<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>The Running Tally &#187; BT4</title>
	<atom:link href="http://www.TheRunningTally.com/tag/bt4/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.TheRunningTally.com</link>
	<description>My daily finds on technology, gadgets, and random crap!</description>
	<lastBuildDate>Mon, 22 Mar 2010 15:35:17 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=abc</generator>
		<item>
		<title>Packet Injection From VMWare With BT4</title>
		<link>http://www.TheRunningTally.com/2009/05/packet-injection-from-vmware-with-bt4/</link>
		<comments>http://www.TheRunningTally.com/2009/05/packet-injection-from-vmware-with-bt4/#comments</comments>
		<pubDate>Tue, 05 May 2009 05:50:30 +0000</pubDate>
		<dc:creator>Zac</dc:creator>
				<category><![CDATA[Gadget]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Software]]></category>
		<category><![CDATA[Technology]]></category>
		<category><![CDATA[BackTrack]]></category>
		<category><![CDATA[BT4]]></category>
		<category><![CDATA[FON]]></category>
		<category><![CDATA[MacBook]]></category>
		<category><![CDATA[Packet Injection]]></category>
		<category><![CDATA[VMWare]]></category>

		<guid isPermaLink="false">http://www.TheRunningTally.com/?p=290</guid>
		<description><![CDATA[I have a MacBook that I LOVE. To use it as a penetration testing platform I installed all kinds of software, but mostly just found myself using BackTrack. The only thing I hated was having to reboot to Backtrack to do packet injection, and a few other wireless tools. that is till I found this [...]]]></description>
			<content:encoded><![CDATA[<p><img src="http://www.TheRunningTally.com/wp-content/uploads/2009/05/bt3.jpg" alt="bt3.jpg" border="0" width="460" height="" /></p>
<p>I have a MacBook that I LOVE.  To use it as a penetration testing platform I installed all kinds of software, but mostly just found myself using BackTrack.  The only thing I hated was having to reboot to Backtrack to do packet injection, and a few other wireless tools.  that is till I found this baby:</p>
<p><img src="http://www.TheRunningTally.com/wp-content/uploads/2009/05/fon.gif" alt="fon.gif" border="0" width="170" height="180" /></p>
<p>This is the <a href="https://shop.fon.com/FonShop/shop/US/ShopController?view=product&#038;product=PRD-001">Fonera</a> by <a href="http://www.fon.com/en/">Fon</a>.  It is currently running for $29, but you can usually find some decent coupon codes, and you can also pair it up with a <a href="https://shop.fon.com/FonShop/shop/US/ShopController?view=product&#038;product=PRD-ANT01">better antenna</a> for better range. </p>
<p>So why on earth do you want this router, and how does this in any way correlate with packet injection?  Well you have to start by flashing the ROM to put a different firmware on it.  While not the easiest task in the world, pretty much all you have to do is follow directions.  Here is the guide to put <a href="http://www.fonerahacks.com/index.php/Tutorials-and-Guides/Full-Legend-Flash-Guide.html">Legend</a> firmware on the Fonera.</p>
<p>The Legend firmware comes with the <a href="http://aircrack-ng.org/doku.php">Aircrack-ng</a> suite of tools.  Including a very special tool we will use called <a href="http://aircrack-ng.org/doku.php?id=airserv-ng">Airserv-ng</a>.  Best described by the guys that made it:</p>
