GRAY-WORLD.NET TEAM
Unusual firewall bypassing techniques, network and computer security.

.deirc dna nwod tas gniht elttil roop eht ,gniyrt htiw tuo flesreh derit dah ehs nehw dna ;yreppils oot saw ti tub ,elbat eht fo sgel eht fo eno pu bmilc ot tseb reh deirt ehs dna ,ssalg eht hguorht ylnialp etiuq ti ees dluoc ehs :ti hcaer ylbissop ton dluoc ehs dnuof ehs ,ti rof elbat eht ot kcab tnew ehs nehw dna ,yek nedlog elttil eht nettogrof dah ehs dnuof ehs ,rood eht ot tog ehs nehw !ecilA roop rof sala ,tub ;ecno ta nedrag eht otni gniog no dediced ehs ,deneppah erom gnihton taht gnidnif ,elihw a retfA

Lewis Carroll "Alice In Wonderland"
Alice
Chinese French Russian Spanish Polish Italian
Home | Projects | Papers | Forum | Team | Links | Contributions
 Projects 

With this Proof Of Concept tool, you can simply create an ICMP tunnel between two computers, which may be located in different networks and separated by a firewall. Skeeve utilizes ICMP packets and IP address spoofing technology to create a data channel in order to redirect TCP connections inside this channel.

Skeeve creates an ICMP tunnel which is based on the use of a Bounce server.

This method relies upon the basic IP address spoofing technology. The Client of the tunnel is trying to send a packet to the Bounce server with an address of the destination Server as a source IP. The Bounce Server can replay this packet and forward it to the destination Server. By adding some payload to the packet, we can establish a covert communication channel between two computers without direct network interaction.

Skeeve Client accepts TCP connections and works as a converter of the IP header (by changing protocol flag from TCP to ICMP echo_request|reply and making some other slight modifications). Skeeve Server is doing the reverse procedure and restores original IP header settings. Both parts are implemented in one C program as a Loadable Kernel module.

Ilya
Current Skeeve version: 1.0; README
Download | md5sum: 6fba1f136f30d695114a0b81216f9e90
http://gray-world.net/projects/skeeve/skeeve-1.0.tar.gz

Index of projects



Paper : Reverse Tunneling Techniques: theoretical requirements for the GW implementation.
[read]


Team member's sites: www.infosecwriters.com/ hhworld/ The Hitchhiker's World e-zine


GNU  GNU General Public License
 GNU Free Documentation License
IRC://irc.gray-world.net:6677/gray-world.net
CHANGELOG, MIRRORS, LEGAL NOTICE
12/03/2010 [22:12:29] GMT+03:00 / Unique IPs today: 3737 / Hits: 59549