Blind OS Command Injection using Serial Number

Blind OS Command Injection using Serial Number
Download Copy
Title: Blind OS Command Injection using Serial Number
Author: TW-D

This payload allows a remote attacker to execute commands on a Linux system using the serial number as a vector to pass the commands to be executed

🏆   Recognized with a Payload Award in November 2024

 

There are many forms of remote access which may be used by different actors for various purposes. A red team may use remote access techniques that provide persistent access to an exploited target for the purposes of reconnaissance and lateral movement across the network. A systems administrator may use remote access to perform day to day operations on a network accessible computer. An array of techniques exist to obtain and maintain remote access across a network, including using a command and control server such as Cloud C². Common remote access techniques include reverse shells and may employ obfuscation techniques to mask the connection. See all remote access payloads.

This payload is for the Key Croc, a keylogger armed with pentest tools, remote access and payloads that trigger multi-vector attacks when chosen keywords are typed. It's the ultimate key-logging pentest implant.

Submit your own payload, or browse more featured Key Croc Payloads.

 

 

Related Payloads

Nautilus
Nautilus
Web-based payload launcher with GitHub integration. Control your Pager from any device on the network. Run payloads dire
Read More
PlunderPIN
PlunderPIN
PlunderPIN is a mobile PIN phishing payload that replaces a user's Google Chrome browser homepage with a malicious imita
Read More
capture http credentials
capture http credentials
This payload uses inotifywait and DYNAMICPROXY to monitor the HTTP POST data streams generated by a client and extract s
Read More