Eina: reDuh, redirecció TCP per HTTP
reDuh és una eina que permet crear un circuit TCP utilitzant peticions HTTP vàlides. Això vol dir que si tenim capacitat per enviar un JSP/ASP/PHP a un servidor web, també podem connectar amb altres servidors que estiguin darrera el servidor web.
What is it for?
a) Bob.Hacker has the ability to upload / create a JSP page on the remote server
b) Bob.Hacker wishes to make an RDP connection to the server term-serv.victim.com (visible to the web-server behind the firewall)
c) The firewall permits HTTP traffic to the webserver but denies everything else
d) Bob.Hacker uploads reDuh.jsp to http://ubuntoo.victim.com/uploads/reDuh.jsp
e) Bob.Hacker runs reDuhClient on his machine and points it to the page: $ java reDuhClient ubuntoo.victim.com 80 /uploads/reDuh.jsp
f) Bob.Hacker administers reDuhClient by connecting to its management port (1010 by default)
g) Once connected, Bob.Hacker types: [createTunnel]1234:term-serv.victim.com:3389
h) Now Bob.Hacker launches his RDP client, and aims it at localhost:1234
Entrades aleatòries
Carregant…

