3 ms·
I had never heard of a reverse shell before. That is a very neat and simple little trick!
by grep_it 6y ago
I had never heard of a reverse shell before. That is a very neat and simple little trick!
- rurp 6y agoHeh, glad I wasn't the only one. When I read that part I thought to myself, "Damn, how did I not know that was a thing".
- marcan_42 6y agoThis is straight out of pentesting 101! Extremely common trick, practically the #1 thing everyone does after they get code execution.
- hnick 6y agoYou might also like https://en.wikipedia.org/wiki/Shellcode https://en.wikipedia.org/wiki/Shellcode if you haven't heard of that either. Shellcodes are binary strings that you write to memory or execute another way (like this plugin situation) through an exploit to actually initiate a shell under that process' user id. This can be local on a setuid process for escalation or remote (there are 2 other types in that article in addition to the reverse shell).
- grep_it 6y agoThanks for the share!