Seems like a good way to bypass certain host restrictions...say a host that doesn't allow for terminal access on me could use Chrome to download this extension granted they have the rights to do so.
@07:37 You can prevent being stopped by your ssh client to confirm the fingerprint of the remote ssh server's host key, in case this key hasn't yet been written to your ssh client's known_hosts file, if you provide the following two options when initiating your ssh session. This also avoids that your ssh client appends the remote host's host key to its known_hosts file, once its fingerprint got "confirmed". But beware, that being asked by your client to verify an unknown host key's fingerprint is a security measure to prevent a MitM attack, which you simply suppress by these two additional options. e.g. mybox $> ssh -o stricthostkeychecking=no -o userknownhostsfile=/dev/null -l rlogin rhost If this is too much typing (but we have a shell history anyway) you can add a new host entry in your ssh client's config file in ~/.ssh/config Therein you would probably prefer the CamelCase of ssh options like listed in man ssh_config for better readability. But as you can see from my example line above, the case of the options doesn't matter.
Please make a video on which browser to use chrome Vs Firefox for hackers. And provide details of the extensions you suggest and use as a hacker. I love this channel.
forgive me if I sound foolish.. but can you find devices using nmap when using a chromebook'? using the commands didn't work for me, I'm assuming they would if using windows, so do I just need to get better with crosh commands?
Hi, I want to use this instead of putty, but my company uses a proxy ip to connect to internet so where shall I mention in this extension the proxy ip and port number to get a successful connection to aws EC2.
I always have a problem with this application and Chrome VNC both giving the same error . Both say I dont have the NaCl plugin or something along those lines. I went into chrome://flags and I enabled everything related to this supposed "experimental feature" and still no good. Also ARC Welder never works , reallly pisses me off I wanted to mention another chrome app for SSH that always works and also has a suite of other tools that come with it. The name is SSHGate , so you can establish local and remote SSH connections, and my favorite part you can use X11 forwarding right from the browser! So I can pop open Virtualbox from a remote computer straight from the chrome browser as if I was using an X environment. It also comes with Video Editor, Video Convert, Photo Editor, Audio Editor, DOC editor , and PDF editor all in the sidebar. Another words its very useful.
So, let me get this straight. In the google chrome search bar you put "ssh", then you hit tab, then you put the devices username that you want to connect to, then you put the "@" symbol and then you put the devices IP address? So it would look like this for an example "Secure Shell | root@192.168.1.8", right?
It's good to know about this extension, thank you. I'm now trying to think of an occasion when it would be used. The user requires privileges to install chrome and extensions, so why opt for this over PuTTY on windows or bash on Linux? Can someone suggest a scenario when this extension could solve a problem?
@@NullByteWHT Thank you for your reply. I wasn't sure if Chrome execution rights implied extension installation privileges by default, but after a quick search it appears this may be the case. Therefore, I wonder if this opens up the possibility of installing more overtly malicious extensions on publicly accessible boxes. Hmm...
Forgive my lack of superior network knowledge, but I think I am in the right place. Basically I need to access an old cell phone that will be connected to a public network via wifi, (long agreement to agree to), from a new cell using mobile data. OR, both connected to the same network via wifi. How do I keep my activity private and unaccessible to the sysadmin? Possible? There has to be a way...
91 viewers 😥i think i would be the 1st.... . Bro can u pls make a video on wpa hacking and other hacking using wifi card😂 wifi hacking which is u r 1st video 😘
@@williokine6014 i tried but wps routers are getting timed out... I tried reaver too but failing to do so.... I used evil twin attack nut it wont work..... In worst case i have 2 networks near my house and i can't even capture handshakes or pmkid 😬😥
Any coaching on how to get this client to import and actually use your private keys? Kind of odd that this is so difficult. Unless I'm missing something obvious.
