Hacking
CISCO67x_attacking
Written by lirva32   
Monday, 31 May 2010
-- CISCO 675, 677 n 678 DSL ATTACKING ---
author : This e-mail address is being protected from spam bots, you need JavaScript enabled to view it

Hai all...
Kali ini saya ingin berbagi tentang attacking terhadap jaringan berbasis CISCO. CISCO sendiri merupakan perangkat jaringan yang tidak asing lagi... bukan hanya karena mahal... tapi juga dengan beberapa kehandalannnya dalam menerapkan routing. Apakah mahal berarti aman...???? jawabnya tanya saja sama Dew* *ersik*.. kekkekkekekke..upppsss... aman atau tidaknya bukan ditangan Dew* *ersik* tapi ditangan para ahlinya..... iya ga...??? tapi tentu tidak hanya itu saja... hasil akhir dari ciptaan vendor harus juga berkualitas....

Banyak sekali tindakan attacking yang bisa kita lakukan terhadap jaringan berbasis CISCO, diantarnya : Telnet Buffer Overflow, Denial of Services a.k.a DoS, Bypass HTTP Authetication, HTTP Configuration Arbitraty Administrative, SSH DoS, UDP Flooding, Web Administration DoS, EiGRP gerator, EiGRP Sniffing, Password Attacking, Catalyst Memory Leak dan masih banyak hal lain yang bisa dilakukan penyerangan.

Bagaimana melakukan attacking terhadap CISCO, salah satunya adalah memanfaatkan aplikasi bernama : CGE... ya, Cisco Global Exploiter yang merupakan tools serba bisa dan biasa digunakan untuk melakukan penyerangan terhadap jaringan berbasis CISCO.
CGE akan melakukan penyerangan terhadap 14 Vulnerability yang terdapat pada CISCO, diataranya : Cisco 677/678 Telnet Buffer Overflow Vulnerability, Cisco IOS Router Denial of Service Vulnerability, Cisco IOS HTTP Auth Vulnerability, Cisco IOS HTTP Configuration Arbitrary Administrative Access Vulnerability, Cisco Catalyst SSH Protocol Mismatch Denial of Service Vulnerability, Cisco 675 Web Administration Denial of Service Vulnerability, Cisco Catalyst 3500 XL Remote Arbitrary Command Vulnerability,Cisco IOS Software HTTP Request Denial of Service Vulnerability, Cisco 514 UDP Flood Denial of Service Vulnerability
[10] - CiscoSecure ACS for Windows NT Server Denial of Service Vulnerability,Cisco Catalyst Memory Leak Vulnerability, Cisco CatOS CiscoView HTTP Server Buffer Overflow Vulnerability, 0 Encoding IDS Bypass Vulnerability (UTF),Cisco IOS HTTP Denial of Service Vulnerability.

Last Updated ( Monday, 31 May 2010 )
Read more...
 
PenTBox
Written by lirva32   
Friday, 07 May 2010

 PenTBox : simple n smart security tools

Yes... simple, smart n powerfull... ;) not just push button hacker....
PenTBox is a Security Suite with programs like Password Crackers, Denial of Service testing tools (DoS and DDoS), Secure Password Generators, Honeypots and much more. Destined to test security/stability of networks and more. Programmed in Ruby, and oriented to GNU/Linux systems (but compatible with Windows, MacOS and more).

What the function of PenTbox...???
Maybe you can use PenTBox, for :

* Cryptography Tools tools, like : Base64 Encoder n Decoder, Multi-Digest (MD5, SHA1, SHA256, SHA384, SHA512), Hash Password Cracker (MD5, SHA1, SHA256, SHA384, SHA512), Secure Password Generator, Files Encryptor n Decryptor Rijndael (AES) 256 bit - GOST - ARC4.

* Network tools, like : TCP Flood DoSer (this is my power tools...;) , TCP Flood AutoDoSer, Spoofed SYN Flood DoSer [nmap -hping3], Port Scanner, HoneyPot, PenTBox Secure Instant Messaging, Fuzzer.

How to build PenTBox ...???

* Download PenTBox in here : windows, Linux

sorry, I'm using Ubuntu 9.10 Karmic Koala, like :
. extract pentbox_1.3.2.tar

# apt-get install ruby

# ruby pentbox.rb

Okay Fren... Happy Hacking... Good luck...

