
XHYDRA
BRUTEFORCE ATTACK ON ROUTER
- Bruteforce
attack is used for gain access in the account not to decrypt any data.
This can be achive by various tool like – Hydra .
- Hydra is a login cracker that supports various protocols for attack and in this tutorial bruteforce the telnet protocol .
- Hydra can not only bruteforce the telnet protocol , it can bruteforce other protocols such as –
- FTP
- POP3
- IMAP
- Telnet
- HTTP
- VNC
- ICQ
- SOCKS
There are various other protocols .
INTRODUCTION
- In this tutorial we use bruteforce attacking tool to get the CISCO ROUTER password .
- The tool we used in this tutorial is xHydra which is GUI ( Graphical User Interface ) Tool .
- This GUI based tool is very easy to run and you will find this tool in Bugtraq Penetration Testing Distribution .
USING GNS CREATE A NETWORK
- Using GNS3 , I’ve create a small network using 1 router , 1 ethernet switch and 1 virtual PC ( Bugtraq ).
- And the cable I used to connect is the Fast Ethernet cable .
START YOUR NETWORK
Now once your network is created , start your network and set the idle PC value .

OPEN HYDRA GUI IN BUGTRAQ
- Now open Hydra in BUgtraq
- To open Hydra follow the path >Bugtraq > Bruteforce force attack > Online > Hydra > Hydra GUI.
- See the below image for more details -

HYDRA GUI OPENED
- Once the hydra GUI is opened , you have to set the target , password and then you have to start hydra .
SET TARGET
- First you need to set the ip address of the target .
- See the below example image , in which I have enter the router ip address i.e 10.0.0.1
SET PORT
- In the port section set the port to 23 .
SET PROTOCOL
- Then you have to set the protocol to telnet .
See the below image for more details -

SET PASSWORDS
- To set the password , you have to click on the Password tab and then set the password list .
- To set the password list click on the Password list text box and then select your list file .
- See the below image for more details -

START OR EXECUTE THE ATTACK
- Now
you have to start or execute the attack by just click on the execute
button which you will find on the right bottom of the Hydra application .
- See the below image you will find that the attack was successfull and it list the login and password.
- See below image for more information .

AT THE END
- This tutorial is for networking students and all those who are interested in the security and research areas.
- Bruteforce
attacks are common these days to crack the login authentication , this
tutorial shows you how to perform bruteforce attack in GNS3 .
- The best part of this tutorial is you perform this experiment in your own Network environment .
- Learn about bruteforce technique and It help you to save your network from brute force attacks .
- Keep following www.abiadonis.blogspot.com
|
Comments