Rapid7 Vulnerability & Exploit Database

UNIX Gather Remmina Credentials

Back to Search

UNIX Gather Remmina Credentials

Created
05/30/2018

Description

Post module to obtain credentials saved for RDP and VNC from Remmina's configuration files. These are encrypted with 3DES using a 256-bit key generated by Remmina which is (by design) stored in (relatively) plain text in a file that must be properly protected.

Author(s)

  • Jon Hart <jon_hart@rapid7.com>

Platform

BSD,Linux,OSX,Unix

Development

Module Options

To display the available options, load the module within the Metasploit console and run the commands 'show options' or 'show advanced':

Time is precious, so I don’t want to do something manually that I can automate. Leveraging the Metasploit Framework when automating any task keeps us from having to re-create the wheel as we can use the existing libraries and focus our efforts where it matters.

– Jim O’Gorman | President, Offensive Security

;