pkg.soopen package index

brew / rank 13511

Install rshijack with Homebrew, apk, Nix, pacman

TCP connection hijacker. Version 0.5.2 via Homebrew; verified 2026-09-12. Also installable with nix: nix profile install nixpkgs#rshijack.

install

Additional install commands

macOS

Homebrewverified · 100%
brew install rshijack

local Homebrew formula metadata

Linux

Alpine Linux apkverified · 92%
sudo apk add rshijack

Alpine Linux edge package indexes · rshijack · source: dl-cdn.alpinelinux.org

Nixverified · 92%
nix profile install nixpkgs#rshijack

nixpkgs package indexes · pkgs/by-name/rs/rshijack/package.nix · source: api.github.com

Arch Linux pacmanverified · 92%
sudo pacman -S rshijack

Arch Linux sync databases · rshijack · source: geo.mirror.pkgbuild.com

overview

Package summary

TCP connection hijacker

Commands and aliases

  • rshijack

history

Project history and usage

rshijack is a command-line TCP connection hijacker that sniffs sequence and acknowledgement values and injects a packet acceptable to the remote endpoint.

Project history

rshijack is a Rust rewrite of the 2001-era shijack tool. It was written for the TAMUctf 2018 challenge "brick house 100," where it was used to inject a command after a Telnet session completed two-factor authentication.

Adoption history

The project is packaged by Homebrew, Alpine, Nix, and Arch Linux according to source_facts.package-manager. Its official README also provides a container image workflow.

How it is used

A user supplies a network interface and the two endpoints of an existing TCP connection, then pipes the payload to inject into rshijack. Raw packet access normally requires elevated privileges. The official example targets Telnet in an isolated challenge environment.

Why package nerds care

rshijack is a compact Rust security utility with a focused raw-packet use case. It is of interest as both a practical network-testing tool and a packaged rewrite of an older Unix security program.

Timeline

  • 2001: The original shijack tool dates from this period, according to the official project description.
  • 2018: rshijack was created for TAMUctf's "brick house 100" challenge.
  • 2020: The project records use in research concerning a Google Compute Engine container-to-host escape, followed by an upstream patch.

Related projects

  • shijack: The earlier TCP connection hijacker that inspired the Rust rewrite.
  • sniffglue and arpspoof: Companion tools mentioned in the official demonstration context.

security posture

Risk level: green

narrow executable package without higher-risk signals.

Risk classifier

green risk · low confidence · appliance

Why

  • narrow executable package without higher-risk signals

Signals

  • metadata:no-higher-risk-signals

Install behavior

  • No Homebrew post-install hook is recorded in formula metadata.
  • Homebrew bottle metadata is available for 8 platform targets.
  • Build metadata lists 1 build dependencies.

Recommended review

Before unattended agent use, check whether the tool reads plaintext credentials, writes remote state, publishes artifacts, or shells out to plugins.

executables

Installed executables

CommandKindExposureNote
rshijackcliglobal executable

freshness

Version and freshness

These signals separate page generation age, package-manager activity, and upstream release comparison. Version lag is warned only when an evidence URL and comparable versions are present.

page generated2026-09-19
manager version0.5.2
manager updated2026-09-12
local dataok
upstreamcurrent
latest detectedv0.5.2

https://github.com/kpcyrd/rshijack

  • okNo freshness warnings were generated.

install metadata

Package metadata

Package keybrew:rshijack
Version0.5.2
Package managerHomebrew
Package manager pagehttps://formulae.brew.sh/formula/rshijack
Homepagehttps://github.com/kpcyrd/rshijack
Repositoryhttps://github.com/kpcyrd/rshijack
LicenseGPL-3.0-or-later
Source archivehttps://github.com/kpcyrd/rshijack/archive/refs/tags/v0.5.2.tar.gz
Last updated2026-09-12T11:21:30Z
Pulseupdated
Build dependenciesrust
Bottleavailable (on arm64_linux, arm64_sequoia, arm64_sonoma, arm64_tahoe, arm64_ventura, sonoma, ventura, x86_64_linux)
Homebrew post-installnot defined
Servicenone declared

registry facts

Source database details

Source DatabaseHomebrew formula API
Taphomebrew/core
Full Namershijack
Version Scheme0
Revision0
Bottle Stable Root URLhttps://ghcr.io/v2/homebrew/core
Deprecatedno
Disabledno
Keg Onlyno
URL Keys
  • stable

source database matches

Other package-manager records

Matches are pulled from external package-manager indexes and kept separate from local Automic Vault package links.

Nix95%

rshijack

nix profile install nixpkgs#rshijack
  • normalized package name match
  • Matched by: Rshijack
nixpkgs package indexes · api.github.com · nixpkgs package indexes: pkgs/by-name/rs/rshijack/package.nix from https://api.github.com/repos/NixOS/nixpkgs/git/trees/master?recursive=1
apk95%

rshijack 0.5.2-r0

TCP connection hijacker, Rust rewrite of shijack

https://github.com/kpcyrd/rshijack

sudo apk add rshijack
  • License: GPL-3.0-or-later
  • Architecture: x86_64
  • Source Package: rshijack
  • 1 dependencies
  • 1 provides
  • normalized package name match
  • Matched by: Rshijack
Alpine Linux edge package indexes · dl-cdn.alpinelinux.org · Alpine Linux edge package indexes: rshijack from https://dl-cdn.alpinelinux.org/alpine/edge/community/x86_64/APKINDEX.tar.gz
pacman95%

rshijack 0.5.2-2

TCP connection hijacker, rust rewrite of shijack

https://github.com/kpcyrd/rshijack

sudo pacman -S rshijack
  • License: GPL-3.0-or-later
  • Architecture: x86_64
  • 2 dependencies
  • normalized package name match
  • Matched by: Rshijack
Arch Linux sync databases · geo.mirror.pkgbuild.com · Arch Linux sync databases: rshijack from https://geo.mirror.pkgbuild.com/extra/os/x86_64/extra.db.tar.gz

source trail

Generated from repository data

This page is generated by av-web from the private package SQLite artifact built by scripts/generate-pkg-sqlite.py.

Used sources

  • Geiger risk classifier
  • cross-ecosystem install command graph
  • curated package history
  • external package-manager database matches
  • package relationship graph
  • package version freshness
  • package-page enrichment
  • pkg.so package database
  • pkgdb category and tag curation