Jump to content

ZaraByte

Dedicated Members
  • Posts

    706
  • Joined

  • Last visited

  • Days Won

    13

Everything posted by ZaraByte

  1. Yeah mine is out in the garage on my biquad dish https://www.facebook.com/ZaraByte/videos/889106311153567/ Old video i did playing around with the Biquad Dish
  2. Pssh i have yet to honestly find a antenna that can pick up networks around 1.2 miles away I got a Biquad Dish on a Tube2u now im not sure if the dish needs to be facing down at the ground or if it needs to face straight to the way i wanna pick up networks my friend claims you aimt it into the earths core but i've done didn't pick up anything different tested both ways so not sure how high i should place the dish in the air either. Granted their is alot of stuff in the way so that possibly counts down on the signal obviously but playing $200 for a Biquad dish with a Tube2u was a joke and a waste of money. I have one of these http://www.ebay.com/itm/141245372931 complete joke i guess if you had it on a mountain aiming down at a city it might be good but for where i am its a waste LOL.
  3. Personally I use wlan1 when using anything that is for wireless attacks. Now im not an expert on the pineapple and don't use it much but wlan0 i im pretty sure is used for doing your active scans ex; finding ap's wlan1 is used to capturing the handshake or preforming your deauth attacks. wlan1 should also be used for monitor mode. I'm honestly not sure which one of the radio's is better to use but i just know that since wlan1 has the RTL8187 chip set its the best one for doing you're wireless attacks with.
  4. The real question is did you give your MK5 a source of internet? Internet access is required before you can download any infusions they're stored in the cloud which requires internet to download them once they're downloaded most if not all can be used offline.
  5. One thing i notice about that device is its becoming rare to find online now few days ago i was looking on ebay and amazon for them not much luck for US sellers and most of the listings were for used ones and they wanted more then it cost new. I believe you can use a TP-LINK MR3040 and make a MK4 plus the MR3040 is pocket sized so you can slip it into your pocket and! it runs off a battery that can last over 5 hours.
  6. I don't mean to bash Kevin but from what i know about him from people who met him he isn't one to make his own stuff this guy pays people for 0day exploits i got a friend on skype who has personally sold Kevin 2 0 day exploits what he does with them im not sure but he has a website dedicated to buying 0 day exploits so i highly doubt he made them scripts possibly some public stuff he renamed to keep people from using it. I swear the flash update page in his video is not a fake url i swear it was the legit website for flash he showed i really do believe if used that shell code injection method i really wish i could remember where i seen that demo at but i remember they showed how you can inject code into a live download i really believe that's another reason why most websites offer you a compare hash to make sure the file hasn't been tampered with. But their really is a way to inject shellcode into a file someone is trying to download over a network.
  7. Ouch $150 for a device that you have to have access to the machine to plug it in for it to be used. I honestly though all this time it magically captured wireless passwords you honestly could gain the same out come using a SUB Switch blade to grab stored wireless passwords using http://www.nirsoft.net/utils/wireless_key.html simply add that in with a USB Switch blade and it will write it to a html or text file.
  8. You can make a Mark 4 pretty easy all you need to do is go on ebay or amazon and search for Alfa network ap-121u flash the stock firmware to openwrt once you have openwrt then flash with the mark 4 lastest firmware from their you will have a Mark 4. Making a Mark 5 is not something i can say i can do because its custom hardware so unless you can find the board hak5 uses and maybe if you're lucky you won't need to do any soldering lol. I was told they even custom make the USB Rubber ducky like someone honestly sits there and solders each ducky from what my friend claims he says the way his was soldered it was done by a human not a robot. By the way i was gonna work on making my own Mark 4 2 years ago using i think a TP-LINK MR3040 i kept getting it bricked following some guide i literally throw it at the wall and never worked on it again serious anger issues i had that day but been meaning to get another one just $40 is a bit much for something i have no use for :B You could honestly just buy a Raspberry Pi 2 and install Kali Linux to it and then install http://www.fruitywifi.com/index_eng.html :B
