![]() |
MS Windows 2003 Token Kidnapping Local Exploit PoC |
编译好的:http://www.blogjava.net/Files/baicker/Churrasco.rar (via 009) From:http://nomoreroot.blogspot.com/2008/10/windows-2003-poc-exploit-for-token.html It has been a long time since Token Kidnapping presentation (http://www.argeniss.com/research/TokenKidnapping.pdf) -SQL Server is a nice target for the exploit if you are a DBA and want to own Windows: exec xp_cmdshell 'churrasco "net user /add hacker"' -Exploiting IIS 6 with ASP .NET : You can find the PoC exploit here http://www.argeniss.com/research/Churrasco.zip backup link: http://milw0rm.com/sploits/2008-Churrasco.zip Enjoy. Cesar. # milw0rm.com [2008-10-08] 图在这里:
|