<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Xanda's Blog !~! &#187; shellcode</title>
	<atom:link href="http://blog.xanda.org/tag/shellcode/feed/" rel="self" type="application/rss+xml" />
	<link>http://blog.xanda.org</link>
	<description>Human Knowledge Belongs To The World.</description>
	<lastBuildDate>Mon, 30 Aug 2010 03:17:15 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>OpenSSH </title>
		<link>http://blog.xanda.org/2009/07/19/openssh/</link>
		<comments>http://blog.xanda.org/2009/07/19/openssh/#comments</comments>
		<pubDate>Sun, 19 Jul 2009 12:50:56 +0000</pubDate>
		<dc:creator>xanda</dc:creator>
				<category><![CDATA[IT Related]]></category>
		<category><![CDATA[analysis]]></category>
		<category><![CDATA[oday]]></category>
		<category><![CDATA[openssh]]></category>
		<category><![CDATA[script kiddies]]></category>
		<category><![CDATA[shellcode]]></category>

		<guid isPermaLink="false">http://blog.xanda.org/?p=851</guid>
		<description><![CDATA[I&#8217;m writing this entry by refering to &#8216;the exploit&#8217; released for OpenSSH 0day as mentioned in THIS post. Lets take a look at the exploit: And now convert the payload into binary. Personally, I use Shellcode to EXE And finally, view the content of the payload Now sit for a while, grab a Pepsi and [...]]]></description>
			<content:encoded><![CDATA[<p>I&#8217;m writing this entry by refering to &#8216;the exploit&#8217; released for OpenSSH 0day as mentioned in <strong><a href="http://blog.xanda.org/?p=822" target="_blank">THIS</a></strong> post.</p>
<p>Lets take a look at the exploit:</p>
<p style="text-align: center;"><img src="http://img.xanda.org/galleries/fake-ssh-0day-1-0.png" alt="" /></p>
<p style="text-align: left;">And now convert the payload into binary. Personally, I use <a href="http://sandsprite.com/shellcode_2_exe.php" target="_blank">Shellcode to EXE</a></p>
<p style="text-align: center;"><img src="http://img.xanda.org/galleries/fake-ssh-0day-2.png" alt="" /></p>
<p style="text-align: left;">And finally, view the content of the payload <img src='http://blog.xanda.org/wp-includes/images/smilies/icon_wink.gif' alt=';)' class='wp-smiley' /> </p>
<p style="text-align: center;"><img src="http://img.xanda.org/galleries/fake-ssh-0day-3.png" alt="" /></p>
<p style="text-align: left;">Now sit for a while, grab a Pepsi and think&#8230; what is going to happen if you simply download, compile and run it?</p>
<p style="text-align: left;">Moral of the story, &#8220;everyone might start with script kiddies, but it doesn&#8217;t mean you have to be a script kiddies forever&#8221;</p>
]]></content:encoded>
			<wfw:commentRss>http://blog.xanda.org/2009/07/19/openssh/feed/</wfw:commentRss>
		<slash:comments>3</slash:comments>
		</item>
	</channel>
</rss>
