In this episode, we'll modify our Linux trojan payload, so that our target will beacon a shell back to our C2 server. We'll use ngrok to forward and tunnel the traffic and we'll set up a 2nd-stage payload that is double-encoded and hidden inside an image file hosted in Github. All in all it should be a pretty good time!
This video is intended for educational purposes only. Only attempt this on devices you own or have expressed permission from the device owner.
=========================
Chapters
=========================
0:00 Disclaimer
0:47 Intro
4:42 Ngrok Setup
7:40 New MSFVenom Payload Breakdown
15:28 2nd-Stage Payload
25:30 Encode Payload String
31:55 Insert Encoded Payload into JPG
33:25 Upload Malicious JPG to Github
36:08 Upload Trojan to Target
39:47 Setup Listener
40:27 Execute Trojan!
42:48 Demonstrating Persistence
46:20 Wrap-up
#malware #malwaredev #linuxtrojan #trojanmalware #metasploit #offensivesecurity #cybersecurity #linux #linuxmalware #linuxmalwaredev #malwaredevelopment #metasploitunleashed #linuxbinarytrojan #msfvenom #penetrationtesting #pentesting #pwninglinux #redteam #redteaming #metasploitimplant #malwareanalysis #linuxsecurity #antivirus #endpointprotection #edr #linuxantivirus #linuxedr #hacking #hacker #infosec #ethicalhacking #ethicalhacker #kalilinux #cybersecurityawareness #technology #infosec #cybercrime #hackers #cyberattack #apt #advancedpersistentthreat