Skip to Content
Mastering Python for Networking and Security
book

Mastering Python for Networking and Security

by José Manuel Ortega
September 2018
Intermediate to advanced
426 pages
10h 46m
English
Packt Publishing
Content preview from Mastering Python for Networking and Security

Exploiting the Tomcat service with Metasploit

In the Metasploitable virtual machine environment is installed an apache tomcat service, which is vulnerable to several attacks by remote attackers. A first attack can be the brute-force one, starting from a list of words, to try to capture the access credentials to the Tomcat Application Manager (the Tomcat Application Manager allows us to see and manage the applications installed in the server). If the execution of this module is successful, it will provide a valid username and password to access the server.

In the Metasploit Framework, there is an auxiliary module named tomcat_mgr_login, which provides the attacker, if its execution is successful, a username and password to access Tomcat Manager. ...

Become an O’Reilly member and get unlimited access to this title plus top books and audiobooks from O’Reilly and nearly 200 top publishers, thousands of courses curated by job role, 150+ live events each month,
and much more.
Start your free trial

You might also like

Mastering Python for Networking and Security - Second Edition

Mastering Python for Networking and Security - Second Edition

José Manuel Ortega
Python for Cybersecurity

Python for Cybersecurity

Howard E. Poston, III

Publisher Resources

ISBN: 9781788992510Supplemental Content