Monday, March 11, 2013

Information Gathering: Email Harvester


Quick tutorial on how to extract email addresses from web sites.
Unlike search engines, email harvesters are only looking for email addresses. They are usually sent by spammers and any addresses they find are added to their spam database. Obviously this is a bad thing and you don’t want harvesters to find your address.
To deal with havesters, display the address using an image file so harvesters can’t see it. Users must manually enter the address into an email, you could also protect the page containing the address with a password, ”encode” the address using JavaScript or the most commom, use a contact form.
To prevent other people to harvest your email, do not post your email at the public area (forum, website etc) and disable “display email address” on your public profile.
Let’s cut the crap and start with the tutorial:
1. Go to Metasploit console by typing msfconsole, and then run:
# msf> use gather/search_email_collector
 
2. Now you need to set up the domain you want to locate the email address then type “run” or “exploit” and wait for results as shown in snapshot:
# set DOMAIN globo.com
# run
As you can see harvester has found 3 emails from globo.com!


That’s it. . . now collect as many emails as you can and sell to spammers! Just kidding. . .

QR-Code Generator Attack Vector


QR Code is the trademark for a type of matrix barcode.
With this Backtrack QR Code Generator you could either create a code redirecting to your site or aQRCode with a URL (or your IP) then create a SET attack vector to assist with the attack.
1. Open SET toolkit
2. Choose Social-Engineering Attacks, then option 9 (QRCode Generator Attack Vector)
3. Now choose URL to redirect your QRCode, or your IP, with your fake site                                                     Don’t forget to write “http://; before your IP
After that you’ll see a message that your QRCode has been generated.
Test your QRCode and hack some poor guy.

Hacking Email Accounts with Hydra


The purpose of this article is not to show how to hack email accounts, but to demonstrate the power of Hydra combined with  a strong wordlist.
Hydra is a tool that makes cracking protocols such as pop3,  ftp and telnet relatively easy. In my example, I will be cracking an email account (my own). Hydra uses brute force, so you HAVE to have the word in your wordlist in order to hack the email.

Wordlist Post

I’ll be hacking a pop3 email account but you can use other protocols, such as:
TELNET, FTP, FIREBIRD, HTTP-GET, HTTP-HEAD, HTTPS-GET, HTTPS-HEAD, HTTP-PROXY, HTTP-PROXY-NTLM, HTTP-FORM-GET, HTTP-FORM-POST, MYSQL, POSTGRES, POP3-NTLM, IMAP, IMAP-NTLM, NCP, NNTP, SMTP-AUTH, SMTP-AUTH-NTLM, SSH2, SNMP, CVS, VNC, POP3, VMWARE AUTH.
 
1. Open Hydra typing “xhydra” or go through menu.
2. On the Target tab, enter the target, the port, the protocol and check the options like below:
3. On the Passwords tab, enter the username (the email account you want to hack check password strength). Check the “Password List” button (then choose the path to your password list), “try login as password” and empty password options.

Word List – Brute Force


A dictionary attack using a wordlist relies on the fact that most users choose weak passwords. Very common passwords include password, computer, work, and most of the popular female names.
A wordlist can be used to to attempt a dictionary attack against any system which allows repetitive login attempts, such as SSH or POP3. But you already knew that. . . My word lists:

Social Engineering – set Toolkit – Facebook Hack


- Social Engineering: Understood to mean the art of manipulating people into performing actions or divulging confidential information.

I’m going to show you how to hack facebook account using backtrack 5. Just follow the steps.
1. Open your backtrack 5’s terminal and type cd /pentest/exploits/set (or go through start menu), then type ./set to open the Social Engineering Tool Kit SET
2. Select 1st option (1 – Social-Engineering Attacks) and hit enter. After that choose 2nd option “Website Attack Vectors” (as shown in snapshot)
3. Now just select 3rd Option “Credential Harvester Attack Method” and Hit ENTER.
4. Then select 2nd option “Site Cloner” and Hit ENTER.
5. Here you need to add the URL of Facebook (or the site you want to hack, like gmail, msn). Hit enter twice, you’ll see this message.
After adding the URL hit enter, wait set to clone the site and hit enter again.
6. Copy and Paste your IP adress in browser (How do I find my IP adress?)
7. Type test email and password to see whether it works or not.
8. Now just hit enter and switch back to terminal and see if the Email and Password appears.
- Click here to see the video of this tutorial.
- tutorial for educational purpose only

How do I find my IP Address?


Open new terminal and just type ifconfig and hit ENTER
Your IP address should look like the following, as shown circled in red below:
 

That simple!

Compressing and Uncompressing files



 
 
This is a very simple, quick and easy way of compression (zipping) and decompression (extracting) files using command line.
 
First of all open terminal and go to the file folder.
Example:                                                                                                                                                                    
# cd /home/user (go to the directory file was downloaded)
# ls (to make sure package is there)
 
To combine multiple files and/or directories into a single file, use the following command:
  • tar -cvf your_file.tar inputfile1 inputfile2
To extract an archive created by tar:
  • tar -xvf your_file.tar

Extracting gz and bz2
  • bz2 files: tar -jxvf nome-do-arquivo.tar.bz2
  • gz files: tar -zxvf nome-do-arquivo.tar.gz

    *v is for verbose mode
 
To unzip files use:
  • unzip <file_name.zip>
To zip:
  • zip <new_zip_file_name> <file_to_zip>
Example: I want to zip “backtrack.txt”
# zip bacaktrack.zip backtrack.txt
 
For multiple files:
# zip output_file_name.zip backtrack(1).txt backtrack(2).txt backtrack(3).txt
 
The installation procedure for software that comes in tar.gz and tar.bz2 packages isn’t always the same, but usually it’s like this:
# tar xvzf package.tar.gz (or tar xvjf package.tar.bz2)
# cd package
# ./configure
# make
# make install
 
- if you got any doubts just ask