Shellshock for fun and profit


SUBMITTED BY: Guest

DATE: Oct. 20, 2014, 8:35 p.m.

FORMAT: Text only

SIZE: 494 Bytes

HITS: 1198

  1. Ever since the shellshock vulnerability has been announced, we have seen a large number of scans probing it. Here is a quick review of exploits that our honeypots and live servers have seen so far:
  2. 1 - Simple "vulnerability checks" that used custom User-Agents:
  3. 2 - Bots using the shellshock vulnerability:
  4. 3 - Vulnerability checks using multiple headers:
  5. 4 - Using Multiple headers to install perl reverse shell
  6. To learn more, check this link !
  7. http://cur.lv/el7ml

comments powered by Disqus