• XSS.stack #1 – первый литературный журнал от юзеров форума

Мануал/Книга LOLBAS - Proxy execution sihost.exe & taskhostw.exe

Sarreyayvoh

HDD-drive
Забанен
Регистрация
25.06.2023
Сообщения
20
Реакции
13
Гарант сделки
3
Пожалуйста, обратите внимание, что пользователь заблокирован
NOT My work, creds to maldev academy, but as always, I want to share with you.

taskhostw.exe & sihost.exe can be used to proxy execution, only if you have GUI (RDP for example) access to them.

With sihost.exe you can enter the full path of the binary you'd like to run in the windows search bar and the result will be your binary spawning as a child of sihost.exe

When you are on w10 you can parse args to the binary. Maldev says that this thing about args cant be done on w11 (not tested).

Same thing with taskhostw.exe.

As maldev said, the fact that you need GUI access may compromise how useful it could be, but still good to know. +1
 

Вложения

  • 1.png
    1.png
    15 КБ · Просмотры: 28
  • 3.png
    3.png
    8 КБ · Просмотры: 28
  • 2.png
    2.png
    12.3 КБ · Просмотры: 28


Напишите ответ...
  • Вставить:
Прикрепить файлы
Верх