Jump to content

Infiltrator

Dedicated Members
  • Posts

    4,287
  • Joined

  • Last visited

  • Days Won

    22

Posts posted by Infiltrator

  1. I don't undertand the last two comments.

    The whole point of SSL Strip is that it converts HTTPS sessions to HTTP sessions (at least between the MITM and the victim).

    The sslstrip.log file normally shows POST and SECURE POST logins and passwords.

    I thought that even if SSL Strip was not - for some reason - logging then the plaintext logins and passwords would show in Wireshark.

    Or did I misunderstand what the last two posters were saying?

    There are certain websites that are programmed to explicitly use HTTPS only. If the connection is somehow reverted to HTTP, the server will either terminate the connection or refuse to work on HTTP.

    This could explain why, SSLstrip in your case is failing to log any logins and passwords.

    On the other hand, there are websites, that even though they use HTTP(s), they could still use HTTP, and that's where in certain situations SSLstrip is able to log the logins and passwords for you.

  2. Never heard of this guys, and I had a quick look at their website, even though they seem to be legit and professionals, I have my doubts about them. If you have never applied or hired any services from them, there could be something fishy going on.

    Do NOT reply to their emai, especially with your personal information. It could well be a scam, trying to steal personal information and other sensitive information from you.

  3. You guys should lock this thread. Everyone should have to view this thread to be accepted into Hak5... if it weren't for digip, I would be pretty damned lost at times. When you view his profile, you see multiple negatives... I think that is wrong and people on the forums need to grow a pair. A verbal scolding from digip is actually a good thing... it means he gives a shit.... when will these kids learn?

    I VOTE LOCK! (not that I have any rapport or anything, Digip just kicks ass and should have many noses up the backside of his trousers!

    ...I just wiped my nose off... sorry ;P

    Watch your mouth, you don't know me!

  4. You usually have to catch the free ones within a few hours of them being uploaded, paid ones have worked out great for me though. Of course it wont matter if he doesn't even have any antivirus running, or it shouldn't. I wouldn't know I avoid that operating system like the plague :P

    One of my mates is a huge fan of Apple, he really bores me to death when he talks about Apple. He really is a knowledgable guy, knows a lot about Apple, how it works, it's operations and everything.

    Anyway, I think the OP will have to run Vmware Fusion, to get the RAT to work, since he is on a MAC.

  5. There are a lot of them, you don't HAVE to pay for them, but if you want one that is really FUD you do or you have to have connections to someone that creates their own. He's using a mac though, maybe he bought into the "Macs never get viruses" gimmick?

    You can get good free ones, but the paid ones I put my money on it.

  6. So long as he doesn't have an antivirus a R.A.T. could work, if you're going to test it locally remember to isolate the virtual network in case things somehow spin out of control. You could always try to make it FUD if you know how to. I really hope I didn't just violate the TOS there haha.

    There is a paid utility that you can use, to FUD it, not mentioning the name here as it is against the forum rules.

  7. Yeah dude im pretty sure im running jasager on bt. So to address my problem at hand on my interace no clients connect to my Fon. Please note also i do have a dhcp server.

    I would run wireshark to determine what is causing the issue. But when you say, no clients connect to your Fon, are they receiving any error? Are they getting an IP address at all from your DHCP server?

  8. the AWUS036H i already owned, the one that does N is the one I just got and think is a knock-off. I'll look into it and see, I've just always liked alfa brands, and if I'm paying $35 or so for one of these adapters that're advertised as alfa, I just expect to get that one.

    Not trying to be a dick, or sound like a dick. Just my thoughts. Thanks for your reply!

    You do make a good point and I've always wondered about that too. I hope Darren can shed some light into this case for us.

  9. Personally, I would build my onw webserver and just use it instead of relying on a third party service provider. And having to abide my TOS.

    Alternatively, you could use webs.com, it's free but with upgradable options.

  10. Ok. My ruter is already port forwarded. I've a no-ip account synchronized with DDNS of my router and it works great. So, shall I set LHOST wit no-ip addres instead of my IP address (example.no-ip.com instead of 151.28.200.60 ) ? thanks

    Correct, that's how it should be done (example.no-ip.com instead of 151.28.200.60 )! If you do the other way around, the payload will have problems finding your attacker machine, when the Ext IP address changes.

×
×
  • Create New...