Thanks for Secure Shell Extension. Is there a way to launch the chrome extension for a ssh address by clicking an html button, something like making it possible to connect to a client by clicking on a button which links to: chrome-extension://iodihamcpbpeioajjeobimgagajmlibd/html/nassh.html?sshaddress=someuser@192.168.0.7 The idea is to avoid having to enter the ssh details after clicking the button..
is there any way to paste the code into SSH? I am trying to access AWS services, for that, I need to paste the keys. but here there is no options for paste something. any help?
Can u help...can u use termux as browser...if u know the ip address can u jus put that in. N also....how do I get password to go forward ..android to andriod ?? Not having any luck with any exploits at all
If you’re already on the network, why not just pull up command and type user info and it’ll tell you all the devices that are connected to it and their IP addresses way easier like that’s given info like if you’re already on the network it ain’t nothing I need to find an IP addresson an unknown scammer stole money from me not sure you could use some help getting it back. I’ve already got a plan I just don’t know how to do it.
I know that you have a Mac so you're going to have a different looking command prompt than me since I'm running Windows 10 so mine will of course look totally different from yours but why does yours show the results and mine doesn't because this is all that I get when I run the same command that you do. >>>> "C:\Users\K4LI_>nmap -p 22 192.168.0.0/24 Starting Nmap 7.80 ( nmap.org ) at 2020-03-27 22:05 Central Daylight Time Nmap done: 256 IP addresses (0 hosts up) scanned in 207.54 seconds C:\Users\K4LI_>"
@@NullByteWHT I was referencing "NTC" and his less than stellar commentary. .... you remind me of a much younger me, "what happens if we do this, well shit that was disastrous, let's not do that again!" Mounting tape drives just as the system operator secures the spool to the spindle but before he has looped it through the heads and on to another reel..... ziiiippppppp two thousand feet of tape in the floor and my name echoing off the computer labs ceilings and hallways..... good days those! Stay smart my friend.
so why do I need a google spyware extention when all ya gotta do is hit crtl+alt+T and enter ssh root@192.168.x.x and giver shit all day... ?? I legit would never trust a browser extention with SSH credentials to my servers LOLOL huge security leak bud. Show us the source code..
You know what I love about this channel? The guy(s) is so respected, that there are no scammers promoting fake hackers in the comments.
Even as an old hat in HPAVC, your content is still entertaining and informative!! Thanks brother for your work, and keep it up!
I've been trying to figure out how to use this extension for weeks, thank you so much
Seems like a good way to bypass certain host restrictions...say a host that doesn't allow for terminal access on me could use Chrome to download this extension granted they have the rights to do so.
Thank you Corey & your team. The cyber security information you teach is invaluable beyond words. Cheers. Best wishes in 2019 & beyond.
Kody, and you're welcome!
As always, thanks! This channel is worth a million$
No its worth $5,000,000,000,000,000,000,000,000,000,000,000,000,000,000,000,000,000,000,000
More
@07:37 You can prevent being stopped by your ssh client to confirm the fingerprint of the remote ssh server's host key, in case this key hasn't yet been written to your ssh client's known_hosts file, if you provide the following two options when initiating your ssh session. This also avoids that your ssh client appends the remote host's host key to its known_hosts file, once its fingerprint got "confirmed".
But beware, that being asked by your client to verify an unknown host key's fingerprint is a security measure to prevent a MitM attack, which you simply suppress by these two additional options.
e.g.
mybox $> ssh -o stricthostkeychecking=no -o userknownhostsfile=/dev/null -l rlogin rhost
If this is too much typing (but we have a shell history anyway) you can add a new host entry in your ssh client's config file in ~/.ssh/config
Therein you would probably prefer the CamelCase of ssh options like listed in man ssh_config for better readability.
But as you can see from my example line above, the case of the options doesn't matter.
ssh-keygen -R (device ip address) will reset the ssh key save you going into a nano file
damn I love that intro music. Never gets old
Another great video... Great videos are pretty common in this channel...!
SSH should now be able to run directly from Windows 10 PowerShell on the latest Windows update without doing anything before hand
the intro made me an hacker!
