Intercept and modify network traffic EASY MITM Attack (Bettercap tutorial)

Поділитися
Вставка
  • Опубліковано 8 сер 2024
  • In this video I’m going to show what a hacker can do if they are on the same network as you. This can happen if you login into a public wifi network like your library. I’m also going to show you how to avoid getting hacked on those networks.
    We are going to cover the following concepts:
    ARP spoofing attack
    DNS spoofing attack
    Network probe.
    Bettercap.
    Educational purposes only!
    Sources:
    www.bettercap.org/
    Chapters:
    0:00 Intro
    0:25 view all devices on network
    1:09 Redirect all traffic to your device: ARP Spoofing
    2:58 Modify DNS requests: DNS poisoning
    4:13 Sniff passwords:
    5:19 Modify website in transit
    8:10 protect yourself encrypt your connection

КОМЕНТАРІ • 47

  • @suruurism
    @suruurism 2 роки тому +3

    Thank you man very useful video.

  • @theerapatpkcn9361
    @theerapatpkcn9361 2 роки тому +1

    I like hacker topic. Thank you sir.

  • @diganta7
    @diganta7 Рік тому +4

    your videos are just mind blowing and informative. But for this one I have a question it is that can we call it or use it as a network jammer? btw nice content

  • @qhwecumexez336
    @qhwecumexez336 Рік тому +1

    thank you very much for this video

  • @epvwmrwpoewerew7776
    @epvwmrwpoewerew7776 Рік тому +1

    usefull video thanks

  • @Javaman92
    @Javaman92 2 місяці тому

    Sourceforge was on that HTTP list! That's crazy

  • @babashehumodu1463
    @babashehumodu1463 Рік тому +1

    Woo very nice sir

    • @babashehumodu1463
      @babashehumodu1463 Рік тому

      Sir I want to chart with you privately and how can I get you sir

  • @MohitKhare
    @MohitKhare 11 місяців тому +1

    thanks

  • @seanknight9808
    @seanknight9808 Рік тому +1

    Hi Nour. At 6:00 when you are injecting Java script code, is that called cross-site scripting? Also, how do you mitigate ARP spoofing attacks? As I understand, ARP is layer 2 protocol.

    • @kaplaendshura2123
      @kaplaendshura2123 Рік тому +1

      that is not XXS. XXS is when java script is interpreted by the browser as javascript of the web page

  • @_marcobaez
    @_marcobaez 4 місяці тому

    Hey bro awesome video! I was able to redirect the websites to apache but it won’t change the urls :/ any tips?

  • @swtstff9401
    @swtstff9401 Рік тому

    I just need to block my location from work so I can work from out of town, but I still need my work to be able to see the work I'm doing. Will VPN block everything from my work?

  • @root3434
    @root3434 Рік тому +9

    You blurred out the MAC addresses of your devices but they are in plain sight after you did a net.prob command 😅 around 0:41sec

  • @relaxed9637
    @relaxed9637 6 місяців тому

    when i type the command net.show no other network appears other than my network just me knowing that i am using two devices same network

  • @mukulrajput5614
    @mukulrajput5614 Рік тому +1

    It doesn't shows exact url shows something google tcp etc

  • @damirshabayev344
    @damirshabayev344 8 місяців тому +1

    set arp.spoofing.targets doesnt give anything, like when i write the line and press enter, nothing shows and it just switches to a new line of code... any advice?

    • @slybandit8117
      @slybandit8117 5 місяців тому +1

      That just sets the targets, you need to start arp.spoof to actually start the process. I recommend trying the GUI which is started by the command http-ui on. It will start the Rest API and you can launch a browser and it should be running on port 80.

  • @timecop1983Two
    @timecop1983Two 6 місяців тому

    did you use a wifi adapter

  • @m82bthompson13
    @m82bthompson13 Місяць тому

    Iam getting mdns request how to change it

  • @PhoenixVids123
    @PhoenixVids123 3 місяці тому

    I am thinking about getting a wifi adaptor compatible with kali and also has a monitoring mode to hack wifi. Is there anything I need to do to turn on monitor mode to dl this hack or can I just go and do the hack and it will do this automatically

  • @docctor1
    @docctor1 Рік тому +2

    thank u teacher

  • @accountaccount3840
    @accountaccount3840 9 місяців тому +6

    Spoofing is working but the victims network is getting cut off ... what's the solution???

  • @proletariennenaturiste
    @proletariennenaturiste 3 місяці тому

    It did something very odd. I entered the IP address of my phone and it instead showed me the things I visited with my computer instead of the phone.

  • @iBen-jz5xz
    @iBen-jz5xz 4 місяці тому +1

    Quite frankly, our data reaches the intended servers by the grace of MITM hackers.
    Am about to build a website with a private admin page to create, manage and perform data analysis on invoices. My very fear was .... What if a hacker modifies an invoice during creation??? I intend to use https (going serverless by the way), and use code verification via email to login into this admin page. I was almost certain the security was tight enough, then i thought of mitm. I was wondering if they can modify https data (like just add gibberish to the encrypted stuff), or even worst, delete it. Yep, thats how i got here, trying to find out how much harm they can cause. Sadly, they can do a whole lot, and with ease. 😔

  • @CertifyEdHub
    @CertifyEdHub Рік тому

    Can Express-VPN hide my location when receiving and sending emails.

  • @huntit4578
    @huntit4578 Рік тому

    While using VPN you only showed us visiting https site, Even if i use http site with a vpn can a hacker read everything or it will be encrypted for them?

    • @nourtechtalk
      @nourtechtalk  Рік тому

      If you are using a VPN the traffick will be safe.

  • @QuadDerrick
    @QuadDerrick Рік тому

    How can you be less worried about who sees your data when using vpn ?
    What ever clients you have in your local network , are much more friendly, and much more easy to detect, than interception of data between you and your vpn, and not to mention all the hops between you and your vpn..
    Do you not think vpn is like just,, a buzzword for 2023 ? a too popular word ? i do

  • @LoneDarkWarrior013
    @LoneDarkWarrior013 Місяць тому

    the problem is,, user doesn,t go to website like that, people usually come from their history that have their cahche active or login from google , this attack don't work 100%

  • @dzultra_real
    @dzultra_real 6 місяців тому

    When I do all of this and turn arp and dns spoof on my wifi on my targeted device (myphone) wont work anymore

  • @Putri-nl2gg
    @Putri-nl2gg Рік тому +1

    Doesn’t work for my devices

    • @kanakalathacb8296
      @kanakalathacb8296 11 місяців тому +1

      I thinks these tools are out or not anymore in this years

    • @SSZ_Khazan
      @SSZ_Khazan 11 місяців тому

      Lol u dudes must be new these tools work fine

  • @DEADCODE_
    @DEADCODE_ Рік тому

    So is it DNS hijacking

    • @nourtechtalk
      @nourtechtalk  Рік тому +1

      Its DNS poinsoning because you can change their records but you are not changing the DNS record on the DNS server itself.

    • @DEADCODE_
      @DEADCODE_ Рік тому

      @@nourtechtalk got it Bro

  • @NishantRajF1
    @NishantRajF1 Рік тому +5

    dns.spoof not working, the websites still open

    • @Creeper4craft
      @Creeper4craft 2 місяці тому

      Do you have a VPN active? Because then it won't work.

  • @AbhishekTiwari-kb6sj
    @AbhishekTiwari-kb6sj Рік тому

    please tell me the reasons why my dns spoofing is not working even any mitm software doesnt detect my visits to youtube, google, facebook, instagram such websites

    • @_marcobaez
      @_marcobaez 4 місяці тому

      might be firewall check if you can ping devices