Search Hacking Mode Trick Updates

Showing posts with label trik. Show all posts
Showing posts with label trik. Show all posts

Infinity Exists Featured On 60 Minutes

Friday, December 5, 2008 · 0 comments

CBS’s 60 Minutes ran a segment on internet insecurities and they showed the ease of finding tutorials on youtube to exploit them. They chose our video on cracking WEP to demonstrate and showed a short clip of it. The segment is up on the CBS website and you can check it out here. Thank you CBS for the free publicity!
—————————————————————————————————————————– Update - Live Stream



Read More......

Exploit Hacking

· 0 comments

Since Infinity Exists hasn’t had time to release a new episode, I decided to revamp a two part series, Exploit Hacking and Exploit Hacking 2 - Privilege Escalation, that I made a year before Infinity Exists was created. It may be a little dated, but it provides great information on how a hacker can find an vulnerability on a remote computer and exploit it to gain remote access. Also, the video shows how a hacker can raise their privileges on the remote machine to administrator. I added text throughout the video to make it easier to understand. Furthermore, Infinity Exists plans to do a more up-to-date and more detailed series of episodes on “exploit hacking.”


Full Scale Video Here
Download Here

Read More......

Singing Tesla Coil

· 0 comments

This weekend was UIUC’s annual Engineer Open House, and last night there was a Singing Tesla Coil show. The Tesla coils were built by Steve Ward, a EE student at UIUC. “Steven has developed Tesla Coils with high levels of control allowing audio modulation of their lightning-like display. Interfacing the Continuum Fingerboard with this technology will generate a musically expressive and highly energetic, multi-voiced performace” (EOH Exhibit Guide).

Full Scale Video Here
Download Here

Read More......

Windows SMB Relay Exploit

· 0 comments

In this Underground video, Overide demonstrates how to obtain root access on a fully patched Windows XP SP3 Machine. He exploits a flaw in Windows Server Message Block (SMB) which is used to provide shared access to files between hosts on a network. Overide utilizes the Metasploits Framework to run the exploit. It works by relaying a SMB authentication request to another host which provides Metasploit with a authenticated SMB session, and if the user is an administrator, Metasploits will be able to execute code on the target computer such as a reverse shell. For this exploit to run, the target computer must try to authenticate to Metasploit. Overide forces the target computer to perform a SMB authentication attempt by using a Ettercap Filter. Full Scale Video Here
Download Here
Download Ettercap Filter Here

Read More......

Beer Pong Table

· 0 comments

The last few days I’ve been helping my friend Charlie construct his Illinois State University (ISU) Beer Pong Table. The legs and supports of the table are made from his roommate Brandon’s hockey sticks, and the table top is made of plywood with a 1/8″ sheet of Acrylic on top. Our friend Tyler etched ISU’s mascot, Red Bird, into the Acrylic; it was done free-hand with a dremel (Compare his etching to image). Tyler also did the text on the table: “ISU” and ” What you call Addiction … We call Dedication”. I did the LED array and the wiring; when the LEDs are lit, the light catches the etching in the acrylic. The LED controller I made allows you to switch between the LEDs being constantly on or controlled by an audio input. However, the LEDs we used are only lit at a specific voltage, so it doesn’t work very well. Full Scale Video Here
Download Here
Pre-Amp Schematic

Read More......

Beer Pong Table

· 0 comments

The last few days I’ve been helping my friend Charlie construct his Illinois State University (ISU) Beer Pong Table. The legs and supports of the table are made from his roommate Brandon’s hockey sticks, and the table top is made of plywood with a 1/8″ sheet of Acrylic on top. Our friend Tyler etched ISU’s mascot, Red Bird, into the Acrylic; it was done free-hand with a dremel (Compare his etching to image). Tyler also did the text on the table: “ISU” and ” What you call Addiction … We call Dedication”. I did the LED array and the wiring; when the LEDs are lit, the light catches the etching in the acrylic. The LED controller I made allows you to switch between the LEDs being constantly on or controlled by an audio input. However, the LEDs we used are only lit at a specific voltage, so it doesn’t work very well. Full Scale Video Here
Download Here
Pre-Amp Schematic

Read More......

