Jump to content

potato

Active Members
  • Posts

    148
  • Joined

  • Last visited

  • Days Won

    2

Everything posted by potato

  1. He was probably referring to the green poison jailbreak. However, he didn't say which model/version of the iPad he has. There was someone in the process of porting open iBoot to the iPad 1st gen and the other A4 cpu devices (iPhone 4, iPod touch 4). AFAIK the port is far from done and it doesn't look like anyone has worked on it in a while. So as of right now it is 100% NOT possible to install Kali Linux on any iPad.
  2. I think you missed it on your first read, but you can just go on shodanhq.com and type in "Linksys EA" and find probably tens of thousands of vulnerable routers and exploit them if you please. Not that I condone doing that.
  3. All of the Scans were done from the outside via a vpn.
  4. yeah for some reason if you don't forward port 80 to anything it will also pop up the gui, but the difference is it asks you to login.
  5. I ran a port scan on my network over a VPN because I was curious to see what ports were open, one of the open ports was 8083. So I enter my ip :8083 in to Firefox and the admin interface popped up without asking me for the password and did allow me to make changes to the router. I have remote management turned off. The router is an EA2700, we have also confirmed that the EA3500 is vulnerable too. The e2500 and e1000 don't appear to be vulnerable. This is a huge issue and I would have expected better out of Cisco, they made amazing enterprise stuff and then sell polished turds so consumers. If anyone else has access to one of the newer Cisco linksys, please test this out I would like to get a list going of vulnerable routers. The ea2700 was on FW 1.0.14. Edit, I updated the firmware and the Vulnerability has been patched in the new and ugly "smart wi-fi" firmware. Edit 2: You can still get to the login page on the new firmware on port 10080, however you can not login, even with the correct password it will tell you there was an error. also you can login correctly if you have the right password on port 52000 Edit 3: As it turns out the latest version of the "Classic" or "Cisco Connect" firmware for all of the EA Series routers, EA2700, EA3500, EA4500 and the E4200v2 are vulnerable to this, and Linksys doesn't give a shit because the new and crappy "Smart Wifi" firmware is not affected by this. I upgraded my router to the "Smart wifi" firmware and now my IRC sessions randomly drop. The DD-WRT port for the EA2700 is not done yet and the EA3500 as well as the EA4500 and E4200v2 are based on marvel chipsets. Also AFAIK you have to manually upgrade to the "Smart wifi" firmware, I had auto updating enabled and mine was never updated. The last "Classic" firmware for each router is listed below: EA4500: 2.0.37 EA3500: 1.0.30 EA2700: 1.0.14 EA4200v2 :2.0.37
  6. Version 1.1 is now available. Changelog: Ping has been added or rather stolen from /pineapple/advanced/ping.php The monstrous title has been replaced by a simple H1 to be more compatible with custom css styles Subnet Mask info will now tell you how many hosts you can have per subnet The subnet generator will be in version 1.2. Tell me what features you want me to add and I will add them.
  7. This module is designed to make subnetting easier. Need to know how maby hosts are on a network with a subnet mask you have never seen before? Forgot the CIDR notation? Are you trying to do subnetting manually but don't know how to convert Decimal to Binary? Don't know if the exchange server came back online after the power outage? This infusion will help you in all of those situations. This module can perform 3 (soon to be 4) functions. The first function is converting IPV4 addresses from binary to decimal For ex if you enter 255 in all four boxes the program will return 11111111 11111111 11111111 11111111, This comes in handy if you are lazy. To use the second function you input a subnet mask for ex 255.255.255.128 and the program will reply with the number of max hosts on that subnet which is 126 and the CIDR which is 25. This is most useful on a pen test if you need to quickly check weather or not a host is in your subnet and you come across some random subnet mask. The third function is ping, basically I took the script from /pineapple/advanced/ping.php and modified it a bit. This is only here for convince so you don't need to go back and fourth between the infusion and the advanced page.
  8. Get some hardware and start doing labs. Download Kali and learn how to use Metasploit. Just don't hack anything you don't own.
  9. Use teamviewer to connect to a computer on your own network, it's kindof a half-assed way to do it but it works pretty much everywhere.
  10. This would depend on a few factors including but not limited to the specs of the server the site is hosted on and the amount of bandwith you can use to connect to the server. In an ideal situation you would be sending packets faster than the server can send them back. Also if the site is hosted on Google app engine it is going to be difficult to DoS because of the architecture, basically Google spins up a new instance when the load gets high. The best way to find out is to setup a web server and try to Dos it with something like Low Orbit Ion Cannon or one of those nasty perl scripts.
  11. We ended up using realvnc and spiceworks although I am still looking into possibly switch to darkcommet or a custom meterpreter shell
  12. I would not recommend putting this file through aircrack, you will have best results with an AMD/ATI GPU and Hashcat.
  13. Do you have access to a multimeter? If so measure the voltage going into the pineapple and the voltage coming out of the Pineapple's USB port.
  14. Why are you using a mac? but anyway you did not specify if the pineapple was connected to the internet, was there a cable in the wan port and if so, where was the other end of it plugged in? The pineapple is not going to magically setup a connection to the internet just because you are connected via wifi and have internet on your mac. https://github.com/WiFiPineapple/web-interface/wiki/mk34guidemacics
  15. Even though that video goes into backtrack to use putty, I have been successful following this tutorial on W7, with a UART adapter from amazon that has the same chipset as they are now selling on the hakshop
  16. I am going to say no as Minecraft is targeted at younger ages and we don't need a bunch of 12yr olds running around representing HAK5. Also there are already enough Minecraft Servers.
  17. This shows how good rar compression can be, the actually torrent is only 4.49gb
  18. I have never heard it called an aerial before but you can buy them here
  19. Most people recommend you start with PHP or Python, the PHP manual is a really good resource, You said you were young but you didn't say how young. If you have trouble picking up PHP or Python I am going to recommend you start with something easy like Alice or Visual Basic to lean the concepts. Once you understand the basics you can move on to something more advanced like C#. BTW you can get a free copy of visual studio if you signup for dreamspark, all you really have to do is fill out a form and upload a copy of your report card or some other document that proves you are a student.
  20. __ ___ _____ _ ____ _ _ \ \ / (_) ___(_) | _ \(_)_ __ ___ __ _ _ __ _ __ | | ___ \ \ /\ / /| | |_ | | | |_) | | '_ \ / _ \/ _` | '_ \| '_ \| |/ _ \ \ V V / | | _| | | | __/| | | | | __/ (_| | |_) | |_) | | __/ \_/\_/ |_|_| |_| |_| |_|_| |_|\___|\__,_| .__/| .__/|_|\___| |_| |_| Pineapple Fuck-Me-Up (MK4 version X.X) * 2 oz Barcardi 151 * 3/4 oz Pineapple Juice * 1 splash triple sec \\||// Pour Barcardi 151 into cocktail glass. \/\/\/ Add pineapple juice, a splash of tripel sec, and serve .<><><>. .<><><><>. .<><><><><>. .<><><><>. -------------------------------------------------------------- .<><><>. Are we allowed multiple submissions?
  21. We are using Windows Server 2003 and Windows XP ATM with >20 computers. I have an ad dc setup. We are waiting to get windows 7 some time soon and then we will upgrade to server 2008r2
  22. I am looking for a program that we can use in our lab that can do things like take screenshots, and show running processes. I was thinking of possibly installing view only VNC sessions but I still not sure about showing running processes, we are also looking for something to block websites, as of now I just used the hosts file.
×
×
  • Create New...