  9. I'm pretty sure he really did use a tool i don't remember if it was metasploit or SET that does it maybe it was a tool like https://github.com/secretsquirrel/the-backdoor-factory but not sure i remember someone showing how if you were connected to a network or access point that the target was on you could inject shellcode into the download but he did say something about java script in the video so maybe he did setup a face website however the url must have been dns spoofed i guess so the website looked real.
  10. It's possible but from what he says and i seen and what it appears he did is that he used metasploit or maybe the SET to intercept the download and inject a reverse_tcp into the download i heard of this before but i don't remember where i heard of it at off hand i don't remember the extact tools you need to do this i did search online but didn't find what i was looking for fast enough when ever get around to feeling like looking more into i try to reply back but im pretty sure all he did was intercept the download as the file was being downloaded a metasploit payload was injected into the download. It works for any website download i think just executable files like .exe and dmg maybe a few other file formats.
  11. Someone who knows how to code a system level root kit could gain the same out come most users don't even know how or where to look for a root kit it could remain unnoticed for a long time and from what i hear its not hard to deploy. To deploy the hardware keylogger would require access to the target machine same goes for a root kit simple 30 seconds to deploy a root kit payload to install a HID and the keylogger has been deployed as long as no one looks at the device manager and doesn't happen to notice an extra HID installed the root kit will retain access to the machine and log information to be sent back to the attacker over a protocol. I've seen this kinda stuff by people who have showed me some root kits that could work like that. I dunno many people who use a desktop computer with wireless so using something like that sounds kinda silly but using a root kit being installed as a HID that seems more worth well the issue with a root kit like that is you'd need to figure out how your gonna get the target to install it hopefully you can install the root kit yourself if you have a few seconds of alone time with the target machine to install the driver from the add and remove hardware section.
  12. Lol something like that is complete waste of money in my own honest opinion but then again im told im negative against everything but when it comes to my money stuff like that is something i can get for free. I don't honestly know who came up with the idea of using a USB you stick into at computers port and steal wireless passwords i mean lolwut? I could do that with a few lines of programming i can't honestly think of one good reason i'd spend any money on that kinda device heck i could use a USB switch blade for that. Take me a few minutes to make some changes to some execuables to evade anti virus detection and capture wireless passwords.
  13. Basically what he did was use metasploit to embed shell code into any executable that downloads online so he basically used metasploit and when the target downloads a file like a .exe or in his case a .dmg for mac metasploit intercepts the download and injects shell code into the download i really should do a video on this myself its better then the clippy method.
  14. People are welcome to their own opinions when making a review but that's just honestly their opinion if you wanted to hear my honest opinion on alot of things including the wifi pineapple right now i wouldn't recommend it why? lack of stuff made for it I'd rather buy a legit copy of Windows for $100 then buy the pineapple that's my opinion not every one shares the same feelings i do about it some possibly believe it is the best portable rouge ap since who knows what. You get a bunch of people who possibly don't know how to use a pineapple to its fullest extend maybe that's me maybe i haven't honestly seen the potental the pineapple has. I bought it haven't used it much since i had it why? because the reason some people buy the pineapple might not be something im into doing with it. My honest opinion and remember this is my opinion is that the pineapple would be perfect for being a black hat with if you're into stealing peoples information granted you can demonstate how people could use the pineapple for that kinda stuff however i don't make a habit of showing people that because most people could careless its like showing my mom or dad look mom i got a pineapple and anyone with $100 can get one of these set it up some place in a public place and con you into connecting to it and stealing your information they simply don't care. Not everyone is like that but most people around me honestly don't care. So coming back to the solar pack them reviews on that solar battery pack might be honest and legit reviews but i'd rather not tell people stuff when im not quailtied in any field about the product and bash it. This is the internet is flooded with people who spread disinformation for all i know it could be people who work in the gas and oil area's that wanna make people believe solar power is a joke because they don't want people to look into better energy. I didn't mean to go into a long rant but if i can't personally see someone using the product and its a free for all for anyone to say what they have without any proof that its true then i'd rather find out myself their i used to like newegg before all the people who don't know what they're doing flooded newegg giving reviews claiming the product failed when it was possibly their fault it failed.
