Vault 7: Projects

This publication series is about specific projects related to the Vault 7 main publication.

SECRET//ORCON//NOFORN
16.2 Scripts
Scripts are provided to install the Assassin subsystems to an instance of The Gibson,
save the state of Assassin subsystems, and restore that state. The installation and
state scripts are written to conduct or operate on a default installation of The
Gibson.
Install Script
The install script will extract the Assassin binaries to the local machine and
generate the required configuration file. The script will also create a user group 'the-
gibson' which it uses to manage system-wide permissions.
On the C2, the script will generate the output directory used by the Default Ingester.
On the LP, the script will attempt to identify the web server and add its user to the
'the-gibson' user group.
install_assassin.sh CONFIG_PATH [INSTALL_DIR [OUTPUT_DIR]]
Installs available Assassin subsystems to The Gibson.
The script will search for and install any available Assassin subsystems.
Subsystems:
Assassin Builder requires ./assassin_build
Assassin C2 requires ./assassin_c2 ./gibconfig.template
Assassin LP requires ./assassin_lp ./gibconfig.template
CONFIG_PATH
path to Galleon configuration file
INSTALL_DIR
path to the Assassin install directory (default =
/work/gibson)
OUTPUT_DIR
path to the Assassin output directory (default =
/work/assassin_out)
save_assassin.sh STATE_FILE [INSTALL_DIR]
Saves the state of the installed Assassin subsystems.
The script generates a TAR file containing state information for the subsystems.
STATE_FILE
path to the output TAR file
INSTALL_DIR
path to the Assassin install directory (default =
/work/gibson)
restore_assassin.sh STATE_FILE [INSTALL_DIR]
Restores the state of the installed Assassin subsystems.
The script accepts a TAR file containing state information for the subsystems
STATE_FILE
path to the input TAR file
INSTALL_DIR
path to the Assassin install directory (default =
133
SECRET//ORCON//NOFORN

e-Highlighter

Click to send permalink to address bar, or right-click to copy permalink.

Un-highlight all Un-highlight selectionu Highlight selectionh