You are here: hacking technology > hacker invade > Content
Hot Articles
Recommend Articles
New Articles
Invades the Linux system example
  Add date: 07/29/2008   Publishing date: 07/29/2008   Hits: 1
Total 3 pages, Current page:1, Jump to page:
 
I have discovered a website, therefore conventional invasion. Very good, its FINGER is opening, therefore I arranged a SHELL, aaa account number to try zzz (by the way, this was on-line rule which I discovered that that was account number length and password intensity is proportional, if an account number only then 2-3 were long, then its password also was very generally simple, vice versa, therefore, and called it, if theorem), a result account number did not exist, I did not have to try its account number again. Because I am opened by it the port attracted, it was opening WWW, I did not believe it not to make a mistake. One has taken five kind of CGI and the WWW scanner grand total sweeps 300-400 kinds to be common wrong it nearly not to exist.: (has several mistakes, but how don't I know use, considers as finished. Also around the main turning point several, has looked like the fox to meet the hedgehog, without knowing where to begin lower mandible.  

  Has a look at root the information:

  finger root@xxx.xxx.xxx  
  Login name: root In real life: system PRIVILEGED account  
  Directory: /Shell: /bin/sh  
  Last login Fri Jul 28 09:21 on ttyp0 from 202.xx.xx.xx  
  No Plan.  

  root comes frequently, that 202.xx.xx.xx was the workstation which he used, could see a thing from that?

  net view \ 202.xx.xx.xx  
  Shared resources at \ 202.xx.xx.xx  

  Sharename Type Comment  
  x  
  x  
  My briefcase  
  The command was completed successfully.  

  Is opening WINDOWS on the surfer machine “the document and printer sharing” the service, is many people easy to lower one's guard, this root does not have the exception. If its C plate shared and has been possible to write that to be good, but that has a dream, now has opened sharing table of contents one has not been the root directory, Lian DQU does not have. Do not worry, take your time. x falls these folders are useless, cannot write, inside is the English original works, this root is also very good. “my briefcase” has attracted my attention, this will be one uses on the different machine's material carrying on synchronized the tool, this root must renew on main engine's main page frequently very obviously, sometimes will arrange on own machine, sometimes will arrange on the main engine ......Therefore a very important point: “my briefcase” sharing is generally may write!  

  Then I go in again have a look.  

  >net use i: \ 202.xx.xx.xx  
  >i:  
  >echo asdf>temp.txt  

  Good, may write truly.

  >del temp.txt  

  Not scar - - hacker's custom.

  >dir/od/p  

Has a look at some anything ...... What from the bottom second row of that is? “X month work plan .doc”! Was it, since one side were the plan is impossible to finish has lost, it definitely once more will open it - - the next month wrote when at least the plan wants COPY: - >  

 
Other pages: : 1 * 2 * 3 * Next>>
Prev:The study contains the crack using the document to carry on the website invasion Next:Buffer overflow analysis

Comment:

Category: Home > hacker invade