Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
joe_v
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
3 ms
·
1.
▲
Linux Shellcraft: The Pipe Trick
(joev.dev)
2 points
by
joe_v
2y ago
|
0 comments
2.
▲
by
joe_v
3y ago
That makes sense, something like `grep $USER /etc/passwd` would shuffle the whole passwd file over the wire, etc; for a lot of post-exploitation stuff I could see it causing more trouble than it's worth.
3.
▲
by
joe_v
3y ago
Apologies it's a little scattered. Roughly it's about dealing with situations where you can execute a command but now want to run a native executable, and how much noise such a thing will make in the presence of monitoring. > C
4.
▲
by
joe_v
3y ago
That is a really useful implementation and a good way to use gdb to "live off the land". It is interesting how ops changes like moving to containers/VMs affect pentesting techniques; over the last decade I find myself relying
5.
▲
by
joe_v
3y ago
Hah! I was just referencing this paper the other day when mucking with the linker for an unrelated reason. I probably should have chosen a better name for my article - I am trying to cover the cases of "you have Linux command execution
6.
▲
Unprivileged process injection techniques in Linux
(joev.dev)
161 points
by
joe_v
3y ago
|
47 comments