Talks
Events

A Poor Man's Pentest: Automating the Manual

John Hammond at BSides Delaware 2019

So you have popped a shell, and now you have to deal with the same tedious boilerplate and manual interaction on your target that you always do. You run the same commands to stabilize your shell, you setup the same persistence implants as usual, and you exfiltrate the same sensitive files every single time you get on a new box. It is the same stupid, time-consuming, and annoying keyboard dance. This presentation will walk you through techniques to automate that boring and constant process, so you can spend more time doing what is really important in your engagement. The tricks presented are nothing new - just a poor man's means to automate what is manual, and get back to the engagement.