Jump to content

willbro

Active Members
  • Posts

    5
  • Joined

  • Last visited

Recent Profile Visitors

264 profile views

willbro's Achievements

Newbie

Newbie (1/14)

  1. My thoughts with the VPS were that i could run dns2proxy and other software that dosent work on the pineapple to do the logging there. My Last question is can we leave https alone and just log http.Not all sites are https so with iptables could we tcpdump on port 80 and maybe forward all https traffic to act normally to avoid the user seeing suspicious warnings on https sites.In my opinion it would be better to log just http than nothing at all.
  2. Thanks for your responses If i set up sslstrip2 and dns to reverse changes on vps would that work? Could i somehow forward all traffic from the wifi pineapple to a vps with the above setup?
  3. Hello all Currently i am aware that there are two methods one being Delorean and the other being SSLSTRIP2/HSTS. Is there any other methods to defeat HSTS ? Are we able to use Delorean or SSLSTRIP2 with the wifi pinapple yet ? Is there anyway that we can set the Wifi Pineapple to leave alone https traffic and the only log http traffic maybe through dns? Thanks in advance
  4. By using dummy smtp server core impact logs to login details that the user enters and this would be good for my penetrating Thanks
  5. Is there anyway I can set up a dummy smtp or vpn service for my penetrating so that when a user is on my wifi pineapple and trys to check for email is comes up asking for username and password then tells them that they have no email I know core impact v12 has this feature I'm just trying to figure out how I would do this ideally on wifi pineaple or by changing DNS to point all port 25 connections to a dummy server I could setup also I was wondering if something simular could be done with vpn to take username and password and certificate if they have one . Core impact has a cool function where you can make it so that every page loaded the images are changed to an image URL with your logo on to demonstrate the own testing and is able to load website in a frame so that we are able to launch exploits from the other frame like Java drive by Any help on matters would be apreshiated as these functions would help me a lot and can't afford core impact at 30,000 Thanks everyone
×
×
  • Create New...