I actually used this to control a rpi with an old chromebook once!
Amazing! I didnt realize i could get more information from this channel thank you so much kody love from india🤩😍
Can you please make videos on honey pots
lol funny how i was just trying to find a good solution for this, looks like I found it thanks
Since Microsoft released the optional openssh extension for powershell, PuTTY is dead to me. Finally, freedom from that GUI!
Another unique and bang-ON content. Keep it up!
This is cool for another reason and that is you can have tabbed SSH sessions without a 3rd party app.. Sweet.
Please make a video on which browser to use chrome Vs Firefox for hackers. And provide details of the extensions you suggest and use as a hacker. I love this channel.
There is only answer for that: FF.
@@tripplefives1402 you're on good path, but best ones use telnet only to browse 🙃
This is the correct answer
@@NullByteWHT tutorial web browsing using telnet? i've been tinkering with it, and it's not as easy as lynx.
dude your browser needs it's own Virtual Machine with all those extensions lol
damn I didn’t realise what people meant about you not blinking, but paying attention now... BLINK GOD DAMN IT
forgive me if I sound foolish.. but can you find devices using nmap when using a chromebook'? using the commands didn't work for me, I'm assuming they would if using windows, so do I just need to get better with crosh commands?
Great video as always
Hey which kind of terminal are you using
Pretty cool ! , If you please answer my question which asked on your previous spoofing video ?
Nice extension by itself. But check with tcpdump if chrome will send your login data to Big Brother :-)
lol this Chrome has lot of useful stuff, tell me Null Byte can you make a video how to compile and add components into chrome or firefox itself?
Great Video. Btw. I'm pretty sure that Windows 10 has native Ssh Support.
Hi, I want to use this instead of putty, but my company uses a proxy ip to connect to internet so where shall I mention in this extension the proxy ip and port number to get a successful connection to aws EC2.
I always have a problem with this application and Chrome VNC both giving the same error . Both say I dont have the NaCl plugin or something along those lines. I went into chrome://flags and I enabled everything related to this supposed "experimental feature" and still no good. Also ARC Welder never works , reallly pisses me off
I wanted to mention another chrome app for SSH that always works and also has a suite of other tools that come with it. The name is SSHGate , so you can establish local and remote SSH connections, and my favorite part you can use X11 forwarding right from the browser! So I can pop open Virtualbox from a remote computer straight from the chrome browser as if I was using an X environment. It also comes with Video Editor, Video Convert, Photo Editor, Audio Editor, DOC editor , and PDF editor all in the sidebar. Another words its very useful.
Is there a telnet equivalent? Also can you launch a ssh session with a url?
So, let me get this straight. In the google chrome search bar you put "ssh", then you hit tab, then you put the devices username that you want to connect to, then you put the "@" symbol and then you put the devices IP address? So it would look like this for an example "Secure Shell | root@192.168.1.8", right?
hey have u heard about Iswich... i would love to c a vid about iphone bypass though fake server or iswitch. If its even a possibility
It's good to know about this extension, thank you. I'm now trying to think of an occasion when it would be used. The user requires privileges to install chrome and extensions, so why opt for this over PuTTY on windows or bash on Linux? Can someone suggest a scenario when this extension could solve a problem?
Without reviewing the source code, it could cause you a lot more problems than it can solve LOL
You have access to a library or any public computer and want to SSH into something.
@@NullByteWHT Thank you for your reply. I wasn't sure if Chrome execution rights implied extension installation privileges by default, but after a quick search it appears this may be the case. Therefore, I wonder if this opens up the possibility of installing more overtly malicious extensions on publicly accessible boxes. Hmm...
شكرا لك يا استاذ
U're the BEST, Kody 😎
Thanks for your great work !
Forgive my lack of superior network knowledge, but I think I am in the right place. Basically I need to access an old cell phone that will be connected to a public network via wifi, (long agreement to agree to), from a new cell using mobile data. OR, both connected to the same network via wifi. How do I keep my activity private and unaccessible to the sysadmin? Possible? There has to be a way...
