Login Register




The stories and information posted here are artistic works of fiction and falsehood. Only a fool would take anything posted here as fact.


Tutorial Backdooring the OpenSSH server filter_list
Author
Message
RE: Backdooring the OpenSSH server #3
(01-29-2018, 09:12 PM)phyrrus9 Wrote: There is a way to do this even without recompiling openssh binaries. You can make a file containing only that function, then compile it as a .so shared library, then re-execute SSH with
Code:
# LD_PRELOAD=/tmp/backdoor.so `which sshd`

The linux dynamic linker will then replace the openssh symbol for that function with your function, essentially patching it at runtime. Doing this will ensure that the binary still passes load time signature and integrity checks, and if you can sign your preload with a valid signature you can even defeat the kernel checks.

Thanks for the information, I should research this.

Reply





Messages In This Thread
Backdooring the OpenSSH server - by Pikami - 01-29-2018, 07:45 PM
RE: Backdooring the OpenSSH server - by phyrrus9 - 01-29-2018, 09:12 PM
RE: Backdooring the OpenSSH server - by Pikami - 01-29-2018, 09:20 PM
RE: Backdooring the OpenSSH server - by hackedia - 01-29-2018, 10:15 PM
RE: Backdooring the OpenSSH server - by phyrrus9 - 01-29-2018, 10:38 PM
RE: Backdooring the OpenSSH server - by hackedia - 01-30-2018, 08:23 AM
RE: Backdooring the OpenSSH server - by Pikami - 01-30-2018, 12:35 PM
RE: Backdooring the OpenSSH server - by hackedia - 01-30-2018, 02:39 PM
RE: Backdooring the OpenSSH server - by Pikami - 01-30-2018, 03:08 PM