Quantcast
Channel: DNS Hijacking – Security List Network™
Viewing all articles
Browse latest Browse all 49

Update subterfuge v-4.0 – Automated Man-in-the-Middle Attack Framework

$
0
0
This release of  Subterfuge included major changes. Particularly to the Network View. We continued on the way to further modularizing the framework, and added ARPWATCH. This release should be significantly more stable then 3.0. Additionally, Subterfuge Beta 4.0 was demonstrated in Las Vegas at DEFCON 20.Unpack and run “python install.py -i” for full installation. Requires Linux kernel  2.6 or greater and Python 2.7.
   
Modules:
  • Harvesting Module is functional.
  • Code Injection Module is functional. Now with Metasploit!
  •    Requires Metasploit to be installed and in PATH
  • Module Builder
  • Tunnel Block Module is functional.
  • DOS Module is functional.
  • Network View Control interface is functional. Now with Nmap!

Known Defects:
Not all settings options are functional. Update coming in Version 4.1
arpwatch requires manual configuration. Automatic configuration will be added in next incremental release (4.1)
Code Injection currently affects all victims. Spectrum control modifications are being pursued.
Update functionality does not always work. A fix is being persued for Version 4.1
ChangeLog:

Extraneous Modules were removed lowering the overall size of the program.
   Program Structure:

  •  General:
  •  Developed Network View
  1. Integrated Nmap
  2.   Added update functionality through SVN
  • Settings Page:New settings and customizations available
  • ARPWATCH:  Added ARPWATCH. ARPWATCH comes with improvements over existing MITM Tools

Issue:
49 Defect Accepted High —- Mtoussain› Netview Unstable
“netviewmaincont” div no longer reloads. Dynamic div is now “hostcheck”. “hostcheck” determines if a new client has been detected and updates the “netviewmaincont” div to reflect changes. The hidden “currenthostcount” div tracks the number of clients displayed.
Lots of JavaScript… ugh.

General Features : 
  • Credential Harvester
  • Http Injection Code
  • Session Hijacking
  • Race Condition Exploitation
  • Evilgrade update exploitation
  • Wireless attack suite
  • and more …
Subterfuge ScreenShoot GUI For Unix/Linux Tool
[youtube=http://www.youtube.com/watch?v=I7yEHSRxRVk]





Download Latest :  SubterfugePublicBeta4.0.tar.gz (16.8 MB)
Find Other Version |
Read more In herehttp://code.google.com/p/subterfuge/

 Our Post Before:


Viewing all articles
Browse latest Browse all 49

Trending Articles