• Stars
    star
    184
  • Rank 209,187 (Top 5 %)
  • Language
    Python
  • Created almost 3 years ago
  • Updated over 1 year ago

Reviews

There are no reviews yet. Be the first to send feedback to the community and the maintainers!

Repository Details

vhost password decrypt

vhost_password_decrypt

Where is symkey.dat

Windows:C:\ProgramData\VMware\vCenterServer\cfg\vmware-vpx\ssl\symkey.dat

Linux:/etc/vmware-vpx/ssl/symkey.dat

Where is postgres user password

Windows: C:\ProgramData\VMware\vCenterServer\cfg\vmware-vps\vcdb.properties

Linux: /etc/vmware-vpx/vcdb.properties /etc/vmware/service-state/vpxd/vcdb.properties

Where is psql

Windows: C:\Program Files\VMware\vCenter Server\vPostgres\bin\psql.exe

Linux: /opt/vmware/vpostgres/9.3/bin/psql

export

psql -h 127.0.0.1 -p 5432 -U vc -d VCDB -c "select ip_address,user_name,password from vpx_host;" > password.enc

How to use

pip3 install pycryptodome

python3 decrypt.py symkey.dat password.enc password.txt

image

How this might help during a pentest / tutorial

see the end -> https://pentera.io/blog/information-disclosure-in-vmware-vcenter/