[x]
We are happy to see you on AH
AH - AndhraHackers is a place to entertain as well to spread knowledge around.
One of the most exciting Indian Community over Internet.

We would like you to Join AH Forum Today.

Why to JOIN AH forum ?
Pages: [1]   Go Down
  Print  
Author Topic: Sniffing...  (Read 333 times)
0 Members and 1 Guest are viewing this topic.
5!L3N7_K!ll3R...
ICW Team Member
Sr. Member
*****

Karma: +9/-1
Offline Offline

Posts: 493


L37 7h3 94m3 b39!n...;)


« on: August 25, 2009, 01:10:27 PM »

tools...

Ettercap
nano


1. For SSL Dissection support (hotmail,gmail), you need to do this:
Open a shell, type: "nano /usr/local/etc/etter.conf", use the down arrow until you reach "redir_command_on/off", look at the linux part, your gonna need to unccomment

http://tinypaste.com/1d42ddd

to

http://tinypaste.com/94af0

after your done, press F2, Y, Return.

Now boot Ettercap: Menu --> Backtrack --> Spoofing --> Ettercap
Go to: Sniff --> Unified Sniffing -->ethX(what interface you want to sniff).
Then Press: Ctrl+S to scan hosts.
Then Go to: Mitm --> ARP poisoning, select sniff remote connections, and press ok.
Then Go to: Start --> Start Sniffing.

For an Example, Walk to another pc, go to your internet email account (Hotmail, Gmail), and log in, you will be asked to trust the certificate, Trust it, and watch your sniffing computer, the username and password should appear.

When your done, go to Start --> Stop Sniffing, And go to Mitm --> Stop mitm attack(s)




with wireshack...
In order to start the program, (assuming Windows XP) click on Start, Programs, Wireshark (Group) and click on Wireshark.

Once the application starts-

Click on Capture and go to Interfaces. Select the active network card. Now click on the Options button in the Window.

Make sure the Capture packets in promiscuous mode box is check in the Wireshark Capture Options check box.

Now click on Start (This starts the capture process)

You will now see packets of data that are now passing across the network. Allow this application to run for several minutes. Return to the menu and click Stop.

You can find packets by typing key words or the word password and hitting enter to find the packets that may contain the password...Smiley
Logged



Cx0rp53
download links provided not tested by me check before downloading use an updated av...Wink
Andhra Hackers , Indian Hackers , Indian Cyber Warriors , Ethical Hackers Forum
« on: August 25, 2009, 01:10:27 PM »

 Logged
matrix
n00b
*

Karma: +1/-0
Offline Offline

Posts: 14


« Reply #1 on: August 26, 2009, 05:35:08 AM »

gud max3no
               
but one thing... u r unable to see the passwords in plain text because mail providers like g mail yahoo,hot mail use SSL to encrypt the data.... but this senario is wrong when user use the less protection protocols like telnet, ftp..... this protocol trasmit the data with out encryption.....
Logged
5!L3N7_K!ll3R...
ICW Team Member
Sr. Member
*****

Karma: +9/-1
Offline Offline

Posts: 493


L37 7h3 94m3 b39!n...;)


« Reply #2 on: August 26, 2009, 05:53:10 AM »

ohhhke...Azn Smiley
Logged



Cx0rp53
download links provided not tested by me check before downloading use an updated av...Wink
silverboy
n00b
*

Karma: +0/-0
Offline Offline

Posts: 4


« Reply #3 on: November 26, 2009, 08:11:42 PM »


 

its fun stuff to do when you are on a WiFi
Logged
Andhra Hackers , Indian Hackers , Indian Cyber Warriors , Ethical Hackers Forum
   

 Logged
Pages: [1]   Go Up
  Print  
 
Jump to:  


whitec0de.com | Techian.com | GfxLovers.com | CDN Pic | Inj3ct0r Exploit DB | Garage4Hackers
Page created in 0.117 seconds with 26 queries.