Dear friends and readers,
In today's article we will present you with an extremely interesting video that presents an exploit that has been created specifically for client side attacks.
The purpose of these tutorials is purely educational and we hack our systems as a proof of concept and never to conduct any black hat activity.
[alert size=”alert-block” variation=”alert-error”]WARNING!
The following material is for EDUCATIONAL PURPOSES ONLY!
SecNews.gr assumes NO RESPONSIBILITY for any illegal acts![/alert]
In the exploit below we will see that this program accepts any Executable File.
But let's explain what happens in more detail:
Let's say we have putty.exe and when the program asks us for the exe path: we first define putty.exe where it will then take the entire program that we gave it and convert it to binary, then it will encrypt it all into a Base64 String and create a Certification.crt in which it will put the Base64 that it created.
Then it will create another file called Install.cmd, which decompiles the Base64 String into binary and re-extracts the original .exe, that is, it defines with Attrib the file that extracts putty.exe from certificate.crt as a system file that is not visible to the user by Windows Defaultment, and at the same time runs it. Therefore, our file has been executed and hidden from the end user.

Also, there is a function for easier and much higher success rate in the client side attack, which is the sfx option.
That is, with the first option our program extracts two files, Certification.crt and Install.cmd.
So with this option the process of creating an sfx file is automated. In this case it puts Certificate.crt and Install.cmd inside the SFX file.
In this way we manage to have sfx.exe output to another file, from where everything can run automatically!
[su_youtube url=”https://www.youtube.com/watch?v=0fHUZ7MwyyQ” width=”640″ height=”380″]https://www.youtube.com/watch?v=0fHUZ7MwyyQ[/su_youtube]
The purpose of these tutorials is purely educational and we hack our systems as a proof of concept and never to conduct any black hat activity.
[alert size=”alert-block” variation=”alert-error”]WARNING!
The following material is for EDUCATIONAL PURPOSES ONLY!
SecNews.gr assumes NO RESPONSIBILITY for any illegal acts![/alert]
