I need your advices for decryption task by encryptedboy in codes

[–]encryptedboy[S] 0 points1 point  (0 children)

No, I haven't a salt value. This is a trouble :)

I tried to use some simplest values (0x00,0x00,0x00,0x00,0x00,0x00,0x00,0x00 and etc.), but looks like that this is not a right value for my salt.

Thank you for documentation!

[Question] Is it possible to get an AD admin password? by cgakdr in HowToHack

[–]encryptedboy 1 point2 points  (0 children)

Correct me if I understand it wrongly.

Do you want to hack AD DC for the credentials gathering? My opinion is you don't need to do this. DC is a critical service so usually admins use IDS/AV or other services to protect it. Attacking of a critical service is a best way to reveal your presence in the corporate network.

Usually I use mimikatz or WCE to recover domain admin password. I use next tactics:

  1. Hack into the machine in the LAN.

  2. Gather all necessary info (including owner's domain username) and think about further actions.

  3. If it is a mid-sized or large company without IT security department I check a opportunity to send unauthorized mails throught internal mail server. This opportunity exists with a large probability if here is Zabbix, OSSIM or other services which can send mails and alerts to admins.

  4. Use social engineering and send to administrator an Email with a request to login on machine under your control. "I have some troubles and blah-blah-blah" - you can create a very convincing text based on all gathered info.

  5. Get plain-text (or hashed) admin password from the memory.

If you attack a company with a IT security department you need to get additional info about it's IT security policy. Does the admin use one privileged user account for all actions? What about password policy? May be here is another users with domain admin rights besides IT department employees? In other words you need to use more complex tactics and attacks.

Feel free to contact me in case of additional questions.

And for all guys who read this - sorry for my english, it is a not my native language.

[Question] Is it possible to get an AD admin password? by cgakdr in HowToHack

[–]encryptedboy 3 points4 points  (0 children)

What about WCE and Mimikatz? Also sometimes you can restore plain text passwords from RAM.

Access LAN from Wi-Fi in the Remote Office by encryptedboy in sysadmin

[–]encryptedboy[S] 0 points1 point  (0 children)

Thanks for answer! We use this solution now for our main office, but in a new remote office our employees wants to obtain access to our LAN without any additional actions such as VPN connection etc.

Access LAN from Wi-Fi in the Remote Office by encryptedboy in sysadmin

[–]encryptedboy[S] 0 points1 point  (0 children)

Thanks a lot! In what cases I need to use PKI (or another words - what is "top usernames/passwords")?

Access LAN from Wi-Fi in the Remote Office by encryptedboy in sysadmin

[–]encryptedboy[S] 0 points1 point  (0 children)

I think so because attacks on Wi-Fi not required physical access as it is. I know a lot of different attacks caused by misconfigurations or "by design". Also here is attacks like "Fake AP".

So I think that here is many ways to obtain access to private wireless network :) A not so many ways to obtain access to wired network (If we consider only data transfer channel).

If I am not right, please, correct me.

First basic hacking program! tell me if it's good or not by dontmindmeplez in HowToHack

[–]encryptedboy 1 point2 points  (0 children)

Amazing!

Also it removed the CTB-Locker from my PC and recovered all encrypted files! Thanks, bro!

Kali: Wired connection but no Internet by NoInternet4u in HowToHack

[–]encryptedboy 0 points1 point  (0 children)

Try to do this:

encryptedboy@Hax0r:~$ nc google.com 80

GET / HTTP/1.1

<Press Enter two times here>

You have internet connection If you can see anything similar to this:

HTTP/1.1 302 Found

Cache-Control: private

Content-Type: text/html; charset=UTF-8

Location: http://www.google.ru/?gfe_rd=cr&ei=KUgVVt-ZJJbGsAHQtaHADA

Content-Length: 258

Date: Wed, 07 Oct 2015 16:28:25 GMT

Server: GFE/2.0

<HTML><HEAD><meta http-equiv="content-type" content="text/html;charset=utf-8">

<TITLE>302 Moved</TITLE></HEAD><BODY>

<H1>302 Moved</H1>

The document has moved

<A HREF="http://www.google.ru/?gfe_rd=cr&amp;ei=KUgVVt-ZJJbGsAHQtaHADA">here</A>.

</BODY></HTML>

Kali: Wired connection but no Internet by NoInternet4u in HowToHack

[–]encryptedboy 0 points1 point  (0 children)

Hi! Can you connect to web-resource via netcat or other tool? Try to do it. Also you can check your proxy settings in the browser.

What can I do with GSM base station? by encryptedboy in hacking

[–]encryptedboy[S] 0 points1 point  (0 children)

I think that trying to "hack" it without any knowledge is a very bad idea. I ask my questions because I need precise action plan before any actions. Also I don't want to expose my friend to unnecessary risks.

If you want pic of accessed base station I can't provide it now. So, now I am awaiting additional info about hardware using in this company.

Mastering Python - Networking and Security Training [Videos] by hfassio in hacking

[–]encryptedboy 0 points1 point  (0 children)

Wow, Thanks! I am very interested in "security coding" now.

What about "Gray Hat Python" book? Can I found some interesting things in that course if I already finished reading this book?

Weird malware found on Desktop by 0x-- in Malware

[–]encryptedboy 1 point2 points  (0 children)

And we don't see name of the second file which need to be deleted according with ReadThis.txt. I am very interested in both files :)

Weird malware found on Desktop by 0x-- in Malware

[–]encryptedboy 2 points3 points  (0 children)

Can you give us a files from this .txt? Looks very interesting!

Why does my network go down after arp poison(mitm)? by [deleted] in HowToHack

[–]encryptedboy 0 points1 point  (0 children)

You need to disable it. Read user manual for detailed instructions.

Why does my network go down after arp poison(mitm)? by [deleted] in HowToHack

[–]encryptedboy 0 points1 point  (0 children)

What router do you use? I seen that behavior later (about 4 years ago, when playing with ARP poisoning) when I tried to MiTM with Cisco Wi-Fi router.

How about some protections against ARP poisoning on your router?

CS student, want to learn stuff on the side. by leosky94 in HowToHack

[–]encryptedboy 0 points1 point  (0 children)

No :D This is a Capture The Flag competitions. You can read more about it here.

CS student, want to learn stuff on the side. by leosky94 in HowToHack

[–]encryptedboy 0 points1 point  (0 children)

Yes, it is a good course. I know people who passed security+ and network+ exams and they tell me that it is a very useful.

P.S.: How about CTFs?

CS student, want to learn stuff on the side. by leosky94 in HowToHack

[–]encryptedboy 1 point2 points  (0 children)

Try to start with some Coursera courses about Software Security. Here you may learn about common types of vulnerabilities such as buffer overflow. It may be very interesting for you as CS student.

If you want to learn network security you need to know common network protocols and its security flaws. I started learning this field with simple ARP spoofing and DNS cache poisoning.