Login Register




The stories and information posted here are artistic works of fiction and falsehood. Only a fool would take anything posted here as fact.


Metasploit outside lan filter_list
Author
Message
Metasploit outside lan #1
Hello.
I'm newbie and I need help in using exploits from metasploit.Lets say you create a metasploit executable and it is run by a remote computer on the internet. Will it open a session similar to how it does when the executable is run by another comp on your LAN? and about port forwarding, which port and ip i should port forward? is any clear tutorial about this or anyone can make one?

Reply

RE: Metasploit outside lan #2
Metasploit is not an exploit itself. It's a framework to help utilize a large number vulnerabilities. I suggest you read through this http://www.offensive-security.com/metasp.../Main_Page to learn what you need to know to get started with it Smile
"SQL Injection-a-holic"

Twitter | Security Sucks | My Blog

Reply

RE: Metasploit outside lan #3
Okay.. but if i use to exploit over internet... and my bt is in Vm on wins 7.. shud i use the ip of bt in vm or my win 7? and can i make both ip of bt and win 7 as same?

Reply

RE: Metasploit outside lan #4
You shouldn't use your IP at all unless you want to get caught. But to your question, when running BackTrack as VM it uses the host network card to connect to the internet, so basically it has the same external IP.. If you need to use LAN IP then obviously you have to use BackTrack's IP..
"SQL Injection-a-holic"

Twitter | Security Sucks | My Blog

Reply

RE: Metasploit outside lan #5
(05-26-2013, 11:11 AM)ShadowVarane Wrote: Okay.. but if i use to exploit over internet... and my bt is in Vm on wins 7.. shud i use the ip of bt in vm or my win 7? and can i make both ip of bt and win 7 as same?

That's the same IP unless you're using either different proxy servers or proxies on only one virtual system.
My Bitcoin address: 1AtxVsSSG2Z8JfjNy9KNFDUN6haeKr7LiP
Give me money by visiting www.google.com here: http://coin-ads.com/6Ol83U

If you want a Bitcoin URL shortener/advertiser, please, use this referral: http://coin-ads.com/register.php?refid=noize

Reply

RE: Metasploit outside lan #6
My 2 cents: Read description of the payload that you use. Then port-forward according to the port the payload uses etc.
Staff will never ever ask you for your personal information.
We know everything about you anyway.

Reply

RE: Metasploit outside lan #7
(05-26-2013, 11:18 AM)shp0ngl3 Wrote: You shouldn't use your IP at all unless you want to get caught. But to your question, when running BackTrack as VM it uses the host network card to connect to the internet, so basically it has the same external IP.. If you need to use LAN IP then obviously you have to use BackTrack's IP..

Okay sir. But what if i use client side attacks on victim pc which is not in my lan. Do i have to port forwarding so that the victim pc can do a reverse connection to my bt or i dont have to port forward?

Reply

RE: Metasploit outside lan #8
Of course you must open up the port you want the victim to connect to.. Anything else would be like giving a person half your phone number and expect them to be able to reach you Smile
"SQL Injection-a-holic"

Twitter | Security Sucks | My Blog

Reply