18
Raspberry Pi for the Infrastructure and hacker

Raspberry Pi for the Infrastructure and hacker · 2020. 1. 17. · ettercap-gtk ettercap-plugins fasttrack fg-dump hping ipcalc John the Ripper Laudanum mdcoll Metasploit Mimikatz

  • Upload
    others

  • View
    6

  • Download
    0

Embed Size (px)

Citation preview

Page 1: Raspberry Pi for the Infrastructure and hacker · 2020. 1. 17. · ettercap-gtk ettercap-plugins fasttrack fg-dump hping ipcalc John the Ripper Laudanum mdcoll Metasploit Mimikatz

Raspberry Pi for the Infrastructure and hacker

Page 2: Raspberry Pi for the Infrastructure and hacker · 2020. 1. 17. · ettercap-gtk ettercap-plugins fasttrack fg-dump hping ipcalc John the Ripper Laudanum mdcoll Metasploit Mimikatz

About Me

Fred DonovanProfessor of Cyber Security Bellevue University14 yrs Executive IT Consultant (US, APAC, EU)Founder of Attack Logic, a U.S. based AppSec consultancyInfoSec Researcher and HackerLikes Defense - Prefers Offense

Page 3: Raspberry Pi for the Infrastructure and hacker · 2020. 1. 17. · ettercap-gtk ettercap-plugins fasttrack fg-dump hping ipcalc John the Ripper Laudanum mdcoll Metasploit Mimikatz

The ultra-small form-factor hardware

Page 4: Raspberry Pi for the Infrastructure and hacker · 2020. 1. 17. · ettercap-gtk ettercap-plugins fasttrack fg-dump hping ipcalc John the Ripper Laudanum mdcoll Metasploit Mimikatz

Making it useful for a business

Kein Schwein ruft mich

an.

Page 5: Raspberry Pi for the Infrastructure and hacker · 2020. 1. 17. · ettercap-gtk ettercap-plugins fasttrack fg-dump hping ipcalc John the Ripper Laudanum mdcoll Metasploit Mimikatz

Challenges: A kid can do it right?No longer a lab curiosityThe “simplicity” goes out the door when you integrate mechanisms and algorithms

Minimizing CPU cycles

Business related implementations take considerable engineering skills

Page 6: Raspberry Pi for the Infrastructure and hacker · 2020. 1. 17. · ettercap-gtk ettercap-plugins fasttrack fg-dump hping ipcalc John the Ripper Laudanum mdcoll Metasploit Mimikatz

Hardware modificationsSwap File Size

1.5 GB of SD space generating 2GB of RAM

Changing the CPU designConverting the GPU to a RISC CPU

Page 7: Raspberry Pi for the Infrastructure and hacker · 2020. 1. 17. · ettercap-gtk ettercap-plugins fasttrack fg-dump hping ipcalc John the Ripper Laudanum mdcoll Metasploit Mimikatz

Q-Box – An infrastructure monitoring device

126mm x 70mm x 28mm

170 grams

8 watts full load, 120v-240v

No fan or any moving parts

Operates 0°C−70°C

1GB NIC

802.11 b/g/n WiFi

Page 8: Raspberry Pi for the Infrastructure and hacker · 2020. 1. 17. · ettercap-gtk ettercap-plugins fasttrack fg-dump hping ipcalc John the Ripper Laudanum mdcoll Metasploit Mimikatz

Q-Box – An infrastructure monitoring device

Page 9: Raspberry Pi for the Infrastructure and hacker · 2020. 1. 17. · ettercap-gtk ettercap-plugins fasttrack fg-dump hping ipcalc John the Ripper Laudanum mdcoll Metasploit Mimikatz

Significance of the Q-BoxUnprecedented ultra-small form factorExtremely low power consumptionBuilt on open-source frameworksPartitioned Virtual RAMConverted to RISC CPUSimultaneous infrastructure applications

Page 10: Raspberry Pi for the Infrastructure and hacker · 2020. 1. 17. · ettercap-gtk ettercap-plugins fasttrack fg-dump hping ipcalc John the Ripper Laudanum mdcoll Metasploit Mimikatz

Q-Box – Other software modifications

EtherwakeTightVNCSSH via Security CertificateClamAVNmap suite (Nmap, Zenmap, Ncat, Ndiff, and Nping).

