room ~ Guided Pentest: Infrastructure

Guided Pentest: Infrastructure

Metasploit, CVE research, privilege escalation, and pentest reporting

1/6
lessons

Pentest Methodology — 5 Steps

The Framework

1. Enumeration → 2. Vulnerability Analysis → 3. Initial Access → 4. Privilege Escalation → 5. Reporting

Step by Step

#PhaseQuestionTools
1EnumerationWhat's there?nmap, gobuster, dig
2Vulnerability AnalysisWhat's weak?searchsploit, CVE databases
3Initial AccessHow to get in?Metasploit, manual exploits
4Privilege EscalationHow to get root?LinPEAS, WinPEAS, manual
5ReportingWhat did we find?Documentation, evidence

Mindset

  • Not just "run tools" — think like an attacker
  • Programmer: "where could code fail?"
  • Sysadmin: "where's the misconfiguration?"
  • Attacker: "what was missed?"

Infrastructure vs Web Pentest

AspectWebInfrastructure
TargetWeb apps, APIsServers, network devices
EntryBrowser-based vulnsNetwork services (SSH, SMB, IRC)
ToolsBurp Suite, browserNmap, Metasploit, SSH
Priv EscAdmin panel accessRoot/SYSTEM access
Common vulnsIDOR, XSS, SQLiOutdated software, misconfig

Prerequisites

  • Nmap scanning skills
  • Basic Linux commands
  • Understanding of services (SSH, FTP, IRC, SMB)
  • Metasploit basics