Skip to content

The security scare that was just my own keylogger

General Discussion by Nadia59 22 replies 2K views
#21

Wait so the keylogger was running on your server and logging your local machine or how did it get your passwords? Im confused about the attack path.

#22

alexanderosama said:
How did it get your passwords
I logged into the server FROM my laptop using the panel web interface so it grabbed the browser session and my ssh keys were in known_hosts I guess I dont fully understand it either I just know it was bad

#23

Nadia59 said:
I dont fully understand it either
Classic lateral movement. You trusted the panel the panel had a payload the payload had network access. Your ssh keys were probably in ~/.ssh and the panel ran as root so it read everything. Standard post-exploitation just you supplied the exploit yourself.

Post a reply

You need an account to reply. Log in or register to join the conversation.

Post reply Preview Save draft