Sottolineature pescate qua e la quando capita

lunedì 20 aprile 2020

goBox - GO Sandbox To Run Untrusted Code


GO sandbox to run untrusted code.
goBox uses Ptrace to hook into READ syscalls, giving you the option to accept or deny syscalls before they are executed.

Usage
Usage of ./gobox:

gobox [FLAGS] command

flags:
-h Print Usage.
-n value
A glob pattern for automatically blocking file reads.
-y value
A glob pattern for automatically allowing file reads.

Use cases

You want to install anything
> gobox -n "/etc/password.txt" npm install sketchy-module

BLOCKED READ on /etc/password.txt
> gobox -n "/etc/password.txt" bash <(curl  https://danger.zone/install.sh)

BLOCKED READ on /etc/password.txt

You are interested in what file reads you favourite program makes.
Sure you could use strace, but it references file descriptors goBox makes the this much easier at a glance by printing the absolute path of the fd.
> gobox ls
Wanting to READ /usr/lib/x86_64-linux-gnu/libselinux.so.1 [y/n]
NOTE: It's definitely a better idea to encrypt all your sensitive data, goBox should probably only be used when that is inconvenient or impractical.
NOTE: I haven't made any effort for cross-x compatibility so it currently only works on linux. I'd happily accept patches to improve portability.




via KitPloit

Related posts


  1. Pentest Tools Free
  2. Termux Hacking Tools 2019
  3. Hacking Tools For Games
  4. Hacking Tools
  5. Hacker Tools Free
  6. Hacker Tools Hardware
  7. Hack Tools For Pc
  8. Pentest Tools Framework
  9. Pentest Tools Website Vulnerability
  10. Nsa Hacker Tools
  11. Hacker Hardware Tools
  12. Hack Tools 2019
  13. Pentest Reporting Tools
  14. Hacker Tools Free Download
  15. Free Pentest Tools For Windows
  16. Hacker Tools Free Download
  17. Hacker Tools For Mac
  18. Hack Apps
  19. Hack Tools For Ubuntu
  20. Hack Tool Apk No Root
  21. Top Pentest Tools
  22. Hacks And Tools
  23. Hack Apps
  24. Hacking Tools For Windows

Lettori fissi

Archivio blog