环境搭建
该系列文章参考 : https://www.youtube.com/watch?v=bWM0BCQ5q1o&list=PL9WW-prbqvGzHsGK_OqTyYWbCZjucpInV&index=1
- 物理机 kali linux
- 虚拟机 VMware-Workstation-Full-14.1.1-7528167.x86_64.bundle (官网镜像,KEY : VF19H-8YY5L-48DQY-JEWNG-YPKF6 )
- 虚拟机靶机 Kioptrix2014
虚拟机打开报错:kernel headers 4.18.0-kali2-amd64 not found
执行:
apt-cache search linux-image
看到:
linux-headers-4.19.0-kali5-amd64 - Header files for Linux 4.19.0-kali5-amd64
linux-headers-4.19.0-kali5-cloud-amd64 - Header files for Linux 4.19.0-kali5-cloud-amd64
linux-headers-4.19.0-kali5-rt-amd64 - Header files for Linux 4.19.0-kali5-rt-amd64
linux-image-4.19.0-kali5-amd64 - Linux 4.19 for 64-bit PCs
linux-image-4.19.0-kali5-amd64-dbg - Debug symbols for linux-image-4.19.0-kali5-amd64
...
执行:
apt-get install linux-headers-4.19.0-kali5-amd64 linux-image-4.19.0-kali5-amd64 -y
reboot
虽然可以启动但是网络始终没有桥接上,后来了解到virtualbox也可以打开 .vmdk文件(vmware打开的是 .vmx)
步骤:
-
用virtualbox创建虚拟机,linux 64位,不带启动镜像
-
选择虚拟机文件,删除自带的空的文件
-
启动
这是个bug,下载页面有个fix版的包(不知道怎么用),直接输入
ufs:/dev/ada0p2
了解靶机
- 不要google用户名和密码(我找了半天,晕...主要是之前用vmware网卡起不来,想进去设置看看)
不过无意中发现还是可以进入系统的(卖个关子),但是没办法修改密码 - 执行
nmap -T4 -O -F 192.168.1.0/24
Nmap scan report for 192.168.1.159
Host is up (0.00045s latency).
Not shown: 97 filtered ports
PORT STATE SERVICE
22/tcp closed ssh
80/tcp open http
8080/tcp open http-proxy
MAC Address: 08:00:27:1C:6A:D1 (Oracle VirtualBox virtual NIC)
找到靶机的IP,开放的端口
-
访问:
-
审查元素:
- 换8080端口试试:
其他
之前没有注意下载页面有这段话:
Also, before powering on the VM I suggest you remove the network card and re-add it. For some oddball reason it doesn't get its IP (well I do kinda know why but don't want to give any details away). So just add the VM to your virtualization software, remove and then add a network card. Set it to bridge mode and you should be good to go.
...
大概是说需要删除虚拟机的网卡,重新添加
搞了两遍之后确实可以了