Tuesday, March 24, 2009

IPOD TOUCH, the Ultimate Hacking Machine.

Who would ever think that the IPOD TOUCH could truely be the Ultimate Hacking Machine. Here is how it was done. There are 3 programs I used to do a hack but of course other programs may come in handy for more analyzing of the target(s). Here are the three.

1)WIFITRAK
2)SNAP
3)INTUITIVE COMMANDER


WIFITRAK is an amazing app that sniffs out wireless packets and lets you know their SSID and whether they are protected or open networks. The best feature about WIFITRAK is it will organize the lists according to open (green color) or protected (red color). You can even configure this app to ring when it finds an open network. Here is a photo of the WIFITRAK. The hack was started with this app so I could find the open network.









Once I found an open network, I then ran my second app, SNAP. SNAP is a really great app for giving you a detailed view of what hardware comprises their network. Heres what I got....














Look, we have a router and 2 computers. I then scanned the router to see what ports were open on it.














Of course, the web service was running on it. By click the HTTP (80) button, the app launches Safari web browser and opens up the network configuration page.







I went to the router configuration login screen, and of course I left the password field blank. I clicked enter and sure enough, I was in the configuration page. I could see all the machines that were a part of the network. Notice that Security Mode is disabled. I decicded not to touch their configuration, I wasn't there to break anything. My next move was to see what services were running on the computers. I found both port 139 (NETBIOS) and port 445 (SMB) open. These of course allow files to be shared out on folders that the owner has allowed.





I happily went to my next app, INTUITIVE COMMANDER. This app is one of my favorites and is the only SMB app I have seen available from the app store. This app is really quite ingenious. The screen is divided in half. One side is my IPOD and the other side is the targets NETWORK NEIGHBORHOOD. Click on Network neighborhood and click open. The app will scan to see if shares are available. Notice two folders are shown on the left side, this is the target machine listing the open shares. On the right side is the files was able to take from the target.




These kind of hacks are so plentiful and easy to find. You never know what you might find. Please add your comments and your experinces here.