Real-time collaboration for Jupyter Notebooks, Linux Terminals, LaTeX, VS Code, R IDE, and more,
all in one place.
Real-time collaboration for Jupyter Notebooks, Linux Terminals, LaTeX, VS Code, R IDE, and more,
all in one place.
Path: blob/master/documentation/modules/post/windows/gather/credentials/moba_xterm.md
Views: 11791
Vulnerable Application
Any Windows host with a meterpreter
session and MobaXterm v20.6+ installed. The following passwords will be searched for and recovered:
Installation Steps
Download the latest installer of MobaXterm.
Select default installation
Open the software and click "Setting" in the toolbar,
General > MobaXterm password management > Master Password setting
complete password setting, add the test account password to the certificate.
Verification Steps
Get a
meterpreter
session on a Windows host.Do:
run post/windows/gather/credentials/moba_xterm
If the system has registry keys for MobaXterm passwords they will be printed out.
Options
MASTER_PASSWORD
If you know the password, you can skip decrypting the master password. If not, it will be decrypted automatically
CONFIG_PATH
Specifies the config file path for MobaXterm