This script in asp permettedi executing of the commandos taking advantage of a bug of the XSSper greater info you can see the video:
and the shell:
passwd:
Code:
SecurityTeam

XSS Shell Install Video

7 minutes video shows how can you installation and configuration of xssshell-xsstunnell

Code:
For further details and idea refer to the white paper  XSS  Tunnelling. It may can take about 60 seconds to load.

http://ferruh.mavituna.com/blogs/XSS...stallation.swf

Explore More

Domain Stealing or How to Hijack a Domain

Please note this is an old technique again, just for learning purposes, learn how the old techniques worked and why they worked, then try and discover new ways to do

How to Hack a Window XP Admins Password

This is a cool little computertrick for Microsoft Windows trick I’ve picked up in my travels and decided to share it with you fine and ethical individuals =). Log in

Selection of tools to automate an attack SQL Injection

sqlmap (http://sqlmap.sourceforge.net/) Full support: MySQL, Oracle, PostgreSQL and Microsoft SQL Server. Partially supported: Microsoft Access, DB2, Informix, Sybase and Interbase. SQL Power Injector (http://www.sqlpowerinjector.com/) Implemented support for: Microsoft SQL Server,