• Session Hijacking Via Firefox Extension
    131 replies, posted
[QUOTE=wabash;25650478] Honestly, I think it should work just as easily over wired, Unless I don't know what you mean by that, I mean you need a wireless antenna to receive wireless packets.[/QUOTE] Interesting, I might have to mess around with this a bit later. It intrigues me quite a bit, I have heard of things like this but never seen it in such an easy to use and acquire way.
[QUOTE=Killuah;25650492]I takes packets and checks them for know patterns of known interniet site logins. As stated in the [B]OP[/B], it's that easy. [editline]26th October 2010[/editline] By the way packet sniffing in networks you don't own is illegal in Germany.[/QUOTE] It's considered wiretapping in the states. [editline]26th October 2010[/editline] [QUOTE=Jsm;25650512]Interesting, I might have to mess around with this a bit later. It intrigues me quite a bit, I have heard of things like this but never seen it in such an easy to use and acquire way.[/QUOTE] It has always been easy to do.
[QUOTE=wabash;25650520] It has always been easy to do.[/QUOTE] I mean easy in the sense that its just a firefox addon.
okay I need a simple stealthy keylogger
[QUOTE=Killuah;25650492]I takes packets[/QUOTE] this is the closest you got to an explanation i was looking for. and it sucks.
[QUOTE=deloc;25650558]this is the closest you got to an explanation i was looking for. and it sucks.[/QUOTE] I explained it for you, if your reading skills were up to par you would see that. [editline]26th October 2010[/editline] [QUOTE=Stud Muffin;25650552]okay I need a simple stealthy keylogger[/QUOTE] Simple is a funny word here, it is like saying you want a "EASY TO USE WEB BROWSER". All keyloggers are easy to use.
[QUOTE=wabash;25650478]It goes into promiscuous mode where it shows the host all packets going to it, normally it would ignore the packets but it looks at them in this mode. [/QUOTE] packets sent to a open gateway are not broadcasted to every client. there has to be some spoofing involved to get victims to send their packets to an attacker. [editline]26th October 2010[/editline] [QUOTE=wabash;25650645]I explained it for you, if your reading skills were up to par you would see that.[/QUOTE] it sucks too.
[QUOTE=deloc;25650661]packets sent to a open gateway are not broadcasted to every client. there has to be some spoofing involved to get victims to send their packets to an attacker.[/QUOTE] Yes they are, they are just dropped by the machine.
I doubt I'll really find anything where I live. There are several wi-fi connections but most of them are rarely used. The ones that are used most often are secured.
[QUOTE=wabash;25650679]Yes they are, they are just dropped by the machine.[/QUOTE] so you're trying to tell me that arp poisoning is useless nonsense? i think i'm being trolled or something.
will this work on my school network if i have the password?
It doesn't seem to work on encrypted networks regardless if you're logged on to that network. I could be wrong. Windows users do need to install a new driver with that 3rd party program, so you might need to restart before seeing all the features.
[QUOTE=deloc;25650732]so you're trying to tell me that arp poisoning is useless nonsense? i think i'm being trolled or something.[/QUOTE] Listen, arp poisoning is not useless but it is used against encrypted connections from what I recall. It's out of the scope of what I am training for but it is an interesting subject nonetheless.
[QUOTE=wabash;25650645]simple is a funny word here, it is like saying you want a "EASY TO USE WEB BROWSER". All keyloggers are easy to use.[/QUOTE] Okay, do you know of any good free keyloggers, good & stealthy?
-snip-
[QUOTE=Stud Muffin;25650947]Okay, do you know of any good free keyloggers, good & stealthy?[/QUOTE] murder every scriptkiddie
[QUOTE=GhettoGeek;25650969]Okay im using Firefox but it just saves as .XPI's I can't figure out how to install it[/QUOTE] Right click it and choose open with. Then choose Firefox.
HOLY SHIT! my school has no internet security whatsoever (except for login passwords) This will be a fun day.
[QUOTE=paul simon;25651008]HOLY SHIT! my school has no internet security whatsoever (except for login passwords) This will be a fun day.[/QUOTE] I'm going to laugh when you get caught.
Well shit, nothing happens when I press "Start Capturing".
I can't get it to work on my own network. I tried keeping this open on my laptop then used the wireless on my desktop to log into Facebook and it did not capture it on my laptop.
[quote=Article]Today at [URL="http://sandiego.toorcon.org/"]Toorcon 12[/URL] I announced the release of [URL="http://codebutler.github.com/firesheep"]Firesheep[/URL], [I]a Firefox extension designed to demonstrate just how serious this problem is.[/I][/quote] Yes.... to demonstrate.
[QUOTE=WeekendWarrior;25642593]Why you shouldn't use open Wi-fi[/QUOTE] Ignoring that open wifi hot spots have a disclaimer saying "yeah it's not secure don't be a retard"
[QUOTE=markg06;25652396]Ignoring that open wifi hot spots have a disclaimer saying "yeah it's not secure don't be a retard"[/QUOTE] I was talking more about personal networks.
This doesn't seem to work on the school issued Win7 laptop. Doesn't work on Win7 I guess.
[QUOTE=demoguy08;25646000]Is your Facepunch account really that valuable to you?[/QUOTE] Says the man with over 22,000 posts
[QUOTE=ProWaffle;25652488]Says the man with over 22,000 posts[/QUOTE] Facepunch = Facebook now?
[QUOTE=paul simon;25651109]Well shit, nothing happens when I press "Start Capturing".[/QUOTE] What he said^
[QUOTE=nikomo;25648765]Even then, you can still capture without connecting to the network if you put your card into monitor mode. Note: Not all cards support monitor mode.[/QUOTE] how do you put it in that mode ? I know for a fact mine does
It can't seem to register my wifi card under options... just my ethernet adapter..
Sorry, you need to Log In to post a reply to this thread.