Command Injection
Command Injection is a technique for gaining access, or getting a system to perform unauthorized actions. I've written up a tutorial/walk-through for a step by step lab on how to do this. It involves some setup with two virtual machines.
Command Injection Walk Through Document HERE.
Knowing a little bit about shells is also useful. Check out the blog post here for some resources on that.
Some slides on setting up a virtual machine can be found here if this topic is new to you.
Here is a video that covers what command injection is and how it works. at about the 9:30 minute mark the talk is done and the walk through begins.
Slides:
Comments
Post a Comment