Backtrack os 5

15
Backtrack OS 5 Submitted by – AYUSH GOYAL

description

The following slides cover an introduction to Backtrack OS 5. Backtrack is an operating system focused on penetration testing.

Transcript of Backtrack os 5

Page 1: Backtrack os 5

Backtrack OS 5

Submitted by – AYUSH GOYAL

Page 2: Backtrack os 5

Introduction

• Linux based operating system.

• Aimed at digital forensics and penetration testing.

• Named after “Backtrack” an algorithm.

Page 3: Backtrack os 5
Page 4: Backtrack os 5

History

• Merger of two former distros focused on penetration testing.

• WHAX- a slax based operating system.

• Auditor Security Collection- a live CD based on Knoppix included 300 tools.

Page 5: Backtrack os 5

What is Penetration Testing?

• Also known as pentest.

• Active analysis of the system for potential vulnerabilities.

• Carried out from the position of attacker.

• Two types- Black box and White box

Page 6: Backtrack os 5

Categories• Information gathering• Vulnerability assessment• Exploitation tools• Privilege Escalation• Maintaining Access • Reverse Engineering• RFID tools • Stress Testing • Forensics • Reporting tools • Services • Miscellaneous

Page 7: Backtrack os 5

Tools

• Metasploit integration• RFMON• Aircrack-NG• Gerix Wifi Cracker• Kismet• Nmap• Ophcrack• Ettercap• Wireshark• BeEF

Page 8: Backtrack os 5

Metasploit Integration

• Open-source project which provides information about security vulnerabilities

• A tool for developing and executing exploit code against a remote target machine.

• Steps:– Choosing and configuring exploit– Checking target’s susceptibility– Choosing and configuring payload – Choosing encoding technique– Execution

Page 9: Backtrack os 5

RFMON

• Radio Frequency MONitor

• Allows wireless NIC to monitor all traffic received from the wireless network

• Collected traffic can be used for WEP cracking

• To monitor own network

Page 10: Backtrack os 5

Aircrack-ng

• Network software suite consisting detector, packet sniffer, WEP cracker and analysis tools.

• easside-ng: a tool for communicating to an access point, without the WEP key

• wesside-ng: automatic tool for recovering wep key.

Page 11: Backtrack os 5

Gerix wifi cracker

• GUI for aircrack-ng suite

• Contains penetration tools such as network analysis, packet capturing and packet injection

• Macchanger: a tool for mac spoofing

Page 12: Backtrack os 5

Kismet

• A free software used for network detection, packet sniffing and intrusion detection system

• Works passively: without sending any loggable packets it detects wireless access points and wireless clients.

• It can sniff packets in Wireshark format.

Page 13: Backtrack os 5

Nmap

• Network MAPper is a security scanner used to discover hosts and services on a network

• Features:– Host discovery– Port Scanning– OS detection – MAC address

Page 14: Backtrack os 5

Ophcrack• Ophcrack can crack most Windows passwords

within a few minutes• It uses LM hash through rainbow tables. • LM hash is hash to encrypt Windows passwords. • Rainbow table is used to reverse cryptographic

hash. •  By default, ophcrack is bundled with tables that

allows it to crack passwords no longer than 14 characters.

Page 15: Backtrack os 5

Thank you