GRAY-WORLD.NET TEAM
Unusual firewall bypassing techniques, network and computer security.

4166746572 61 7768696C652C 66696E64696E67 74686174 6E6F7468696E67 6D6F7265 68617070656E65642C 736865 64656369646564 6F6E 676F696E67 696E746F 746865 67617264656E 6174 6F6E63653B 6275742C 616C6173 666F72 706F6F72 416C69636521 7768656E 736865 676F74 746F 746865 646F6F722C 736865 666F756E64 736865 686164 666F72676F7474656E 746865 6C6974746C65 676F6C64656E 6B65792C 616E64 7768656E 736865 77656E74 6261636B 746F 746865 7461626C65 666F72 69742C 736865 666F756E64 736865

Lewis Carroll "Alice In Wonderland"
Alice
Chinese French Russian Spanish Polish Italian
Home | Projects | Papers | Forum | Team | Links | Contributions
 Projects 

Wsh, "Web Shell" - remote UNIX/WIN shell, that works via HTTP/HTTPS. The package contains two perl scripts for server and client hosts, one C source code and one Java servlet code for the server host : the client script is for console usage and the server scripts run as CGI/Servlet scripts on the target host.

The client part provides shell-like prompt, encapsulating user commands into HTTP POST requests and sending them to the server part script on the target web server directly or via HTTP proxy server. The server part extracts and executes commands from HTTP post requests and returns STDOUT and STDERR output as HTTP response messages. By default both scripts encode HTTP data with Xor.

The key Web Shell features: SSL support (*), Command line history support (*), File upload/download, Protect server part script usage with secret key inside HTTP message, Data flow Xor encoding, Can work trough HTTP proxy server.

(*) - Additional packages are required on the client host.

Alex Dyatlov, Simon Castro
Current Wsh version: 2.2.2; README , CHANGELOG
Download | md5sum: 4b7f51d186b65bd16e304b507b96613c
http://gray-world.net/projects/wsh/wsh-2.2.2.tar.gz

Index of projects



Paper : Covert Channel and Tunneling over the HTTP protocol Detection: GW implementation theoretical design.
[read]


Team member's sites: blog.0x557.org/icbm/


GNU  GNU General Public License
 GNU Free Documentation License
IRC://irc.gray-world.net:6677/gray-world.net
CHANGELOG, MIRRORS, LEGAL NOTICE
03/07/2009 [04:04:53] GMT+03:00 / Unique IPs today: 2623 / Hits: 31099