Login Register


The Code of Hacker filter_list
Author
Message
RE: The Code of Hacker #5
Quote:So you think TOR is a magic rod that can hide you from aaall the feds? Feds ain't that stupid. They have methods to display and modify all of your content. But it is still useable. I won't explain the details in this thread. Go fudging use Google.

Just to add, you can easily log and manipulate traffic going through tor(like the issues with proxies), and you are under the 'rulez' of your exit node for tor. The only issues you've raised for Tor/Proxies/VPNs are generic enough to impact all three.

Quote:Also install an encrypted hacking OS on Micro SD card.
Really now...an 'encrypted hacking os'

Not just any old OS that you're familiar with or that you can do the job...nope a hacking os, and make sure the os is encrypted. What the actual fuck?

Drive encryption should be done yes but that is separate from the operating system install. Why a hacking os, whats wrong with FreeBSD, Ubuntu, Gentoo, etc? Which hacking os what if it doesn't have the tool I need...oh wait later on you tell us not to actually do any attack instead have your evil server do it...so why do we need a hacking os at all if we are not doing any hacking from it.

As for the MicroSD suggestion, problem is you need a machine that will even boot MicroSD; making a bootable one isn't hard but your machine needs to be able to boot it.

Quote:Just throw the SD card into Hydrochloric acid to destroy.

Good luck...hydrochloric acid won't do the job it is however sometimes used for part of the processes of decapping chips so you'd just be doing them a favor.

Quote:Write a timed script which will attack the target for you in a specific time (like one day later after executed).

Why do we even need a 'hacking os' if we are doing everything from another machine? Besides that you've never done this have you? There are too many variables in most cases to automate everything. I mean sure you write an exploit script to launch that can be roughly automated and made portable okay but how do you know what to attack, or how did you find the vuln in the first place or is that to be scripted also?

Lets say you've done it though, automated discovery and exploitation now you need to deal with post-exploitation which is in a real hack the most important thing. How exactly are you automating this? How are you finding all the log files to automatically clear (only specific entries ofc) what if log files are not in the default location? What if there is extra logging? What if your exploit only landed you into an unprivileged shell and you yet need to escalate before being able to do anything?

Sure you might be able to automate some lame websploit for a defacement or something but that's kids stuff. How exactly do you expect to automate a real hack?

EDIT:
Quote:Hacking device > (Encrypted line) > Evil Server > Tor

You've stated that this evil server is one you have unauthorized access to...are you sure you should be connecting directly to it, seems like a pretty stupid idea to me.
(This post was last modified: 05-09-2014, 02:16 AM by miiike980.)

Reply





Messages In This Thread
The Code of Hacker - by Boomslang - 05-08-2014, 11:28 PM



Users browsing this thread: 1 Guest(s)