Log Poisoning Techniques
Overview
Method 1: PHP Session Poisoning
Complete 5-Step Workflow
# Common PHP session locations
/var/lib/php/sessions/sess_PHPSESSID
/tmp/sess_PHPSESSID
# Get PHPSESSID from cookies
curl -I http://target.com/ | grep -i set-cookieMethod 2: Apache/Nginx Access Log Poisoning
User-Agent Poisoning
Method 3: SSH Log Poisoning
SSH Auth Log Contamination
Method 4: Mail Log Poisoning
SMTP Log Contamination
Method 5: FTP Log Poisoning
FTP Authentication Logs
HTB Academy Log Poisoning Lab
Complete Lab Walkthrough
Advanced Log Poisoning Techniques
Multi-Field Poisoning
Persistent Shell Creation
Last updated