Home
Calendar
Certifications
Columns
Features
Forum
Resources
Vitals
Latest Additions
April 2013 Free Giveaway Sponsor - eLearnSecurity
Human Intelligence to Navigate the Security Data Deluge
February 2013 Free Giveaway Winner of SANS CyberCon Training
Interview: Bugcrowd Founders on Herding Ninjas for Crowdsourced Bug Bounties
Network Forensics: The Tree in the Forest
March 2013 Free Giveaway Sponsor - Mile2
Book Review: Violent Python
February 2013 Free Giveaway Sponsor - SANS
Holiday 2012 Free Giveaway Winner of Metasploit Pro by Rapid7
Course Review: SANS FOR408 Computer Forensic Investigations – Windows In-Depth
The Security Consulting Sugar High
Tutorial: Fun with SMB on the Command Line
Interview: Ilia Kolochenko, CEO of High-Tech Bridge
October 2012 Free Giveaway Winner of LearningGate Training
The Broken: Assessing Corporate Security in 2012 to Make a Better 2013
EH-Net Login
Welcome Guest.
Username:
Password:
Remember me
Lost Password?
No account yet?
Register
Who's Online
We have 45 guests online
Free Business and Tech Magazines and eBooks
You are here:
Home
Ethical Hacking Discussions and Related Certifications
Wireless
WiFi Hotspot work around
EH-Net
May 19, 2013, 06:49:58 PM
Welcome,
Guest
. Please
login
or
register
.
Did you miss your
activation email?
1 Hour
1 Day
1 Week
1 Month
Forever
Login with username, password and session length
News
: Go back to The Ethical Hacker Network Online Magazine
Home Page
Home
Help
Calendar
Login
Register
EH-Net
>
Ethical Hacking Discussions and Related Certifications
>
Wireless
(Moderator:
don
) >
WiFi Hotspot work around
Pages: [
1
]
Go Down
« previous
next »
Print
Author
Topic: WiFi Hotspot work around (Read 10009 times)
0 Members and 1 Guest are viewing this topic.
Maverick3n1
Newbie
Offline
Posts: 5
WiFi Hotspot work around
«
on:
July 13, 2009, 07:44:20 PM »
Could you work past a Wi-Fi hotspot's login page by setting a static DNS, but dynamic IP when logging onto the HotSpot's WAP? That way rather than using the DNS that it dynamically assigns you, which forces you to their website, where you have to pay and login, you can simply manually input your DNS info and not get forced to their login page?
Logged
Andrew Waite
Hero Member
Offline
Posts: 928
Re: WiFi Hotspot work around
«
Reply #1 on:
July 14, 2009, 03:13:21 AM »
Maverick3n1,
that will depend on the exact configuration of the hotspot provider's architecture. Most that I know redirect all port 80 and 443 traffic through their systems. DNS redirection doesn't play a part, any traffic over the hotspot has to be routed through their gateway router, so they can do anything they want with any traffic they want.
There are known and well publicised ways around this in some systems, google is your friend; you do have permission to test/bypass this yes?
Logged
--
http://www.infosanity.co.uk
--
http://blog.infosanity.co.uk
dalepearson
Sr. Member
Offline
Posts: 357
Re: WiFi Hotspot work around
«
Reply #2 on:
July 14, 2009, 03:43:31 AM »
Maverick3n1,
its been a while since I looked at this, but you might want to look at Rob's blog for some ideas.
http://www.room362.com/archives/456-ozymandns-tunneling-ssh-over-dns.html
Logged
:: Subliminal Hacking ::
/
:: Security Active Blog ::
hayabusa
Hero Member
Offline
Posts: 1630
Re: WiFi Hotspot work around
«
Reply #3 on:
July 14, 2009, 06:28:20 AM »
Assuming, as Andrew Waite mentions, you have permission to be testing against this wireless hotspot, you have other options, such as ARP spoofing, to grab cookies / credentials from another user's session. It's not a difficult trick, so long as others are accessing it.
This might be necessary, as well, as many public hotspots also have dedicated proxies that require authentication sitting between the hotspot and the rest of the network, and unless you can authenticate to the proxy, you'll be out of luck.
Logged
~ hayabusa ~
"All men can see these tactics whereby I conquer, but what none can see is the strategy out of which victory is evolved." - Sun Tzu, 'The Art of War'
OSCE, OSCP , GPEN, C|EH
Maverick3n1
Newbie
Offline
Posts: 5
Re: WiFi Hotspot work around
«
Reply #4 on:
July 15, 2009, 08:14:05 PM »
I somehow doubt the hotel would want me bypassing their $15 per day charge to surf the web... I don't like the idea of spoofing the ARP and grabbing people's credentials, although I have seen that idea mentioned. It's not my intent to do any harm to someone's network, or gain usernames/passwords of other members.
