Shadow Phishing Walkthrough

Challenge Statement#

image

Solution#

This one is similar to the Ghost Phishing Challenge, but this time we have to attach a Windows Executable.

image

We can use msfvenom to generate the executable file.

image

Now, we have to set up the Metasploit Reverse TCP listener.

image

Now, we can send the email and within a few minutes we should be able to get a Meterpreter shell into the machine.
We can then traverse the system and locate the flag.

image


Adapted from harishkannan05/THM-HackfinityBattle-Writeup under MIT.

Find us elsewhere

Merch, stickers, and moreSupport the work at the Solvere Labs shop