How to successfully intrude into Linux servers

Source: Internet
Author: User
Tags perl script

Andre'dimino, a security researcher at the University of Washington, noticed that multiple IP addresses were trying to use a fixed PHP vulnerability to hijack a Linux server. He was curious about how attackers successfully controlled a Linux server and therefore set up a honeypot, run the old version of PHP to allow attackers to hijack and observe. DiMino found that the attacker was indeed very embarrassed. He sent an http post request containing multiple commands, downloaded a Perl script disguised as a PDF file, and deleted it after execution.

To ensure the success, attackers use curl, fetch, and lwp-get requests to repeat the preceding steps. The Perl script program sleep for a period of time, probably avoiding the Administrator's ears. The infected machine connects to a relay chat channel and downloads and executes another script. Attackers installed Multiple applications on the server, including Bitcoin and prime coin mining programs, DDoS tools, and other tools that Scan Machines with known vulnerabilities. With the popularity of Linux servers, like Windows PC, it has become an attractive target for attackers.

Contact Us

The content source of this page is from Internet, which doesn't represent Alibaba Cloud's opinion; products and services mentioned on that page don't have any relationship with Alibaba Cloud. If the content of the page makes you feel confusing, please write us an email, we will handle the problem within 5 days after receiving your email.

If you find any instances of plagiarism from the community, please send an email to: info-contact@alibabacloud.com and provide relevant evidence. A staff member will contact you within 5 working days.

A Free Trial That Lets You Build Big!

Start building with 50+ products and up to 12 months usage for Elastic Compute Service

  • Sales Support

    1 on 1 presale consultation

  • After-Sales Support

    24/7 Technical Support 6 Free Tickets per Quarter Faster Response

  • Alibaba Cloud offers highly flexible support services tailored to meet your exact needs.