
      • Footprinting Lab - Medium
      • Footprinting Lab - Hard
      • Nessus Skills Assessment
      • OpenVAS Skills Assessment
      • Tier 0
      • Tier 1
  • Cryptocurrency/Blockchain
    • Cryptocurrency Investigation
    • Certifications
      • Certified Blockchain Security Professional
Powered by GitBook
On this page
  • โš™๏ธ Jobs
  • ๐Ÿš€ Running Exploits as Jobs
  1. Cybersecurity Certifications & Notes
  2. Certifications & Courses
  3. Hackthebox - CPTS
  4. Metasploit
  5. MSF Sessions

๐Ÿ” Sessions

๐ŸŽฏ Purpose:

  • Enable control of multiple modules simultaneously.

  • Allow switching, backgrounding, and managing active communication with targets.

  • Each session provides a dedicated control interface.


๐Ÿงช Creating/Backgrounding a Session

Once an exploit is successful:

  • Background it:

    • Keyboard: CTRL + Z

    • Or run:

      background

๐Ÿ“‹ List Active Sessions

sessions

Example:

Id  Name  Type                     Information                 Connection
--  ----  ----                     -----------                 ----------
1         meterpreter x86/windows  NT AUTHORITY\SYSTEM @ MS01  10.10.10.129:443 -> 10.10.10.205:50501

๐Ÿ–ฅ๏ธ Interact with a Session

sessions -i 1

Result:

[*] Starting interaction with 1...
meterpreter >

๐Ÿ“ฆ Post-Exploitation Modules

  • You can run a post-exploitation module against an active session by selecting a SESSION option inside the module.

  • Example categories:

    • post/windows/gather/

    • post/multi/recon/

    • post/multi/manage/


โš™๏ธ Jobs

๐Ÿ’ก What are Jobs?

  • Background tasks started with modules like exploit -j.

  • Useful for persistence, multi-tasking, or freeing up ports.


๐Ÿ“Œ View Running Jobs

jobs -l

Example:

Id  Name                    Payload                    Payload opts
--  ----                    -------                    ------------
0   Exploit: multi/handler  generic/shell_reverse_tcp  tcp://10.10.14.34:4444

โŒ Kill a Job

jobs -k 0

Or:

jobs -K  # Kill all

๐Ÿงฐ Jobs Help Menu

jobs -h

Useful options:

  • -l : List all jobs

  • -k : Kill by ID

  • -K : Kill all jobs

  • -i : Detailed job info


๐Ÿš€ Running Exploits as Jobs

exploit -j

Example output:

[*] Exploit running as background job 0.
[*] Exploit completed, but no session was created.
[*] Started reverse TCP handler on 10.10.14.34:4444

๐Ÿ“– Exploit Help Menu

exploit -h

Options:

  • -j: Run as job

  • -J: Force foreground run

  • -f: Force run

  • -e: Set encoder


Let me know when you're ready for the Meterpreter section or want flashcards/quiz from this! ๐Ÿง โšก

PreviousMSF SessionsNext๐Ÿ› ๏ธ Meterpreter

Last updated 1 month ago

๐Ÿ“œ
๐ŸŸข
๐Ÿ‘พ