Password Phishing

· 0 comments

Phishing is a method of obtaining sensitive information such as usernames and passwords by pretending to be a trusted website. Tehdead shows us a variety of password phishing techniques that enable an attacker to trick a user into giving up their login information. The first step is to create a fake login identical to the login on the trusted website. In order to not raise suspicion, Tehdead explains two methods to capture the victim’s password and then transfer them to the real website. One method is to sumbit the information to a php page that is disguised as a pop-up advertisment, and the other is to send the username and password to a simular php page that is contained in an iframe. Lastly, Tehdead describes how to use link manipulation with BBcode to social engineer a victim into going to the fraudulent website. Full Scale Video Here
Download Here

Read More......

Bypass Cisco Clean Access & Cisco NAC Appliance

· 0 comments

Cisco NAC Appliance (formerly Cisco Clean Access) is a Network Admission Control (NAC) product that is uses to enforce security policy on computers seeking to access network resources. Therefore, an administrator can force users to comply to a policy that requires the user to install or remove programs. For example, a university I previously attended required students to install McAfee Antivirus Software and remove Peer-to-Peer programs before they were allowed to access the internet.

To bypass Cisco Clean Access a user can simply change their browser’s User Agent to an Operating System that does not require this program [ex. Mozilla/5.0 (X11; U; Linux i586; en-US; rv:1.7.8) Gecko/20050511]. An easy way to change your User Agent in Firefox is to download User Agent Switcher.

With Cisco NAC Appliance, Cisco added additional detection mechanisms such as TCP fingerprinting and JavaScript OS detection, so the User Agent trick will not work. However, by changing the default parameters of the Windows TCP/IP stack the user can still connect to the network without running any host-based checks. You can do this with Kevin.

Video Demonstration:

Full Scale Video Here
Download Here

Read More......

Installasi Program di Backtrack [ Part I ]

Thursday, November 27, 2008 · 0 comments

Setelah menginstall distro Backtrack di linuxbox yang saya gunakan, rasanya kurang menarik bila tidak menambahkan beberapa tools yang membantu saya dalam kegiatan tulis-menulis :D seperti saat menulis artikel ini, saya menggunakan applikasi Bluefish versi 1.0.7. Selain applikasi untuk perkantoran, saya juga menanamkan beberapa applikasi seperti :

  • Openoffice 2.2.1
  • Abiword 2.4
  • The Gimp 2.2.17
  • Virtualbox 1.5.2
  • Cedega 5.1
  • Bluefish 1.0.7
  • Kaffeine 0.8.1
  • XMMS 1.2.10
  • Xine-ui 0.99.5

Applikasi tersebut sudah saya coba dan berjalan tanpa hambatan, untuk menambah applikasi pada Backtrack, kita hanya memerlukan konverter module yang sama dengan distro Slax, ya karena Backtrack berbasis Slax, maka Anda dapat menggunakan tools untuk merubah file berektensi *.tgz, *.mo, *.rpm ke *.lzm, disini saya menggunakan tools seperti mo2lzm, rpm2lzm, tgz2lzm dan lzm2dir yang semua’a dapat di peroleh dari situs Slax.

Apabila tools tersebut sudah tertanam di Backtrack Anda, maka command yang dapat Anda jalankan seperti berikut :

bt ~ # mkdir /root/slax_modules/applikasi/chkrootkit-0.46a-6
bt ~ # mo2lzm chkrootkit_0_46a-6.mo chkrootkit_0_46a-6.lzm
bt ~ # lzm2dir chkrootkit_0_46a-6.mo.lzm /root/slax_modules/applikasi/chkrootkit-0.46a-6

Selanjutnya Anda hanya tinggal meng-copy paste file yang sudah di ekstrak saja :D

Referensi:
http://slax.hosting4p.com
http://slax.hosting4p.com/modules.php

Read More......

TUTORIAL MENJEBOL PROTEKSI WEP

Friday, November 21, 2008 · 0 comments

Ini adalah bagian kedua dari praktek Menjebol HotSpot. Jikalau pada artikel sebelumnya kita membahas bagaimana menembus batas proteksi MAC address, pada kali ini kita akan membahas bagaimana mendapatkan akses HotSpot yang menggunakan WEP (Wired Equivalent Privacy) Keys.

Alat yang kita butuhkan adalah :

1. Sebuah Laptop

2.Sebuah Wireless Adapter yang mendukung Mode Monitoring dan Injection.

3.Linux Live CD distro : Backtrack 2.0

Mengapa kita membutuhkan Laptop ? Tentu saja karena akses HotSpot biasanya diberikan untuk pengguna yang Mobile. Dan dengan laptop kita memiliki fleksibilitas yang tinggi pula.

