Book Image

Penetration Testing with Raspberry Pi - Second Edition

By : Michael McPhee, Jason Beltrame
Book Image

Penetration Testing with Raspberry Pi - Second Edition

By: Michael McPhee, Jason Beltrame

Overview of this book

This book will show you how to utilize the latest credit card sized Raspberry Pi 3 and create a portable, low-cost hacking tool using Kali Linux 2. You’ll begin by installing and tuning Kali Linux 2 on Raspberry Pi 3 and then get started with penetration testing. You will be exposed to various network security scenarios such as wireless security, scanning network packets in order to detect any issues in the network, and capturing sensitive data. You will also learn how to plan and perform various attacks such as man-in-the-middle, password cracking, bypassing SSL encryption, compromising systems using various toolkits, and many more. Finally, you’ll see how to bypass security defenses and avoid detection, turn your Pi 3 into a honeypot, and develop a command and control system to manage a remotely-placed Raspberry Pi 3. By the end of this book you will be able to turn Raspberry Pi 3 into a hacking arsenal to leverage the most popular open source toolkit, Kali Linux 2.0.
Table of Contents (13 chapters)
Penetration Testing with Raspberry Pi - Second Edition
Credits
About the Authors
About the Reviewers
www.PacktPub.com
Preface

Executing man-in-the-middle attacks


One of the most important concepts in both the reconnaissance/weaponization and intrude/exploit phases is acting as the MITM. We touched upon this in the previous chapter a little, where we used tools such as ARPspoof and Ettercap to position ourselves inline between hosts using software, or physically placing ourselves inline using multiple network interfaces. The goal in the previous chapter was to gain some sort of intelligence about what is going on between hosts so that we could glean important information that we could later use for intruding and exploitation. Now that we are further along in our penetration test, we will take advantage of this prime location to use some great tools that go beyond just snooping. This is a very important concept when it comes to penetration testing, because many of the attacks we are trying to help expose and harden our customers' networks against use these techniques. If we cannot successfully gain MITM status where...