Enable Javascript to access this page. Arena of An Artist: April 2010
rss
twitter
    Find out what I'm doing, Follow Me :)

Thursday, April 29, 2010

Side Jacking - Hack accounts on LAN or Wifi

Sidejacking is the process of sniffing cookie information, then replaying them against websites in order to clone a victim’s session. We use the term “sidejacking” to distinguish this technique from man-in-the-middle hijacking(Cain and Abel). Whereas man-in-the-middle hijacking interferes with the original session, sidejacking does not. The victim continues to use his/her session blissfully unaware that we are also in his/her account (although signs such as additional e-mails in the ‘sent’ folders might give a clue).

In this tut, I will explain the process of side jacking thru various tools with special focus on Hamster and Ferret

Contents:
I. SideJacking without hamster
-Ethereal/Wireshark, Cain And Abel, Network Miner

II SideJAcking with Hamster and Ferret
-Preparation
-Starting Up
-Using the console



I. Sidejacking without Hamster

All you need to do in order to sidejack is sniff cookies off the wire and edit cookies. This can be done with a wide variety of tools.

You should be comfortable with using a packet-sniffer like Wireshark/Ethereal. For example, the following is a screenshot of sniffing the cookie for Slashdot:


Another useful tool is an extension for Firefox called “Edit Cookies”. The following screens show what it looks like:

Once you can make your cookies the same in the browser that you sniffed from the wire, then you have sidejacked the person’s session. Note that the above information is correct, so that you can successfully sidejack our Slashdot test

You can use this erethreal method, another method can be using cain and abel, network miner and cookie editor which you can read here -> http://tinypaste.com/2b87c2
I am avoiding pasting that part here to focus on hamster and ferret.

II. Sidejacking without hamster and ferret

Now as you saw above the above process was quite cumbersome, especially if u want to repeatedly attack different users this would take a lot of time, to delete old cookies, try new ones and check. Also reading the erethreal dump is not easy hence, hamster is our wizard. So starting with it---> 
 
Download HAmster and Ferret tools Here
http://rapidshare.com/files/381668823/ha
m.rar
These are command line tools, but for those afraid of command line, dont worry, u wont have to do much.
Unzio these into a directory that u can goto easily e.g. C:\hamster

Note:There is one major problem with the Intel® PRO/Wireless 2200BG and some other intel adapters: it doesn’t do promiscuous mode. This means that unlike most other wifi adapters, you can’t use it for sidejacking. To get around this, you would need to buy a cheap USB wifi adapter (usually 1000 rs)

First step is to set you’re a browser’s proxy to Hamster, which will be on port 3128. I strongly recommend that you DON’T use your normal browser, because Hamster totally screws up the cookies in the browser. There are 3 options I have used:
1. used Internet Explorer for sidejacking, because Firefox is my default browser
2. created a second account called “hamster” on my computer, and did the browsing from that account
3. used the alternate “profile” feature of Firefox to have two profiles running at the same time

I'll explain the third step in detail now--> 
 
Firefox allows two profiles to be running at the same time. You can launch them from the command line as follows:


You will have to use these at c:\Program Files\Mozilla Firefox\
The following screen will popup


Click on create profile, select any name.. Next tym u start mozilla use that one for hamster.
Now open your created profile inn Firefox, go to the [Tools / Options] menu. Select the [advanced] Tab, open Network tab under it. Under connections click on settings. Now set up as following:

Set your proxy as shown and click ok.  

Part B. Starting Up

To run Ferret, open command prompt ( In administrator mode is better):
Goto ferret directory (C:\ham for e.g) and type ferret-W.


Now choose your wifi or LAN interface (u can try using the company names or try again)
Now type ferret.exe –i to start sniffing cookies
e.g ferret -i 4 for above one

Note(Only for those who understand):
You might also want to capture packets at the same time:

ferret.exe –i 4 sniffer.mode=most sniffer.directory=\pcaps

The advantage of sniffing packets at the same time is that you can later replay them through Ferret in order to generate a hamster.txt. The cookies last for a long time. To run a packet capture, do something like:

ferret -r \pcaps\sniff-2007-08-04-eth.pcap 
 
Open another command prompt without closing the previous one ( Run as Administrator necessary)
Go to hamster directory(C:\ham for e.g.)
type 'hamster' and enter to start hamster proxy.
Now if you have already done the browser configuration as above move on to next part.
else set the browser proxy to 127.0.0.1 port 3128. 

Part C. Using it!!