Shooutz :
. echo|Staff
. MyDaughters : Faiza Debian n Fivana Gutsy -- I Love U....
. MyAlmamater FTI_UBL
. AllMyStudents@STMIKBinaInsani
. All Indonesia NewBieHacker


Last Updated ( Friday, 07 May 2010 )
 
DoSWebServer
Written by lirva32   
Wednesday, 21 April 2010

DoS Web Server
-- collapsing random web server in 15 minutes --

 

A denial-of-service attack (DoS attack) or distributed denial-of-service attack (DDoS attack) is an attempt to make a computer resource unavailable to its intended users. Although the means to carry out, motives for, and targets of a DoS attack may vary, it generally consists of the concerted efforts of a person or people to prevent an Internet site or service from functioning efficiently or at all, temporarily or indefinitely. Perpetrators of DoS attacks typically target sites or services hosted on high-profile web servers such as banks, credit card payment gateways, and even root nameservers. The term is generally used with regards to computer networks, but is not limited to this field, for example, it is also used in reference to CPU resource management.

One common method of attack involves saturating the target (victim) machine with external communications requests, such that it cannot respond to legitimate traffic, or responds so slowly as to be rendered effectively unavailable. In general terms, DoS attacks are implemented by either forcing the targeted computer(s) to reset, or consuming its resources so that it can no longer provide its intended service or obstructing the communication media between the intended users and the victim so that they can no longer communicate adequately.

DoS attack methode, like :
ICMP flood, Teardrop Attacks, Peer-to-peer attacks, Permanent denial-of-service attacks, Application level floods, Nuke, Distributed attack, Reflected attack, Degradation-of-service attacks, Unintentional denial of service, Denial-of-Service Level II, Blind denial of service.
cmiiw....

What is DoS Web Server...?
only attack web server on port 80 using Denial-of-Service attack (DoS attack).... very harmful... because make down your "victim" target.
Okay... u can do DoS Web Server attack, by :

Last Updated ( Thursday, 20 May 2010 )
Read more...
 
VoIPSniffing
Written by lirva32   
Monday, 19 April 2010

VoIP Sniffing

 

Voice over Internet Protocol (VoIP) is a general term for a family of transmission technologies for delivery of voice communications over IP networks such as the Internet or other packet-switched networks. Other terms frequently encountered and synonymous with VOIP are IP telephony, Internet telephony, voice over broadband (VoBB), broadband telephony, and broadband phone.


Cain n Able VoIP sniffing function support the following codecs like : G711 uLaw, G711 aLaw, ADPCM, DVI4, LPC, GSM610, Microsoft GSM, L16, G729, Speex, iLB and other codecs.


In this episode lirva32 demonstrate how to sniff Voice over IP (VoIP) conversation, by :

. Install Cain n Able (base on windows)
. Setting your cain n able like :

. just waiting.... C n A VoIP traffic analyzer to capture incoming and outgoing voice packets in your network and record voice data into WAV files.

voice packets capture :

 

good luck... happy VoIP hacking friends....

Shoutz :
. MyDaughter's : Faiza Debian Navisa n Fivana Gutsy Ramadhani
. echo|staff.. thx for your sharing about hacking...;)
. MyAlmamater : FTI_UBL
. IndonesianNewbieHacker....

Last Updated ( Friday, 07 May 2010 )
 
Serang Traffic
Written by lirva32   
Tuesday, 09 December 2008

Menyerang Traffic Web
author : lirva32 [at] yahoo [dot] com

 

ah... akhirnya kembali bisa menulis... padahal kerjaan kantor masih bejibun... untungnya hari ini mati lampu..dan battery laptop masih penuh nih, sehingga bisa menulis.. thx buat mati lampunya....asal jangan sering2 aja mati lampu bisa2 nanti kerjaan tertunda2...dan pastinya ga bisa belajar.... ;)
Lagi2 lirva32 tidak akan bertanggung jawab atas tindakan yang dilakukan setelah membaca tulisan ini... sekali lagi tidak dipergunakan untuk kegiatan merusak ataupun tindakan destruktif lainnya.. gunakan hanya sebagai proses pembelajaran dan pengetahuan saja.



Last Updated ( Wednesday, 20 January 2010 )
Read more...
 
<< Start < Prev 1 2 3 Next > End >>

Results 1 - 9 of 22