PDA

View Full Version : Further penetration after cracking WEP key


Itssid
03-18-2007, 07:15 AM
If i can get access to my wireless network cani further penetrate into my own computer and view what i do on my desktop in realtime on my laptop or install a remote access software on my wireless home network so i can see what i am doing on my desktop through my laptop using Back Track 2 Final?????

Hard to explain but is there a way to escalade privileges after aquiring the WEP kwy using Back Track 2 Final?

Will i get in trouble with the police if i try this on my router (if there is a way)??

Thanking you,
Sid

Mother
03-18-2007, 12:07 PM
I think you are tempting your luck...you will not get into trouble if it really is your own network, but, since you posted your intent to try to crack someone else's AP, your questions looks very suspicious.

If this is your own network, you should know how much you can escalate and penetrate, and you wouldn't end every new post you make with "will I get in trouble with the police?"

If the RCMP comes looking for you, don't be surprised...

Mother

ghost8786
03-18-2007, 04:19 PM
yeah, your probably not going to get too many responses if you ask whether or not you will get into trouble with the law...I posted a question about intercepting packets on my OWN network and nobody has said anything. Seems like everybody here thinks that if you ask a question that could be remotely seen as illegal, even if it is your own network, they steer clear of providing any assistance to you. I'm currently looking for another forum that is a little more friendly and not so uptight.

Mother
03-18-2007, 04:50 PM
yeah, your probably not going to get too many responses if you ask whether or not you will get into trouble with the law...I posted a question about intercepting packets on my OWN network and nobody has said anything. Seems like everybody here thinks that if you ask a question that could be remotely seen as illegal, even if it is your own network, they steer clear of providing any assistance to you.

Ahem. If you got no reply, it's probably because one of the following options:

a) Nobody knew the answer. Do you think we have infinite wisdom, and know the answers to everything?

b) The answer has been given sooo many times before people are just tired of typing the same thing again, or even looking up the thread and directing you to it, as you couldn't even do the small effort it would have taken to search before you asked.

I'm currently looking for another forum that is a little more friendly and not so uptight.

May I suggest the Netstumbler forums (http://www.netstumbler.org), where you will be treated with great courtesy and everything will be instantly explained in a clear and friendly manner.

Regards,

Mother

You at the back, stop laughing!!!

Itssid
03-18-2007, 06:34 PM
First of it really is my router i want to try this on but dont know how, secondly i asked the police question because living in Canada i dont know if it is legal to practise pentration on your own home network. So now can someone suggest me the tools i should use?:)

Peace,
Sid

Barry
03-19-2007, 07:24 AM
May I suggest the Netstumbler forums, where you will be treated with great courtesy and everything will be instantly explained in a clear and friendly manner.

Regards,

Mother

You at the back, stop laughing!!!


That's just wrong! :p


Anyway, it's your network, you should be able to do whatever the hell you want with it. Still, it's not that we don't trust you when you say it's your network, we just don't trust you. There are some good books on the subject though.

Mother
03-19-2007, 10:52 AM
That's just wrong! :p

LOL Barry, didn't you see the <sarcasm></sarcasm> tags in the source code? :rolleyes:

Cheers,

Mother

Itssid
03-22-2007, 02:24 AM
ok now can someone actually help me??

what tools would i use to penetrate further??

Mother
03-22-2007, 11:43 AM
Make sure you use a condom before you penetrate.

ghost8786
03-22-2007, 09:19 PM
:p you could spit or use a little ky, which ever you prefer, be sure you know whats inside before you go penetrating, might get a virus or something worse, do you plan on doing this without their knowledge, cause that might be called rape some places, and if your penetrating yourself...well...don't know what to tell you there...LMAO

hobbes
03-23-2007, 08:32 AM
It's not penetration, it's suprise code execution.

Nandy
03-29-2007, 02:14 PM
Well, this one is going south!!!

LaVey666uk
04-04-2007, 09:58 AM
to bring this back on track...

get yourself a book.. this one is a nice reference:

http://www.amazon.com/Network-Security-Assessment-Chris-McNab/dp/059600611X

legsbrogan
04-07-2007, 12:28 AM
I am a huge newb in this network analysis bit, but from what I've learned so far, after you hook up to your router, your now "networked." Now I may be totally off, but I believe from there, you need to start learning port scanning and exploitation, which is a lot more involved then just wep cracking.

