TELNET.java 3.9 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147
  1. package de.tudarmstadt.informatik.hostage.protocol;
  2. import java.util.ArrayList;
  3. import java.util.List;
  4. import de.tudarmstadt.informatik.hostage.wrapper.ByteArray;
  5. public final class TELNET implements Protocol<ByteArray> {
  6. private static enum STATE {
  7. NONE, OPEN, CLOSED, LOGIN, AUTHENTICATE, LOGGED_IN
  8. };
  9. private STATE state = STATE.NONE;
  10. private byte[] usr;
  11. private byte[] cmd;
  12. @Override
  13. public int getPort() {
  14. return 23;
  15. }
  16. @Override
  17. public TALK_FIRST whoTalksFirst() {
  18. return TALK_FIRST.CLIENT;
  19. }
  20. @Override
  21. public List<ByteArray> processMessage(ByteArray message) {
  22. List<ByteArray> response = new ArrayList<ByteArray>();
  23. switch (state) {
  24. case NONE:
  25. response.add(new ByteArray(cmdRequests));
  26. response.add(new ByteArray(getCmdResponses(message.get())));
  27. state = STATE.OPEN;
  28. break;
  29. case OPEN:
  30. response.add(new ByteArray("Debian GNU/Linux 7.0\r\n".getBytes()));
  31. response.add(new ByteArray("raspberrypi login: ".getBytes()));
  32. state = STATE.LOGIN;
  33. break;
  34. case LOGIN:
  35. if(message.get()[0] == (byte) 0xff && message.get()[1] == (byte) 0xf4) {
  36. state = STATE.CLOSED;
  37. break;
  38. }
  39. usr = new byte[message.size()-2];
  40. System.arraycopy(message.get(), 0, usr, 0, message.size() - 2);
  41. response.add(new ByteArray("Password: ".getBytes()));
  42. state = STATE.AUTHENTICATE;
  43. break;
  44. case AUTHENTICATE:
  45. if(message.get()[0] == 0xff && message.get()[1] == 0xf4) {
  46. state = STATE.CLOSED;
  47. break;
  48. }
  49. response.add(new ByteArray("Last Login: \r\nLinux raspberrypi 3.6.11+\r\n".getBytes()));
  50. response.add(new ByteArray(concatenate(a, usr, b, usr, c)));
  51. state = STATE.LOGGED_IN;
  52. break;
  53. case LOGGED_IN:
  54. cmd = new byte[message.size()-2];
  55. System.arraycopy(message.get(), 0, cmd, 0, message.size() - 2);
  56. if (new String(cmd).contains("exit")) {
  57. response.add(new ByteArray("logout\r\n".getBytes()));
  58. state = STATE.CLOSED;
  59. } else {
  60. String bash = "-bash: " + new String(cmd)
  61. + ": command not found";
  62. response.add(new ByteArray(bash.getBytes()));
  63. response.add(new ByteArray("\r\n".getBytes()));
  64. response.add(new ByteArray(concatenate(a, usr, b, usr, c)));
  65. }
  66. break;
  67. default:
  68. response.add(new ByteArray("\r\nlogout\r\n".getBytes()));
  69. state = STATE.CLOSED;
  70. break;
  71. }
  72. return response;
  73. }
  74. @Override
  75. public boolean isClosed() {
  76. return (state == STATE.CLOSED);
  77. }
  78. @Override
  79. public boolean isSecure() {
  80. return false;
  81. }
  82. @Override
  83. public Class<ByteArray> getType() {
  84. return ByteArray.class;
  85. }
  86. @Override
  87. public String toString() {
  88. return "TELNET";
  89. }
  90. private byte[] getCmdResponses(byte[] request) {
  91. byte[] resp = new byte[request.length];
  92. for (int i = 0; i < resp.length - 2; i += 3) { // respond to all
  93. // requests with no
  94. resp[i] = (byte) 0xff;
  95. if (request[i + 1] == (byte) 0xfb)
  96. resp[i + 1] = (byte) 0xfe;
  97. else if (request[i + 1] == (byte) 0xfd)
  98. resp[i + 1] = (byte) 0xfc;
  99. else
  100. resp[i + 1] = (byte) 0xfe;
  101. resp[i + 2] = request[i + 2];
  102. }
  103. return resp;
  104. }
  105. private final byte[] cmdRequests = { (byte) 0xff, (byte) 0xfd, 0x18,
  106. (byte) 0xff, (byte) 0xfd, 0x20, (byte) 0xff, (byte) 0xfd, 0x27 };
  107. private final byte[] a = { 0x1b, 0x5d, 0x30, 0x3b };
  108. private final byte[] b = { 0x40, 0x72, 0x61, 0x73, 0x70, 0x62, 0x65, 0x72,
  109. 0x72, 0x79, 0x70, 0x69, 0x3a, 0x20, 0x7e, 0x07, 0x1b, 0x5b, 0x30,
  110. 0x31, 0x3b, 0x33, 0x32, 0x6d };
  111. private final byte[] c = { 0x40, 0x72, 0x61, 0x73, 0x70, 0x62, 0x65, 0x72,
  112. 0x72, 0x79, 0x70, 0x69, 0x1b, 0x5b, 0x30, 0x30, 0x6d, 0x20, 0x1b,
  113. 0x5b, 0x30, 0x31, 0x3b, 0x33, 0x34, 0x6d, 0x7e, 0x20, 0x24, 0x1b,
  114. 0x5b, 0x30, 0x30, 0x6d, 0x20 };
  115. public byte[] concatenate(byte[]... bytes) {
  116. int newSize = 0;
  117. for (byte[] b : bytes)
  118. newSize += b.length;
  119. byte[] dst = new byte[newSize];
  120. int currentPos = 0;
  121. int newPos;
  122. for (byte[] b : bytes) {
  123. newPos = b.length;
  124. System.arraycopy(b, 0, dst, currentPos, newPos);
  125. currentPos += newPos;
  126. }
  127. return dst;
  128. }
  129. }