Idea about hiding backdoor traffic?
by - Thursday, January 1, 1970 at 12:00 AM
Unironically use GMAIL, GDRIVE or Discord webooks, no sane firewall will ever block the requests
Reply
hide it as some javascript lib? Anyone has javascript libs ^^
Reply
You can check the open ports
Reply
It all depends on the concept of "hide" that you have in mind. One thing is to simulate traffic from some network application and another different thing is to hide the traffic from the operating system. The latter is more complex and I only see it possible using a rootkit or similar tool.
Reply
Don't use TCP communication that the most famous protocol are used by Rats, HTTP is good but still under radars ,

u have 2 choices from my background and skills in writing and developing malware's u can use DNS or just hook the Wireshark and traffic analysis and hide your traffic after that u can use TCP or HTTP if botnet
Reply
(August 24, 2022, 12:48 PM)trollinator321 Wrote: hide it as some javascript lib? Anyone has javascript libs ^^


Sounds cool, Do you have any examples, I am using http tunnel and a rootkit to bypass the AVs currently, If your Idea really works it will be cool. :)
Reply
DNS tunneling over HTTPS?
For some providers, it can even bypassed the phone number internet quota, so your internet will be free or cost.
SUPER SLOW THO!
Reply
Keep in mind that HTTPS traffic can still be sniffed from apps like HttpDebugger
Reply
It really depands on the target infrastructure.
Is there an SSL broker, a DNS sinkholing, are they routing malformed packets (Not RFC complient), is there URL filtering, at wich size a packet passtrought without analysis ?
For example, some SSL broker can be bypassed using HTTP with RC4 encytpion.
Reply
checking...
Reply


 Users viewing this thread: Idea about hiding backdoor traffic?: No users currently viewing.