Monday, 2025-01-06, 11:08 AM
Welcome Guest | RSS | Registration | Login
10:33 AM HACKING WINDOWS XP USING IP ADDRESS |
Do you think it is possible to hack some one computer with just an ip address?! The answer is yes, if you are using unpatched(vulnerable) OS. If you don’t believe me, then read the full article. In this article i am going to demonstrate how to hack a remote computer by exploiting the parsing flaw in the path canonicalization code of NetAPI32.dll through the Server Service(CVE-2008-4250). Before we jump into the actual exploitation process, let me give more details about this Server Service Vulnerability. Details about Server Service Vulnerability(MS08-067): The Server service is vulnerable to a remote code-execution vulnerability. The vulnerability is caused due to an error in netapi32.dll when processing directory traversal character sequences in path names. This can be exploited to corrupt stack memory by e.g. sending RPC requests containing specially crafted path names to the Server Service component. The ‘NetprPathCanonicalize()’ function in the ‘netapi32.dll’ file is affected. A malicious request to vulnerable system results in complete compromise of vulnerable computers. Exploiting the MS08-067 using Metasploit: Requirements: Step 1: Create Two Virtual Machine(VM) namely "Target” and "BT5″. Install the XP inside Target VM and Backtrack inside BT5. Start the Two VMs. If you don’t know how to create virtual machines , then please read this VirtualBox Manual. Step 2: Find the IP address of Target Hackers use different method for finding the ip address of victim. For Eg., By sending link that will get the ip details or use Angry IP Scanner. Step 3: Information Gathering Open The Terminal in the BT5 machine(Backtrack) and type "nmap -O 192.168.56.12". Here 192.168.56.12 is IP address of Target machine. If you look at the result, you can find the list of open ports and OS version. Step 4: Metasploit The msfconsole is the most popular interface to the Metasploit Framework. It provides an "all-in-one” centralized console and allows you efficient access to virtually all of the options available in the Metasploit Framework. Let us use the Search command to find the exploit modules with the keyword netapi. Type "search netapi”. Now you can see the list of modules match with the netapi. We are going to exploit MS08-067 , so type "use exploit/windows/smb/ms08_067_netapi". Step 5: Set Payload Step 6: Options Type "set RHOST 192.168.56.12". Here 192.168.56.12 is IP address of Target machine. Step 7: Exploiting Now we can control the remote computer using the meterpreter. For example, typing "screenshot” will grab the screenshot of the victim system. SO Counter Measures IS : |
|
Total comments: 0 | |