Page 11: Raspberry Pi for the Infrastructure and hacker · 2020. 1. 17. · ettercap-gtk ettercap-plugins fasttrack fg-dump hping ipcalc John the Ripper Laudanum mdcoll Metasploit Mimikatz

Unprecedented hardware modifications to an ultra-small form factorExtremely low power consumption – 8 wattsBuilt on open-source frameworksPartitioned Virtual RAMConverted to RISC CPUSimultaneous infrastructure applications

Page 12: Raspberry Pi for the Infrastructure and hacker · 2020. 1. 17. · ettercap-gtk ettercap-plugins fasttrack fg-dump hping ipcalc John the Ripper Laudanum mdcoll Metasploit Mimikatz

H-Box – The hacker box

126mm x 70mm x 28mm

170 grams

8 watts full load, 120v-240v

No fan or any moving parts

Operates 0°C−70°C

1GB NIC

802.11 b/g/n WiFi

Bluetooth 3.0 Class 2

Page 13: Raspberry Pi for the Infrastructure and hacker · 2020. 1. 17. · ettercap-gtk ettercap-plugins fasttrack fg-dump hping ipcalc John the Ripper Laudanum mdcoll Metasploit Mimikatz

H-Box – The hacker boxAircrack-ng suite Anonymizer Universal asleap BED BeEF

bluebugger bluesnarfer btaudit Burp Suite cirt-fuzzer

Cisco-AuditingTool Cisco-exploiter DirBuster Ettercap

ettercap-gtk ettercap-plugins fasttrack fg-dump hping

ipcalc John the Ripper Laudanum mdcoll Metasploit Mimikatz

Nmap Oclhashcat Rainbowcrack Recon-ng Samaurai WTF SET

siege-ssl sslscan THC-Hydra Zed Attack Proxy

Page 14: Raspberry Pi for the Infrastructure and hacker · 2020. 1. 17. · ettercap-gtk ettercap-plugins fasttrack fg-dump hping ipcalc John the Ripper Laudanum mdcoll Metasploit Mimikatz

H-Box – The hacker boxInternal Corporate TestingPortable Hacking BoxCapabilities

Web Attacks

Network Attacks

WiFi

Bluetooth

Currently in use attached to Class-B network and utilizing the Wireless IP of the Laptop in which it is attached

Page 15: Raspberry Pi for the Infrastructure and hacker · 2020. 1. 17. · ettercap-gtk ettercap-plugins fasttrack fg-dump hping ipcalc John the Ripper Laudanum mdcoll Metasploit Mimikatz

What’s next??Q-Hpot Honeypot ServerCapabilities

NOVA

HoneyD

ClamAV

Currently in use attached to Class-B network and utilizing the Wireless IP of the Laptop in which it is attached

Page 16: Raspberry Pi for the Infrastructure and hacker · 2020. 1. 17. · ettercap-gtk ettercap-plugins fasttrack fg-dump hping ipcalc John the Ripper Laudanum mdcoll Metasploit Mimikatz

And next??Super computations in a cluster.

Utilizing the hardware modifications and techniques already described.

Page 17: Raspberry Pi for the Infrastructure and hacker · 2020. 1. 17. · ettercap-gtk ettercap-plugins fasttrack fg-dump hping ipcalc John the Ripper Laudanum mdcoll Metasploit Mimikatz

DEMO

Page 18: Raspberry Pi for the Infrastructure and hacker · 2020. 1. 17. · ettercap-gtk ettercap-plugins fasttrack fg-dump hping ipcalc John the Ripper Laudanum mdcoll Metasploit Mimikatz

Questions