• XSS.stack #1 – первый литературный журнал от юзеров форума

SELLING] ACCESS TO A BIG BRAZILIAN SUPERMARKET NETWORK (DOMAIN ADMIN)

В этой теме можно использовать автоматический гарант!

Статус
Закрыто для дальнейших ответов.

shr

floppy-диск
Пользователь
Регистрация
01.01.2023
Сообщения
7
Реакции
3
Цена
12k$ - 15k$ negotiable
Контакты
qtox: C308A65FDF6324610791D5A192747C3ED5FAEB71F01BA8423444409D5E9A597C1F5AFDBD5525
Initial: VPN credentials or DNS/TCP stager connection inside.
Privileges: Domain admin (+3 already dumped hashes (you can just PtH)), Access to the whole AWS infrastructure, credential to several databases / SSH private keys.
Accounts: All domain users (hashes dumped from DC)
Revenue: 10kk+
Country: South America
Industry: Food / Essential Services
AV: Kaspersky (we have the AV credentials, so you can just stop it)

Contact:
Tox: C308A65FDF6324610791D5A192747C3ED5FAEB71F01BA8423444409D5E9A597C1F5AFDBD5525

Price: 15000$ or negotiable:

1707320998487.png

Proof: Output from BloodHound.

1707320890334.png

Proof: Enumerating AWS with Pacu.

They have +35 selling points (supermarkets) / multiple business partners (third part) envs and access to VPN's.

1707320409525.png

Proof: Access to VPN inside one of the business partner network.


NOTE: This access is not for amateurs, if you don't knowledge and notion on what to do inside and how, accessing via command line and etc, don't even bother sending messages.
As a complex and mature network we had to pivot using different techniques and faced new scenarios, which required different stuff.

1707319406688.png


One of the associated bank accounts.

1707319531591.png


1707319648226.png


Outcomes:

1707319803163.png
1707319736961.png
 
Статус
Закрыто для дальнейших ответов.
Верх