Welcome to Learning at Lambert Labs session #20. This week, Tom discusses the Shellshock vulnerability, an exploit which allowed arbitrary code execution on target machines.
In today's Learning session:
What is the Shellshock vulnerability, and which technologies did it affect?
A discussion of the Bash command interpreter and a little about how it works
An overview of environment functions and how they were exploited
Live demonstration of the exploit in Django
Using a reverse shell to assist with the exploit
Q&A from our developers!
Video timestamps:
0:00 Introduction
0:26 Overview of Shellshock
1:15 What is Bash?
2:22 Variables and functions
5:27 Environment functions
7:29 The vulnerability
11:34 Demo of the exploit
19:59 Using reverse shell
25:09 Questions from the team
Learn more about our Django expertise here: https://lambertlabs.com/technologies/...
Read more about the work we do with Python here: https://lambertlabs.com/technologies/...
🔊 Subscribe to our channel for weekly learning sessions! / @lambertlabs
🔗 Lambert Labs Links 🔗 :
🌎 Website: https://lambertlabs.com/
📱 Twitter: / lambertlabs
📝 LinkedIn: / lambertlabs
📂 GitHub: https://github.com/lambertlabs/
⚡ Please leave a LIKE and SUBSCRIBE for more content! ⚡
⭐ Tags ⭐
Security
Django
Python
Development
Software Engineering