Giter Site home page Giter Site logo

fckoo / havoc-ligolo Goto Github PK

View Code? Open in Web Editor NEW

This project forked from p4p1/havoc-ligolo

0.0 0.0 0.0 182 KB

A Havoc UI tool to pivot onto a machine using ligolo-ng

Home Page: https://p4p1.github.io/havoc-store/

License: GNU General Public License v3.0

Python 100.00%

havoc-ligolo's Introduction

havoc-ligolo

A Havoc UI tool to pivot onto a machine using ligolo-ng.

image

Dependencies

Make sure you have on your machine the following to use this tools:

  • kdesu or pkexec
  • go
  • tmux

Install

To install this script first make sure you have the apropriate dependencies installed you can then download it through the havoc extensions tab inside of Attack > Extentions:

image

Usage

To connect to ligolo on the agent you first need to setup. In this example I have my havoc client on 192.168.8.0/24 and a windows machine that I use for the victim on 10.0.2.0/24 The windows client is able to ping 10.0.2.2 but the havoc linux machine can't as shown bellow:

image image

Setup the client server

You first need to setup the server to listen on the correct ip address and port. In my example the windows machine does not have any firewall but if you need to listen on a protected port you can activate a "sudo" mode for the ligolo server inside of it's settings. To setup the server open the settings in Ligolo > Settings:

image

Adding ranges

From there we then click on save and need to add the cidr of the client by using the "Add IP range" pop-up inside of Ligolo > Add IP range:

image

Note that if the server is running adding ranges will automatically be added to the routes of the client's machine

Starting the server

We can then start the server by selecting Ligolo > Start server option which will prompt you multiple times for you sudo password to create the routes and the interfaces

image

After filling in your root password a few times for all of the commands you will then be prompted with the command to access your ligolo server through a tmux session:

image

From there you can manage your ligolo server. You have now setup the server correctly!

image

Connecting a clent

To connect a client after the server is setup you can now select a demon and run the following command:

ligolo-ng

That command will upload the agent.exe file inside of c:\windows\tasks and run it with the arguments to connect to your server:

image

You can now also view in the server the connection made and you can then interact with it and tunnel your traffic:

image

Now that I am connected in my example I can ping the machine:

image

havoc-ligolo's People

Contributors

p4p1 avatar

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    ๐Ÿ–– Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. ๐Ÿ“Š๐Ÿ“ˆ๐ŸŽ‰

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google โค๏ธ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.