Exploiting BlueKeep (CVE-2019-0708) on Windows 7
Gain remote access to an unpatched Windows 7 system via the BlueKeep RDP vulnerability using Metasploit.
- Attacker: Kali Linux
- Target: Windows 7 (Unpatched, RDP Enabled)
- Network: NAT / Host-Only
- Metasploit Framework
- Kali Linux
- Windows 7
- Launch Metasploit
- Search BlueKeep module
- Configure RHOSTS and RDP settings
- Payload: windows/x64/shell_reverse_tcp
- Result: Command shell access
- Payload: windows/x64/vncinject/reverse_tcp
- Result: GUI access to victim desktop
- Payload: windows/x64/meterpreter/reverse_tcp
- Result: Advanced control (keylogging, screenshots, etc.)
See /screenshots folder
See /commands/commands-used.txt
This project was conducted in a controlled lab environment for educational purposes only. Unauthorised ecploitation of systems is illegal
Nweke Chigozie