Skip to main content

METASPLOIT





Tʜᴇ Mᴇᴛᴀsᴘʟᴏɪᴛ Pʀᴏᴊᴇᴄᴛ ɪs ᴀ ᴄᴏᴍᴘᴜᴛᴇʀ sᴇᴄᴜʀɪᴛʏ ᴘʀᴏᴊᴇᴄᴛ ᴛʜᴀᴛ ᴘʀᴏᴠɪᴅᴇs ɪɴꜰᴏʀᴍᴀᴛɪᴏɴ ᴀʙᴏᴜᴛ sᴇᴄᴜʀɪᴛʏ ᴠᴜʟɴᴇʀᴀʙɪʟɪᴛɪᴇs ᴀɴᴅ ᴀɪᴅs ɪɴ ᴘᴇɴᴇᴛʀᴀᴛɪᴏɴ ᴛᴇsᴛɪɴɢ ᴀɴᴅ IDS sɪɢɴᴀᴛᴜʀᴇ ᴅᴇᴠᴇʟᴏᴘᴍᴇɴᴛ. Iᴛ ɪs ᴏᴡɴᴇᴅ ʙʏ Bᴏsᴛᴏɴ, Mᴀssᴀᴄʜᴜsᴇᴛᴛs-ʙᴀsᴇᴅ sᴇᴄᴜʀɪᴛʏ ᴄᴏᴍᴘᴀɴʏ Rᴀᴘɪᴅ7.

Iᴛs ʙᴇsᴛ-ᴋɴᴏᴡɴ sᴜʙ-ᴘʀᴏᴊᴇᴄᴛ ɪs ᴛʜᴇ ᴏᴘᴇɴ-sᴏᴜʀᴄᴇ Mᴇᴛᴀsᴘʟᴏɪᴛ Fʀᴀᴍᴇᴡᴏʀᴋ, ᴀ ᴛᴏᴏʟ ꜰᴏʀ ᴅᴇᴠᴇʟᴏᴘɪɴɢ ᴀɴᴅ ᴇxᴇᴄᴜᴛɪɴɢ ᴇxᴘʟᴏɪᴛ ᴄᴏᴅᴇ ᴀɢᴀɪɴsᴛ ᴀ ʀᴇᴍᴏᴛᴇ ᴛᴀʀɢᴇᴛ ᴍᴀᴄʜɪɴᴇ. Oᴛʜᴇʀ ɪᴍᴘᴏʀᴛᴀɴᴛ sᴜʙ-ᴘʀᴏᴊᴇᴄᴛs ɪɴᴄʟᴜᴅᴇ ᴛʜᴇ Oᴘᴄᴏᴅᴇ Dᴀᴛᴀʙᴀsᴇ, sʜᴇʟʟᴄᴏᴅᴇ ᴀʀᴄʜɪᴠᴇ ᴀɴᴅ ʀᴇʟᴀᴛᴇᴅ ʀᴇsᴇᴀʀᴄʜ.

Tʜᴇ Mᴇᴛᴀsᴘʟᴏɪᴛ Pʀᴏᴊᴇᴄᴛ ɪɴᴄʟᴜᴅᴇs ᴀɴᴛɪ-ꜰᴏʀᴇɴsɪᴄ ᴀɴᴅ ᴇᴠᴀsɪᴏɴ ᴛᴏᴏʟs, sᴏᴍᴇ ᴏꜰ ᴡʜɪᴄʜ ᴀʀᴇ ʙᴜɪʟᴛ ɪɴᴛᴏ ᴛʜᴇ Mᴇᴛᴀsᴘʟᴏɪᴛ Fʀᴀᴍᴇᴡᴏʀᴋ. Mᴇᴛᴀsᴘʟᴏɪᴛ ɪs ᴘʀᴇ-ɪɴsᴛᴀʟʟᴇᴅ ɪɴ ᴛʜᴇ Kᴀʟɪ Lɪɴᴜx ᴏᴘᴇʀᴀᴛɪɴɢ sʏsᴛᴇᴍ.
 Tʜᴇ ʙᴀsɪᴄ sᴛᴇᴘs ꜰᴏʀ ᴇxᴘʟᴏɪᴛɪɴɢ ᴀ sʏsᴛᴇᴍ ᴜsɪɴɢ ᴛʜᴇ Fʀᴀᴍᴇᴡᴏʀᴋ ɪɴᴄʟᴜᴅᴇ:

