TryHackMe | Python For Pentesters | Part 1 Walkthrough

Video Statistics and Information

Video
Captions Word Cloud
Reddit Comments
Captions
hey guys welcome to my Channel all right let's see today we're going to do python for pentesters it says Python's probably the most widely used and most convenient scripting language in cyber security this room covers a great examples of pom scripts including hash cracking key logging in neration and scanning all right guys uh hope you like the last video to Pyon B Basics we're going to go on Pyon pentesters I think I'm GNA do part one and two for this video all right let's see let's go right into it task one introduction uh as you know guys um I'm just going to show you how to answer these questions I strongly recommend reading through each task so you get full understanding what's the room about all right so Tas one answer a questions below what other tool can be used to convert Python scripts to Windows executables and it says hint external research may be required okay so that's Google okay let's see see forunate there are as I remember there's one right here answer is py2 exe or there's one right here too is need Google site this no [Music] see so it does say p and solar but see what to let me [Music] see so it did say Pi installer but that's not the answer to oh this is another our website so stack bees right here all right correct answer then start the machine complete it let's go task two subdomain enumeration and it says download task file right but uh I think in the beginning this wordless too so you can type locate wordless 2 there you go because we're T doing download it's it's the same file so anyways uh answer your questions below you can follow the example this is what other protocol could you be used for subdomain enumeration hint how this browser find IP address of any domain and subdomain what you can do is you can actually just Google it's uh if you Google it talks about techniques then there's these right here D DNS dumpster so it's a domain name right so then next question what function does python use to get the input from the command line never get to the argument with system unless it's this one so let see okay so it's talking about this strip right here and and you read it it's the system. RGV right in put see Suess subdome for Sub in subdome subd doomes yeah so taster directory enumeration and then another script um so we're going to follow this example right so make sure you download the word list or task before before proceeding with the following questions so how many directories can your script identify on the target system extensions are [Music] HD okay so let's um let's make a file Nano there [Music] all right so we're going to copy this clipboard okay so we're going to change we're going to save this first so on Save and we're going to use this directory copy and for to sub this see the screen text box like that so that's save and we're going to Python 3 [Music] set run over oh wait [Music] 10122 forgot the IP address so that's four there's four links and it's what is location of login page so let's go to Surfer open link so that's not login page let's go to private so it's private login is private HTML next question where do you find crypto cash let's uh go to Apollo and it's in paollo so po. htmls po. HTML next question what where are the usernames located and we go back is to Surfer HTML and then last question is what is the password assigned to Rabbit and is lousy rabble okay let's go task four Network scanner uh let's close all this out okay and answer questions below what module was used to create the ARP request packets your best bet for packet generation mulation python so this one talks about Scrappy right so you're using a tap box you need to install Scrappy first so scrap scy and then need to install we got to use that right so we need to called Python 3 scy then continue yes all right so the example is we got to use R scanpy so I'll copy that script in the clipboard all right it's done right so going to create a file Nano scan. P pce all right then we're going to change this to my IP address 101027 exit save right let's try ARP scan poliy Python 3 ARP scan [Music] see SC the can't open far let's see all [Music] right that's Weir a no h let's try this again I think I'm missing something here let's try well actually was answer which variable you need to change according to your local IP block Home on the Range so so it's IP range oh it's just example guys what variable will you change to run this code on the system with network interface name ens 33 so interface that's it guys you don't have to do anything all right let's go task five port scanner so TOS about Port scanner another script so it breaks down the script and let's [Music] see question ask questions what Pro go would most likely to be using TCP Port 22 so that's pretty easy that's SSH no secure shell host what margin do we import to be able to use sockets import socket what function is likely to fail you didn't import uh SS what function well will be see try if close exception be system standout flush how ports are open in the Target machine all right let's do this uh first Gall app install Python 3 fre foot then yes all right going to copy this right here and we create a file called for scan okay so scan. all right so clipboard clear pace let's [Music] see the only thing you need change is the [Music] IP so 10 10 was it 222 27 I think that's it see all right let's uh python three port [Music] scan so looks like the example and says the question how many ports are open on the T machine so it's running right now as you know guys U I'm not the IT industry but I pass uh desertification C A+ security plus cysa plus nwork plus pentest plus uh just for fun actually so I hope you like the videos um the ones I tell you how I pass these and yeah all ports are open Target machine there's three and the highest what is the highest port number open on target machine 2100 all right guys I'm going to end it here a part one you like this video give a thumbs up hit the Subscribe button and notification button comment below uh let me know how to improve these videos and uh thanks for watching
Info
Channel: PLei
Views: 919
Rating: undefined out of 5
Keywords: Python, TryHackMe
Id: LyljPmgRluE
Channel Id: undefined
Length: 17min 8sec (1028 seconds)
Published: Wed Nov 15 2023
Related Videos
Note
Please note that this website is currently a work in progress! Lots of interesting data and statistics to come.