Pwning Intranet with HTML 5

Pwning Intranet with HTML 5

LASCON via YouTube Direct link

Intro

1 of 19

1 of 19

Intro

Class Central Classrooms beta

YouTube videos curated by Class Central.

Classroom Contents

Pwning Intranet with HTML 5

Automatically move to the next video in the Classroom when playback concludes

  1. 1 Intro
  2. 2 Attack vector
  3. 3 Why would you use HTML5?
  4. 4 What is BeEF? • Ber: Browser Exploitation Framework
  5. 5 HTML5 + BeEF
  6. 6 Using a technique known as footprinting
  7. 7 Toolkit: Modules in BeEF
  8. 8 Toolkit: Add your own module
  9. 9 Discover Internal Network
  10. 10 Ping sweep
  11. 11 Intranet footprinting Discover web servers in porte 80 and 8080 Scans for Apache, IIS. and known
  12. 12 DNS enumeration
  13. 13 Port Scanning: Beating protections Blocking example for known ports: (Firefox, WebSockets and CORS)
  14. 14 Port Scanning module Scan can be performed using ranges, lists or single ports Uses a med method to workaround security measures ports blocked can be stil scanned!
  15. 15 Network Topology
  16. 16 Inter-protocol: IRC
  17. 17 Inter-protocol: exploitation Exploit vulnerabilities within the internal network to gain control
  18. 18 Conclusions
  19. 19 References and Links

Never Stop Learning.

Get personalized course recommendations, track subjects and courses with reminders, and more.

Someone learning on their laptop while sitting on the floor.