Lalu apa yang dimaksud dengan Wireless Adapter yang mendukung mode monitoring dan injection ? Perlu anda ketahui, tidak semua Wireless Adapter yang ada dipasaran, maupun yang sudah built in dalam laptop, mendukung mode monitoring dan injection yang diperlukan untuk WEP hacking ini.

Yang perlu anda perhatikan adalah Chip dari Wireless Adapter anda. Chip terbaik dalam melakukan wireless hacking adalah Atheros dan Ralink. Namun Atheros adalah pilihan utama. Tidak banyak wireless adapter yang memiliki chip atheros di Indonesia, anda dapat mencari beberapa merk dibawah ini :

1. 3Com 3CRPAG175B

2.3Com 3CRXJK10075

3.DLINK DWL-G630 Rev C

4.Linksys WPC55AG

5.TrendNET TEW-441PC

6.TrendNET TEW-443PI

7.TP-LINK TL-WN610G

tl-wn610g.jpg

Jika anda telah memilikinya, maka anda dapat memulai Langkah pertama dalam Wireless Hacking ini ) yaitu lakukan booting dengan CD Backtrack anda .

3backtrack.jpg

Langkah kedua tentu saja, langsung buka console anda dan ketikkan command berikut(saya asumsikan wireless adapter anda berchipset atheros) :

airmon-ng stop ath0

airmon-ng start wifi0

Kedua command ini berguna untuk mengaktifkan mode monitoring dan injection pada wireless adapter anda. Kemudian lanjutkan dengan monitoring jaringan wireless dengan mengetikkan command berikut :

airodump-ng ath0

screen1.gif

Akan tampil seluruh jaringan wireless yang terdeteksi seperti diatas. Tampak terlihat Access Point Rek-1 diproteksi dengan WEP Encryption. itulah korban kita. AP Rek-1 diset pada Channel 6 dan memiliki BSSID 00:19:5B:5C:62:92 . Sekarang saatnya melakukan penyerangan.Buka Console baru dan ketikkan :

airodump-ng –channel 6 –bssid 00:19:5B:5C:62:92 -w hasil ath0

Perintah diatas akan mengumpulkan paket data yang dibutuhan untuk proses Cracking.

Selanjutnya lakukan injeksi paket pada Client yang terkoneksi pada AP untuk mendapatkan paket ARP lebih cepat. Bukalah lagi Console baru tanpa menutup console yang sebelumnya dan ketik :

aireplay-ng –arpreplay -b 00:19:5B:5C:62:92 -h 00:19:D2:45:D0:EB ath0

Client yang diserang ini memiliki Mac address 00:19:D2:45:D0:EB (lihat pada screenshot diatas pada tabel station yang terletak dibawah) . Anda tidak menemukan Mac address 00:19:D2:45:D0:EB pada screenshot ? tentu saja karena saat dilakukan screenshot belum terdeteksi P

Tidak sabar menunggu ? Untuk mempercepat lagi datangnya ARP , maka kita dapat melakukan serangan Deauthentication untuk memutuskan hubungan Client ke AP sehingga ARP yang biasanya didapat saat awal koneksi client dapat lebih cepat didapat. Bukalah console baru sekali lagi dan ketikkan :

aireplay-ng –deauth 5 -c 00:19:D2:45:D0:EB -a 00:19:5B:5C:62:92 ath0

Hasil dari ketiga perintah ini dapat anda lihat pada screenshot dibawah ini :

snapshot3.png

I Like this Screenshot )

Sampai sejauh ini anda telah melakukan pengumpulan paket yang dibutuhkan untuk menjebol WEP Keys. Langkah terakhir yang harus anda lakukan adalah buka console baru lagi dan ketikkan perintah berikut :

aircrack-ng hasil*.cap

atau apabila anda memiliki aircrack versi terbaru anda dapat juga mengetikkan perintah seperti berikut :

aircrack-ptw hasil-01.cap

Dan tunggulah beberapa menit hingga anda mendapatkan key tersebut ) Maaf Screenshot yang satu ini lupa saya buat, tapi yang pasti saya berhasil melakukannya dalam waktu 30 Menit dengan perintah aircrack-ptw hasil-01.cap .

Tertarik melakukannya ?

Read More......

