Remote Exploit Forums

Go Back   Remote Exploit Forums > BackTrack 4 (pre) Final > BackTrack 4 Howto


BackTrack 4 Howto Tutorials and Howtos about BackTrack 4 (NOT for requesting tutorials or how to do anything)

Reply
 
LinkBack Thread Tools Display Modes
  #11 (permalink)  
Old 08-09-2009, 12:15 PM
New Member
 
Join Date: Aug 2009
Posts: 1
Default

Im up to step 5 but when i start ferret i get the following error

timeout(1): unknown linktype = 0 (expected Ethernet or wifi)

this is happening on any interface i choose
ifconfig shows Link encap:UNSPEC if thats any help
Reply With Quote
  #12 (permalink)  
Old 08-10-2009, 05:36 PM
Junior Member
 
Join Date: Aug 2009
Posts: 10
Default

I appreciate the tutorial, but as of yet I've been unable to get it working. Rather than using a rouge AP, I've just been using MITM/arp spoofing to direct packets to Ferret/Hamster. Hamster gets targets to clone and lists the links, but the links don't seem to work properly. The pages load, but I don't seem to be getting the hijacked permissions... gmail and yahoo mail both just load the login pages.

Does it matter that I'm using arp spoofing to get the packets rather than a rogue ap?
Reply With Quote
  #13 (permalink)  
Old 08-10-2009, 08:38 PM
Member
 
Join Date: Jan 2006
Location: RAK, UAE
Posts: 41
Send a message via MSN to fifo_thekid Send a message via Yahoo to fifo_thekid
Default

What's the type of your wifi card?
what do you get when you type:
airmon-ng
iwconfig
?
Reply With Quote
  #14 (permalink)  
Old 08-11-2009, 07:51 PM
Junior Member
 
Join Date: Aug 2009
Posts: 10
Default

Quote:
Originally Posted by fifo_thekid View Post
What's the type of your wifi card?
what do you get when you type:
airmon-ng
iwconfig
?
Card:
Code:
Intel PROSet 2200BG
airmon-ng:
Code:
Interface       Chipset         Driver

eth1            Intel 2200BG    ipw2200
iwconfig:
Code:
root@bt:/# iwconfig
lo        no wireless extensions.

eth0      no wireless extensions.

eth1      IEEE 802.11g  ESSID:"1942Wireless"
          Mode:Managed  Frequency:2.452 GHz  Access Point: 00:18:F8:69:86:A3
          Bit Rate:54 Mb/s   Tx-Power=20 dBm   Sensitivity=8/0
          Retry limit:7   RTS thr:off   Fragment thr:off
          Encryption key:42FF-0A26-C0F3-4DAF-85B9-FDDB-A8C6-8AD8   Security mode:open
          Power Management:off
          Link Quality=89/100  Signal level=-40 dBm  Noise level=-87 dBm
          Rx invalid nwid:0  Rx invalid crypt:0  Rx invalid frag:0
          Tx excessive retries:0  Invalid misc:0   Missed beacon:0
Reply With Quote
  #15 (permalink)  
Old 08-14-2009, 02:35 PM
Member
 
Join Date: Jan 2006
Location: RAK, UAE
Posts: 41
Send a message via MSN to fifo_thekid Send a message via Yahoo to fifo_thekid
Default

I don't think that this card allows injecting
For best results, by Alfa USB WIFI device
It's the best
Reply With Quote
  #16 (permalink)  
Old 08-14-2009, 04:48 PM
Junior Member
 
Join Date: Aug 2009
Posts: 10
Default

It hadn't occurred to me that we were talking about injection (I guess I skipped over the word in your first post). There is a patch that allow injection on the 2200BG, I'll see what I can do to set it up.

Thanks for the heads up, I'll report back.
Reply With Quote
  #17 (permalink)  
Old 08-15-2009, 08:14 PM
Member
 
Join Date: Jan 2006
Location: RAK, UAE
Posts: 41
Send a message via MSN to fifo_thekid Send a message via Yahoo to fifo_thekid
Default

Injection is required for a fake AP
Look in the options of aireplay-ng for an option that checks your injection capabilities
Reply With Quote
  #18 (permalink)  
Old 11-04-2009, 10:11 AM
Junior Member
 
Join Date: Mar 2008
Posts: 9
Default

wow great tutz, i manage to get it working in my wired network using g0tmi1k's sslstrip tutorial instead of the rogue3 script

thanks!
Reply With Quote
  #19 (permalink)  
Old 11-06-2009, 10:33 PM
New Member
 
Join Date: Nov 2009
Posts: 2
Thumbs down

Noob here:
I got nearly everything working, but i'm encountering a problem:

i can't seem to be able to broadcast a rogue access point.
Thus i won't be able to connect to the ap with my laptop in order to try this

i'm running BT4 via a live cd.

Does anyone have any idea how to make the ap work?
Reply With Quote
Reply

Bookmarks

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On



All times are GMT. The time now is 04:12 PM.


Powered by vBulletin® Version 3.8.4
Copyright ©2000 - 2009, Jelsoft Enterprises Ltd.
Search Engine Optimization by vBSEO 3.3.2