<blockquote><p>Airserv-ng is a wireless card server which allows multiple wireless application programs to independently use a wireless card via a client-server TCP network connection. All operating system and wireless card driver specific code is incorporated into the server. This eliminates the need for each wireless application to contain the complex wireless card and driver logic. It is also supports multiple operating systems. </p>
</blockquote>
<p>This is allowing you to use the Fonera for it&#8217;s great wireless transceiver, and the host machine as the number cruncher.  This allows a machine with no wireless connection, non-compatible, or virtual machine to use the Fonera as it was an internal card.  Which works great for running BT4 in a VMWare session and injecting from there.  Usage is given on the <a href="http://aircrack-ng.org/doku.php?id=airserv-ng">Airserv-ng</a> page:</p>
<blockquote><p>At this point you may use any of the aircrack-ng suite programs on the second system and specify “192.168.0.1:666” instead of the network interface. 192.168.0.1 is the IP address of the server system and 666 is the port number that the server is running on. Remember that 666 is the default port number.</p>
<p>On the second system, you would enter “airodump-ng 192.168.0.1:666” to start scaning all the networks. You may run aircrack-ng applications on as many other systems as you want by simply specifying “192.168.0.1:666” as the network interface. </p>
</blockquote>
<p>Now I know what some of you are saying, &#8220;This is great, but not a useful mobile application.&#8221;  Don&#8217;t worry baby bird, I have you taken care of, you really think I would leave you hanging like that?  That&#8217;s not my style. (Thanks DT)</p>
<p><img src="http://www.TheRunningTally.com/wp-content/uploads/2009/05/batpack.jpg" alt="batpack.jpg" border="0" width="345" height="235" /></p>
<p>This 4 AA battery pack from Radio Shack, with the &#8220;L&#8221; size adapter, and even the crappy over priced batteries will set you back less than $10.  So now you have a complete mobile solution for doing what ever you would like with wifi.</p>
<p>This should be all the info you need to complete this setup.  If you get stuck anywhere, or have other questions, please post them in the comments area below and I will do my best to help you out.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.TheRunningTally.com/2009/05/packet-injection-from-vmware-with-bt4/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Getting Vmware Tools VMHGFS working on BackTrack 4 Beta</title>
		<link>http://www.TheRunningTally.com/2009/04/getting-vmware-tools-vmhgfs-working-on-backtrack-4-beta/</link>
		<comments>http://www.TheRunningTally.com/2009/04/getting-vmware-tools-vmhgfs-working-on-backtrack-4-beta/#comments</comments>
		<pubDate>Fri, 17 Apr 2009 03:44:19 +0000</pubDate>
		<dc:creator>Zac</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Software]]></category>
		<category><![CDATA[BackTrack]]></category>
		<category><![CDATA[BT4]]></category>
		<category><![CDATA[LAB]]></category>
		<category><![CDATA[VMWare]]></category>

