Monday, 25 August 2014

CRACKING YOUR ROUTER PASSWORD USING BACKTRACK 5 AND HYDRA! BY SABEER H4ckz

In this post I would like to show you how to crack your router password using Backtrack and Hydra in case you've forgotten it (Or not) You'll need it to port forward your router if you want to use RATs. I will cover wordlist cracking and brute force attack.

► THINGS NEEDED:
→ Computer
→ Rounter Lan IP
→ Backtrack5 (Optional), You can boot it from live CD, USB or run it in VMware player or in Virtual Box which I prefer.
→ THC Hydra logon cracker,great tool for cracking passwords (for example you can hack Gmail account and more), preinstalled in Backtracl5. GET IT HERE:http://www.thc.org/thc-hydra/
→ Word list (Just google it, I have been using POLISH wordlist from here:http://bezpieka.org/polski-slownik-premi... -wordlist) or if you have got time, enough patience and a lot of computing power you can brute force this baby.
→ Login list (optional), If you don't know your login you have to use login list. Again you will find it using google, or you can create yours, Usually, the login to the router control panel is: ADMIN.

►LETS BEGIN:
1. Start Backtrack5 and open terminal (you can press Ctrl + Alt + T)

2. Now type: "hydra -h" and familiarize with options and read instructions how to use HYDRA

3. OK, let the fun begin, in your terminal type: "hydra -l admin" (if the login is NOT ADMIN, you have to type -L (large l) and then specify the path to the login list you want to use, like in this example "hydra -L /root/Dekstop/loginlist.txt") then: "-P /PATH_TO_PW_LIST"
in my case it will look like: "hydra -l admin -P /root/Dekstop/pw.txt"
If you want to Brute Force it without using a dictionary you will have to use different command. Instead of "-P/PATH_TO_PW_LIST" use "-x"min:max"charset
MIN in minimum number of characters in password
MAX is maximum numbers of chars in pw
CHARSET is when you specify the characters used in pw generation: Use:
a - for lowercare letters
A - for uppercase letters
1 - for numbers
and for special characters just type them in
example: "hydra -l admin -x:5:8:aA1" (password from 5 to 8 chars using lowercase and uppercase letters and numbers)

4. Now we will choose options we want to use.
Use "-V" to show each attemp
Use "-F" to exit when password is found
You can use additional options if you want

5.Now type in your router IP, mine is 192.168.0.1. If you dont know your router IP, you will have to type: "dhclienteth0" and look under DHCPACK. Your router local IP will be shown there.
Type IP in your browser to check if correct, login windows should appear

6.Finally type in protocol we will be using, It will be: "http-get /" You can see complete command at the pictures below. Hit enter. The cracking will begin
When It is finished you will get your password listed in terminal..

2 comments:

  1. Do you need to increase your credit score?
    Do you intend to upgrade your school grade?
    Do you want to hack your cheating spouse Email, whatsapp, Facebook, instagram or any social network?
    Do you need any information concerning any database.
    Do you need to retrieve deleted files?
    Do you need to clear your criminal records or DMV?
    Do you want to remove any site or link from any blog?
    you should contact this hacker, he is reliable and good at the hack jobs..
    contact : cybergoldenhacker at gmail dot com

    ReplyDelete

Popular Posts