Image
 
linkedin_logo.png rss_logo.jpg
twitter_logo.png youtube_logo.jpg
Latest Additions
 
EH-Net Login
Welcome Guest.






Lost Password?
No account yet? Register
Who's Online
We have 36 guests online
 
Free Business and Tech Magazines and eBooks

You are here: Home arrow Resourcesarrow Tutorialsarrow Abusing PHP Sockets
EH-Net
May 24, 2013, 08:09:18 AM *
Welcome, Guest. Please login or register.
Did you miss your activation email?

Login with username, password and session length
News: Go back to The Ethical Hacker Network Online Magazine Home Page
 
   Home   Help Calendar Login Register  
Pages: [1]   Go Down
  Print  
Author Topic: Abusing PHP Sockets  (Read 4703 times)
0 Members and 1 Guest are viewing this topic.
Manu Zacharia (-M-)
Sr. Member
****
Offline Offline

Posts: 393


c0c0n Hacking Conference - where hackers unite


View Profile WWW
« on: May 29, 2010, 10:57:22 PM »

Abusing PHP Sockets

Hijacking Video:
http://www.secforce.co.uk/media/demos/PHP_socket_hijacking_demo.html

Abusing PHP Sockets For Fun And Profit PRESENTATION:
http://www.secforce.co.uk/media/presentations/OWASP_Abusing_PHP_sockets.pdf

Socket_Attack.ZIP Source:
http://www.secforce.co.uk/media/demos/PHP_socket_hijacking_demo.html

Happy Learning Smiley
Logged

Manu Zacharia
MVP (Enterprise Security), ISLA-2010 (ISC)², C|EH, C|HFI, CCNA, MCP,
Certified ISO 27001:2005 Lead Auditor

There are 3 roads to spoil; women, gambling & hacking. The most pleasant with women, the quickest with gambling, but the surest is hacking - c0c0n
COm_BOY
Full Member
***
Offline Offline

Posts: 129


LivinG DeaD


View Profile
« Reply #1 on: May 30, 2010, 02:20:46 AM »

I dont have a programing background and I feel I should atleast get one scripting language inorder to understand the exploits . Can you help me decide which language should I go for which I can learn in a short period of time . Socket Programing is included in PHP , Perl , Python and several others I believe but since I am no good at any of them I cant decide which one to go for .

Logged

It has become appallingly obvious that our technology has exceeded our humanity.
Manu Zacharia (-M-)
Sr. Member
****
Offline Offline

Posts: 393


c0c0n Hacking Conference - where hackers unite


View Profile WWW
« Reply #2 on: May 30, 2010, 03:25:33 AM »

Even though you asked for scripting language, I would suggest you to start from C / C++ and then get into scripting language. Mastering a language like C / C++ will give you an clear insight into the computer internals and how things work. Once you have a clear understanding then it is very easy to conquer other languages, including scripting.

As far as scripting languages are concerned, I suggest you start with Bash and then get into Python or Perl. PHP is also recommended if you are more interested in Web based apps or scripts.

All the best and happy learning Smiley
Logged

Manu Zacharia
MVP (Enterprise Security), ISLA-2010 (ISC)², C|EH, C|HFI, CCNA, MCP,
Certified ISO 27001:2005 Lead Auditor

There are 3 roads to spoil; women, gambling & hacking. The most pleasant with women, the quickest with gambling, but the surest is hacking - c0c0n
Equix3n-
Sr. Member
****
Offline Offline

Posts: 386



View Profile
« Reply #3 on: May 30, 2010, 05:23:22 AM »

Manu has given you a perfect suggestion. Starting out with a scripting language might weaken your concepts as it does not contain some important concepts like data types etc. C and C++ will provide you a solid foundation. You'll find that once you've learned these two languages, learning any other language will a piece of cake.

You can choose any scripting language you like. I personally prefer perl. If you know some bash scripting then learning a scripting language won't be difficult for you.

Also, do you want to be just able to understand exploits form exploit-db or are you interested in coding too? I'm learning some exploit development from the following website http://pentest.cryptocity.net/ check it out. It'll give you some better understanding of vulnerabilities and exploits.
Logged
Ketchup
Hero Member
*****
Offline Offline

Posts: 1021



View Profile
« Reply #4 on: May 30, 2010, 05:10:23 PM »

I would add that it's probably safer to begin with C and move to C++.   The object oriented programming concepts can be tough for people that are new to programming.  If you learn in the Windows world, you also have to deal with Microsoft's love for re-typing basic data types over and over again.  It certainly makes learning Windows programming annoying.
Logged

~~~~~~~~~~~~~~
Ketchup
Pages: [1]   Go Up
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.18 | SMF © 2013, Simple Machines
Joomla Bridge by JoomlaHacks.com
Valid XHTML 1.0! Valid CSS!
Page created in 0.108 seconds with 23 queries.
 
Exclusive Deal

sansfire13_245x90_cw90.jpg
SANSFIRE 2013
June 15 - 22

5% Off w/ Code: EHN_5

SANS Deals 4 EH-Netters
5% OFF Any SANS Course in Any Format!
Coupon Code: EHN_5 Including SANS Rocky Mountain 2013 & SANS Boston 2013
Polls
Compared to this year, 2013 will be:
 
Recent Forum Topics
EH-Net News Feeds
Latest Additions
 
         
Advertisement

© 2013 The Ethical Hacker Network
Joomla! is Free Software released under the GNU/GPL License.