Book Image

Penetration Testing with Raspberry Pi - Second Edition

By : Michael McPhee, Jason Beltrame
Book Image

Penetration Testing with Raspberry Pi - Second Edition

By: Michael McPhee, Jason Beltrame

Overview of this book

This book will show you how to utilize the latest credit card sized Raspberry Pi 3 and create a portable, low-cost hacking tool using Kali Linux 2. You’ll begin by installing and tuning Kali Linux 2 on Raspberry Pi 3 and then get started with penetration testing. You will be exposed to various network security scenarios such as wireless security, scanning network packets in order to detect any issues in the network, and capturing sensitive data. You will also learn how to plan and perform various attacks such as man-in-the-middle, password cracking, bypassing SSL encryption, compromising systems using various toolkits, and many more. Finally, you’ll see how to bypass security defenses and avoid detection, turn your Pi 3 into a honeypot, and develop a command and control system to manage a remotely-placed Raspberry Pi 3. By the end of this book you will be able to turn Raspberry Pi 3 into a hacking arsenal to leverage the most popular open source toolkit, Kali Linux 2.0.
Table of Contents (13 chapters)
Penetration Testing with Raspberry Pi - Second Edition
Credits
About the Authors
About the Reviewers
www.PacktPub.com
Preface

dsniff


While we have already used it in the previous section, it should be said that there is a lot more to dsniffdsniff is a collection of security tools designed to look at different application protocols and extract important information from them when they are in cleartext. This information can then be used for future insight on the attack. Some of the other tools included within dsniff include filesnarf, mailsnarf, urlsnarf and webspy. These tools look for this specific traffic on the correct application port and can provide us details on that application. Here is a quick definition of some of them:

  • Webspy : It shows us what URLs' people are browsing by opening up a browser window locally

  • Urlsnarf : It shows us what URLs are being browsed to on the user's network

  • mailsnarf : It shows any e-mails from POP and SMTP traffic on our network

  • dsniff : It shows passwords sent in cleartext across the network

For our example, we will be utilizing the tool within the dsniff package called urlsnarf...