Redirecting traffic

From: Andres Molinetti (andymolinetti_at_hotmail.com)
Date: 08/05/05

  • Next message: Ricardo Mourato: "Re: How to get a reverse Shell / VNC from a writable directory on a remote web server."
    To: pen-test@securityfocus.com
    Date: Fri, 05 Aug 2005 17:28:38 +0000
    
    

    I am pen-testing a client application and I 've found, analysing traffic
    dumps, that it seems to connect to a hardcoded internal IP and retrieve data
    from a strange port that is afterwards displayed in the application.
    I want to be able to redirect that traffic to another IP in order to test it
    for overflows and other issues.
    I have found a way to change the default gateway of the application's host.
    So I thought of setting my linux box as its gateway and using iptables to
    redirect the traffic to the other IP.
    I'm needing help with the building of the rules...

    Thks,
    Andy

    _________________________________________________________________
    Descubre la descarga digital con MSN Music. Más de medio millón de
    canciones. http://music.msn.es/

    ------------------------------------------------------------------------------
    FREE WHITE PAPER - Wireless LAN Security: What Hackers Know That You Don't

    Learn the hacker's secrets that compromise wireless LANs. Secure your
    WLAN by understanding these threats, available hacking tools and proven
    countermeasures. Defend your WLAN against man-in-the-Middle attacks and
    session hijacking, denial-of-service, rogue access points, identity
    thefts and MAC spoofing. Request your complimentary white paper at:

    http://www.securityfocus.com/sponsor/AirDefense_pen-test_050801
    -------------------------------------------------------------------------------


  • Next message: Ricardo Mourato: "Re: How to get a reverse Shell / VNC from a writable directory on a remote web server."

    Relevant Pages

    • RE: All of the things you need to learn to be a pen-tester (Re: Pen t est basic needs)
      ... U will probably need to "morphine" your evil apps before you run them on an AV protected machine - download morphine from hxdef.org; might as well pick up a copy of hf's rootkit while your there... ... FREE WHITE PAPER - Wireless LAN Security: What Hackers Know That You Don't ... WLAN by understanding these threats, ...
      (Pen-Test)
    • RE: AD password Auditing
      ... Subject: AD password Auditing ... > FREE WHITE PAPER - Wireless LAN Security: ... Defend your WLAN against ... FREE WHITE PAPER - Wireless LAN Security: ...
      (Pen-Test)
    • RE: AD password Auditing
      ... FREE WHITE PAPER - Wireless LAN Security: What Hackers Know That You Don't ... WLAN by understanding these threats, available hacking tools and proven ...
      (Pen-Test)
    • Re: Handling Sysads resignation/termination
      ... FREE WHITE PAPER - Wireless LAN Security: What Hackers Know That You Don't ... WLAN by understanding these threats, ... Switch to Netscape Internet Service. ...
      (Pen-Test)
    • RE: Handling Sysads resignation/termination
      ... when an administrator behaves badly, ... >FREE WHITE PAPER - Wireless LAN Security: What Hackers Know That You Don't ... >WLAN by understanding these threats, ...
      (Pen-Test)