Open your configure browser and got to http://hamster/ remember NO . com or www in the name.
(If you get server not found, you didnt set proxy correctly or you didnt start hamster in cmd)
Now u get this

As Ferret is running in the background, it will be updating this list. You’ll need to manually refresh it to see if any information has been added.

In the right-hand window, you’ll get a list of targets. Most targets will have just the IP address. Some will have additional identifying information that Ferret finds. This identifying information is only names associated with the IP address, it’s not cookie information.

When you click on an IP address, you “clone” it. At this point, all the cookie are set for that IP address. Keep that in mind – a lot of problems people have is because they set the current IP address to something else, thereby erasing the cookies of a site they want to access.

Cloning an IP address by clicking on it will cause the window to the left to be filled in, as in the following example:

 
 You have three options here. You can view the raw cookies for this IP address (discussed below). You can click on a URL that has a HIGHER probability of being Sidejacked. Or you can choose from the URLs below, which have a lower probability of being Sidejacked.

At this point, just click the URL. For example, I clicked on the http://slashdot.org URL in the above example, and the following window popped up:

The name “sidejacking” in the mid-left of that screenshot is because I created a test account with the username of “sidejacking”. This shows how I’ve successfully cloned the cookies to get to that Slashdot account.

Clicking on the Gmail one, I get the following screen:

And here is the Facebook account:

FootNotes:

When things work well, its point-and-click. They don’t always work well.

The first thing that sucks is you have to figure out which interface to sniff on and make sure that you have a proper wifi adapter. I recommend downloading Wireshark and make sure that you’ve got the packet sniffing working with that product before you start Ferret.

Both Ferret and Hamster will crash or hang. You’ll be restarting the programs a lot. Right now, Ferret overwrites ‘hamster.txt’ every time it restarts, so if you’ve got a good session, make copies of it (or log to sniffer files, and recreate it).

The Hamster proxy is really slow. You’ll click on a link and have to wait patiently sometimes. Check the Hamster console window in order to see what’s going on.

Cloning sites is finicky. Sometimes you have to choose the right URL from the list, and choosing the wrong URL will cause the server to reset the cookies, locking you (and the original person) out from the account until a re-login. It takes practice to figure out what you can, and cannot, clone.

Finally, when the original session cookies expire, you can’t clone them. This is rarely a problem in a live environment, but if you work from capture files, it becomes more difficult. 
 
 ENJOY..!




Simple Hex-Editing

So many people think that programs like Resource Tuner and Resource Hacker are powerful, well they are cool but not so powerful, in some instances these are helpful but in other instances they are not! What if we have a program without any resources? Read this guide any edit it

You might use this for example if you made a program and made a spelling mistake and perhaps you lost the source or so! well it's a funny thing to do! just don't go overboard!

Solution:-

First of all we will need a Hex-Editor I recommend you to use this:-
Freeware Hex Editor XVI32
Its Freeware and it's powerful

Then in this tutorial we will use a simple Application I made so we can experiment with it in this tutorial, it's attached at the end of this tutorial, download it and extract it. Here is a snapshot:-






If you don't trust this application scan it with Online malware scan you will not find any viruses, ok now after that you checked it etc let's start.

First of I will show you that in this case neither ResHacker nor Resource Tuner can do anything see these snapshots all they find are the icons and Version information, so that is a proof that with them we can't edit that!



and



So what we do? we go more low level and do hex-editing

Fire up XVI32 then File > Open and open up our application
Now you are like.. "huh? What is this? I can't understand" well don't worry! now here we will change the Caption of the Program and the Text in the Program so, in XVI32 press CTRL+F and select "Text String" and write EXACTLY the phrase you will need to find its case sensitive or you could turn case sensitive off ok so now in the Search box write
Change Me
and press Ok

and you will see something like this:-




You can read it right?
Yes! Now start writing something like Changed and the other letters ( Me ) just replace them with a space but stop there! don't continue pressing space because your application will get corrupted now lets make another search so to edit the text in the application
So search for
Change This Text

and you will be taken a few more lines downwards and there is the text now place it with something like Text Changed and the other characters replace them with a space

Now its ready! Just press File > Save



and here it is fully functional and customized!

Hope you liked it

File Type: zip Change me.zip

nd for >> Freeware Hex Editor XVI32 << Google it

thnX :) 

Saturday, April 24, 2010

How to hack websites using Auto SQL I Helper

At the begening "SQLIHelperV.2.7" is a tool that will hack vulnerable websites using SQL injection. You don't have to spend hours and hours trying to find your way in a website and trying hundreds of combinations and codes to hack a website.
This tool will do it all by itself. You only have to tell her what do and where to look.


