TELNET.java 3.6 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138
  1. package de.tudarmstadt.informatik.hostage.protocol;
  2. import java.util.ArrayList;
  3. import java.util.List;
  4. import de.tudarmstadt.informatik.hostage.wrapper.ByteArray;
  5. public final class TELNET implements Protocol<ByteArray> {
  6. private static enum STATE {
  7. NONE, OPEN, CLOSED, LOGIN, AUTHENTICATE, LOGGED_IN
  8. };
  9. private STATE state = STATE.NONE;
  10. private byte[] usr;
  11. private byte[] cmd;
  12. @Override
  13. public int getPort() {
  14. return 23;
  15. }
  16. @Override
  17. public TALK_FIRST whoTalksFirst() {
  18. return TALK_FIRST.CLIENT;
  19. }
  20. @Override
  21. public List<ByteArray> processMessage(ByteArray message) {
  22. List<ByteArray> response = new ArrayList<ByteArray>();
  23. switch (state) {
  24. case NONE:
  25. response.add(new ByteArray(cmdRequests));
  26. response.add(new ByteArray(getCmdResponses(message.get())));
  27. state = STATE.OPEN;
  28. break;
  29. case OPEN:
  30. response.add(new ByteArray("Debian GNU/Linux 7.0\r\n".getBytes()));
  31. response.add(new ByteArray("raspberrypi login: ".getBytes()));
  32. state = STATE.LOGIN;
  33. break;
  34. case LOGIN:
  35. System.arraycopy(message.get(), 0, usr, 0, message.size() - 2);
  36. response.add(new ByteArray("Password: ".getBytes()));
  37. state = STATE.AUTHENTICATE;
  38. break;
  39. case AUTHENTICATE:
  40. response.add(new ByteArray(
  41. "Last Login: \r\nLinux raspberrypi 3.6.11+\r\n".getBytes()));
  42. response.add(new ByteArray(concatenate(a, usr, b, usr, c)));
  43. state = STATE.LOGGED_IN;
  44. break;
  45. case LOGGED_IN:
  46. System.arraycopy(message.get(), 0, cmd, 0, message.size() - 2);
  47. if (new String(cmd).contains("exit")) {
  48. response.add(new ByteArray("logout\r\n".getBytes()));
  49. state = STATE.CLOSED;
  50. } else {
  51. String bash = "-bash: " + new String(cmd)
  52. + ": command not found";
  53. response.add(new ByteArray(bash.getBytes()));
  54. response.add(new ByteArray("\r\n".getBytes()));
  55. response.add(new ByteArray(concatenate(a, usr, b, usr, c)));
  56. }
  57. break;
  58. default:
  59. response.add(new ByteArray("\r\nlogout\r\n".getBytes()));
  60. state = STATE.CLOSED;
  61. break;
  62. }
  63. return response;
  64. }
  65. @Override
  66. public boolean isClosed() {
  67. return (state == STATE.CLOSED);
  68. }
  69. @Override
  70. public boolean isSecure() {
  71. return false;
  72. }
  73. @Override
  74. public Class<ByteArray> getType() {
  75. return ByteArray.class;
  76. }
  77. @Override
  78. public String toString() {
  79. return "TELNET";
  80. }
  81. private byte[] getCmdResponses(byte[] request) {
  82. byte[] resp = new byte[request.length];
  83. for (int i = 0; i < resp.length - 2; i += 3) { // respond to all
  84. // requests with no
  85. resp[i] = (byte) 0xff;
  86. if (request[i + 1] == (byte) 0xfb)
  87. resp[i + 1] = (byte) 0xfe;
  88. else if (request[i + 1] == (byte) 0xfd)
  89. resp[i + 1] = (byte) 0xfc;
  90. else
  91. resp[i + 1] = (byte) 0xfe;
  92. resp[i + 2] = request[i + 2];
  93. }
  94. return resp;
  95. }
  96. private final byte[] cmdRequests = { (byte) 0xff, (byte) 0xfd, 0x18,
  97. (byte) 0xff, (byte) 0xfd, 0x20, (byte) 0xff, (byte) 0xfd, 0x27 };
  98. private final byte[] a = { 0x1b, 0x5d, 0x30, 0x3b };
  99. private final byte[] b = { 0x40, 0x72, 0x61, 0x73, 0x70, 0x62, 0x65, 0x72,
  100. 0x72, 0x79, 0x70, 0x69, 0x3a, 0x20, 0x7e, 0x07, 0x1b, 0x5b, 0x30,
  101. 0x31, 0x3b, 0x33, 0x32, 0x6d };
  102. private final byte[] c = { 0x40, 0x72, 0x61, 0x73, 0x70, 0x62, 0x65, 0x72,
  103. 0x72, 0x79, 0x70, 0x69, 0x1b, 0x5b, 0x30, 0x30, 0x6d, 0x20, 0x1b,
  104. 0x5b, 0x30, 0x31, 0x3b, 0x33, 0x34, 0x6d, 0x7e, 0x20, 0x24, 0x1b,
  105. 0x5b, 0x30, 0x30, 0x6d, 0x20 };
  106. public byte[] concatenate(byte[]... bytes) {
  107. int newSize = 0;
  108. for (byte[] b : bytes)
  109. newSize += b.length;
  110. byte[] dst = new byte[newSize];
  111. int currentPos = 0;
  112. int newPos;
  113. for (byte[] b : bytes) {
  114. newPos = b.length;
  115. System.arraycopy(b, 0, dst, currentPos, newPos);
  116. currentPos += newPos;
  117. }
  118. return dst;
  119. }
  120. }