<?xml version='1.0' encoding='UTF-8'?><?xml-stylesheet href="http://www.blogger.com/styles/atom.css" type="text/css"?><feed xmlns='http://www.w3.org/2005/Atom' xmlns:openSearch='http://a9.com/-/spec/opensearchrss/1.0/'><id>tag:blogger.com,1999:blog-121869284259845227.post8193177552675965763..comments</id><updated>2010-07-06T09:13:43.839-04:00</updated><category term='linux'/><category term='flash'/><category term='fuzzing'/><category term='tools'/><category term='news'/><category term='web-app security'/><category term='gadgets'/><category term='malware'/><category term='penetration testing'/><category term='windows'/><category term='hacking'/><category term='lame hacking'/><category term='XSS'/><category term='vnc'/><category term='sql injection'/><category term='networking'/><category term='oracle'/><title type='text'>Comments on hideaway [dot] net: Backdoor scripts to compromise web servers</title><link rel='http://schemas.google.com/g/2005#feed' type='application/atom+xml' href='http://www.hideaway.net/feeds/8193177552675965763/comments/default'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/121869284259845227/8193177552675965763/comments/default'/><link rel='alternate' type='text/html' href='http://www.hideaway.net/2007/07/backdoor-scripts-for-shell-access-on.html'/><author><name>Ryan</name><uri>http://www.blogger.com/profile/11336255133233594442</uri><email>noreply@blogger.com</email><gd:image xmlns:gd='http://schemas.google.com/g/2005' rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><generator version='7.00' uri='http://www.blogger.com'>Blogger</generator><openSearch:totalResults>1</openSearch:totalResults><openSearch:startIndex>1</openSearch:startIndex><openSearch:itemsPerPage>25</openSearch:itemsPerPage><entry><id>tag:blogger.com,1999:blog-121869284259845227.post-8629833839368434905</id><published>2007-09-03T15:18:00.000-04:00</published><updated>2007-09-03T15:18:00.000-04:00</updated><title type='text'>Hi Ryan,&lt;br&gt;&lt;br&gt;The following POC is slight variat...</title><summary type='text'>Hi Ryan,&lt;BR/&gt;&lt;BR/&gt;The following POC is slight variation on the above scripts.  &lt;BR/&gt;&lt;BR/&gt;http://pentestmonkey.net/tools/php-findsock-shell/&lt;BR/&gt;&lt;BR/&gt;It demonstrates how PHP scripts can attach a shell to the TCP connection between browser and web server.&lt;BR/&gt;&lt;BR/&gt;It's therefore possible to get an interactive shell even when Firewalls make the use bindshells or reverse shells impossible.</summary><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/121869284259845227/8193177552675965763/comments/default/8629833839368434905'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/121869284259845227/8193177552675965763/comments/default/8629833839368434905'/><link rel='alternate' type='text/html' href='http://www.hideaway.net/2007/07/backdoor-scripts-for-shell-access-on.html?showComment=1188847080000#c8629833839368434905' title=''/><author><name>pentestmonkey</name><uri>http://pentestmonkey.net</uri><email>noreply@blogger.com</email><gd:image xmlns:gd='http://schemas.google.com/g/2005' rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img1.blogblog.com/img/blank.gif'/></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://www.hideaway.net/2007/07/backdoor-scripts-for-shell-access-on.html' ref='tag:blogger.com,1999:blog-121869284259845227.post-8193177552675965763' source='http://www.blogger.com/feeds/121869284259845227/posts/default/8193177552675965763' type='text/html'/><gd:extendedProperty xmlns:gd='http://schemas.google.com/g/2005' name='blogger.itemClass' value='pid-643775027'/></entry></feed>
