Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

can't set modem/router login webpage attack to default gateway #27

Open
arifsbc opened this issue Apr 19, 2020 · 1 comment
Open

can't set modem/router login webpage attack to default gateway #27

arifsbc opened this issue Apr 19, 2020 · 1 comment

Comments

@arifsbc
Copy link

arifsbc commented Apr 19, 2020

if login website hosted to the pc ip instead to router gateway than this attack is futile after all.

@arifsbc arifsbc changed the title can't set modem/router login webpage to default gateway can't set modem/router login webpage attack to default gateway Apr 19, 2020
@r00t-3xp10it
Copy link
Owner

r00t-3xp10it commented Apr 22, 2020

Its not because it requires dns spoof to work proper ..

But it will require target machine on same LAN for morpheus been abble to re-direct all domain names ended in .com to our apache2 webserver ..

So.. the target must write in browser url field any domain ended with .com <-- if the domain its on target cache then target pc will not use dns to resolve the adrress making the attack fail..

A good way to test this is to enter a domain thats not on browser cache. For example: fadsfzs.com will be redirected to our apache2 were the phising webpage awaits for credentials enter ...

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

No branches or pull requests

2 participants