Netcat through Squid HTTP Proxy
From: Rod S (securitybasics_at_gmail.com)
Date: 04/15/05
- Previous message: Joe_Wulf: "RE: Mail Server problem / query"
- Next in thread: Joachim Schipper: "Re: Netcat through Squid HTTP Proxy"
- Reply: Joachim Schipper: "Re: Netcat through Squid HTTP Proxy"
- Maybe reply: Todd Towles: "RE: Netcat through Squid HTTP Proxy"
- Maybe reply: Otero, Hernan (EDS): "RE: Netcat through Squid HTTP Proxy"
- Maybe reply: Henderson, Dennis K.: "RE: Netcat through Squid HTTP Proxy"
- Maybe reply: Todd Towles: "RE: Netcat through Squid HTTP Proxy"
- Maybe reply: Todd Towles: "RE: Netcat through Squid HTTP Proxy"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
Date: Fri, 15 Apr 2005 10:40:31 -0400 To: "pen-test@securityfocus.com" <pen-test@securityfocus.com>
Hello,
I have a squid proxy server running, caching and filtering web access.
User workstations on my network are only allowed http access through
this proxy server. The firewall (Cisco PIX) will not let them connect
outbound to any ports.
I've done some testing and was successful in running netcat to connect
to a remote server listening with netcat on port 80 and get a command
prompt for an internal machine (which is allowed to connect to any
outgoing ports) on that remote server. I'm wondering if it's possible
for netcat to connect through our proxy server to a remote machine and
send a cmd.exe shell in the same way? Any tips on preventing this or
any other information you care to share is appreciated.
Thanks!
Rod
- Previous message: Joe_Wulf: "RE: Mail Server problem / query"
- Next in thread: Joachim Schipper: "Re: Netcat through Squid HTTP Proxy"
- Reply: Joachim Schipper: "Re: Netcat through Squid HTTP Proxy"
- Maybe reply: Todd Towles: "RE: Netcat through Squid HTTP Proxy"
- Maybe reply: Otero, Hernan (EDS): "RE: Netcat through Squid HTTP Proxy"
- Maybe reply: Henderson, Dennis K.: "RE: Netcat through Squid HTTP Proxy"
- Maybe reply: Todd Towles: "RE: Netcat through Squid HTTP Proxy"
- Maybe reply: Todd Towles: "RE: Netcat through Squid HTTP Proxy"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
Relevant Pages
|