Challenge - Exfiltrating Data

Exfiltrating data - The purpose of this lab is to pull the data for the bank accounts from the mainframe server. An implant was set up to call out to the attacking machine on port 4321 every 15 minutes.  It will allow direct access to the admin network.

Overview

Level – Advanced

Skills Needed –   3270 terminal, taking screenshots

Goal – To exfiltrate the bank account data from the mainframe.

Known Network(s) – 192.168.1.0/24, 10.10.10.8/29, 10.10.30.16/28, 10.10.50.16/28, 10.10.70.16/28, 10.10.40.8/29, 10.10.80.16/28

Tools used – Metasploit, proxychains, meterpreter, powershell, nmap, x3270