Day 29 · Week 5

Metasploit post-exploitation and shells

Continue the authorised lab session through post-exploitation, payload generation, and shell/listener fundamentals.

TryHackMe rooms

Corresponding practice

  • On the room target, record current identity, host information, network context, and session type before taking further action.
  • Compare staged and stageless payloads and explain the listener requirements for each.
  • Generate only the room-required payload and record its platform, architecture, transport, and callback settings.
  • Close sessions and remove any room-created files before stopping the target.

Evidence to capture

  • Post-exploitation checklist limited to the room objectives
  • Payload/listener decision table
  • Session evidence and cleanup log

What I learned

Explain how payload, handler, platform, architecture, and network route must agree.

Problems and dead ends

Record shell instability, incorrect callbacks, or payload mismatches.

What I will revisit

Rebuild one listener configuration from the documented requirements.