2010-09-29

[Site News] September 2010

Over the last month or so, I've been working on various scripts (new and old). Here is a quick update:
  • New: wiffy - Auto Wireless Key Cracker
  • New: SITM (Script In The Middle)  - Replacement for "metasploit-FakeUpdate". Not 100% complete
  • New: Wordlist - Replacement for "dictionary". Not 100% complete
  • Updated: chap2asleap 
  • Updated: fakeAP_pwn
  • Updated: evilDEB
  • Updated: evilGrade

I'm porting all my scripts to GoogleCode, instead of using MediaFire to host them. One advantage of moving to GoogleCode is that I can start adding an "update" feature to each script, therefore if you run any script with -u it *should* check for an update. (=
*Warning. The latest and greatest version(s) may not have been fully tested which may break "something".*


A feature of GoogleCode is version control (via Subversion), which keeps track of every version of each script. So if something doesn't work in the latest version - you can restore to an older version. (=
svn checkout http://g0tmi1k.googlecode.com/svn/trunk/ g0tmi1k/
svn checkout http://fakeap-pwn.googlecode.com/svn/trunk/ g0tmi1k/fakeAP_pwn



I also made the jump to Twitter! So if you want to, follow me at http://www.twitter.com/g0tmi1k



~g0tmi1k

23 comments:

  1. Hey there! Wanna ask you about program for capture video you use?

    Sry english my second language :)

    Ps. install recordmydesktop - crap tool. Save to .ogg file.

    Xvidcap - make error - :
    root@bt:~# xvidcap
    Xlib: extension "RANDR" missing on display ":0.0".
    xtoffmpeg.c add_video_stream(): video codec not found

    any tips? Which codec need to install?

    ReplyDelete
  2. @BT
    I use Camtasia Studio. I use it to record and edit the footage.

    I haven't used recordmydesktop - so I cant really help you on that.

    ReplyDelete
  3. Hello again. Wanna ask u about FakeAP script.

    First problem: on win* machines name AP looks like ?????????? (i dont think what is problem cp1251)

    Second problem: dhcp3-server dont work i apologize. My netbook cant join to fakedAP, but my nokia 5800 connect to fakeAP correctly.

    Any ideas?

    PS
    try to connect to wep wi-fi point after crack:

    ifconfig wlan0 down
    iwconfig wlan0 essid xxxxx
    iwconfig wlan0 key xxxxx
    ifconfig wlan0 up
    dhclient wlan0

    dhclient cant give me ip adress..

    I apologize this problems with dhcp started after update&&upgrade tools on bt..

    any tips?

    And sorry my language, its second my language.

    ReplyDelete
  4. @Игорь

    By the sounds of it - you using airbase-ng? if your hardware supports it - use hostapd. If it doesn't support it, you might want to chance your WiFi device.
    For the record, is your target using Windows XP?

    With DHCP, what version of fakeAP_pwn are you using? There has been a few bugs with it.

    About the WiFi, is there DHCP enabled on the WEP network? Is there MAC Filtering? What mode is the card in?

    ReplyDelete
  5. "For the record, is your target using Windows XP?"

    Yes, target is XP. Another devices for example my mobile nokia 5800 can join to faked network.

    "With DHCP, what version of fakeAP_pwn are you using?"

    FakeAP_0.3

    By the way, your metasploit fakeUpdate work perfectly.

    "About the WiFi, is there DHCP enabled on the WEP network? Is there MAC Filtering? What mode is the card in? "

    Its public cafe's wep point. In few commands i crack her, get key, after do this:
    ifconfig wlan0 down
    iwconfig wlan0 essid xxxxx
    iwconfig wlan0 key xxxxx
    ifconfig wlan0 up
    dhclient wlan0

    dhclient cant give me ip adress..

    Sure dhcp on this point enable, because its public point. Dont think what in this point maked mac filtering.

    ReplyDelete
  6. @Игорь
    Yes, Ive found the same problem, with a messed up SSID. It doesn't happen to me if I used hostpad or the target system was Windows 7.