It's one of those things where I'm getting sent out of town for training, company isn't paying me Per Diem, yet I'm stuck somewhere else, having to eat out since I can't just cook something at home, yet no extra money to compensate. Nothing to do, and no extra cash to go out on the town when I'm not in training, so all I can do is sit on my butt afterwards in an empty hotel room. I'd like to at least be able to use the internet. The overpriced hotel here however doesn't include internet with your room, even after paying the outrageous prices the hotel is charging for a single room (almost $200 per day), no discount on the room even though the training session is also being held in their hotel. Internet is an additional $15 per day. They then continue to slap you in the face with an additional $20+ per day for parking (Not included in your room fees either). I was hoping to find some sort of simple loophole where I'd be able to surf the web, access forums/email, and maybe chat on YahooIM/AIM to kill the boring nights excess time. I guess you can call it stealing/unethical to bypass it, but at the same time, it seems unethical for them to charge for it, and especially a price like that. I know big wig corporate people who stay there can care less as they've got so much money they can simply expense it. The little man however isn't so lucky.
Logged
Andrew Waite
Hero Member
Offline
Posts: 928
Re: WiFi Hotspot work around
«
Reply #5 on:
July 16, 2009, 04:58:37 AM »
Maverick3n1,
I appreciate your situation, but as I've had experience running systems similar to the ones you're trying to bypass I'm afraid I can't help much further.
However I've known similar people in the same situation and if you off site regularly or for an extend period look for a 3g dongle. Don't know the situation in the US, but in the UK you can often pick up the required device and connection for about the same cost as you would paying the (admittedly inflated) wireless connection prices, and you get to keep your connection after you leave the hotel.
I know it's still an expense, but it is legal....
Logged
--
http://www.infosanity.co.uk
--
http://blog.infosanity.co.uk
Ketchup
Hero Member
Offline
Posts: 1021
Re: WiFi Hotspot work around
«
Reply #6 on:
July 16, 2009, 07:26:01 AM »
BTW, another approach may be to look into tethering your cell phone as a modem. This is legal and many times you can do this without paying extra fees.
Logged
~~~~~~~~~~~~~~
Ketchup
Maverick3n1
Newbie
Offline
Posts: 5
Re: WiFi Hotspot work around
«
Reply #7 on:
July 16, 2009, 09:30:00 PM »
My cell phone is through my company, and even though it's a crackberry, it costs an additional $30 per month to have the tethering service on the phone. I don't travel much, and I don't need to be in some fancy hotel, but where I'm going, and where the training is, it's all next to a major airport, all of the hotels are expensive, and the company decides where they put me, so I didn't have much say in the matter. With today's economy, it's kind of tough to bitch at those who give you a paycheck, and these people take advantage of it, consistantly reminding employees of "be thankful you still have a job", regardless of the fact that people haven't received raises in 3 years and were already underpaid to begin with. I had hoped things would improve, but job security is more important at this stage in the economy, then trying to jump ship now with businesses dropping like flys.
Logged
Ketchup
Hero Member
Offline
Posts: 1021
Re: WiFi Hotspot work around
«
Reply #8 on:
July 17, 2009, 07:04:42 AM »
Maverick3n1, I don't have a blackberry, but this software may allow you to get around the monthly tether fee:
http://www.mobishark.com/
I use a similar product on my Treo. I do not pay a tether fee.
Logged
~~~~~~~~~~~~~~
Ketchup
Ignatius
Jr. Member
Offline
Posts: 91
Re: WiFi Hotspot work around
«
Reply #9 on:
July 17, 2009, 01:53:48 PM »
Hey Ketchup - I've already approached my mobile provider about upgrading to a Treo. Can you let me have details of the product that you use please?
Logged
Ketchup
Hero Member
Offline
Posts: 1021
Re: WiFi Hotspot work around
«
Reply #10 on:
July 17, 2009, 02:26:25 PM »
Certainly:
http://www.junefabrics.com/palmnet/
BTW, I am not sure if it's an upgrade
The verdict is still out on that for me.
Logged
~~~~~~~~~~~~~~
Ketchup
Ignatius
Jr. Member
Offline
Posts: 91
Re: WiFi Hotspot work around
«
Reply #11 on:
July 18, 2009, 07:19:25 AM »
Brilliant - I just want to get the Treo into my hands now to start playing!
