So you’re broke and you don’t own msfpro, cobalt strike or any of the other expensive tools that allow vpn pivoting. (FYI: Paying for tools like cobalt strike helps Raphael Mudge continue to keep developing free tools like Armitage)

So now that that’s out of the way lets explain the scenario.

So I got bored this evening and decided to write a quick and simple python SSH bruteforcer (I wanted to learn how to use paramiko).

It takes the dictionary in a user:pass format.

This will allow your VNC session to run over the ssh session, just vnc to yourself

1ssh username@ -L 5900:

This will set up a SSH SOCKS5 proxy on port 8080 (don’t forget to set your borwser proxy to socks5 8080)

1ssh username@ -ND 8080

This allows mounting of a remote file system over ssh. Ensure that theĀ sshfs package is installed.

1sshfs /media/ssh -o allow_other