    What build of fakeAP_pwn v0.3 are you using though!?

    Odd that metasploit-fakeUpdate work for you. Anyway, its been replaced with "SITM" - Script In The Middle. (=

    Do/did you have permission to crack the key?

    ReplyDelete
  7. Can get link to SITM?

    Yes, im cracked key with any problems. Problem to connect in cracked AP =)

    ReplyDelete
  8. @Игорь
    Its on the svn/googlecode. See the post for links/commands.

    You didnt answer the question. *tries it a different way*
    Do you have permission to do what your doing
    Did you get permission to crack the WiFi key?
    Did you get permission to join the network?
    Did you get permission!?!

    ReplyDelete
  9. awesome stuff man! looking forward to see more posts! Peace

    ReplyDelete
  10. @Justin
    Thanks for the kind words! (=

    ReplyDelete
  11. is this g0tmilk from myg0t?

    ReplyDelete
  12. @Hobojoe
    Sorry, no.
    I've never heard of "myg0t" before!

    ReplyDelete
  13. hi gotmilk.. im newbie about wifi cracking.. do you know how to hide pc name on client network after cracking their wifi.. if i not mistaken, pc name will appear in pc who have connected to the same modem... sory for my bad english.. please replay at haysnamrip@yahoo.com

    ReplyDelete
  14. Hello mr g0tmi1k.. you did a great work and i realy like your blog but WHERE ARE YOU from sept, i check your blog twice a day please tell us?

    ReplyDelete
  15. @haysnamrip
    You're comment is off topic. I already have posts on WiFi.

    It sounds like you have cracked your neighbours WiFi - and now you want to use it without them knowing. Which means you haven't got permission - which doesn't sound legal to me. Hence why I'm not going answer your question.

    I would rather reply here with answer than email you (that way other people with the same question would get the answer).



    @grown
    Thanks for the thanks. Its nice to know people to check here!

    I haven't done any new blog post - because I have been busy with other things (See below). It takes "a while" to record, edit and write about each video.

    Since I haven't being posting, I have been doing "work work", as well as coding a few new scripts ;)

    ReplyDelete
  16. Thanx for answer :-) i wanna know your lab config its all virtual or real? what hardware you recommend. i wanna create my own lab and where do you learn all the amazing stuff? i know its too much but i m learning about computer security so i wanna know about all this things please answer!

    ReplyDelete
  17. @grown.
    I'm lucky enough to have both. I've had a bit of old hardware which wasn't been used due to upgrades - which I'm now using to test on.
    Then on my main PC, I've got VirtualBox with VMs setup.

    For a "real" lab - you don't need much - just a few old PC's to install OSs on (You'll be surprised what can run XP!). My ISP keeps posting my new WiFi routers and you can pick up cabling and accessories very cheaply second/third hand from eBay.
    If you're going to do it virtually, Its worth having ALOT of RAM on the host machine as this quickly used up. Depending on how many you wish to run at once, might be worth purchasing a quad core CPU.

    Keep an eye on twitter, forums and blogs to pick up tips and tricks!



    @Casey
    Yes. Ooo yes!
    I'm currently busy with other things, however I will try and make up for the time I missed ;)

    ReplyDelete
  18. This comment has been removed by the author.

    ReplyDelete
  19. hello great blog friend, I wonder if you can make a tutorial on how to hack a server microtik server (wifi), also if peudes make a tutorial on how to change the mac should meet with acces point with mac filter

    ReplyDelete
  20. @Sakoda
    I don't do request - my blog is my notepad of the stuff that I do.

    The MAC address is simple to do, with the aid of "macchanger".
    Trying to do a Microsoft(?) server, is a different story. Better off going after the web app that the server!

    ReplyDelete
  21. Or you could do it manually also.
    "ifconfig wlan0 hw ether XX:XX:XX:XX:XX:XX" and then "ifconfig wlan0 up".

    ReplyDelete