Lets start.
first you need to find the potential website that you think it might be possible to hack it. Remember that some websites are simply unhackable.

After you find your website ( better to end with "article.php?id=[number]" ) example: "http://encycl.anthropology.ru/article.php?id=1"

I will explain my tut on how to hack this website.

Check if your website can be hacked by trying to go this address :

you should get this message:

Query failedYou have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near '\'1 ORDER BY lastname' at line 1 SELECT * FROM person_old WHERE id=\'1 ORDER BY lastname

This mean that this website can be hacked because you get an error.

Now open your SQL I Helper V.2.7
and write the link :

and press the inject button.

Now you should wait until the tool finish searching for columns . Time may vary depending on your connection speed , your pc speed , and the number of columns in the website.


Make sure that the website support union otherwise the injection won't work.


Now select any element from the "database name" box and press the "Get tables" button

then select any element from the "table name" box and press the "Get columns" button

then select any elements you want from the "columns name" box and press "Dump Now"

After clicking "Dump Now" , u will see some hashes

Now copy the hash on a peace of paper and go to this website:

enter the hash and press the button "Crack that hash baby!" and you should get the source of the hash.

Friday, April 23, 2010

URL Shortener :: Source Code :: Beta

Hi guys! :-)

We took the lilURL script as the base (lilurl.php) and modified the base as well as the rest of the script. We have added very nice features which include :

● An amazing Admin Panel
● Ability to ban an IP
● Delete a URL
● Add advertisement
● Fully "AJAXified"
● Simple yet attractive UI
● A stats page for each URL with Screenshot
● Easy to install


>> Download <<

How to install?
Just open the "index.php" :D


:-)

>> Demo <<


ENJOY..!

