Showing posts with label Karma. Show all posts
Showing posts with label Karma. Show all posts

Wednesday, 16 April 2014

Pineapple Firmware 1.3.0 Salmonosaurus & Evil Portal

Salmonosaurus

Well the good people of Hak5 have gone and released another update for the Wi-Fi Pineapple.

 so lets start with the details of the changelog.
Changelog:
Merged upstream changes
Updated wireless drivers.
Updated wireless utilities.
Updated OpenSSL (fixed heartbleed).
Updated some other base components.
Updated hostapd.as
Improved WiFi Stability
More stable AP.
More stable clientmode.
Karma
Faster response times.
Cleaner, more concise log output.
Timestamps added to log
Much faster webinterface view of log
Removed the need to re-boot after initial set-up (first boot).
Added proper vFat support
Updated all system infusions to their latest versions
Security fixes 
Other minor fixes and improvements.
All of this can be found in the Hak5 forums.
I had no issues with the update and have had no issues so far.

Evil Portal

Now to get started I would suggest watching Chris Haralson's How to video on the captive portal, I have found his videos really helpful http://youtu.be/nw4bo4rXGgQ.


After installing the infusion from the Pineapple Bar, you will then need to install the dependencies.
Once complete you can start moving forward.

The first tab details all of the configuration changes you will need to make, the next two configure the UHTTP Deamon and NoDogSplash, the two tabs are for editing and previewing the splash.




The configuration changes made to UHTTP Deamon and NoDogSplash are also covered in the video.
UHTTP Deamon - Change "list listen_http 0.0.0.0:80" to  "list listen_http 0.0.0.0:8080"
NoDogSplash - Add to "FirewallRuleSet users-to-router"
"FirewallRule akkow TCP port 8080"
"FirewallRule akkow TCP port 1471"

At this point don't forget to restart the UHTTP Deamon before starting NoDogSplash.
Now this is where I have differed from Chris, Chris created a portal that worked as you would expect you preform a particular function and you get access to the web. I just prefer to mess with people, or should I say myself as doing this in the wild can be viewed as illegal. So my captive portal is just a ASCII art skull and crossbones that plays a creepy laugh with not click though.

One note to point out is you are limited by the internal storage space of the pineapple, I was unable to get the creepy laugh working but the main HTML page worked so I was happy.
Remember that this should only be done on your own equipment or equipment that you have permission to work on.


Saturday, 11 January 2014

WiFi Pineapple and Karma.


Well it would appear that this is the 2nd time I am writing this blog, as I was a complete idiot and somehow managed to delete the post while it was still in draft I could not find the data, but it does mean that I get to watch some more Elementary.
Let's look at the WiFi Pineapple, a security auditing tool that exploits the inherent security flaws in unencrypted WiFi security.
The WiFi Pineapple is produced by Hak5 and sold in the HakShop.
The WiFi Pineapple works as a router, this is not to be confused with the Netgear or Linksys router in your house, the Pineapple has two wireless radios, one Ethernet port and one USB.
So I received my WiFi Pineapple on Friday and have been in experiment mode ever since.
The Pineapple arrives completely blank but the latest firmware is included on a microSD card,  the whole process is automated and provided you follow the guide that is included or watch the videos on Hak5 you should have no issues.
Applications that run on the Pineapple are called "Infusions" some are included and many are online in the Pineapple Bar.
The particular application I am looking at talking about is Karma.
I won't be going in depth on the theory as this has been covered many times on Hak5.
When your laptop or phone come online they send out probe requests looking for networks that they have attached to previously. This list can be found on a Windows PC by clicking on "Manage Wireless Networks" link within the Network and Sharing Center. 
 The best way to access Karma is through the Pineapple web interface.



Now let's state the obvious, you click on "Start" Karma will start. Clicking "Enable" will not start Karma but will automatically start the next time the Pineapple reboots, handy if you don't want to get your laptop out and log into the Pineapple. Clicking on "Karma" will open the Karma interface, within the interface there are three pages; Karma Intelligence Report, Karma Log, Karma Configuration.
 
Karma Intelligence displays the MAC address, assigned IP address, Hostname and the assumed SSID. I have edited the hostnames and MAC addresses to protect myself and the stupid person that connected while I was taking screenshots (first time I managed to pick anyone else up).


 
Karma Log holds information on all probe requests received and all clients that have connected.

 
An  finally Karma Configuration is where you can set the broadcast SSID of the Pineapple, Client Blacklisting where you can set clients that the Pineapple will not respond to, and SSID Black/White Listings where you can configure what SSID's the Pineapple responds as.
 
So in conclusion the WiFi Pineapple can make you a man in the middle, you can be the one that people connect to for internet access. And how can you protect yourself from this kind of attack, well don't connect to any unsecured networks, if you do don't all that network to connect automatically. Always make sure you know what you are connecting to.

Friday, 10 January 2014

New arrivals.

I have received my USB Rubber Ducky and WiFi Pineapple today.
Thanks Hak5 for the holiday sales.


The next few instalments will be featuring the WiFi Pineapple so please keep an eye out over the next few weeks.