Jump to content

Jaruba

Active Members
  • Posts

    15
  • Joined

  • Last visited

Recent Profile Visitors

1,058 profile views

Jaruba's Achievements

Newbie

Newbie (1/14)

  1. I bought the powered hub, and as predicted works exactly like the other one I had, no change whatsoever. I did although find out what the problem was in the first place.. using karma + sslstrip + jammer (maybe even just sslstrip + jammer) at the same time would end in a pineapple restart (in around 5-10 minutes, as carmichaeldylan stated above, it may vary depending on the numbers of ap's in the adapter's range).
  2. You have some serious errors there, I currently have the debian installation of the rpi os on one and openelec for the media center on the other, I should recieve 2 x Class 10 SD Cards from Kingston eighter today or tomorrow (already ordered), and will have an answer for you then. (was planning to put pwnpi on one anyway)
  3. I doubt that pwnpi is the issue, but I do remember seeing posts of people buying sd cards that don't work with the rpi. (i've read that sandisk sd cards don't work, don't know about any other companies) I have 2 micro sd cards with adapters, both from kingston that work flawlessly with the rpi.
  4. Sorry, I didn't see you replied and edited the question after rereading your first post. :) The thing is that I did work on that transparent proxy at one point, and it could be used for what you need, as long as it's used on websites without ssl, it could probably work as intended, but the result would ultimately be the same, you'll still need to write all domains in the dnsspoof list, and it would visually be the same thing as cloning the unsecured website warning. Only that with my pages it will work significantly slower and probably bugs will arise here and there. So I just don't see why someone would do it. :P
  5. What would be the point of doing this? Wouldn't it be easier to clone the unsecured website page and do a DNSSpoof to all domains without even serving the pineapple internet? Or even do selective DNSSpoof on those 10s or 100s of websites with the cloned page while serving internet.. Isn't the result the same? :P
  6. @itsm0ld - I agree with you, the pineapple is unstable, it has low cpu and modules that weigh heavily on it. I've also had a lot of issues with the pineapple restarting. @Darren - If you need to reproduce a pineapple restart, just start the pineapple, eighter plugged to a battery or a wall plug (doesn't matter), then start Karma, SSLStrip and Jammer (this obviously also requires a powered hub, usb memory stick and an adapter), then wait 5-10 minutes. (this may or may not be influenced by the number of access points in your area, a higher number of ap's will probably make the jammer use more cpu) @Neworld - I have all of the gear that you have there, never hooked up the pi (that I just use as a media center) to the mk4, can't imagine it will do any good, and as a person with expirience with the mk4 and the pi, if you take what you have there on the road with you, you'll probably end up with a reboot festival. The mk4 and the pi are both unstable hardware in my opinion and will probably restart for one reason or another, you're just doubling the chances of unexpected problems to pop up, and if you'll place the pi in a small container with other devices that heat up it will surely end in a reboot from reaching it's max heat, as specially if you overclocked the pour thing. All in all, what I really want to ask you is if you managed to get the AWUS036NHR working with the mk4 or pi. The last time I attempted to use that exact adapter there wore no drivers for it patched for injection and it used to load a driver for a different chip by default (specifically from the compat-wireless pack of drivers), that was patched for injection, but had a lot of issues with this device, eighter monitor or injection wouldn't work properly or at all.
  7. Going to try to buy the Belkin F5U404PBLK and report back. It might as well be the hub that's the problem.. I'll report back when I bought it, if I can find that exact model somewhere in my country..
  8. I actually looked over those topics before posting the question.. this unfortunately is not a power issue, or if it is, I can't imagine how. Here is my setup: 1x Mark IV, 1x Powered USB Hub (the exact model as in the hakshop), 1x USB 2.0 Cable Extender (with the red wire snipped, wich connects to the data cable of the hub and the pineapple, tested powering up only the hub, the pineapple does not start), 1x 8gb Mini USB Memory Stick, 1x ALFA AWUS036NHA (brand new, the manufacturer is not a fake, the chipset is atheros as required, I try to use the jammer with this adapter, although jamming works, it always ends in a pineapple restart out of nowhere, after a few tests, i realized that the pineapple will restart between around 30 seconds and 15 minutes after starting the jammer), 1x TP-Link TL-WN722N (on which I have configured WiFi tethering as in the article you suggested I read, and works perfectly), and 1x 8000mah portable battery. The 2 adapters and 8gb usb stick are all connected to the hub, and the power cable of the hub into a usb 5v 1a port on a battery, while the pineapple is powered from a usb 5v 2a port on the same battery, the battery does support powering 2 devices from both usb ports at the same time. My setup should be correct, although the pineapple still resets after some time, for no reason.. Following on telot's idea about how the pineapple may be underpowered, I also tested the same setup, only with the pinneaple powered by the wall plug and the usb hub powered from the battery on the usb 5v 2a, and had the exact same problem, pineapple still resets. Before buying this hub, I had another hub that didn't power the devices correctly, with that hub, the adapter would just stop and had to be replugged in the hub to work again, this was indeed a power issue from the hub, but now I am sure the hub works correctly, all the devices that it powers have no issues at all, they all stop only when the pineapple itself resets. But I can't figure out why it would reset, are there any logs I can look up to maybe pinpoint the exact error that causes this?
  9. No one had this issue before? It's incredibly annoying and I feel like I have no control over it at all.. I'd even settle for a hint of what would make the pineapple reset all by itself when the jammer is running, so I can at least attempt fixing this somehow.. :(