1600+ Free MP3 songs from amazon



Song TitleArtistAlbumTimePriceDownload
listen
1. Honest Face
Liam Finn + Eliza JaneChampagne In Seashells EP3:42 FREE! Get MP3
listen
2. Stole My Heart
Little & AshleyStole My Heart EP3:13 FREE! Get MP3
listen
3. Vocabularies Overture
Bobby McFerrinVocabularies Overture4:10 FREE! Get MP3
listen
4. Awesome God
Fred HammondAwesome God7:18 FREE! Get MP3
listen
5. King Of Spain
The Tallest Man On EarthThe Wild Hunt [+Digital Booklet]3:28 FREE! Get MP3
listen
6. Mama Told Me
Jenny Dee & The DeelinquentsKeeping Time3:44 FREE! Get MP3
listen
7. One Way Road
John Butler TrioOne Way Road3:03 FREE! Get MP3
listen
8. Rock Steady
Bad CompanyBad Company: Hard Rock Live4:09 FREE! Get MP3
listen
9. Amazing
One EskimoOne EskimO4:37 FREE! Get MP3
listen
10. Currents
Makaras PenMakaras Pen4:44 FREE! Get MP3
listen
11. Jail La La (Single)
Dum Dum GirlsI Will Be2:30 FREE! Get MP3
listen
12. Long Goodbye
The NadasAlmanac3:05 FREE! Get MP3
listen
13. Take It In
Wye OakThe Knot5:49 FREE! Get MP3
listen
14. Walk Tall (feat. Paul Simon)
Ziggy MarleyFamily Time3:16 FREE! Get MP3
listen
15. Let The Riverrun
Carly SimonLet The Riverrun3:16 FREE! Get MP3
listen
16. Wind Blows
Yukon BlondeYukon Blonde4:14 FREE! Get MP3
listen
17. Ain't No Mountain High Enough
Extreme Party AnimalsExtreme Soul Party Music2:22 FREE! Get MP3
listen
18. Kungen
Love Is AllTwo Thousand And Ten Injuries2:46 FREE! Get MP3
listen
19. Alive
AvalonReborn3:00 FREE! Get MP3
listen
20. Can't Touch This
Extreme Party AnimalsOld School Hip Hop Party Soundtrack3:37 FREE! Get MP3
listen
21. Blanket
Jeff BeckBlanket6:19 FREE! Get MP3
listen
22. Time In Between
Francesca BattistelliMy Paper Heart3:24 FREE! Get MP3
listen
23. Tchoga Zanbil (Live)
Blues Power BandWhere the Action Is (Live)5:03 FREE! Get MP3
listen
24. Birthday Boy
Drive-By TruckersBirthday Boy3:35 FREE! Get MP3
listen
25. Good to Be
Backyard Tire FireGood to Be3:19 FREE! Get MP3
listen
26. Almighty Love (feat. Joe Elliott)
Emm GrynerStray Bullets - EP3:58 FREE! Get MP3
listen
27. Surplus
Kate LamontAfter The Traffic3:00 FREE! Get MP3
listen
28. Cherry Red
Bluesmasters Featuring Mickey ThomasBluesmasters Featuring Mickey Thomas2:51 FREE! Get MP3
listen
29. Magics
DisappearsLux3:55 FREE! Get MP3
listen
30. Science
This Is the Hello Monster!This Is the Hello Monster!3:35 FREE! Get MP3
listen
31. Ignition
TobymacPortable Sounds With Bonus Remixes3:53 FREE! Get MP3
listen
32. Don't Stop Believin'
Extreme Party AnimalsClassic Rock Party Soundtrack3:25 FREE! Get MP3
listen
33. Marigold
DisappearsLux3:14 FREE! Get MP3
listen
34. I Was Never Bored at All
FrancisI Was Never Bored at All4:05 FREE! Get MP3
listen
35. Weapons of mass distraction
Dolby AnolSandy Bitches4:51 FREE! Get MP3
listen
36. Old Oak Tree
Tracy Marie & FriendsLive On Crooked River Groove3:58 FREE! Get MP3
listen
37. Deny All
Bettie ServeertPharmacy Of Love3:02 FREE! Get MP3
listen
38. The Problem Is... [Explicit]
Murs & 9th WonderFornever [Explicit]3:38 FREE! Get MP3
listen
39. Falling Into Consciousness
Nerd RevoltHaze of introspection...and sh*t.6:36 FREE! Get MP3
listen
40. Dinosaur Vs. Early Man
Common LoonThe Long Dream Of Birds3:01 FREE! Get MP3
listen
41. For What It's Worth
Sidewalk ProphetsThese Simple Truths (Album)3:39 FREE! Get MP3
listen
42. Kill Me Carolyne
The WhigsKill Me Carolyne3:35 FREE! Get MP3
listen
43. TMI
Frank KimbroughRumors5:31 FREE! Get MP3
listen
44. 1973
Tahiti Boy & The Palmtree FamilyGood Children Go To Heaven3:34 FREE! Get MP3
listen
45. New Morning (Live - Amazon MP3 Exclusive)
Alpha RevNew Morning (Live - Amazon MP3 Exclusive)3:55 FREE! Get MP3
listen
46. Wild Thing
Extreme Party AnimalsExtreme Rock and Roll Party Hits2:29 FREE! Get MP3
listen
47. Praise His Name
Ashmont HillPraise His Name4:43 FREE! Get MP3
listen
48. Hey Ya
Extreme Party AnimalsExtreme Party Music Hits3:42 FREE! Get MP3
listen
49. I Keep Waiting
HaciendaBig Red And Barbacoa2:58 FREE! Get MP3
listen
50. See Things My Way
Graham ParkerImaginary Television2:33 FREE! Get MP3 


