Ecosyste.ms: Awesome
An open API service indexing awesome lists of open source software.
https://github.com/seventeenman/noELF
Linux下用于远程加载可执行文件以达到内存加载的目的
https://github.com/seventeenman/noELF
Last synced: 22 days ago
JSON representation
Linux下用于远程加载可执行文件以达到内存加载的目的
- Host: GitHub
- URL: https://github.com/seventeenman/noELF
- Owner: seventeenman
- Created: 2022-10-31T08:14:40.000Z (about 2 years ago)
- Default Branch: main
- Last Pushed: 2022-11-09T15:55:25.000Z (about 2 years ago)
- Last Synced: 2024-08-05T17:24:43.924Z (4 months ago)
- Language: C
- Homepage:
- Size: 209 KB
- Stars: 198
- Watchers: 4
- Forks: 24
- Open Issues: 0
-
Metadata Files:
- Readme: README.md
Awesome Lists containing this project
- awesome-hacking-lists - seventeenman/noELF - Linux下用于远程加载可执行文件以达到内存加载的目的 (C)
README
# noELF
通过syscall创建匿名文件将elf写入后执行,支持远程加载可执行文件达到内存加载的目的。部分代码参考自ateam ptrace项目,但考虑到内核环境适配以及局限性的问题,没有使用项目中提到采用fork并修改子进程栈中要执行内容的做法。
## 用法
```
./noELF {PATH/URL} {argv}
```本地ELF文件加载
```
./noElf /bin/ls -al
```远程ELF文件加载
```
python3 -m http.server 8000
./noElf http://10.10.10.10:8000/ls -al
```## 案例
![image-20221031162521496](assets/image-20221031162521496.png)
## 待完成
支持解析域名但未实现https协议下的socket传输