Thursday, March 4, 2010

[TUT] DNS Poisoning using Cain


[TUT] DNS Poisoning using Cain

02-07-2010, 10:23 AM
Post: #1
Hey guys Smile this Tutorial is about DNS poisoning on your network using Cain & Abel.
Download Cain HERE
This Tutorial Will be limited to just redirecting the traffic to another website (I had a better idea on my mind, but I can’t post it because of the rules).

Note: This Tutorial is for educational purposes only (you’ll be responsible for your own actions)

First What is the DNS ? (wikipedia.org)
The Domain Name System (DNS) is a hierarchical naming system for computers, services, or any resource connected to the internet or a private network. It associates various information with domain names assigned to each of the participants. Most importantly, it translates domain names meaningful to humans into the numerical (binary) identifiers associated with networking equipment for the purpose of locating and addressing these devices worldwide. An often used analogy to explain the Domain Name System is that it serves as the "phone book" for the Internet by translating human-friendly computer hostnames into IP addresses. For example,http://www.example.com translates to208.77.188.166.

What does poisoning the DNS allow us to do ?
It allows us to redirect the traffic to another website.

First This is the structure of the network :

[Image: 4337060175_5b99b48ac0.jpg]

1 , 2 and 3 are computers

1 is the computer being the gateway (could be a router) (172.128.254.1)

2 is the target computer (172.128.254.10)

3 is the attacker using cain

Note : IPs are just used for this tutorial and chosen randomly.

Our work is on computer number 3 :

1-After you install cain , open it and go to the sniffer tab

2-Click on configure and choose your adapter

[Image: 4336895163_134d4202fd.jpg]

3-Enable the sniffer (click on the second icon in the toolbar next to the open icon)

4-Right click in the empty area and choose scan MAC addresses. We get the results above.

5-Click on the APR Tab

[Image: 4337645862_9e847b91e4.jpg]

6-Click on the + sign in the toolbar to add a new ARP poison routing

[Image: 4337656172_57b3d5b3b5.jpg]

7-choose the gateway which is 172.128.254.1 , in the next list you’ll get the IP of the computer 2 which is 172.128.254.10 and click ok

[Image: 4337049117_87315e8629.jpg]

8-now click on the APR-DNS tab

[Image: 4337796362_14af553609.jpg]

9-click on the + sign

10-enter the web address that you want to spoof , (in this case when the user goes to facebook he’ll be redirected to myspace) click on resolve type the web address that you want to redirect the user to it, and click ok, and you’ll get the IP of the web address, then click ok

[Image: 4337798910_e83774f149.jpg]

you'll get something like this:

[Image: 4337057395_171642d13d.jpg]

11-now to make this work we have to enable APR poisoning , click on the icon next to the sniffer icon, and everything should work as we expect.

Now the computer 2 will get the routes poisoned and when the user requests http://www.facebook.com he will be redirected tohttp://www.myspace.com .
Imagine what you can do with this technique.

I hope this was a good tutorial for you guys , and please leave your feedback Black Hat

2 comments:

  1. Do you need to increase your credit score?
    Do you intend to upgrade your school grade?
    Do you want to hack your cheating spouse Email, whatsapp, Facebook, instagram or any social network?
    Do you need any information concerning any database.
    Do you need to retrieve deleted files?
    Do you need to clear your criminal records or DMV?
    Do you want to remove any site or link from any blog?
    you should contact this hacker, he is reliable and good at the hack jobs..
    contact : cybergoldenhacker at gmail dot com

    ReplyDelete
  2. CONTACT: onlineghosthacker247 @gmail. com
    -Find Out If Your Husband/Wife or Boyfriend/Girlfriend Is Cheating On You
    -Let them Help You Hack Any Website Or Database
    -Hack Into Any University Portal; To Change Your Grades Or Upgrade Any Personal Information/Examination Questions
    -Hack Email; Mobile Phones; Whatsapp; Text Messages; Call Logs; Facebook And Other Social Media Accounts
    -And All Related Services
    - let them help you in recovery any lost fund scam from you
    onlineghosthacker Will Get The Job Done For You
    onlineghosthacker247 @gmail. com
    TESTED AND TRUSTED!

    ReplyDelete