		<guid isPermaLink="false">http://www.phenotyne.com/blog/?p=31</guid>
		<description><![CDATA[I came across this the other day on the BT4 beta blog. It is really handy when running BT4 in a VMWare session where you may have tools, or store logs on the host machine Getting Vmware Tools VMHGFS working on BackTrack 4 Beta: &#8220;The stock Vmware Tools compile almost perfectly on BackTrack 4, with [...]]]></description>
			<content:encoded><![CDATA[<p>I came across this the other day on the BT4 beta blog.  It is really handy when running BT4 in a VMWare session where you may have tools, or store logs on the host machine </p>
<blockquote>
<p><a href="http://backtrack4.blogspot.com/2009/04/getting-vmware-tools-vmhgfs-working-on.html">Getting Vmware Tools VMHGFS working on BackTrack 4 Beta</a>: &#8220;The stock Vmware Tools compile almost perfectly on BackTrack 4, with the exception of VMHGFS, which provides file sharing between the guest and host machine.</p>
<p><a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://1.bp.blogspot.com/_rar6qXehJDE/SeXYWj27xDI/AAAAAAAAAEw/T4HuMbuLlYc/s1600-h/snapshot8.png"><img style="margin: 0px auto 10px; display: block; text-align: center; cursor: pointer; width: 400px; height: 222px;" src="http://1.bp.blogspot.com/_rar6qXehJDE/SeXYWj27xDI/AAAAAAAAAEw/T4HuMbuLlYc/s400/snapshot8.png" alt="" id="BLOGGER_PHOTO_ID_5324900016529851442" border="0" /></a><br />The compile error looks like this :</p>
<pre class="alt2" dir="ltr" style="border: 1px inset ; margin: 0px; padding: 6px; overflow: auto; width: 380px; height: 82px; text-align: left;">CC [M]  /tmp/vmware-config0/vmhgfs-only/module.oCC [M]  /tmp/vmware-config0/vmhgfs-only/page.o/tmp/vmware-config0/vmhgfs-only/page.c: In function ‘HgfsDoWriteBegin’:/tmp/vmware-config0/vmhgfs-only/page.c:763: warning: ISO C90 forbids mixed declarations and code/tmp/vmware-config0/vmhgfs-only/page.c: In function ‘HgfsWriteBegin’:/tmp/vmware-config0/vmhgfs-only/page.c:867: error: implicit declaration of function ‘__grab_cache_page’/tmp/vmware-config0/vmhgfs-only/page.c:867: warning: assignment makes pointer from integer without a castmake[2]: *** [/tmp/vmware-config0/vmhgfs-only/page.o] Error 1make[1]: *** [_module_/tmp/vmware-config0/vmhgfs-only] Error 2make[1]: Leaving directory `/usr/src/linux-source-2.6.28.1'make: *** [vmhgfs.ko] Error 2make: Leaving directory `/tmp/vmware-config0/vmhgfs-only'Unable to build the vmhgfs module.
</pre>
<p>A quick <a href="http://bugs.gentoo.org/attachment.cgi?id=180008">Google search</a> brought me to a vmhgfs patch that fixes this compile error.<br />To fix this:</p>
<p>0) Extract kernel sources and build dependancy scripts!<br />1) Start the Vmware tools install<br />2) Copy the vmware tools to /tmp<br />3) Replace the vmhgfs package with the patched one and install vmware tools</p>
<p>
<pre class="alt2" dir="ltr" style="border: 1px inset ; margin: 0px; padding: 6px; overflow: auto; width: 380px; height: 82px; text-align: left;">root@bt# tar zxpf VMwareTools-7.9.3-159196.tar.gzroot@bt# <span style="font-weight: bold;">cd vmware-tools-distrib/</span>root@bt# <span style="font-weight: bold;">cd lib/modules/source/</span>root@bt# <span style="font-weight: bold;">rm vmhgfs.tar</span>root@bt# <span style="font-weight: bold;">wget www.offensive-security.com/vmhgfs.tar</span>root@bt# <span style="font-weight: bold;">cd /tmp/vmware-tools-distrib/</span>root@bt# <span style="font-weight: bold;">./vmware-install.pl</span></pre>
<p>Don&#8217;t forget to enable file sharing in VMWare after installing the tools.</p>
<p>After a restarting the vmware-tools service (or a reboot), you should see your share with a &#8216;mount&#8217; command.</p>
<p>
<pre class="alt2" dir="ltr" style="border: 1px inset ; margin: 0px; padding: 6px; overflow: auto; width: 380px; height: 82px; text-align: left;">root@bt#<span style="font-weight: bold;"> mount |grep hgfs</span>

.host:/ on /mnt/hgfs type vmhgfs (rw,ttl=5)

root@bt# <span style="font-weight: bold;">ls -l /mnt/hgfs/</span>

total 1

drwxr-xr-x 1 501 dialout 204 2009-04-12 11:48 bt4

root@bt#
</pre>
<div class="blogger-post-footer"><img width='1' height='1' src='http://res1.blogblog.com/tracker/6195203919222302636-5761920050744858437?l=backtrack4.blogspot.com'/></div>
<p>&#8220;</p>
<p></BlockQuote></p>
<p>(Via <a href="http://backtrack4.blogspot.com/2009/04/getting-vmware-tools-vmhgfs-working-on.html">Back|Track LiveCD Blog</a>.)</p>
]]></content:encoded>
			<wfw:commentRss>http://www.TheRunningTally.com/2009/04/getting-vmware-tools-vmhgfs-working-on-backtrack-4-beta/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