  15. I've been using it to power my wifi pineapple ran it off the solar battery pack for a little over 1 hour worked just fine no issues. I also tested it on a Reaver Pro had no issues running Reaver Pro off the solar battery pack https://www.youtube.com/watch?v=vfmAzz77JQE Now i'd do a video of the solar battery pack running the wifi pineapple but it doesn't appear to be something care to much to watch the video i did using Reaver Pro has under 200 views as-is now granted Reaver Pro and the WiFi Pineapple are different people on Reaver System's asked about running reaver pro off a battery. Get enough people who would care to see me do a video on running the wifi pineapple off solar battery i'll do a video. The thing about solar powered stuff is solar stuff really never has been real popular solar charging can take a half a day in direct sunlight to even mange to fully charge something like that. I live in Florida where i am i got direct sunlight from 8AM till 8PM depending on daylight savings time other wise it gets dark around 6 PM
  16. I'm using this http://amzn.com/B00LVS7YRC works just fine with my Reaver Pro and seems to work just fine with the Wifi pineapple they both appear to operate on a DC 5v using 1 AMP.
  17. To be honest their honestly is no point of even using SSLStrip it doesn't even remove https anymore due to HSTS in all the web browsers you might be lucky if it works in Internet Explorer but Firefox and Chrome won't downgrade the website using https to http anymore even if you did if the target has the website cached it will just go right back into https.
  18. You can copy the cloned website SET makes and place it anywhere you want place it on a sd card to transfer to another computer you can upload the files to a website you have ect..
  19. I did a few videos a couple years ago using social engineering toolkit like the above said to try and do its a old video i need to redo them now that im kinda getting the hang of making videos.
  20. Saw your messages data head thanks for clearing some things up with how modded reaver and pixiewps work will help me hopefully explain stuff a little better when i release some videos on pixie dust attack here in the next couple weeks working on getting a vulnerable router that i can test with so i can leave the people on my street alone and avoid ticking them off or going to jail over it.
  21. Am I the only one having an issue with pixiewps on the Mark 5 appears when i copypasta the PKE part of the PKE is cut off plus you can't type or add on to the PKE that's missing its like the max characters have been reached. You know how like Twitter only allows like what 140 characters before you can't type anymore well this is happening with the Mark 5 cuts off half the PKE you type to append to it won't let you add anything. Connected to the Pineapple over SSH via putty not sure if its a bug or what.
  22. Honestly if you're trying to like get internet on the Pineapple so you can download infusions i'd recommend you login to the Pineapple over Ethernet then go to network title from then click on Client Mode and locate the network you own that you wanna have the pineapple share the internet with. I've made a video on how to use Wireless from another network to give the Pineapple internet if that's what you're trying to do. im not sure i fully understand what you're trying to do but then again i have been up for over 18 hours without sleep so im not thinking straight. If you're wanting to upgrade your firmware i myself don't trust the over the air part i prefer to download the firmware and upload the firmware using wget and then installing the firmware via ssh i've done videos covering that they can be found in the WiFi Uni section.
  23. They didn't come up with that idea that was idea was taken from other peoples idea's I've heard and seen many people talking about using the pineapple on a Drone someone on another site did something like this with a RC Truck.
  24. Makes me cringe it's one thing if you wanna make your "own" pineapple using their code or firmware but its another thing to try and sell a knock off.
  25. Yeah I've honestly been disappointed in the lacking of infusions it's a shame infusion making is over my head or i'd start making some the WEP infusion would be nice it's never been made i'd like to make that infusion but i have a way i wanna make and the makers can't vision how i'd make it.
×
×
  • Create New...