The most interesting part of the SME hack is upgrading from a crappy netcat to a full screen session [25:12]. Handy!https://www.youtube.com/watch?v=oTbI74ti0yY#t=25m12 …
-
-
Replying to @marcan42
so basically that's just shell code execution from a python process web server?
1 reply 0 retweets 0 likes -
Replying to @coburn64
No, it's just a netcat shell. The point is he uses python to spawn a pty, fixes up the local terminal, then gets a screen going.
1 reply 0 retweets 0 likes -
So he goes from a barebones broken non-interactive shell to a fully working screen session that can run vim.
1 reply 0 retweets 0 likes -
Replying to @marcan42
And is this a exploit on a live website? Or internal test server?
1 reply 0 retweets 0 likes -
Replying to @coburn64
This was a exploit on a live server (blackhat), but the tty trick is unrelated to the exploit and very useful in other contexts.
1 reply 0 retweets 0 likes
E.g. shitty serial consoles on embedded devices, or rescue shells on systems you own.
10:49 PM - 23 May 2016
0 replies
0 retweets
0 likes
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.