Upload
san-shwe
View
71
Download
14
Embed Size (px)
Citation preview
Hack Wireless from Mobile Phone
usingZANTI
--mobile pentesting toolkit--
~
Written by
puupuu@deb~lab
~
I am blogger !
www.kyawzinhein.net
Requirement....
1.Aroid Phone or Tablet
2.Internet Connection
3.zAnti mobile pentesting toolkit
zANTI αααΌααα«α Root Access α±αα¬ααΈαα Allow α±ααΈαα«α
ααΌααα¬αα ααEmail Address αα ααααα«α
accept Zimpremium's EULA αα‘ααα»αα α±ααΈαα«α
α»ααΈαα Start Now ααααα«α
Skipt ααααα«α
α‘αααΈα αααα«αα α±ααα±α α¬ααα«α :P
αααΈαα±αα¬ααΈααα±αα¬ αΎαα¬αα±αα« α
α‘αααΈααα αα»ααααα±αααα¬αα α
αα¬ααα‘α±ααααΈα Skipααααα«α
I am fully authorized to perform
penetration testing on network.
αα‘ααα»αα αα«α
Finish ααααα«
ααααα ZANTI αααα
zTether ααααα«α
Tether Control αα±αα¬ααα«ααααα ααα tool α±ααΌα
α‘α»αααΈαα₯αΈα±α»αα¬αααααα
1. Logged Request
ααα¬α viticam αα network traffic α±ααΌα‘ααααΈαα»αα±ααΈααα±ααα¬αα«α
2. Logged Images
ααα¬α viticam α±ααΌα»ααα±αα website α±ααΌ messenger α±ααΌα αα±ααΌαα»αα±ααΈααα±ααα¬αα«α
3.zPackage Editor
ααα¬αα¬αα±αα¬ HTTP request αα ααααΈαα α»αααααααα¬αα«α
4.SSL Stript
ααα¬αα±αα¬ https αααΈα http α»αα α±α‘α¬αααα±ααΈ
αα¬αα«α αα±αα¬ααα‘ααααα«αα α αα¬α α https ααΌαααααα αα½αΌαα±αα¬α αΎαα¬αΈα»αααα αααα«ααΈααα«α±αΎαα¬α viticam α https access ααα±α‘α¬α αααα¬αΈαα«α viticam
αα‘ααα¬ααααΌαααα αΎαα¬αΈα»αααα ααα«ααα
5.Redirect HTTP
αα«αα±αα¬ ααΈαααΈαα«αα α viticam α www.bing.comα browser αα±αααΌα¬αΈαααααwww.bing.comααα±αα¬αα ααα±αα¬αα±α αααα±ααα¬ eg.www.kyawzinhein.netαα±αα¬αααΌα¬αΈα±α‘α¬α
αααα¬αα«α www.bing.comαααααααΈα±αα¬ αααααα α¬
αα request αααα α±α»αα¬ααααα¬αΈ blog ααα±αα¬ααα«ααα
6.Replace Image
αα¬ααα‘αααΈα αα‘α α¬αΈααΈαα¬αα«α α₯ααα¬ www.xvideos.comαα¬ααααααα«α α‘αα¬α±ααα±αα 18+ videos α±ααΌαα αα±ααΌα±ααα¬
αα¬ α‘α α¬αΈααΈαααα αα ααααΈαααΌα¬αΈα±ααα±ααα¬αα«α
viticamααα¬αααααα±ααΌα‘ααααΈα
ααα‘α α¬αΈααΈααα (eg.αααα) αααα±ααΌαΎααΈα±ααα±ααα¬αα«α
ααααα αααααα¬αΈαααααΎααΈ αα±ααα±ααα¬αα«α
7.Capture Download
viticam ααα¬αα±αα«ααΈααααΌααΌ αααααΈαααααααα« αα αα«αααΈ
α±αα«ααΈααααΈαα±ααΈαα¬α»αα αα«ααα
8.Intercept Download
αα«αααΈ replace image ααα«α α viticam αα¬αα±αα«ααΈααααΌααΌ
αα α‘α α¬αΈααΈαα¬αΈα ααααααΌααΌα¬αΈαα«αααα α
eg . downαα¬α 18+α‘α α¬αΈααΈαα¬αΈαα¬α anime :P
ααΌααΈα±αααααΈα
9.Insert HTML
αα«αα±αα¬αααΈααααα±αα¬ αΎαααα¬αααααΈ script injection αααα¬αα« α www.bing.comαααΌα¬αΈααααα«α ααα
<script>alert(''Hacked by PuuPuuβ)<script>αα»ααΈ inject αααα¬αΈαα viticam ααα¬ Hacked By PuuPuu αα»ααΈααΌα¬αΈα±ααα±ααα¬αα« α
How To Hack in Real Worldβ¦β¦
1. αα ααα¬αΈαα¬α±ααα¬αα ααααΌα¬αΈαα«α
2. Tether Control αααΌααα« α αααα hotspot αα αααααα«ααα
3. ααα±αα¬ααα¬αΈαhotspotαααααα¬ααα hack αααα«ααα
Tether Control α On αα«α
α‘αααα αα«αΈαα¬αΈααααααα«α»α αα¬αΈα±αα¬αα α±α α¬ααα«α αααα«α
