stager自动迁移进程

转自:https://community.rapid7.com/thread/3822
What you are experiencing is common on systems in the wild (I see it more often in VM environments). Basically, the process you’re exploiting is not stable enough to keep a shell open, and as you seem to already know, you need to migrate into another process ASAP in order to keep your shell. Instead of set PrependMigrate true try:

set InitialAutoRunScript migrate -f

I have had better experiences with this method than with the PrependMigrate method.

nap_

Linux卸载阿里云服务、云盾、安骑士

Linux类型系统

下载 http://update.aegis.aliyun.com/download/uninstall.sh

执行下列命令:chmod +x uninstall.sh
sh uninstall.sh (Debian为./uninstall.sh)
rm /usr/sbin/aliyun-service
rm lib/systemd/system/aliyun.service
控制面板卸载:
安骑士 ->设置 ->安装安骑士
不过官方提供的自动卸载好像并没有什么卵用

Kali+VNC除了LXDE另一种方案

转自:https://forums.kali.org/showthread.php?26823-Remote-access-with-SSH-TightVNC-failed-with-new-Kali-2-0
I have, but it involves installing the MATE desktop environment, which is a GNOME 2 fork.

First, you have to install MATE:

Then, you have to change a line in the ~/.vnc/xstartup, replacing

/etc/X11/Xsession

with

/usr/bin/mate-session

It is just a workaround, as MATE offers a different look and feel than GNOME.

The underlying problems with GNOME and VNC (and RDP, NX, …) are described here:

https://bugs.debian.org/cgi-bin/bugr…cgi?bug=776746
https://bugs.launchpad.net/ubuntu/+s…n/+bug/1251281

and it looks like a fix for Debian will take some time…

转几个ShellcodeLoader

refer:https://github.com/VeroFess/shellcode_loader/blob/master/loader.c

继续阅读转几个ShellcodeLoader