LinuxÏÂÓÃncʵÏÖDuplexPipe
nc ÊÇÒ»°ÑÍøÂçµÄÈðÊ¿¾üµ¶£¬ÎÒÒÔǰÔÚ½éÉÜ DuplexPipe ʱҲÌáµ½¹ý£¬Èç¹ûÄãû½Ó´¥¹ýËü£¬¿ÉÒÔÏȲο´Ò»Ï¡¶DuplexPipe¶þÈýÊ£¨¶þ£©¡·¡£ÔÙÀ´¼òµ¥µØ½éÉÜһϠDuplexPipe£¬¹ËÃû˼Ò壬ËüÊÇÒ»¸ö“Ë«Ïò¹ÜµÀ”¡£ÔÚ shell ÖУ¬ÎÒÃÇͨ¹ý“|”ʹÓÃÄäÃû¹ÜµÀ£¬ÈÃǰһÌõÃüÁîµÄÊä³ö×÷ΪºóÒ»ÌõÃüÁîµÄÊäÈ룻˫Ïò¹ÜµÀ¼´ÔÚ´Ë»ù´¡ÉÏÔÚ¼ÓÉÏ“ºóÒ»ÌõÃüÁîµÄÊäÈë×÷ΪǰһÌõÃüÁîµÄÊäÈ딡£ÕâÊÇ×î³õ¿ª·¢ËüµÄÔÒò£¬µ«ºóÀ´·¢ÏÖËü¸üÏñÊÇÒ»¸öÍøÂç½Ó¿Úת»»Æ÷£¬“DuplexPipe”Õâ¸öÃû×Ö·´¶ø²»ÄÜÌåÏÖËüµÄ¹¦ÄÜ¡£¸ü¶àÄÚÈÝÇë²Î¿´DuplexPipeϵÁÐÎÄÕ¡£
ÁôÑÔ
½ñÌìÍøÓѻƺ£¸øÎÒÁôÑÔ£¬Ëûͨ¹ýÓà nc µÄ -e Ñ¡ÏîÀ´Ö´ÐÐ nc ±¾ÉíÀ´ÊµÏÖ DuplexPipe¡£ÁôÑÔÔÎÄÈçÏ£º
¸çÃÇ£¬ÄãдµÄÄǸöDuplexPipe, ÎÒºÜÐÀÉÍ¡£²»¹ý½üÈÕÓÚÍøÉϹ䷢Ïִ˹¤¾ßµÄ¹¦Äܾ¹È»ÍêÈ«¿ÉÒÔÓÃnetcat×öµ½£¬ÓÐÁ½ÖÖ·½·¨£¬ÎҵIJ©¿ÍÉÏÔØÁËÒ»ÖÖ¡£¼òµ¥ÃèÊöÈçÏ£º
ÔÚwindowsÏ£º
echo nc [ip] [port] > relay.bat
nc -l -p [port2] -e relay.bat
ÆäÓàµÄÀàÍÆ
µÚ¶þÖÖ·½·¨ÊÇÓÃÃüÃû¹ÜµÀ£º(linuxÏÂ)
mknod backpipe p
nc -l -p [port] 0<backpipe | nc [ip] [port12] | tee backpipe
ÆäÖÐÑ¡Ïî -e µÄ×÷ÓÃÊÇ£º
for NT: -e prog inbound program to exec [dangerous!!]
for Linux: -e filename program to exec after connect [dangerous!!]
