Afrikaans
Akan
Albanian
Amharic
Arabic
Armenian
Azerbaijani
Basque
Belarusian
Bemba
Bihari
Bosnian
Breton
Bulgarian
Cambodian
Catalan
Cebuano
Cherokee
Chichewa
Chinese (Simplified)
Chinese (Traditional)
Corsican
Croatian
Czech
Danish
Dutch
English
Esperanto
Estonian
Ewe
Faroese
Filipino
Finnish
French
Frisian
Ga
Galician
Georgian
German
Greek
Guarani
Gujarati
Haitian Creole
Hausa
Hawaiian
Hebrew
Hindi
Hmong
Hungarian
Icelandic
Igbo
Indonesian
Interlingua
Irish
Italian
Japanese
Javanese
Kannada
Kazakh
Kinyarwanda
Kirundi
Kongo
Korean
Krio (Sierra Leone)
Kurdish
Kurdish (Soranî)
Kyrgyz
Laothian
Latin
Latvian
Lingala
Lithuanian
Lozi
Luganda
Luo
Luxembourgish
Macedonian
Malagasy
Malay
Malayalam
Maltese
Maori
Marathi
Mauritian Creole
Moldavian
Mongolian
Myanmar (Burmese)
Montenegrin
Nepali
Nigerian Pidgin
Northern Sotho
Norwegian
Norwegian (Nynorsk)
Occitan
Oriya
Oromo
Pashto
Persian
Polish
Portuguese (Brazil)
Portuguese (Portugal)
Punjabi
Quechua
Romanian
Romansh
Runyakitara
Russian
Samoan
Scots Gaelic
Serbian
Serbo-Croatian
Sesotho
Setswana
Seychellois Creole
Shona
Sindhi
Sinhalese
Slovak
Slovenian
Somali
Spanish
Spanish (Latin American)
Sundanese
Swahili
Swedish
Tajik
Tamil
Tatar
Telugu
Thai
Tigrinya
Tonga
Tshiluba
Tumbuka
Turkish
Turkmen
Twi
Uighur
Ukrainian
Urdu
Uzbek
Vietnamese
Welsh
Wolof
Xhosa
Yiddish
Yoruba
Zulu
Hello everybody and welcome back.
And this is the last part of the printing section where we will cover two tools which are basically
almost the same but there are slight differences between them.
The first one it is called the.
So if we just type here on your people you will notice that nothing will happen since we didn't specify
any upset.
But for more information we will just take your take.
Does this help to provide us with the simple usage of this comment.
Now you can use any website for this view.
It is basically not legal.
This is just a tool not to scan the DNS deck basically stands for Domain Internet copper and with it
you can basically try one of the attacks which is called The Zone transfer now zone transfer.
It is basically it uses the replication for primary and secondary DNS servers in order to be synchronized.
Basically the secondary server for example ask for data for zone from primary server in primary server
answers with copy of database which is IP addresses and name of hosts.
Now from configuration of the DNS can potentially allow anyone to request to request a zone transfer.
So with this tool we will try out the zone transfer on some of the bigger web sites which of course
won't work.
But on the smaller ones it could possibly be mis configuration in the DNS so that these don't transfer
is enabled now zone transfer is happening all DP on Port 53 and not over UDP at the port of it three
for the DNS.
So if you just type here like Google Netcom you will notice that it would give us a bunch of the informations
about the Google dot com.
So for example as we could see this is the DNS query right here.
The and is right here stands for named server and you can see that there are four of them the A basically
represents the IP address the one a stands for the IP for IP address and for a stands for the IP B6
IP address we can see of some of the other options which is the server that it used to query which is
our own router on port if the three as you can see the usual DNS port will be port three or UDP and
by router IP address is 192.
That 168 that one that one.
We can see that the one query we got one answer authority for which is these four servers right here
an additional nine I believe is referring to this one right here even though there is eight once but
these are basically the same servers just with a different IP address not different IP address different
format of IP address.
This one is as you said IP before and this one right here is by P6 IP address so that is the basic use
of the command.
You can you you can use it to find out some of the information about the domain.
But if you for example want to try out the zone transfer you can do it like this for example.
So just type your dick and then you type your a exe as R which stands for the zone transfer.
Now we can use for example Facebook dot com and we can use the other server for example a dot unless
the Facebook dot com.
And if we try to type this right here you will not destroy a few seconds it will basically prompt us
with some transfer failed since the Facebook.
Since Facebook didn't miss configure the DNS so do some transfer tech cannot be done on Facebook.
Now there may be other smaller sites it could be possibly vulnerable to the same transfer attack but
we won't be trying to find them at the moment.
This is just one of the tools that you can use in order to find out if it is vulnerable.
But let me just show you another tool right here which is called Leon's DNS enum which is also installed
in the clinics.
So basically it is the same as the Digg tool is a free type right here DNS venom and Google dot com.
It will provide us with similar information as we can see hosts address Google dot com which is a sense
for the IP before and then it will print us the IP address the IP before address of Google dot com.
And right here it is trying to find out somebody's named servers of Google as we saw before.
There should be four of them
now this might take a few seconds.
And sometimes it's actually just times out in my time out right now.
But we'll see in a few seconds I will come back when this finishes so we can see it finished right here
and it says the eagle dot com and its record where it failed.
It turned out so we won't be trying that anymore.
I just want to show you that you can use that tool as well if you want to but that would be it for e-book
printing section.
So let us just recap what we covered.
We covered some of the tools that we use to gather as much information as we can about our targets.
So for example these two we covered in order together some of the information from their server or their
DNS.
And basically we also tried one of the attacks which is on transport which of course didn't work on
Facebook but as he said it might work on some of the other Web sites and we also covered these.
Who is.
We also covered the shutdown Web site.
We covered the harvester in this lecture or in the previous lecture where I showed you that it sometimes
can't actually work.
So we gather some of the e-mails from it.
We also covered the NICTA which is a big mental.
You should search more about it if you want to it might be useful later on.
So that would be about it for the foot printing section.
And with this section we basically finished the beginner section and we enter the Intermediate section
where we will start off with creating our wearable machine which we will use in order to run our scans
and attacks since it is not legal for us to attack our machine that we do not own.
We will create a virtual machine which we can attack.
Now you might have heard of that little machine is called that is portable and I will show you in the
next tutorial how to install it.
And basically we will start covering one of the bigger tools in the clinics.
And one of the tools that you will lose a lot which is called The and but more about that in the scanning
section and I hope I will see you there.
Take care.
Can't find what you're looking for?
Get subtitles in any language from opensubtitles.com, and translate them here.