Code Monkey home page Code Monkey logo

exploits's Introduction

exploits

Some of my pwn exploits:

php-concat-bypass - PHP disable_functions bypass using bug #81705 for php 7.3-8.1.

php-filter-bypass - PHP disable_functions bypass using bug #54350 for php 7.0-8.0.

php7-backtrace-bypass - PHP disable_functions bypass using bug #76047 for php 7.0-7.4.

php7-gc-bypass - PHP disable_functions bypass using bug #72530 for versions 7.0-7.3. Bug patched in php 7.4.

php-json-bypass - PHP disable_functions bypass using bug #77843 for versions 7.1-7.3 released before 30.05.2019.

exploits's People

Contributors

mm0r1 avatar

Stargazers

 avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar

Watchers

 avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar

exploits's Issues

Temporary fix?

Works on an up to date Ubuntu 18.04.3 with PHP 7.2.19.
Can anything be done other than disabling gc_collect_cycles while waiting for the issue to be patched?

I want to learn

Do you have any suggestions if I want to learn how to exploit, thank you.

php-filter-bypass for 5.x

Hey,

I noticed you mentioned that this is applicable to 5.x, just wondering if you could share the changes that are needed for that?

Thanks.

Is it possible in "php-concat-bypass" to return back ability to...

Is it possible in "php-concat-bypass" exploit POC to return back the ability to execute functions like proc_open, popen, passthru etc.?
Not just introduce new function "pwn", but load disabled functions?

Treat it as a feature request. I'll pay 500$ for this in btc.
Love, Peace =*

Not work from apache

From cli work perfect
image
But from apache2 not work, i get error "connection reset"
image

Apache/2.4.18 (Ubuntu)
Ubuntu 16.04.3

Wrong information

Hello
My version of PHP is PHP Version 7.1.27

disable_functions:passthru,exec,system,chroot,chgrp,chown,shell_exec,proc_open,proc_get_status,ini_alter,ini_restore,dl,openlog,syslog,readlink,symlink,popepassthru,stream_socket_server,fsocket,popen

I uploaded exploit. PHP to the website,Execution is wrong, and the information is as follows.

Couldn't parse ELF

Can you solve it, please?

Bypass without PHP References?

Hi @mm0r1

Incredible work you have published!!!

This is among the best (if not the best) PHP code that I have seen in many years.

Currently all of your published scripts require PHP reference syntax; do you have any bypass code that works without references?

I have a unique situation where I allow end-users to publish PHP code on a server with minimal restrictions, so I’m very interested in the work you are publishing.

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. 📊📈🎉

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google ❤️ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.