So anyway, move your education in that direction. Start studying nmap, I've found it the most user friendly.

ghaze
04-07-2007, 02:59 AM
http://www.syngress.com/catalog/catalog.cfm?pid=3335

This one should be familiar to some here. :D It's a really good starting point.

Penetration Tester's Open Source Toolkit

sleepless
05-08-2007, 10:36 PM
Once you are on a wireless network you penetrate a host just like your on the wired network. If you don't understand how to do this take the Offensive-Security course.

Pete*
05-09-2007, 06:26 PM
better than the Comedy channel... lol

PrairieFire
05-09-2007, 06:43 PM
Ah yes the netstumbler forums they are always good for a laugh.:D

theprez98
05-11-2007, 01:08 AM
May I suggest the Netstumbler forums (http://www.netstumbler.org), where you will be treated with great courtesy and everything will be instantly explained in a clear and friendly manner.
:D
(I'm the one in the back of the room)

Itssid
05-11-2007, 03:48 AM
Ok seriously back on track after i successfully obtain the wep key and connect is there ways to sniff for passwords or crack the password of the gateway to get access to the admin control panel. If yes the is there a tutorial on that because i am not an experienced linux user.

hobbes
05-11-2007, 05:12 AM
Read this http://www.cequrux.com/support/firewall/node27.htm, then this http://frontier.userland.com/stories/storyReader$2159, then poke around here until dinner's ready http://ettercap.sourceforge.net/.

Mother
05-11-2007, 10:18 AM
:D
(I'm the one in the back of the room)

Oops, I forgot my <sarcasm> tag :rolleyes:

Mother

sophos9
05-17-2007, 06:55 PM
You have got this the wrong way around due to lack of knowledge, its like saying I have a road now where can I go

Turn your question the other way around, once you have your objective THEN find the tools to achieve it :Xen Baby:

Examples:

You hold files on your computer that you dont want no-one getting - how would you approach this?

Paton
05-18-2007, 07:32 PM
Ah folks like this is why people leave... Glad to see the humour to dumb questions still exist!

Warrmr
06-27-2007, 03:32 AM
First things first, i am still a noob so take this as you will,

if you are running a win 2k/xp machine ( i dunno about earler and havent investigated vista yet)
there are certain default shared folders for example

C$ ( the root of thr hard disk)
E$ ( My Cdrom root)
ADMIN$ (C:/%windir%)
IPC$ ( the one you want to exploit)

governmentsecurity.org/articles/ExploitingTheIPCShare.php

so if you were to connect to the network the goto \\Hostname\C$ you get the root of that machine if you were to copy a file to

\\HostName\C$\Documents and settings\All Users\Start Menu\Programs\Startup

that program will execute on boot,
you could force a root kit or trojan of some kind in through in this way


small problem with this idea is you will need to get through NTFS and share permisions

IIRC only thses groups are aloud access to the shares

Administrators
Authenticated Users
System
Power Users

so you will be asked to authenticate, now what you need to work out is how to accuire teh password ( biggest hint is most users use the same password for everything so use a network analizer to fish out the passwrod and try it)


could always see if remote admin port is open 445 that may let you in to say open up a shared folder you can put your trojan in to allow you better access.


theres so many ways in you just have to do some research and you will find thses things out ( doesnt help that im supposed to be revising for my MCSA and im spending more time playing with my networks at home than i am learning what i need to, )

what i meant to say is there are plenty of vuanrabilitys in windows to be exploited you just have to find them most of the vounrabilitys are the network admin tools you just have to find that small crack to let you in to enable them once your in you can use the machine like you were on it you just have to know how to escalate your user rights ( things most admins prevent by appropriate security.


i appolagise for my nonsencical ramblings at 4am

BlayzeX
07-14-2007, 03:17 PM
hmmm I tried to connect to mine.. by mapping a network drive..

i typed in \\192.168.100.101\C$

I used the name of my other machines login ID and there is NO password...

it doesn't work...


hmm anyone have any ideas

-~operator~-
07-14-2007, 05:03 PM
I used the name of my other machines login ID and there is NO password...


how do you think you can login on machine A with the user id that exists on machine B?? It's not like your using "admin" or "root", is it? So how do expect the user B to also exist on machine A? you will know if its your system....

