This forum is in archive mode. You will not be able to post new content.

Show Posts

This section allows you to view all posts made by this member. Note that you can only see posts made in areas you currently have access to.

Messages - AcidHead

Pages: [1]
Hacking and Security / Re: Need help with ettercap
« on: July 13, 2014, 05:12:06 PM »
everything seems alright, i'm sending packets from my MAC to the targets and routers MACs, the only strange thing is it seems like i'm sending way more packets to the target than the router like 10 times more... is there something specific that i should look for?

Hacking and Security / Re: Couldn't decide which distro should I use
« on: July 13, 2014, 02:32:43 PM »
i have that book too and have used the CD as a VM to follow the books examples, this book is a little outdated and the techniques discussed in it are to, but it will give you a good look at what exploit development is and is a good start....

Hacking and Security / Re: Need help with ettercap
« on: July 13, 2014, 02:26:40 PM »
Yes i thought of using wireshark to get a better look, but i'm a bit of a noob with it :P but i will definitely try to use it to get a better appreciation of what's going on and post anything that could be usefull...

Hacking and Security / Need help with ettercap
« on: July 13, 2014, 12:43:51 PM »
Hi everyone, i've been trying to do DNS spoofing on my LAN but i have many problems with ettercap....

When i start ettercap in GUI mode select uniffied sniffing select my wireless interface and try to scan for hosts ettercap only finds my router not the target laptop i'm trying to DNS spoof, so i manualy go to Targets/Select TARGET(s) and enter both the router and target than when i try to check "MiTM/ARP Poisoning.../Sniff remote connection" it checks it i click OK and when i go again in "MiTM/ARP Poisoning.../" it's not checked!!

So i ty the text mode:
sudo ettercap -T -M arp:remote -i wlan1 -P dns_spoof -P chk_poison ROUTER_MAC/ROUTER_IP// TARGET_MAC/TARGET_IP//

in which case i have to enter the targets MAC and IP for ettercap to find them but ARP poisoning still doesent work, so i use chk_poison plugin:

chk_poison: Checking poisoning status...                                                                                                                                                           
chk_poison: No poisoning between ->

I have changed the UID and GID to 0 in the etter.conf file and removed the '#' in the iptable section..
i use Kubuntu 14.04 amd64 and have completly disabled my firewall...

any help would be appreciated :')

Hacking and Security / Re: Need help with real life hacking...
« on: June 30, 2014, 05:41:28 PM »
I do have physical access but i'm trying to prove a point, that someone can hack him remotely..

I have done a MiTM attack on him already but i want remote code execution.

The torrent scenario is possible but i don't think he would fall for it, keep in mind he knows i'm trying to hack him, and i don't think he would download from anything but Pirate Bay and other popular torrent sites...

i was thinking of using a MiTM to inject a trojan in a file he downloads, i don't know if that's possible but it seems the best way to go about, or use some browser side exploit(i haven't found any for the version of FF and plugins he has)...

any ideas is welcome....

Hacking and Security / Breaking into my brothers laptop (LAN)
« on: June 29, 2014, 11:09:59 PM »
The following is a real-world scenario i'm faced with (my brother's laptop), any ideas on how i should approach it?
only interested in remote code execution without using RATs or any File Format attacks...

Victim is in the same LAN as me...
OS: Windows 7 Professional SP1 32-bit
Windows Updates: Enabled
Fire Wall: Windows Firewall
AV: AVG 2014

Browser: Firefox 29
Plugins: Adobe Acrobat, Java Deployment Toolkit 7.0.550.14

User: Doesn't use mail and will ONLY downloads from torrent sites...

Nmap Scan:
135/tcp   open  msrpc       Microsoft Windows RPC
139/tcp   open  netbios-ssn
445/tcp   open  netbios-ssn
554/tcp   open  rtsp?
2869/tcp  open  http        Microsoft HTTPAPI httpd 2.0 (SSDP/UPnP)
5357/tcp  open  http        Microsoft HTTPAPI httpd 2.0 (SSDP/UPnP)
|_http-methods: No Allow or Public header in OPTIONS response (status code 503)
|_http-title: Service Unavailable
10243/tcp open  http        Microsoft HTTPAPI httpd 2.0 (SSDP/UPnP)
|_http-methods: No Allow or Public header in OPTIONS response (status code 404)
|_http-title: Not Found
MAC Address: 70:1A:04:XX:XX:XX (Liteon Tech)

Goal: Remote Code Execution.

Reply for additional info.
Thanks for your time =)

Pages: [1]

Want to be here? Contact Ande, Factionwars or Kulverstukas on the forum or at IRC.