listen
51. Be My Baby
Extreme Party AnimalsExtreme Dirty Dancing Music2:43 FREE! Get MP3
listen
52. Shoeing The Bones
Cate Le BonMe Oh My3:39 FREE! Get MP3
listen
53. Wages
The FingerStill In Boxes 1990-19943:46 FREE! Get MP3
listen
54. I'm Alright (Soulseekerz Vocal Mix)
Gav McCallTotal Fitness Workout 16:47 FREE! Get MP3
listen
55. Dead Sound
The RaveonettesLust Lust Lust3:33 FREE! Get MP3
listen
56. Hollywood
Gossip Grows On TreesHollywood - Single4:01 FREE! Get MP3
listen
57. Stand For You
Jonny DiazMore Beautiful You4:21 FREE! Get MP3
listen
58. I Will Live on Islands
Josh RouseEl Turista (Bonus Version)3:02 FREE! Get MP3
listen
59. Bohemian Grove
Strange AttractorsThe Strange Attractors4:54 FREE! Get MP3
listen
60. Hosanna
Paul BalocheA Greater Song6:46 FREE! Get MP3
listen
61. Do You Know (Where You'll Sleep Tonight)?
Gossip Grows On TreesDo You Know (Where You'll Sleep Tonight)? - Single3:40 FREE! Get MP3
listen
62. Lay Back Down
Eric LindellLow On Cash, Rich In Love4:34 FREE! Get MP3
listen
63. Complex Players Dub (Free The Robots Remix)
MochipetMaster P on Atari Transformed Vol. 23:27 FREE! Get MP3
listen
64. Wake Up!
Shooter Jennings & HierophantWake Up!6:01 FREE! Get MP3
listen
65. Aint Seen Nothing Yet
Extreme Party AnimalsExtreme Party Rock Jams2:30 FREE! Get MP3
listen
66. Get Ready For This
Extreme Party AnimalsExtreme Sports Party Music3:58 FREE! Get MP3
listen
67. Rain On Us
Earnest PughEarnest Pugh Live: Rain On Us5:02 FREE! Get MP3
listen
68. Keyboard Sonata in B minor, Wq. 55/3, H. 245: Cantabile
Christopher HinterhuberI Love the 70s (1770s & 1870s)3:00 FREE! Get MP3
listen
69. Not Here, Not Tonight
Near The ParenthesisMusic For The Forest Concourse4:49 FREE! Get MP3
listen
70. End Of My Rope
Kj-52Five-Two Television [+digital booklet]2:33 FREE! Get MP3
listen
71. Family Affair
Extreme Party AnimalsExtreme Hip Hop Party Jams3:52 FREE! Get MP3
listen
72. Mandolin Moon
Sister HazelAbsolutely3:34 FREE! Get MP3
listen
73. There Is No Clean Fun
Head of Skulls!You Became Your Mind2:25 FREE! Get MP3
listen
74. Good Times (Ft. Eve Falcon) (Mark Campbell Tech Remix)
DJ RapGood Times7:12 FREE! Get MP3
listen
75. How Great Is Our God
Kimberly and Alberto RiveraDeeper Still5:47 FREE! Get MP3
listen
76. Digital Dreamz (Graphical Remix 2)
The ZDigital Dreams7:22 FREE! Get MP3
listen
77. Better Drunk Than Part of the Machine
No ShameIroning Day2:42 FREE! Get MP3
listen
78. Into The Night (Original Mix)
Trevis G.Into The Night Remixes7:40 FREE! Get MP3
listen
79. Carry The Cross (Master)
The KatinasCarry The Cross3:59 FREE! Get MP3
listen
80. Animal
Miike SnowAnimal4:22 FREE! Get MP3
listen
81. Misses Mesmerize Me Much More
MattipSave The King3:50 FREE! Get MP3
listen
82. Resusc
CeebrolisticsÖ5:16 FREE! Get MP3
listen
83. Cheap Beat #14
Hip Hop BeatsCheap Beats3:41 FREE! Get MP3
listen
84. I'm Singing
Kari JobeKari Jobe3:47 FREE! Get MP3
listen
85. Hello, It's Me
Sister HazelAbsolutely4:03 FREE! Get MP3
listen
86. Everything Else Disappears
Sister HazelAbsolutely3:50 FREE! Get MP3
listen
87. Motel Blues
Loudon Wainwright IIIRecovery3:20 FREE! Get MP3
listen
88. Detroit City
Alice CooperThe Eyes Of Alice Cooper3:58 FREE! Get MP3
listen
89. Providence
AbandonSearchlights3:25 FREE! Get MP3
listen
90. Crazy Dream (Amazon MP3 Exclusive)
Sarah BuxtonSarah Buxton (Amazon MP3 Exclusive Version)4:10 FREE! Get MP3
listen
91. Party Crashers (with The Let Go) [Explicit]
The Let Go Louis LogicMe & Everyone You Know [Explicit]4:38 FREE! Get MP3
listen
92. Breaking The Skin
DuplexBeehouse Records Spring Sampler - 20103:50 FREE! Get MP3
listen
93. Hey Sunshine
Tall Tales & The Silver LiningBeehouse Records Spring Sampler - 20102:31 FREE! Get MP3
listen
94. Run Cold
Holly GolightlySympathy For The Record Industry Sampler3:01 FREE! Get MP3
listen
95. I Just Can't Stop Loving You
Extreme Party AnimalsExtreme Love Party Music4:12 FREE! Get MP3
listen
96. Datenight
Jonny SonicSay It Again Without Your Mouth Full [Explicit]3:04 FREE! Get MP3
listen
97. I'm In Love
The BlacksIn Sickness and Health3:24 FREE! Get MP3
listen
98. Strange Overtones
David Byrne and Brian EnoEverything That Happens Will Happen Today4:17 FREE! Get MP3
listen
99. Thorn
FuckfaceFuckface [Explicit]4:35 FREE! Get MP3
listen
100. Brother Bird
Franklin for ShortBeehouse Records Spring Sampler - 20104:42 FREE! Get MP3
 For complete 1600 songs...
 

GO HERE
ENJOY..!