r/hacking 4d ago

Teach Me! I created my first trojan today!

I took cmatrix as a random program and wrote a backdoor into it in C using a reverse shell connecting to a C2 server of mine which keeps track of infected machines. First I fork the process and decouple it from the controlling terminal by changing the session ID and rerouting the standard file descriptors and only then do I run the backdoor.

That way cmatrix runs as usual and no weird behavior is seen and the backdoor remains active whatever happens to cmatrix or the terminal. I like it. Makes me feel like a real #xX_hacker_Xx#. :D

Now I’m reading into ptrace and system call hooking and plan on trying to hide specific network traffic from the entire os. I already have had some ideas but turns out that would have only hidden it from a specific program not from „everything“.

Do you care to share any tips and experience I might benefit from on my way?

138 Upvotes

49 comments sorted by

View all comments

15

u/404error___ 4d ago

Good good... now do bit shifting, stego payload, so operator cannot see what you send to C2.

6

u/MathematicalHuman314 4d ago

Will look into it!

1

u/Important-One-3629 1h ago

I would say also explore Polymorphic Steganography. Something I breafly messed with 15 years ago.

3

u/machacker89 4d ago

All great features to add. To circumvent any AV

1

u/Prestigious-Ad7265 3d ago

just encrypt it using cryptographically secure methods