ααααα‘ααα¬αΈααααΈ ααΈαα¬
αα½αΌαα±αα¬αα α±αα¬ααααΈααααα«ααΈ αα¬αΈαα¬αΈααα±α ααααα±αα¬
Free Internet Access αα»ααΈ Access Point SSID: αα¬α±ααΈααα±αα«
α αα α±αα¬ααααα¬α»αααα¬αΈ αα½αΌαα±αα¬ α»ααα α α±α‘α¬ααα¬ show
Logged Request αααααααα«α
Logged Request ααα¬α α‘α±αααα¬α±α»αα¬αααα
network traffic α±ααΌα‘ααααΈαα»αα±ααΈααα±ααα¬αα«α
Logged Host ααα¬αα±ααΌ αα«αα αααα¬αα¬α±ααΌαα±ααΌ αααααα
Viticam α±ααΌαα Request ααα±αα host α±ααΌαα±ααΌ ααα«ααα
α₯ααα¬ viticam α www.google.comα browser
αα±αααααααααα αααα¬ www.google.comαα»ααΈαα¬α±αααα¬αα«α
Link α±ααΌα‘αα¬αΈαΎααΈα±ααΌ α viticam α browser
αα¬α±αα¬αααα±αααααααα«α viticam α αααΈαααΌαααα¬ α±ααΌαα¬
ααΌααΈαα¬αΈα app α±ααΌ software α±ααΌαα±α request
ααα±ααα¬α»αα αα«ααα αααααααΈαα ααΈα α ααΈαΎαααα« αα»ααΈ
αα¬αΈααααΌααα¬αα«α
--------------------------------------------------------------------------
Password Hackingβ¦..
Gmail αα₯ααα¬ α±ααΈα»ααΈα±α»αα¬αα«αα ααααΈαααΈα Gmail ααααα«ααΈ α
ααα Login Process ααΈααα ααααΌααΈααα
username & password ααΎαα¬αΈα»ααα»ααΈ αααααα¬α»αα αα«αα α
eg : Viticam α www.gmail.comαα¬ login αααααα«ααα
email α password ααααα«ααα Login αααααα«ααα αα«α
Logged Host αα¬ ααα±αααα¬αα«ααα
α‘αα«α±αα¬αα α»ααα¬αΈαα«αα α 5 request, 1 passwords αα«
α‘αα«α α»ααα¬αΈαα¬ααααααα
username:password ααΌααα¬αα«ααα
α±α‘α¬ααα¬αΎαααα«
α‘αα¬α»αααα»αα±αα¬ ααα¬αααΈα [email protected]
ααα ααα thisispassword
ααα¬ ααα±αα¬αααΌαα
α±αα¬ααα Sessions αα Tab ααα±α viticam αααα¬αΈα Forum
α±ααΌα αloginα»ααΈααΈα±αα website α‘α ααα¬α±ααΌα user,pass ααα
αααΎαααααα«ααα αααα¬αα±αα¬ ααΌαααΎααα±αα«αα¬
Logged Image....
αα«αα±αα¬ viticam αΎααα±αααα±ααΌα ααΎαααα¬α±αα«α
α₯ααα¬ αα website αα ααΎααα±αααααα
α‘ website αα¬αααα±ααΌ αααα¬α±αααα¬ααααα
α‘α¬α Logged Image ααααα±αα«αα¬α
zPacket Editor.....
αα«ααααααΈαααΈαα±αα¬
ααααΌααα¬αΈαα ααα viticam α www.xvideos.com
α request ααααααα«α Zpacket Editor ααα¬α±αααα¬αα«ααα
ααα ααΌαα»αααα viticam αααα¬
xvideos.com αααα¬αα¬αα«α
αα ααααα¬αΈααα¬α ααα ααΌααααΈαα»α
αα¬ααααΈαααααΈααα viticam αααα¬www.xvideos.comαα»ααΈ
α‘αααΈαααα±ααα¬αα« αα¬αααα¬αα¬ααααα«ααΈ
SSL Stript.....
SSL Stript αα±αα¬ αα»αα αα±αOn α±ααΈααα«αααSSL ααα¬α Safe Secue
Layer αα±α»αα¬αα¬αα«ααα αααΈα‘α¬αΈα»ααααα https αα±α»αα¬αα¬αα«α
αα½αΌαα±αα¬α α webpage α±ααΌααΏαααα‘αα«https α αΎααααααα
α±αα¬αααα αΎαα¬α»ααααα αααα±α αα«αααSSL Stript α
On α±ααΈα»αααΈα‘α¬αΈα»αα viticam αααα¬ https αααΈα ααα±α‘α¬α
α»ααααααα¬α»αα αα«ααααα«ααα¬αααα½αΌαα±αα¬α αΎαα¬αΈα»αα
ααΈααΎααα ααα¬αα«α
α‘α ααΈααα»ααΈα»ααα±αα¬ αααΈααααα±ααΌ
αααααααΈααα¬αα±αα¬αα»αα±αα«αα¬
αα¬αα»αα α»αα Educational Purpose Only α»αα α α»αα α±αααα¬αα Risk
α±ααΌααα¬αααααα«α±αΎαα¬ααΈ
Written by
puupuu@deb~lab
~
I am blogger !
www.kyawzinhein.net
α±α»αα¬ααααα¬αΈ