Rabu, 29 Februari 2012

Combine Browser and Metasploit

in this time, i try to combine browser and metasploit to exploit victim.
using beef, copy the java script to web that we put as bait to the victim computer to victim computer can be connected to our computer


Senin, 27 Februari 2012

File exploit and Web exploit

The first computer I had to exploit the first victim, do information gathering and do exploitable 


with file exploit


Auxiliary using metasploit

search the auxiliary module with command show auxiliary at msfconsole


after that choose one of module auxiliary and to knowing set setting used command show options


after that setting the set RHOST and RPORT


and exploit


Social Engineering

Social engineering is the acquisition of information, or edicts, secret / sensitive by cheating the owner of such information. Social engineering is typically done via telephone or Internet. Social engineering is one of the methods used by hackers to gain information about the target, by requesting the information directly to the victim or others who have that information.

Social engineering concentrates on the weakest chain of computer network systems, namely humans. As we know, no computer system that does not involve human interaction. And worse, this vulnerability is universal, independent of platforms, operating systems, protocols, software or hardware. That is, each system has the same weakness in human factors. Any person who has physical access to the system is a threat, even if the person is not included in the security policy that had been developed. Other methods such as hacking, social engineering also requires preparation, even most of the work includes the preparation itself.

MSFPALOAD