Posts

Showing posts with the label Pentesting

Basic Configuration for Snort IDS on Windows OS

Image
What wikipedia says about Snort ( https://en.wikipedia.org/wiki/Snort_(software) ) Snort's open source network-based intrusion detection system (NIDS) has the ability to perform real-time traffic analysis and packet logging on Internet Protocol (IP) networks. Snort performs protocol analysis, content searching and matching. These basic services have many purposes including application-aware triggered quality of service , to de-prioritize bulk traffic when latency-sensitive applications are in use. [1] The program can also be used to detect probes or attacks , including, but not limited to, operating system fingerprinting attempts, common gateway interface , buffer overflows , server message block probes, and stealth port scans . [10] Snort can be configured in three main modes: sniffer, packet logger, and network intrusion detection. [11] In sniffer mode, the program will read network packets and display them on the console. In packet logger mode, the program wi...

AntiVirus ByPass using Python

Image
In this article we will try to bypass Antivirus program using Python.But before we start our attack let's check if we have this programs in our VM network.For this attack i use 3 VMs: Windows 7 (Victim) Windows XP SP2 (PyInstaller) Backtrack 5r3 (Metasploit) Windows XP SP2 (PyInstaller) Python version 2.7 ( https://www.python.org/ftp/python/2.7.12/python-2.7.12.msi ) PyInstaller -2.1 ( https://github.com/pyinstaller/pyinstaller/releases/download/v2.1/PyInstaller-2.1.zip ) Pywin32 ( https://sourceforge.net/projects/pywin32/files/pywin32/Build/220/ ) pastebin.com/index/rrhcGeHh (Copy the script into a text editor and save the file with *.py extension)

Python SimpleHTTPServer (Phishing attack)

Image
Θα σας δείξω πως ένας hacker μπορεί να δημιουργήσει πολύ γρήγορα και απλά τον δικό του HTTP Server και να μοιράσει το κακόβουλο λογισμικό στους ανυποψίαστους χρήστες ή ακόμη και να κλέψει τo username και το password σας (π.χ Facebook,Twitter κτλ) Βέβαια θα μπορούσε επίσης να χρησιμοποιηθεί για pentesting ή για εκμάθηση των HTTP Headers. Μπορούμε να δημιουργήσουμε μία απλή index.html (Αρχική σελίδα) και να οδηγήσουμε τους χρήστες εκεί.Μετά οι κεφαλίδες θα κάνουν από μόνες τους αυτό που χρειάζεται.