Challenge - Locating the Crown Jewels

Locating the Crown Jewels - The goal of this lab is to locate this organizations 'Crown Jewels'. This is the accounting system that contains sensitive data. An implant was set up to call out to the attacking machine on port 4321 every 15 seconds.  It will allow direct access to the admin network.

Overview

Level – Advanced

Skills Needed – Networking, port scanning, leveraging privilege, 3270 terminal emulators.

Goal – To gain access to the mainframe and log in.

Known Network(s) – 192.168.1.0/24, 10.10.10.8/29, 10.10.30.16/28, 10.10.50.16/28, 10.10.70.16/28, 10.10.40.8/29

Tools used – Metasploit, proxychains, meterpreter, powershell, nmap, x3270