Multi-shell access with hidden-bind-shell

In order to get a bind shell served by Victim1 on the Tor network, we will use hidden-bind-shell as follows. As shown in the following illustration, the victim publish a Hidden Server so that any connection will serve a shell.

triangle-exclamation
Hidden Service as Bind Shell

1. Hidden Service for bind shell

In order to get a bind shell served by Victim1, we will use hidden-bind-shell. We need to specify the hidden service port with -hiddensrvport parameter and the datadir with -data-dir parameter.

circle-exclamation

2. Connect to the bind shell

Now that the Hidden Service is listening, the attacker will attempt to gain a shell:

circle-info

Note that the Tor instance proxy must be running so that the traffix is rooted to Tor network.

Last updated