Reverse shell on a corporate proxy **SOLVED

8 replies [Last post]
ronnieflip
ronnieflip's picture
Offline
Neophyte
Joined: 2010/01/21

Hi guys.

Am conducting an external pentest and i realised that with the help of some social engineering i can be able to drop a reverse shell to my attack box. However after two days i realised the client network directs all internet facing traffic through an authentication corporate proxy.

My challenge is that without having an idea of the proxy ip, port and authentication, i cannot in anyway modify my payload to direct the reverse shell through the proxy. All outbond ports are close except for ports 80,443 and 8080. Is there any logical way that i can break my shell free from this proxy?

Your help will be much appriciated.

Thanks to RAT I managed to solve this. In the vidoes below i give a detail explanation on the work around.

https://www.youtube.com/watch?v=FyzxTtYK8SE

AM NOT A HACKER! I DON'T EVEN EXIST!