diff --git a/envs/monkey_zoo/docs/fullDocs.md b/envs/monkey_zoo/docs/fullDocs.md index 73efb2801..5b08146a9 100644 --- a/envs/monkey_zoo/docs/fullDocs.md +++ b/envs/monkey_zoo/docs/fullDocs.md @@ -28,6 +28,9 @@ This document describes Infection Monkey’s test network, how to deploy and use [Nr. 3-46 Powershell](#_Toc536021480)
[Nr. 3-47 Powershell](#_Toc536021481)
[Nr. 3-48 Powershell](#_Toc536021482)
+[Nr. 14 Credentials Reuse](#_Toc536121480)
+[Nr. 15 Credentials Reuse](#_Toc536121481)
+[Nr. 16 Credentials Reuse](#_Toc536121482)
[Nr. 3-49 Log4j Solr](#_Toc536021483)
[Nr. 3-50 Log4j Solr](#_Toc536021484)
[Nr. 3-51 Log4j Tomcat](#_Toc536021485)
@@ -874,6 +877,120 @@ Accessiable only through 3-45 Powershell using credentials reus + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + +

Nr. 14 Credentials Reuse

+

(10.2.3.14, 10.2.4.14)

(Exploitable)
OS:Ubuntu 16.04.05 x64
Software:OpenSSL
Default service’s port:22
Credentials:m0nk3y:u26gbVQe
Server’s config:VPC network that can only access Credentials Reuse 15 and Island.
Notes:Accessible from the Island with password authentication
+ + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + +

Nr. 15 Credentials Reuse

+

(10.2.4.15, 10.2.5.15)

(Exploitable)
OS:Ubuntu 16.04.05 x64
Software:OpenSSL
Default service’s port:22
Credentials:m0nk3y:5BuYHeVl
Server’s config:VPC network that can be only accessed by Credentials Reuse 14 and communicate to
+Credentials Reuse 16. +
Notes:Accessible from the Credentials Reuse 14 with password authentication
+ + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + +

Nr. 16 Credentials Reuse

+

(10.2.3.16, 10.2.5.16)

(Exploitable)
OS:Ubuntu 16.04.05 x64
Software:OpenSSL
Default service’s port:22
Credentials:m0nk3y:lIZl6vTR
Server’s config:VPC network that can be only accessed by Credentials Reuse 15 and communicate to
+the Island. +
Notes:Accessible from the Credentials Reuse 15 with passwordless ssh key authentication.
+We use the ssh key that was stolen from Credentials Reuse 16
+ +