EvilZone

Hacking and Security => Hacking and Security => Topic started by: Mandunto on January 09, 2015, 07:32:27 PM

Title: Where do I find modern techniques?
Post by: Mandunto on January 09, 2015, 07:32:27 PM
Hello there, Evilzone.


I've been trying for the past few days to sniff data using Wireshark on Windows 8.1 but without luck. I have three users connected to my WPA2 secured Wi-Fi network and this is what I'm trying to achieve:
I've tried to decrypt SSL/TLS sessions (Didn't work...), ARP poison the network (Didn't work...) and tweaking a lot of settings in my environment to test other approaches. I'm running out of ideas, but I really do want to do this, so therefore I'm asking here. Every single tutorial I've followed was useless.


While we're at it, I might as well ask how one can infect another user with a virus through a network (If it's even possible).


Thanks in advance to all answers.
Kind regards,
Mandunto.
Title: Re: Where do I find modern techniques?
Post by: neusbeer on January 09, 2015, 07:41:49 PM
You can use Cain & Abel for this (if you are a windows user).
http://www.oxid.it/cain.html

you can poison dns, intercept passwords and even bruteforce them with it,
catching urls, etc.


Title: Re: Where do I find modern techniques?
Post by: Mandunto on January 10, 2015, 08:35:16 PM
Could you perhaps elaborate? I'm fully aware of Cain & Abel, my problem is that I can't find any updated tutorials that can teach me how to use the tool.
Title: Re: Where do I find modern techniques?
Post by: d4rkcat on January 10, 2015, 08:58:14 PM
Could you perhaps elaborate? I'm fully aware of Cain & Abel, my problem is that I can't find any updated tutorials that can teach me how to use the tool.

You are fully aware and yet you don't know how to use a point and click tool on windows.
http://lmgtfy.com/?q=how+do+i+cain+and+able
Title: Re: Where do I find modern techniques?
Post by: Axon on January 10, 2015, 09:24:15 PM
Listen l33t h4x0r, cain & abel will capture clear texts passwords only  when HTTP is used. Otherwise, you have to bruteforce NTLM/NTLMv2 hashes to get credentials. Although I would recommend you use Kali Linux.
https://www.kali.org/
Title: Re: Where do I find modern techniques?
Post by: CyberGanG on January 11, 2015, 03:57:11 AM
Downgrade the session  from SSL to HTTP and grab data. eg use sslstrip https://github.com/moxie0/sslstrip (https://github.com/moxie0/sslstrip)
Title: Re: Where do I find modern techniques?
Post by: iTpHo3NiX on January 11, 2015, 04:33:11 AM
These days are coming to an end. Many of these large sites are beginning to use HSTS which makes attacks like these in their current form, useless.

Took the words out of my mouth.

You're not getting anything because they're using https. MitM is what you want to look into
Title: Re: Where do I find modern techniques?
Post by: CyberGanG on January 11, 2015, 06:24:06 AM
Yeah i am aware of HSTS technology (https://www.eff.org/deeplinks/2014/02/websites-hs) however, there is already some methods detected as potential threat to this mechanism.

For example Internet Explorer does not currently support the STS header. It should be noted that setting this header on a HTTP response has no effect since values could easily be forged by an active attack. To combat this bootstrapping problem, many browsers contain a preloaded list of sites that are configured for STS.

Force victim to downgrade to older browser version.
Title: Re: Where do I find modern techniques?
Post by: HTH on January 11, 2015, 07:45:45 AM
I'm not sure if its still a thing but uhh, evilgrade + sslstrip used to be kickass, i theorize that one could use evilgrade to force sslstrip to work :p Although tbh if you can make evilgrade work you could just install any shell-type software you wanted and keylog the fuck out of them :p
Title: Re: Where do I find modern techniques?
Post by: d4rkcat on January 11, 2015, 12:16:42 PM
Sslsplit (https://github.com/droe/sslsplit) is the new sslstrip.
Sslstrip is outdated and broken.
Beef (https://github.com/beefproject/beef) is a very effective tool for lots of different attacks over MITM.
You can use something like LANs.py (https://github.com/DanMcInerney/LANs.py) to inject the beef hook if you don't know how.