    Cʜᴏᴏsɪɴɢ ᴀɴᴅ ᴄᴏɴꜰɪɢᴜʀɪɴɢ ᴀɴ ᴇxᴘʟᴏɪᴛ (ᴄᴏᴅᴇ ᴛʜᴀᴛ ᴇɴᴛᴇʀs ᴀ ᴛᴀʀɢᴇᴛ sʏsᴛᴇᴍ ʙʏ ᴛᴀᴋɪɴɢ ᴀᴅᴠᴀɴᴛᴀɢᴇ ᴏꜰ ᴏɴᴇ ᴏꜰ ɪᴛs ʙᴜɢs; ᴀʙᴏᴜᴛ 900 ᴅɪꜰꜰᴇʀᴇɴᴛ ᴇxᴘʟᴏɪᴛs ꜰᴏʀ Wɪɴᴅᴏᴡs, Uɴɪx/Lɪɴᴜx ᴀɴᴅ Mᴀᴄ OS X sʏsᴛᴇᴍs ᴀʀᴇ ɪɴᴄʟᴜᴅᴇᴅ);
    Oᴘᴛɪᴏɴᴀʟʟʏ ᴄʜᴇᴄᴋɪɴɢ ᴡʜᴇᴛʜᴇʀ ᴛʜᴇ ɪɴᴛᴇɴᴅᴇᴅ ᴛᴀʀɢᴇᴛ sʏsᴛᴇᴍ ɪs sᴜsᴄᴇᴘᴛɪʙʟᴇ ᴛᴏ ᴛʜᴇ ᴄʜᴏsᴇɴ ᴇxᴘʟᴏɪᴛ;
    Cʜᴏᴏsɪɴɢ ᴀɴᴅ ᴄᴏɴꜰɪɢᴜʀɪɴɢ ᴀ ᴘᴀʏʟᴏᴀᴅ (ᴄᴏᴅᴇ ᴛʜᴀᴛ ᴡɪʟʟ ʙᴇ ᴇxᴇᴄᴜᴛᴇᴅ ᴏɴ ᴛʜᴇ ᴛᴀʀɢᴇᴛ sʏsᴛᴇᴍ ᴜᴘᴏɴ sᴜᴄᴄᴇssꜰᴜʟ ᴇɴᴛʀʏ; ꜰᴏʀ ɪɴsᴛᴀɴᴄᴇ, ᴀ ʀᴇᴍᴏᴛᴇ sʜᴇʟʟ ᴏʀ ᴀ VNC sᴇʀᴠᴇʀ);
    Cʜᴏᴏsɪɴɢ ᴛʜᴇ ᴇɴᴄᴏᴅɪɴɢ ᴛᴇᴄʜɴɪǫᴜᴇ sᴏ ᴛʜᴀᴛ ʜᴇxᴀᴅᴇᴄɪᴍᴀʟ ᴏᴘᴄᴏᴅᴇs ᴋɴᴏᴡɴ ᴀs "ʙᴀᴅ ᴄʜᴀʀᴀᴄᴛᴇʀs" ᴀʀᴇ ʀᴇᴍᴏᴠᴇᴅ ꜰʀᴏᴍ ᴛʜᴇ ᴘᴀʏʟᴏᴀᴅ, ᴛʜᴇsᴇ ᴄʜᴀʀᴀᴄᴛᴇʀs ᴡɪʟʟ ᴄᴀᴜsᴇ ᴛʜᴇ ᴇxᴘʟᴏɪᴛ ᴛᴏ ꜰᴀɪʟ.
    Exᴇᴄᴜᴛɪɴɢ ᴛʜᴇ ᴇxᴘʟᴏɪᴛ.

Tʜɪs ᴍᴏᴅᴜʟᴀʀ ᴀᴘᴘʀᴏᴀᴄʜ – ᴀʟʟᴏᴡɪɴɢ ᴛʜᴇ ᴄᴏᴍʙɪɴᴀᴛɪᴏɴ ᴏꜰ ᴀɴʏ ᴇxᴘʟᴏɪᴛ ᴡɪᴛʜ ᴀɴʏ ᴘᴀʏʟᴏᴀᴅ – ɪs ᴛʜᴇ ᴍᴀᴊᴏʀ ᴀᴅᴠᴀɴᴛᴀɢᴇ ᴏꜰ ᴛʜᴇ Fʀᴀᴍᴇᴡᴏʀᴋ. Iᴛ ꜰᴀᴄɪʟɪᴛᴀᴛᴇs ᴛʜᴇ ᴛᴀsᴋs ᴏꜰ ᴀᴛᴛᴀᴄᴋᴇʀs, ᴇxᴘʟᴏɪᴛ ᴡʀɪᴛᴇʀs ᴀɴᴅ ᴘᴀʏʟᴏᴀᴅ ᴡʀɪᴛᴇʀs.

