Jump to content

digininja

Global Moderators
  • Posts

    4,005
  • Joined

  • Last visited

  • Days Won

    210

Everything posted by digininja

  1. Once you go out of support for security patches you don't get any more unless something hits that is so bad that the manufacturer deems it worth putting out a special patch. Remember, despite the 5x being the most recent, it came out in October 2015 so had 3 years of support. Rooting a device generally makes it more vulnerable than less as the apps installed on it can do more damage. I'd stick with what is there and hope nothing is found rather than deliberately introducing more risk with a root.
  2. Not if you want to be safe.
  3. Reformat your machine and stop playing with things you don't understand.
  4. Use a good VPN and make sure you do full certificate checks when authenticating. Only visiting HTTPS based sites, and again, checking certificates, will also help.
  5. Depends if you've got permission.
  6. First, it depends on your location and local laws, check those as they may limit what you can do. In the UK, and I'd guess the USA, it depends how you use it. If you use it in a lab at home and don't attack anyone else, it's fine, if you use it against a client where you have a contact, that's fine, if you use it in school or the local shopping centre to attack random strangers, that's not fine.
  7. digininja

    joomla

    Check their advisories for known issues. Why are you particular interested in the login panel? If it is secure enough is a question only you can answer. Do a risk analysis, work out your threats and then decide
  8. digininja

    joomla

    Why? What version?
  9. Any decent router/modem would not have the admin interface listening on the WAN side so default creds or not, they would not be able to access it to do any damage. If you can get on to it in some way then yes, you could potentially install stuff and do damage, but that assumes it is vulnerable to an attack, there is an exploit available, and that there is something interesting that can be done after exploitation.
  10. First, it should not be possible to connect to a router from the outside, the admin interface should be locked down to internal only. If you aren't doing anything to do with the internet then there is no traffic to sniff. If all you are doing is writing a document in word then there is no network traffic generated. If setup correctly, HTTPS covers all the connection, from first visiting the site, through logging in, and all your surfing. All of it would be encrypted and not visible. This assumes the site is setup correctly though.
  11. Yes and no. I'm going to assume web traffic here as it is easier to start with. If a remote user gets access to your router then you have a lot of problems. Depending on the router the may be able to redirect traffic through things like DNS attacks and so your traffic to site X would go to their site rather than the real one so they would see the traffic. But, if you are using HTTPS and it is set up correctly with HSTS or you don't accept invalid certificate warnings, then all they would probably be able to see is encrypted traffic which isn't much good to them. The is a lot more to it than that but there is your starting point.
  12. When you say "on location" do you mean on a different site? Can you connect to the windows share on the machine from yours?
  13. It is exactly as the error message says, it can't reach the port xx.xxx.xx.x:445. Assuming you are attacking your own machines, are you running one the has SMB enabled and if accessible from where you are?
  14. We remove all bad posts that are made and block accounts that are obviously spam as soon as we spot them or they are reported. If you want to help, get reporting.
  15. I don't know, but I wouldn't use Cain, it is ancient and no where near as efficient as any of the modern crackers. I also don't think it uses the GPU so your effort may be in vain anyway. I'd go with Hashcat or John and if you want to use the GPU just do a live boot.
  16. Contact the Hak5 shop but I doubt there is anything they can do to help. You should have checked the process before getting in to it.
  17. Have a look through the forums and see what others are discussing. I'm sure you understand the difference between legal and illegal acts, have a think about what you are posting, if it is asking about illegal stuff - like hacking someone elses server - then don't post it.
  18. No, it is because you were asking for illegal things. Hacking Russian game servers is illegal and we don't allow questions about that here.
  19. You keep asking for people to do illegal things for you on online games, I've explained this in at least a couple of PMs and in the warnings. If you don't like our policy of not allowing illegal stuff on this forum, feel free to go elsewhere.
  20. Whatever you are asking for it's probably illegal and not something we would help with on these forums.
  21. Not an appropriate question for this forum.
×
×
  • Create New...