
Comprehensive Penetration Testing report and exploit chain for Metasploitable 2 focusing on CVE-2011-2523.
This repository contains a comprehensive Vulnerability Assessment and Penetration Testing (VAPT) report for the Metasploitable 2 vulnerable environment. The assessment follows the standard 5-phase ethical hacking methodology, demonstrating a complete "Kill Chain"—from initial reconnaissance to unauthenticated root access and post-exploitation persistence.
Successfully achieved unauthenticated remote root access by exploiting a backdoor in the FTP service. Following initial access, I performed credential harvesting from /etc/shadow and established long-term persistence via SSH key injection and manual system hardening for "stealth" access. The engagement concluded with anti-forensic log wiping and a detailed remediation roadmap.
Nmap.Metasploit for unauthenticated Remote Code Execution (RCE).John the Ripper with the rockyou.txt wordlist.authorized_keys and modified sshd_config for backup access.xterm-256color errors) through manual environment variable manipulation.auth.log and clearing shell command histories.sessions -l is critical for operational success.Disclaimer: This project was conducted in a private, authorized lab environment for educational purposes. Unauthorized hacking is illegal and unethical.