Metasploit on the iPod Touch - hacking an xp sp2 host.

Loading...

Sign in or sign up now!
Alert icon
Upgrade to the latest Flash Player for improved playback performance. Upgrade now or more info.
10,092
Loading...
Alert icon
Sign in or sign up now!
Alert icon

Uploaded by on May 13, 2009

Jailbroken iPod Touch running metasploit - which is available in the cydia package manager.

This video assumes that the watchers have some knowledge about what metasploit is, how to jailbreak an iphone or ipod touch.

Using msfconsole is impractical - scripting custom attacks using msfcli would be a better idea. This is just a demonstration that yes, it does in fact work.

  • likes, 2 dislikes

Link to this comment:

Share to:

Uploader Comments (vissago)

  • -

    -

    AWESOME

    Could you write which 'exploit' and 'payload' used???

    -

    -

  • I used the ms08-067 exploit (which I mention), and the payload was a reverse bindshell.

  • I would like to know how you ssh'd into the terminal command on your iPod/iPhone

    Seb

  • One has to jailbreak the device, then install openssh on it (both steps should be fairly trivial and fast) then connect it to your wireless home/lab/etc network. Once its on your lan, simply ssh into it. The default ssh password is 'alpine', however you should probably change that since all the hacker cons I go to, we search for default root pw's on iphone/itouch devices.

see all

All Comments (23)

Sign In or Sign Up now to post a comment!
  • @Lorre852 you need an older version of ruby

  • @pepegodines2 windows/smb/ms08_067_netapi

  • How would i do this on an ipad

  • Have a little problem while loading up mfsconsole. It says "Symbol not found: __OSSwapInt32 Referenced from /usr/lib/ruby/1.9.1/arm-darwin­9/socket.bundle

    Any ideas how to fix this?

  • u don`t need to connect a keyboard,install "terminal" from cydia and you`ll got a shell+virtual keyboard.

  • Is there a way to get autopwn working on it? I tried to install the sqlite3 gem but it doesn't let me.

  • @chainz007p yo cydia did a update of Ruby witch fucks it up

    if you want to get metasploit you need to have ssh and follow

    this tutorial on how to fix socket bundle

  • i have to demonstrate metasploit on the ipod touch as my project.i have my ipod-touch jailbroken,installed metasploit but most of the commands i type says command not found....can u help me out please

  • This is awesome man thnx, but I tried to install through Cydia and Metasploit isn't coming up in my search. I did it through Rock but in Terminal I try to run msfconsole but I get an error. I have Ruby installed and all. So can you please help me out.

  • The new nexus one can run metasploit pretty nicely :). Then again it is running the "1000 MHz Qualcomm QSD 8250" so um.. ya. Thanks for the video. You know any latest exploit for shelling in windows 7?

Loading...

Alert icon
0 / 00Unsaved Playlist Return to active list
    1. Your queue is empty. Add videos to your queue using this button:
      or sign in to load a different list.
    Loading...Loading...Saving...
    • Clear all videos from this list
    • Learn more