Same here..
Maybe you can make the screens smaller (reduce the PS window size or minimize the windows so that they don't look suspicious) so that they don't really show like in the original payload?
Fair enough ;)
I suggest you set up a local LAN and have a pc connected to a neighbors WIFI or a hotspot from your cell phone so that you will be connected to an "outside network" and practice. you will not manage at first but persistence always prevails
On the same lines.. If you managed to get a local meterpreter shell within your local Lan.. Its totally different getting a remote shell when you are outside your lan.
Hopefully the quick creds module gets updated as many people are not managing to snatch creds from a PC
Also - is this true there is a new windows update that patched this hole?
Any help guys? Are you having the same issue as me? I reinstalled the firmware and just installed the quick creds and when i plug in the drive the amber led keeps flashing non stop.
Hi there,
I followed the steps for the credential snatching.. I plugged in the turtle and the amber led keeps flashing however it remains that way and does not load into windows 10..
is there a way i can confirm i configured the turtle properly?
Gotcha.. Thanks digip - so basically without placing a hub I can't sniff the workstation next to me just by using wireshark..
However.. If you are on an internal wifi - is this possible just using wireshark?
Hi there,
Thanks for your reply, Is it possible to sniff another PC on the network however? I know it might be a long shot but this is to create awareness of not using ssl. I cant find the proper way of sniffing another IP
Hi All,
Getting to understand and play around with wireshark for network sniffing.. I know that when i filter for http.request.method == POST i can view un encrypted passwords.. Question is.. If you are on a network and you want to sniff a specific PC.. how should the sniff be? do i filter out the IP of that specific PC? or listen to anything going towards the router and filter that PC's IP?