Alert icon
We're changing our privacy policy. This stuff matters.  Learn more  Dismiss

Owning with Nessus and Metasploit

Loading...

Sign in or sign up now!
45,114
Loading...
Alert icon
Sign in or sign up now!
Alert icon

Uploaded by on Mar 30, 2009

http://nulbyte.blogspot.com presents, "Owning with Nessus and Metasploit." I'm going to show you how to use Nessus to scan a target and then import the .nbe file into Metasploit's db_autopwn. I use Backtrack 4 Beta as my attacking O.S. and Windows XP SP2 as my victim O.S. I end the video with a Meterpreter session, but you could easily upload Netcat and open a backdoor to get access again. If you really like Meterpreter, like I do, you can check out my other video where I tell you how to make it into an executable file and use it as a backdoor (I use it in conjunction with Netcat).

If you like my videos, you can check out my blog or you can email me at nulbytesecurity [-@-] gmail.com. More HD hacking videos coming soon!

Legal: Please only do this on your local network for educational purposes and I'm not responsible for anything you do with this knowledge.

  • likes, 5 dislikes

Link to this comment:

Share to:

Uploader Comments (nulbytesecurity)

  • Join our site(forum) we focus on teaching people hacking,finding vulnderabilties in sites,software cracking etc.

    COME JOIN US!!!!

    and we are also a great hacker community!!!

    kforum.co.nu

  • @SQLx1nj3ct10n great hacker community? Not even close. There is absolutely no intellectual discussion going on at all. More like script kiddies learning how to deface.

  • I like how you implemented nessus and meterpreter/metasploit. I've always just scanned with nessus and tried to exploit with metasploits web feature. I'll be trying to learn meterpreter a lot more now because it seems like a better way to run exploits seeing how you have way more options. Good vid, I'll stay posted.

  • @dellthinker Yea, Meterpreter is really the best way to go with windows. It has a plethora of built-in features. (Spawn shells, transfer files, etc). About the metasploit web feature, I've never really cared for it. I just couldn't get it to work the way I wanted it to for some reason. Good luck.

  • [-] Handler failed to bind to ****

    [*] Started reverse handler ***

    [*] Connecting to the server...

    [-] Exploit failed: The connection timed out (********).

    [*] Exploit completed, but no session was created.

    msf exploit(psexec) >

    any ideas?please send me a priv message

  • @psydelia psexec is more of a feature than an exploit. It was put there on purpose to allow remote users to start a program.  The problem you have is probably because that feature is turned off. You can either enable the feature (google it) or you can try a different exploit. Try using ms08-067_netapi on an unpatched XP SP2 box.

see all

All Comments (86)

Sign In or Sign Up now to post a comment!
  • @dellthinker I now this is a one year old comment I am replying to! meterpreter surely is useful to know, but now when BackTrack 5 is released you get Armitage to your metasploit! Which is a GUI for metasploit. It helps you out a lot!

    Go check armitage out at there page fastandeasyhacking (.) com

    Hak5 made a video on it too! Worth to check out..

  • Excellent video! Nice work man.

  • nice work man wonder what exploit can be used on a windows vista SV2 ?

    thanks 

  • Lol thank you for the command. I knew it was Apt-get install I just couldn't figure out which "Nessus" it was. =)

  • sh: msfconsole: command not found <<< help!!! plz!!

  • when i run the ./msfconsole command it says bash: ./msfconsole no such file or directory

  • everytime i wanna create a database it says i need to install shit help

  • great how to to import nessus data into metasploit.

View all Comments »
Loading...

0 / 00Unsaved Playlist Return to active list
    1. Your queue is empty. Add videos to your queue using this button:
      or sign in to load a different list.
    Loading...Loading...Saving...
    • Clear all videos from this list
    • Learn more