Install BackTrack 3 dual boot with Windows XP

· 0 comments

Bagi teman-teman yang sudah mempunyai Operating Windows tapi ingin mencoba dan belajar tentang backtrack, jangan khawatir karena kalian dapat menginstal backtrack pada komputer yang sudah terinstal windows, syaratnya kalian hanya menyiapkan partisi yang akan digunakan untuk penginstalan backtrack. Berikut adalah penjabaran langkah-langkah instalasinya,,, kalian dapat mengadaptasikan langkah-langkah berikut :

Pertama-tama misal punya 2 partisi windows, yaitu :
- sda1 primary 40 GB ntfs bootable
(ini adalah partisi system dengan tipe ntfs buat ngeboot windows XP)
- sda2 logical 70 GB ntfs
(partisi windows untuk penyimpanan data)

Kedua-dua bikin lagi 2 partisi untuk keperluan nginstall BT3, yaitu :
- sda3 logical 2 GB linux-swap
(ini adalah partisi swap, biasanya 2 kali dari besarnya RAM kita)
- sda4 logical 10 GB ext3
(ini adalah partisi yang digunain buat BT3, boot juga ditaroh dimari)

Pastikan semua partisi yang ada telah di unmount even itu partisi windows (swap abaikan saja):
bt ~ # umount /dev/sda1
bt ~ # umount /dev/sda2
bt ~ # umount /dev/sda4

Buat directory di directory mnt, pada langkah ini dibuat directory sda4 :
bt ~ # mkdir /mnt/sda4

Mount sda4 di directory sda4 :
bt ~ # mount /dev/sda4 /mnt/sda4

Copy file-file utama dari Backtrack ke directory sda4 (proses ini memakan waktu lama, harap bersabar) :
bt ~ # cp –preserve -R /{bin,boot,dev,home,pentest,root,usr,etc,lib,opt,sbin,var} /mnt/sda4/

Bikin directory mnt,proc,sys,tmp di directory sda4 :
bt ~ # mkdir /mnt/sda4/{mnt,proc,sys,tmp}

Kemudian mount an already visible directory:
bt ~ # mount –bind /dev/ /mnt/sda4/dev/

Abiz itu mount :
bt ~ # mount -t proc proc /mnt/sda4/proc/

Kemudian copy file boot ke directory boot pada sda4 :
bt ~ # cp /boot/vmlinuz /mnt/sda4/boot/

Chroot directory sda4 :
bt ~ # chroot /mnt/sda4/ /bin/bash

Setelah chroot, prompt akan berubah menjadi seperti berikut :
bt / #

Edit lilo untuk ngejalanin dual boot :
bt / # nano /etc/lilo.conf

lba32
boot = /dev/sda
prompt
timeout = 1200
change-rules
reset
vga = 773
image = /boot/vmlinuz
root = /dev/sda4
label = BackTrack_3
read-only

other = /dev/sda1
label = Windows_XP
table = /dev/sda

#untuk menyimpan konfigurasi lilo.conf pada nano editor, teken keyboard ctrl+o
#kemudian simpen ke /etc/lilo.conf (klo udah otomatis muncul tulisannya, langsung teken keyboard enter ajah)
#trus klo mw udahan / keluar dari nano editor, teken keyboard ctrl+x

Lihat versi lilo sekaligus ngidupin lilo n nulis ke boot sector :
bt / # lilo -v
Jika berhasil pastikan tulisan ini muncul :
Boot image: /boot/vmlinuz
Added BackTrack_3 *

Boot other: /dev/sda1, on /dev/sda, loader CHAIN
Added Windows_XP

Kemudian keluar dari chroot :
bt / # exit

Setelah exit prompt akan kembali ke semula :
bt ~ #

Unmount directory berikut :
bt ~ # umount /mnt/sda4/dev/
bt ~ # umount /mnt/sda4/proc/

Reboot leptop / PC ke sda dan lihat hasil akhirnya….!
bt ~ # reboot

Selamat mencoba menginstal backtrack 3 dual boot dengan windows xp


Source : http://indobacktrack.or.id/backtrack-newbie/install-backtrack-3-dual-boot-with-windows-xp.html

Read More......

Howto Install Backtrack 3 Final ke Hardisk menggunakan Slax Installer

· 0 comments

Nah ide ini muncul ... ditanya sama temen ( aican ) gimana sih caranya menginstall backtrack 3 final ke dalam hardisk , ya memang backtrack 3 final ini tidak mendukung install langsung tidak seperti versi-versi sebelumnnya , disini saya menggunakan cara yang singkat dan user friendly , semoga bermanfaat.


