HTTP over SSH Tunneling

Here’s the instruction on how to access your internal router webpage (or any other internal-only web applications) without setting-up a full pledge VPN. 1. On the machine that you want to use a web browser to access the internal webpage (i.e. your router IP, NAS Management Page, etc.), install Putty, download and install Putty if …

Continue reading ‘HTTP over SSH Tunneling’ »

Set AWUS036NEH to Max Power (1000mW)

There are couple of things that we should consider in choosing an usb network card to partner with BackTrack. Aside for wifi injection capability, it is always good to have the one with higher power as legally ( and budget-wise) as possible. This is the reason why we are using AWUS036NEH. Aside for the removable …

Continue reading ‘Set AWUS036NEH to Max Power (1000mW)’ »

Client-Side Attack

Purpose: This is how to demonstrate client-side/social engineering attack to internal systems. It only takes that 1 critical click – and you will own the box, and perhaps the systems around the network, bypassing sophisticated Anti-Virus softwares and expensive [next-gen] firewalls. This attack methodology works even on the latest and most hardened workstation, even if …

Continue reading ‘Client-Side Attack’ »

Securely Access Your Desktop By NOT VPN’ing.

I have been thinking lately on how I can access my home desktop (don’t ask me why I wan’t to do this) or my router/firewall config (which is not directly accessible to internet. On this article, let’s explore some ideas on how we can accomplish this without running a VPN server or subscribing to any …

Continue reading ‘Securely Access Your Desktop By NOT VPN’ing.’ »