Themenabend/Firewall Piercing: Unterschied zwischen den Versionen

Aus C3D2
Zur Navigation springen Zur Suche springen
K (IP-protocols = Internet Protocol protocols)
(Stegtunnel)
Zeile 48: Zeile 48:
** different networking protocols
** different networking protocols
** E-Mail tunnel
** E-Mail tunnel
** [[http://www.synacklabs.net/projects/stegtunnel/ Stegtunnel]]





Version vom 25. November 2004, 22:14 Uhr

Caldrin Alien8
ICMP-Tunnel Firewall Intro (Ausarbeitung, Vortrag zusammen)
hiding stuff in ip headers ip and ssh tunnel
http,https,http-header
DNS-tunnel (mit Verweis auf DNS-Vortrag)

Contents

  • short Intro to Firewalls
    • Packetfilter
      • stateless
      • stateful
      • NAT (IP header recalculation, CRC checks ...)
    • Application Layer Gateway
  • Basics
  • nc / cryptcat
  • the art of hiding (backpacking your data)
    • Tunnel
      • ip tunnel (incl. Why TCP over TCP is a bad idea)
      • ssh tunnel
  • Simple Examples of tunnel
    • HTTPS-Tunnel (connect)
    • Http-Tunnel (GET / POST)
    • Web-Shell
  • Advanced Examples
    • HTTP header
    • ICMP-Tunnel
    • DNS-Tunnel
    • hiding stuff in ip headers
    • different networking protocols
    • E-Mail tunnel
    • [Stegtunnel]


more to come ...

Storyline

Introduction

  • Welcome ... Thanx for comming ... In Aug we did TA for c3d2 about Firewalls, Got interested in that topic or some joke
  • What is a firewall?
    • Packetfilter
      • stateless
      • stateful
      • NAT (IP header recalculation, CRC checks ...)
    • Application Layer Gateway

If you believe in those systems giving you the perfect protection: Don't waste your time! Good bye!

  • What we are going to show:
    • To circumvent firewalls one has to be creative ... find a hole in the set-up, exploit it! Enjoy!
    • We show you:
      • some basic techniques and tools
      • some examples