Logged
Pages: [
1
]
Go Up
Print
« previous
next »
Jump to:
Please select a destination:
-----------------------------
EH-Net
-----------------------------
=> Calendar Of Events
===> ChicagoCon 2007
===> ChicagoCon 2008s
===> ChicagoCon 2008f
===> ChicagoCon 2009s
=> Ethical Hacktivism
=> News Items and General Discussion About EH-Net
===> Greetings
=> Special Events
-----------------------------
Ethical Hacking Discussions and Related Certifications
-----------------------------
=> General Certification
===> Networking
===> OS
===> Security
=> Compliance, Regulations & Standards
=> Control Systems
=> Cyber Warfare
=> Forensics
===> CCE / MCCE - (Master) Certified Computer Examiner
===> CHFI - Computer Hacking Forensic Investigator
===> EnCE - EnCase® Certified Examiner
===> GCFA - GIAC Certified Forensics Analyst
=> Hardware
=> Incident Response
===> CSIH - Computer Security Incident Handler
===> GCIH - GIAC Certified Incident Handler
=> Malware
===> Advisories
=> Mobile
=> Network Pen Testing
===> CEH - Certified Ethical Hacker
===> CPTC - Certified Penetration Testing Consultant
===> CPTE - Certified Penetration Testing Engineer
===> CSTA - Certified Security Testing Associate
===> eCPPT - eLearnSecurity Certified Professional Penetration Tester
===> ECSA - EC-Council Certified Security Analyst
===> GPEN - GIAC Certified Penetration Tester
===> OSCP - Offensive Security Certified Professional
=> Physical Security
=> Programming
=> Social Engineering
=> Web Applications
=> Wireless
===> CWNP Certs
===> GAWN - GIAC Assessing Wireless Networks
===> OSWP - Offensive Security Wireless Professional
=> Other
-----------------------------
Columns
-----------------------------
=> Editor-In-Chief
=> Andress
=> Gates
=> Haddix
=> Hadnagy
=> Heffner
=> Hoffman
=> Linn
=> RichM
=> Murray
=> J. Peltier
=> Weidman
=> Wilson
-----------------------------
Features
-----------------------------
=> /root
=> Book Reviews
=> Opinions
=> Skillz
===> Examples
===> May 06 - Star Hacks, Episode V: The Empire Hacks Back
===> July 06 - Hack Bill!
===> Sept 06 - Netcat in the Hat
===> Nov 06 - Hitch-Hackers Guide to the Galaxy
===> Dec 06 - A Christmas (Hacking) Story
===> Feb 07 - Charlottes Web Site
===> April 07 - Microsoft Office Space
===> June 07 - Serenity Hack
===> Oct 07 - Worst. Ethical. Hacker. Challenge. Ever.
===> Dec 07 - Frosty the Snow Crash
===> March 2008 - It Happened One Friday
===> Oct 2008 - Scooby Doo and the Crypto Caper
===> Dec 08 - Santa Claus Is Hacking to Town
===> Feb 2009 - Brady Bunch Boondoggle
===> July 2009 - Prison Break
===> October 2009 - SSHliders
===> December 2009 - Miracle on Thirty-Hack Street
===> December 2010 - The Nightmare Before Charlie Browns Christmas
-----------------------------
Resources
-----------------------------
=> Career Central
===> Looking For Work
===> Looking To Hire
=> Links to cool sites.
=> Mass Media
=> News from the Outside World
=> Tools
=> Tutorials
===> Tutorial Requests
Loading...
Exclusive Deal
SANSFIRE 2013
June 15 - 22
5% Off
w/ Code
:
EHN_5
SANS Deals 4 EH-Netters
5% OFF
Any
SANS Course
in Any Format!
Coupon Code:
EHN_5
Including
SANS Rocky Mountain 2013
&
SANS Boston 2013
Polls
Compared to this year, 2013 will be:
Great!
Better.
About the same.
Little worse.
FUBAR!
Recent Forum Topics
OSCP - Offensive Security Certified Professional
: OSCP exam scheduled
(6) by
gbhat
Incident Response
: LinkedIn Forensics
(0) by
AFENTIS_Forensics
General Certification
: Red Team/Blue Team
(1) by
ajohnson
OSCP - Offensive Security Certified Professional
: Class Scheduled 6/8 - Linux n00b
(6) by
Grendel
Career Central
: Starter cert?
(3) by
Grendel
Network Pen Testing
: Beginner Ethical Hacker
(1) by
m0wgli
General Certification
: CPT Practical Submission
(0) by
z28power4u
Web Applications
: Nessus and Nikto
(4) by
Seen
Tutorials
: Need guidance
(7) by
impelse
Malware
: EICAR?
(2) by
SephStorm
Network Pen Testing
: Cracking salted MD5 hash
(4) by
n37sh@rk
CEH - Certified Ethical Hacker
: Passed my C|EH
(3) by
n37sh@rk
Mass Media
: EC-council hacked, irony at his best?
(0) by
j0rDy
Web Applications
: SQL Injection into an INSERT statement.
(6) by
eyenit0
Network Pen Testing
: Solution for sipXtapi INVITE Message CSeq Field Header Remote Overflow
(1) by
m0wgli
Web Applications
: dns
(2) by
H1t M0nk3y
Other
: BSides Boston
(0) by
3xban
Career Central
: InfoSec in Central, FL
(2) by
tturner
Web Applications
: Web vulnerability scanner
(4) by
H1t M0nk3y
EH-Net News Feeds
Latest Additions
Privacy Notice
for TDCC & All Properties
© 2013 The Ethical Hacker Network
Joomla!
is Free Software released under the GNU/GPL License.