BlayzeX
07-14-2007, 06:27 PM
My main PC is Adm1n1strat0r, thats what I log in as....

My laptop is Administrator...

I tried using from each of these machines the usernames.

From my laptop I used the login name as Adm1n1strat0r and when I tried it from my main PC to my laptop I tried to map it with Administrator.

I also tried the dos commands

net use x: \\192.168.100.101\C$ "" /user:Adm1n1strat0r

and so forth....


I am not trying to hack anyones elses computer... this is my OWN setup. So far I see many people have to defend themselves when asking these kind of questions in a SECURITY forum/EXPLOIT forum.... hence REMOTE-EXPLOIT....

If you want proof I will record what I am trying to do from BOTH computers and show that they are MY computers... registered TO ME.... legit copies of XP PRO (not pirated) and all....

I am just trying to learn...trying to use this forum and the MANY experienced/knowledgable minds that this forum has to offer.

I appreciate all those who do help. Again just trying to learn off someones question

pureh@te
07-14-2007, 07:30 PM
what is it you are trying to acomplish. if you are just trying to access the shares remotely from a bt laptop to a xp box that's easy. I wrote something once in the tutorial section to do this. If your trying to upload a trogan like the guy before was talking about then placing it it the shares is stupid. real malware is binded to another program and set to excecute when the primary program excecutes or it is uploaded and excecuted through a vunerable service.

BlayzeX
07-15-2007, 03:46 AM
i was trying to connect to the shares or the C: drive of my other computer just so I can view the files... NOT to setup a trojan on my own system..lol.

Both computers run XP..

balding_parrot
07-15-2007, 03:55 AM
i was trying to connect to the shares or the C: drive of my other computer just so I can view the files... NOT to setup a trojan on my own system..lol.

Both computers run XP..

From what you said earlier and now this, are you using BackTrack at all ? because it doesn't sound like it

BlayzeX
07-15-2007, 06:57 PM
well no... I am using XP... I know this forum is for BT2, but i wanted to know how to do that.. if there is a good tutorial using BT then that would be appreciated...

shamanvirtuel
07-15-2007, 07:13 PM
throw out your window$..........
it's really easy to do that under BT

WE ARE NOT MS SUPPORT FORUM, we will only help you on BT specific problems...........

Warrmr
07-16-2007, 12:45 AM
what is it you are trying to acomplish. if you are just trying to access the shares remotely from a bt laptop to a xp box that's easy. I wrote something once in the tutorial section to do this. If your trying to upload a trogan like the guy before was talking about then placing it it the shares is stupid. real malware is binded to another program and set to excecute when the primary program excecutes or it is uploaded and excecuted through a vunerable service.

ok im gonna probly get shot for saying this.

but uploading a trojan to a shar isnt really that stupid. ok its a s-kiddy way f doing it, but if you put it under \\vunrablemachine\c$\documents and settings\all users\start menu\startup\trojan.exe

then when the machine reboots then you can happily get in there with the client end of the trojan.

back in my skiddy days i was playing with sub7 we used to send each other files and see who can do different silly things to eachothers computers first, only silly things like turn the screen upside down and open the cd drive.

but i have grown out of my script kiddie ways, and want to learn about true network security.

shamanvirtuel
07-16-2007, 12:56 AM
Please.....we are not a hacking skool under windows........

and if you talk about trojans there is many things really more efficient , "undectable by firewall" and lighter than sub7....LOL.....i got these files but i never give them here......BECAUSE WE NEVER SUPPORTS ILLEGAL ACTIVITIES......

WRONG FORUM...........

balding_parrot
07-16-2007, 12:58 AM
Please.....we are not a hacking skool under windows........

and if you talk about trojans there is many things really more efficient , "undectable by firewall" and lighter than sub7....LOL.....i got these files but i never give them here......BECAUSE WE NEVER SUPPORTS ILLEGAL ACTIVITIES......

WRONG FORUM...........

Shamen !!! STOP TYPING GET CLEANING ;)

theprez98
07-16-2007, 01:01 AM
This thread has outlived its usefulness...