Skip to content
reverseshell

Posts tagged: #web

How a PHP reverse shell works on a compromised web app, the fsockopen and proc_open variants, and what to do when exec is disabled.
How a Local File Inclusion becomes code execution and then a reverse shell — via log poisoning, PHP session files, and php:// wrappers — in authorized web testing.
The difference between a webshell and a reverse shell, why testers often use both, and how each one looks to a defender.