Death of an ftp client / Birth of Metasploit modules

This is just a quick post mainly to advertise these new modules for Metasploit.

I quickly tried out the new metasploit client ftp fuzzer from the Corelan Team.

I ‘googled’ for free ftp clients and picked one at random, (can’t give out the name of the software – responsible disclosure).

Installed the client onto an XP sp3 fully patched VM, attached OllyDbg and setup the Metasploit module as described in the blog post, connected to the FTP server tried to download the test files and presto buffer overflow!!

Now just need to figure out the exploit for metasploit.

That should all being well be in a later post.

Check out the post from the Corelan Team and happy Fuzzing.

Death of an FTP Client/Birth of Metasploit Modules

Advertisements

One thought on “Death of an ftp client / Birth of Metasploit modules

Leave a Reply

Fill in your details below or click an icon to log in:

WordPress.com Logo

You are commenting using your WordPress.com account. Log Out / Change )

Twitter picture

You are commenting using your Twitter account. Log Out / Change )

Facebook photo

You are commenting using your Facebook account. Log Out / Change )

Google+ photo

You are commenting using your Google+ account. Log Out / Change )

Connecting to %s