GTFOBins.github.io/_gtfobins/busybox.md
2018-07-04 19:26:52 +01:00

750 B

description functions
BusyBox may contain many UNIX utilities, run `busybox --list-full` to check what GTFBins binaries are supported. Here some example.
execute-interactive upload file-write file-read suid-enabled sudo-enabled
code
busybox sh
description code
Serve files in the local folder running an HTTP server. export LPORT=12345 busybox httpd -f -p $LPORT -h .
code
LFILE=file_to_write busybox sh -c 'echo "data" > $LFILE'
code
LFILE=file_to_read ./busybox cat "$LFILE"
description code
It may drop the SUID privileges depending on the compilation flags and the runtime configuration. ./busybox sh
code
sudo busybox sh