Nah ide ini muncul ... ditanya sama temen ( aican ) gimana sih caranya menginstall backtrack 3 final ke dalam hardisk , ya memang backtrack 3 final ini tidak mendukung install langsung
tidak seperti versi-versi sebelumnnya , disini saya menggunakan cara yang singkat dan user friendly , semoga bermanfaat.

1. Siapkan Space ext3
Sebelumnya saya menggunakan partition magic dalam membagi partisi di hardisk saya
lalu saya pilih dan format dengan ext3 ( 12 GB untuk backtrack ) saya lebih menyukai ini :D cari aman dan saran saya pilih yang aman ( jika belum paham sebaiknya anda googling deh untuk partition magic di windows ini ) , kalau anda experd anda cukup menggunakan fdisk di backtrack ini atau qparted ( KDE )



2. Boot Linux anda dengan Bactrack 3 lalu masuk startx , buka shell di x-windows

bt ~ # uname ; id ;w ; cat /proc/version
Linux
uid=0(root) gid=0(root) groups=0(root),1(bin),2(daemon),3(sys),4(adm),6(disk),10(wheel),11(floppy)
22:35:01 up 58 min, 4 users, load average: 0.21, 0.10, 0.16
USER TTY FROM LOGIN@ IDLE JCPU PCPU WHAT
root tty1 - 21:37 57:52 0.01s 0.00s /bin/sh /usr/bin/startx
root pts/0 :0 21:37 57:26 0.00s 0.76s kded [kdeinit] --new-startup
root pts/1 :0.0 21:43 13:04 0.01s 0.01s -bash
root pts/2 :0.0 22:22 0.00s 0.01s 0.00s w
Linux version 2.6.21.5 (root@bt) (gcc version 4.1.2) #4 SMP Thu Apr 10 04:23:56 GMT 2008

bt ~ # df -hT
Filesystem Type Size Used Avail Use% Mounted on
/dev/hda6 auto 12G 0.1 11.9G 1% / <==== ext3 Linux
/dev/hda1 fuseblk 25G 22G 2.6G 90% /mnt/hda1
/dev/hda5 fuseblk 20G 6.9G 13G 35% /mnt/hda5

3. Download Slax Installer

Download di :
http://backtrack.serveftp.com/backtrack/misctools/slax6-install.kmdr

bt ~ # wget http://backtrack.serveftp.com/backtrack/misctools/slax6-install.kmdr
--22:54:22-- http://backtrack.serveftp.com/backtrack/misctools/slax6-install.kmdr
=> `slax6-install.kmdr'
Resolving backtrack.serveftp.com... 137.132.19.24
Connecting to backtrack.serveftp.com|137.132.19.24|:80... connected.
HTTP request sent, awaiting response... 200 OK
Length: 12,607 (12K) [text/plain]

8% [====> ] 1,068 --.--K/s ETA 01:32
100%[===========================================================>] 12,607 1.98K/s ETA 00:00

22:54:39 (747.24 B/s) - `slax6-install.kmdr' saved [12607/12607]

4. Jalankan Slax Installer

/usr/bin/kmdr-executor slax6-install.kmdr

bt ~ # /usr/bin/kmdr-executor slax6-install.kmdr

5. Setting Instalasi ke dalam hardisk

Source cd = kosong
Install Slax to = /dev/hda6 ( yang sudah disiapkan sebelumnya format ext3 )
Write MBR to = /dev/hda

6. Installasi dan Tunggu ...... jika sudah selasai reboot komputer anda
masuk ke Slax ..

7. Setting liloconfig

Karena saya menggunakan dual boot dengan windows xp saya setting menggunakan liloconfig

bt ~ # liloconfig

- Pilih experd

- Begin , pilih 1024x768x256 ( sesuai dengan keinginan )
ke MBR , /dev/hda , 5 seconds ( pilih waktu loader )

- Linux , enter , enter

- Windows , enter , enter

- Install lilo

8. ketik # lilo -v
9. Selesai

Thanks to :
Allah SWT,Teman-Teman Komunitas Sekuritionline , semoga artikel ini bermanfaat , irc.dal.net #sekuritionline

Salam :
TheSims ( Fuck Off on Saturday Night ) Beware your system and network in this night ,because i'm in front off the computer .... where a u tantri ......

I'M INETH0LIC ,

source : sekuritionline.net

Read More......

 Subscribe in a reader

Review Update Via Email:

Delivered by FeedBurner

Add to Google Reader or Homepage

Powered by FeedBurner

FEEDJIT Live Traffic Feed