Persistent SSH Tunneled Meterpreter from PaulDotCom on Vimeo.
http://pauldotcom.com/2010/03/resilient-ssh-tunneled-meterpr.html
Nifty method, however I would argue that storing the password in clear text for your ssh server probably isn’t the best idea, and if you’re forced to do this, then the account that has to have the exposed password, should be severely limited in privileges.
Keep up the good work PaulDotCom.. 🙂
More to come..