  10. I can't manage to use the jammer properly, I have a Pineapple MK4, firmware version 2.4.1, using a working powered usb hub, installed a mini usb stick successfully, installed sslstrip and jammer on the usb stick, powering the pineapple from the wall plug or battery (same problem in both cases). I have a wide range of alfa adapters, so I first attempted using this module with a awus036nh, the adapter was not compatible with the MK4 (iwconfig showed nada). Then attempted using awus036h, the drivers loaded correctly (if we can ignore the "ifconfig wlan1 up"), but when I used the jammer with it, although it starts correctly, the pineapple resets automaticly after around 30 to 60 seconds (I should also state that I had karma and sslstrip active when starting the jammer, also attempted it with sslstrip off, and getting the same problem, also the sleeping time and nr of deauths wore set to default [0]). First I thought that the problem was the adapter being incompatible somehow, I also have a awus036nhr, but that actually requires 2 usb ports, and that should create more power requirements, while deauth-ing with higher txpower outside of the pineapple's range anyway, also, the drivers for linux haven't been patched for injection yet, so I never tested it. So, I bought a awus036nha, should work, right? My experience with it was identical to the awus036h. Still needed to start it with "ifconfig wlan1 up" or start it from the jammer console, after I start jamming, 30 to 60 seconds, pineapple resets. Changed the settings to 10 deauths every 30 seconds, thinking that the spam might be more than the pineapple could handle, but the results wore exactly the same. Any way to troubleshoot this? Am I missing something? Could use some guidance at this point. :) Edit: I can confirm that this is not an adapter problem, I also tested the jammer with TP-Link TL-WN722N and the result was the same. Is there any reason why this would happen?
  11. Well.. you guys catch on fast. :P But after getting my modules up, getting some testing done and tinkering with code.. I came to the next conclusions: @petertfm: Well yes, that would be cool, and there's one already created, it's called sslstrip, which in my opinion only needs a very good filter already made and embeded inside it to show only relevant captured data. This is kind of what I managed to do with my project also, make it a sslstrip that works on a few less sites on the internet (still working out bugs), works slower because it doesn't do pass thru traffic, but does essentially the same thing. (the biggest problem for my project and sslstrip seem to be web pages that redirect to self on https if accessed on http, pages just show blank in this case) @TheScrub: Yeah, by getting all page data and printing it to the client instead of doing pass thru connections, although you add significant time to page loading, you do get the option of a sort of man-in-the-code attack.. and code can easily be inserted on pages. I don't know if this project is even worth fighting for, the page loading time difference is quite high, to account for most internet webpage situations on a proxy so it works as expected in most places will take a very long time, and in the end it will just be a damn slow transparent proxy, that does what sslstrip already does for less memory usage, and gives the option to inject code on the go. The https to http redirect can't be beat, there's no workaround for this one.. And usually, when people are on a router that has a 'seemingly' slow internet connection and where some pages don't show as expected, but errored in any way, they will start searching for alternatives. So what would be the point in pulling people to the router, if they will eventually end up searching for how to get out of it? At the end of it all, I consider it to noisy for the pineapple, more so, I consider sslstrip to noisy too, yahoo mail goes blank after you log in (enough to get the credentials though), also paypal is blank before you even get the chance to log in, I haven't had time to test more websites, but I'm sure that many more might have this simple and effective security function.
  12. "/var" shortcuts to the "/tmp" folder, where there is no "httpd" folder or file, I also did a full search on the pineapple, couldn't find any file containing "apache" or "httpd", maybe the web server logs are removed or the file location and/or name has been modified? Still would like to find it though.. :/
  13. I'm looking for the Apache log file to debug a problem I ran into, can someone please tell me where I might find it? (Pineapple Mark IV, version 2.4.0)
  14. Thanks for all the information, and peter, those commands wore exactly what I needed to find all the extensions for php I wanted. In total, I installed: php4-mod-session, php4-mod-curl, php4-mod-pcre (i probably installed libcurl and libpcre if they worn't already installed) after which modifying the php.ini accordingly to load the new extensions. Then restarted the pineapple, started dns spoof, and all my php pages finally worked without errors and as expected. But after around 10, probably 15 minutes, the dns spoof would stop working, and the spoofed dns would be reverted to it's real ip. When I try to go back to the web control panel, all pages would freeze, leaving me with the only option of restarting the pineapple. Since then every time I restart the pineapple and enable some functions from the left side panel the pineapple freezes. When I start URL Snarf or DNS Spoof, the web panel freezes right after enabling them, and the "Karma / Connection Status" is empty (0 bytes of data), when attempting to press any other link, the pages never load. When starting Karma, it freezes on the screen where it sais "Entropy Bunny Activated". While SSH and Stealth (what is Stealth anyway?) work as expected. I'm writing this issue here because I believe it may be directly linked to the installation of the php4-mods or libraries, although I cannot imagine how (would low memory create such an issue?), I'm ruling out it being a php script issue because the php files are not loading any external scripts and are not active at all (nor is anybody logged in on wireless) when these errors appear. Any help would be truly appreciated at this point.. Fixed: It was actually a programming error, index.php went in an infinite loop if accessed from the real ip address, i think enabling those scripts accessed index.php somehow and froze the web server. Since I fixed the page everything works correctly.
  15. Hello, I've just bought a Pineapple Mark IV and updated the firmware to version 2.4.0. Being a PHP Developer, I thought I'd have some fun with the DNS Spoofing option, but soon realized that php was missing a lot of it's commands. What I need is the php session commands and curl to work on the Pineapple, could anyone please guide me trough installing the required php extensions? Also, I was wondering if a USB Hub would work with the Mark IV. I imagine that the power supply would be to low to power to many usb devices, but what if the usb hub could also be powered by a secondary usb port on a battery pack, would that work? Or does the Mark IV not support usb hubs at all (missing drivers)? Thank you in advance for any help on my issues.
×
×
  • Create New...