Mᴇᴛᴀsᴘʟᴏɪᴛ ʀᴜɴs ᴏɴ Uɴɪx (ɪɴᴄʟᴜᴅɪɴɢ Lɪɴᴜx ᴀɴᴅ Mᴀᴄ OS X) ᴀɴᴅ ᴏɴ Wɪɴᴅᴏᴡs. Tʜᴇ Mᴇᴛᴀsᴘʟᴏɪᴛ Fʀᴀᴍᴇᴡᴏʀᴋ ᴄᴀɴ ʙᴇ ᴇxᴛᴇɴᴅᴇᴅ ᴛᴏ ᴜsᴇ ᴀᴅᴅ-ᴏɴs ɪɴ ᴍᴜʟᴛɪᴘʟᴇ ʟᴀɴɢᴜᴀɢᴇs.

Tᴏ ᴄʜᴏᴏsᴇ ᴀɴ ᴇxᴘʟᴏɪᴛ ᴀɴᴅ ᴘᴀʏʟᴏᴀᴅ, sᴏᴍᴇ ɪɴꜰᴏʀᴍᴀᴛɪᴏɴ ᴀʙᴏᴜᴛ ᴛʜᴇ ᴛᴀʀɢᴇᴛ sʏsᴛᴇᴍ ɪs ɴᴇᴇᴅᴇᴅ, sᴜᴄʜ ᴀs ᴏᴘᴇʀᴀᴛɪɴɢ sʏsᴛᴇᴍ ᴠᴇʀsɪᴏɴ ᴀɴᴅ ɪɴsᴛᴀʟʟᴇᴅ ɴᴇᴛᴡᴏʀᴋ sᴇʀᴠɪᴄᴇs. Tʜɪs ɪɴꜰᴏʀᴍᴀᴛɪᴏɴ ᴄᴀɴ ʙᴇ ɢʟᴇᴀɴᴇᴅ ᴡɪᴛʜ ᴘᴏʀᴛ sᴄᴀɴɴɪɴɢ ᴀɴᴅ OS ꜰɪɴɢᴇʀᴘʀɪɴᴛɪɴɢ ᴛᴏᴏʟs sᴜᴄʜ ᴀs Nᴍᴀᴘ. Vᴜʟɴᴇʀᴀʙɪʟɪᴛʏ sᴄᴀɴɴᴇʀs sᴜᴄʜ ᴀs Nᴇxᴘᴏsᴇ, Nᴇssᴜs, ᴀɴᴅ OᴘᴇɴVAS ᴄᴀɴ ᴅᴇᴛᴇᴄᴛ ᴛᴀʀɢᴇᴛ sʏsᴛᴇᴍ ᴠᴜʟɴᴇʀᴀʙɪʟɪᴛɪᴇs. Mᴇᴛᴀsᴘʟᴏɪᴛ ᴄᴀɴ ɪᴍᴘᴏʀᴛ ᴠᴜʟɴᴇʀᴀʙɪʟɪᴛʏ sᴄᴀɴɴᴇʀ ᴅᴀᴛᴀ ᴀɴᴅ ᴄᴏᴍᴘᴀʀᴇ ᴛʜᴇ ɪᴅᴇɴᴛɪꜰɪᴇᴅ ᴠᴜʟɴᴇʀᴀʙɪʟɪᴛɪᴇs ᴛᴏ ᴇxɪsᴛɪɴɢ ᴇxᴘʟᴏɪᴛ ᴍᴏᴅᴜʟᴇs ꜰᴏʀ ᴀᴄᴄᴜʀᴀᴛᴇ ᴇxᴘʟᴏɪᴛᴀᴛɪᴏɴ.

 Mᴇᴛᴀsᴘʟᴏɪᴛ ᴄᴜʀʀᴇɴᴛʟʏ ʜᴀs ᴏᴠᴇʀ 547 ᴘᴀʏʟᴏᴀᴅs. Sᴏᴍᴇ ᴏꜰ ᴛʜᴇᴍ ᴀʀᴇ:

