More
See all Show me
Demo for Attacking Layer 8: Client-Side Penetration Testing

CA eTrust PestPatrol ActiveX Stack Overflow Metasploit Fileformat Demo.

1st try we try an the eTrust ActiveX exploit against a host that doesn't have the control installed and we see that all we do is crash the browser :-(

2nd try we use the cab install version of the exploit to actually serve up the control to the victim, once they enable the ActiveX control, it is downloaded and installed, and we exploit the victim and get our userland shell
This conversation is missing your voice. Take five seconds to join Vimeo or log in.

Advertisement

1 Related collections

Statistics

  •  
    plays
    likes
    comments
  • Total
    plays 120
    likes 0
    comments 0
  • Dec 27th
    plays 0
    likes 0
    comments 0
  • Dec 26th
    plays 0
    likes 0
    comments 0
  • Dec 25th
    plays 0
    likes 0
    comments 0
  • Dec 24th
    plays 0
    likes 0
    comments 0
  • Dec 23rd
    plays 0
    likes 0
    comments 0
  • Dec 22nd
    plays 0
    likes 0
    comments 0
  • Dec 21st
    plays 0
    likes 0
    comments 0
  • Dec 20th
    plays 0
    likes 0
    comments 0
Previous Week

Downloads

Please join Vimeo or log in to download the original file. It only takes a few seconds.