Windowsϲ»ÐÐ
ÔÚÎÒ¿ª·¢ DuplexPipe ʱȷʵ¿¼Âǹý¹¦Äܻ᲻»áºÍ nc ÖØµþ£¬µ±Ê±Ö»Ïë×Åͨ¹ý shell ¹ÜµÀÀ´Á¬½Ó£¬ÍüÁË nc ×Ô´øÁËÒ»¸öË«Ïò¹ÜµÀ£¡ÎÒÊ×ÏÈÔÚ Vista ÏÂ×öÁ˲âÊÔ£¬nc(win32) ÊÇ´Ó http://www.securityfocus.com/tools/139 ÏÂÔØ¡£¿ªÆôÈý¸öÃüÁîÌáʾ·û£¬·Ö±ðÖ´ÐУº
1) nc -l -p 1234
2) nc localhost 1234 -e "nc -l -p 1235"
3) nc localhost 1235
ÆäÖеڶþÌõºÍÁôÑÔÖÐʹÓÃÅú´¦ÀíµÈ¼Û¡£ÀíÂÛÉÏÔÚÌáʾ·û(3)ÖÐÊäÈëÒ»ÐÐÊý¾Ý£¬Ìáʾ·û(1)ÈýÖÐÂíÉÏÏÔʾ¡£µ«ÎÒÿ´ÎÔÚÌáʾ·û(3)ÖÐÊäÈëÒ»¶ÑÊý¾Ýºó£¬Ìáʾ·û(1)ÒªÊäÈëÁ½¸ö»Ø³µ²Å»á°ÑÊý¾ÝÏÔʾ³öÀ´¡£ÎÒÓÖÁíÍ⿪ÆôËĸöÃüÁîÌáʾ·û£¬Ä£Äâ DuplexPipe£º
1) nc -l -p 1234
2) nc -l -p 1235 -e "nc -l -p 1236"
3) nc localhost 1234 -e "nc localhost 1235"
4) nc localhost 1236
´ËʱÌáʾ·û(1)ÖеÄÊý¾ÝÄÜ·¢Ë͵½(4)ÖУ¬¶øÌáʾ·û(4)ÖеÄÊý¾ÝÈ´µ¹²»ÁË(1)¡£µ÷Õû(2)¡¢(3)Öж˿ڵÄ˳Ðò»á³öÏÖ²»Í¬½á¹û£¬µ«¶¼´ï²»µ½ÀíÏëЧ¹û¡£ºóÀ´ÓÖÏÂÁËÆäËû¼¸¸ö²»Í¬°æ±¾µÄ nc£¬²¢ÔÚ WinXP ÏÂÒ²½øÐÐÁ˲âÊÔ£¬µ«¶¼²»³É¹¦¡£
Li
Ïà¹ØÎĵµ£º
£¨L2CAPÐÒé¼ò½é£¬L2CAPÔÚBlueZÖеÄʵÏÖÒÔ¼°L2CAP±à³Ì½Ó¿Ú£©
Ò»£ºL2CAPÐÒé¼ò½é£º
Logical Link Control and Adaptation Protocol(L2CAP)
Âß¼Á¬½Ó¿ØÖƺÍÊÊÅäÐÒé (L2CAP) ΪÉϲãÐÒéÌá¹©ÃæÏòÁ¬½ÓºÍÎÞÁ¬½ÓµÄÊý¾Ý·þÎñ£¬²¢Ìṩ¶àÐÒ鹦ÄܺͷָîÖØ×é²Ù×÷¡£L2CAP ³äÐíÉϲãÐÒéºÍÓ¦ÓÃÈí¼þ´«ÊäºÍ½ÓÊÕ×î´ó³¤¶ÈΪ 64K µÄ L2CAP Ê ......
×÷Õߣº¿µ»ª,»ªÇåÔ¶¼ûǶÈëʽѧԺ½²Ê¦¡£
1. ¹ØÓÚij¸öµµÃûµÄ¡ºÀàÐÍ¡»Õì²â(´æÔÚÓë·ñ)£¬Èç test -e filename
-e ¸Ã¡ºµµÃû¡»ÊÇ·ñ´æÔÚ£¿(³£ÓÃ)
-f ¸Ã¡ºµµÃû¡»ÊÇ·ñΪµµ°¸(file)£¿(³£ÓÃ)
-d ¸Ã¡ºÎļþÃû¡»ÊÇ·ñΪĿ¼(direct ......
http://www.forensicswiki.org/wiki/Helix3
http://www.sleuthkit.org/index.php
»Ö¸´²½Öè:
root@srv01 [/home/recovery]# ./fls -a -r -p /dev/sdb3 > sdb3usrdirlist.txt
root@srv01 [/home/recovery]# grep -i "access_log" /home/recovery/sdb3usrdirlist.txt
r/r 2195490: local/ ......
Top five things Linux can learn from Microsoft
Jul. 20, 2006
Linux does a lot of things right -- open-source
,
security, reliability -- but it's far from perfect. In fact, Linux and
its vendors could stand to l ......
1¡¢ÏÂÔØqt-x11-opensource-src-4.3.2.tar.gz £¬ÍøÖ·ÔÚÏÂÃæ
http://www.cevx.com/bbs/thread-10047-1-1.html
2¡¢ÏÂÔØ¹ýÀ´µÄÊÇ qt-x11-opensource-src-4.3.2.tar.gz Îļþ£¬ÎÒÃÇÓÃtarÃüÁî½âѹһÏ¡£
tar zxvf qt-x11-opensource-src-4.3.2.tar.gz
3¡¢°ÑÕâ ......