    Cᴏᴍᴍᴀɴᴅ sʜᴇʟʟ ᴇɴᴀʙʟᴇs ᴜsᴇʀs ᴛᴏ ʀᴜɴ ᴄᴏʟʟᴇᴄᴛɪᴏɴ sᴄʀɪᴘᴛs ᴏʀ ʀᴜɴ ᴀʀʙɪᴛʀᴀʀʏ ᴄᴏᴍᴍᴀɴᴅs ᴀɢᴀɪɴsᴛ ᴛʜᴇ ʜᴏsᴛ.
    Mᴇᴛᴇʀᴘʀᴇᴛᴇʀ (ᴛʜᴇ Mᴇᴛᴀsᴘʟᴏɪᴛ Iɴᴛᴇʀᴘʀᴇᴛᴇʀ) ᴇɴᴀʙʟᴇs ᴜsᴇʀs ᴛᴏ ᴄᴏɴᴛʀᴏʟ ᴛʜᴇ sᴄʀᴇᴇɴ ᴏꜰ ᴀ ᴅᴇᴠɪᴄᴇ ᴜsɪɴɢ VNC ᴀɴᴅ ᴛᴏ ʙʀᴏᴡsᴇ, ᴜᴘʟᴏᴀᴅ ᴀɴᴅ ᴅᴏᴡɴʟᴏᴀᴅ ꜰɪʟᴇs.
    Dʏɴᴀᴍɪᴄ ᴘᴀʏʟᴏᴀᴅs ᴇɴᴀʙʟᴇ ᴜsᴇʀs ᴛᴏ ᴇᴠᴀᴅᴇ ᴀɴᴛɪ-ᴠɪʀᴜs ᴅᴇꜰᴇɴsᴇ ʙʏ ɢᴇɴᴇʀᴀᴛɪɴɢ ᴜɴɪǫᴜᴇ ᴘᴀʏʟᴏᴀᴅs.
    Sᴛᴀᴛɪᴄ ᴘᴀʏʟᴏᴀᴅs ᴇɴᴀʙʟᴇ sᴛᴀᴛɪᴄ IP ᴀᴅᴅʀᴇss/ᴘᴏʀᴛ ꜰᴏʀᴡᴀʀᴅɪɴɢ ꜰᴏʀ ᴄᴏᴍᴍᴜɴɪᴄᴀᴛɪᴏɴ ʙᴇᴛᴡᴇᴇɴ ᴛʜᴇ ʜᴏsᴛ ᴀɴᴅ ᴛʜᴇ ᴄʟɪᴇɴᴛ sʏsᴛᴇᴍ.

Written by 

Syan kr.Dey

Comments

Popular posts from this blog

NMAP and ZenMAP

NMAP and ZenMAP are useful tools for the scanning phase of Ethical Hacking in Kali Linux. NMAP and ZenMAP are practically the same tool, however NMAP uses command line while ZenMAP has a GUI. NMAP is a free utility tool for network discovery and security auditing. Many systems and network administrators also find it useful for tasks such as network inventory, managing service upgrade schedules, and monitoring host or service uptime. NMAP uses raw IP packets in novel ways to determine which hosts are available on the network, what services (application name and version) those hosts are offering, which operating systems (and OS versions) they are running, what type of packet filters/firewalls are in use, etc. Now, let’s go step by step and learn how to use NMAP and ZenMAP. Step 1 − To open, go to Applications → 01-Information Gathering → nmap or zenmap. Step 2 − The next step is to detect the OS type/version of the target host. Based on the help indicated by NMAP, the parameter of

networks nd networking 1

Types Of Network •LAN - Local Area Network is in a small geographical area, such as a college or office building. •WAN - Wide Area Network Combination of multiple LANs. •WLAN - Wireless Local Area Network Links two or more devices using some wireless distribution method and usually providing a connection through an access point to the wider internet. Local Area Network (LAN) •A LAN connects network devices within a limited geographical area such as office buildings or schools. •The data transfer is managed by a transport protocol such as TCP/IP. •The transmission of data is performed by the access method (Ethernet, Token Ring, etc.). Wide Area Network (WAN) •A WAN covers a wide geographic area, carrying data over long distances, such as a country •WANs can be formed by different LANs •The connection between different LANs may not be permanent •WANs are sophisticated networks, but transmission speeds have generally been slower than those commonly achieved on LANs WLAN (Wireles

MAN-IN-THE-MIDDLE ATTACK (MITM ATTACK)

What is Man-in-the-middle (MITM) attack? A man in the middle attack is one in which the attacker intercepts messages in a public key exchange and then retransmits them, substituting his own public key for the requested one, so that the two original parties still appear to be communicating with each other. The attack gets its name from the ball game where two people try to throw a ball directly to each other while one person in between them attempts to catch it. In a man in the middle attack, the intruder uses a program that appears to be the server to the client and appears to be the client to the server. The attack may be used simply to gain access to the message, or enable the attacker to modify the message before retransmitting it. Man in the middle attacks is sometimes known as fire brigade attacks. The term derives from the bucket brigade method of putting out a fire by handing buckets of water from one person to another between a water source and the fire. What is BackTrack