No laughing. 🤪
Will it allow multiple tabs like MobaXTerm ?
91 viewers 😥i think i would be the 1st....
.
Bro can u pls make a video on wpa hacking and other hacking using wifi card😂 wifi hacking which is u r 1st video 😘
sankula atchuth you can use wifite for wps wpa hcking
@@williokine6014 i tried but wps routers are getting timed out... I tried reaver too but failing to do so.... I used evil twin attack nut it wont work..... In worst case i have 2 networks near my house and i can't even capture handshakes or pmkid 😬😥
@@williokine6014 but i hacked 4 to 5 networks out of my area. I captured handshakes and cracked them with hashcat and mask attacks
sankula atchuth did you use wifite or mdk3?
This is amazing!!
Any coaching on how to get this client to import and actually use your private keys? Kind of odd that this is so difficult. Unless I'm missing something obvious.
Yeah you can follow our guide here: nulb.app/x33vl
Which device did you login.. ??
Best again!
thank you but as every time i ask how do we know the password
i think its your wifi password
How to find the honey pots attached to my SSH as it seems to be happening on my machine on Google cloud that I have made , please
Thanks for Secure Shell Extension. Is there a way to launch the chrome extension for a ssh address by clicking an html button, something like making it possible to connect to a client by clicking on a button which links to: chrome-extension://iodihamcpbpeioajjeobimgagajmlibd/html/nassh.html?sshaddress=someuser@192.168.0.7
The idea is to avoid having to enter the ssh details after clicking the button..
Why does it say "Skickar" in your terminal? Do you know Swedish? :D Cool video!
That's a username
@@NullByteWHT That means sending in swedish.
Thank you very much for sharing, great video!!!
You use so many extensions in chrome.. ! Is it safe to install extension.. same with SSH??
You can also use it with Firefox if you don't like chrome
Knowledge gaining
is there any way to paste the code into SSH? I am trying to access AWS services, for that, I need to paste the keys. but here there is no options for paste something. any help?
right click lol
That’s all fine and well but I don’t want to just work whatever is out there. I’m looking to find and access something specifically
Can u help...can u use termux as browser...if u know the ip address can u jus put that in. N also....how do I get password to go forward ..android to andriod ?? Not having any luck with any exploits at all
If the remote computer is locked, will this still work? I'll do some tests on that now :)
Yes? How did the testing go?
i have 1 question though 1st what if you dont know the password and second can you teach us how to make a rubber ducky. if possible thankyou
My friend
yes
connect to host port 22: Connection refused
Can anyone help me out???
Do u know the solution to this Thanks in advance if u have can u guide me?
Awesome video...👍👍
How i can connect adb over ssh?
"Loading wasm program... «««This is in alpha -- see" it doesnt work it says connexion...
Also if you could start making tutorials on CCNA ? As in where to learn and what to learn ? That'd be great help. Thanks
If you’re already on the network, why not just pull up command and type user info and it’ll tell you all the devices that are connected to it and their IP addresses way easier like that’s given info like if you’re already on the network it ain’t nothing I need to find an IP addresson an unknown scammer stole money from me not sure you could use some help getting it back. I’ve already got a plan I just don’t know how to do it.
Still can't stop using PuTTY, what can I say? Old habits die hard.
that was awesome!!
So how do you get the password to the device your trying to connect to?
"""YO""GOOD BOY
I know that you have a Mac so you're going to have a different looking command prompt than me since I'm running Windows 10 so mine will of course look totally different from yours but why does yours show the results and mine doesn't because this is all that I get when I run the same command that you do. >>>>
"C:\Users\K4LI_>nmap -p 22 192.168.0.0/24
Starting Nmap 7.80 ( nmap.org ) at 2020-03-27 22:05 Central Daylight Time
Nmap done: 256 IP addresses (0 hosts up) scanned in 207.54 seconds
C:\Users\K4LI_>"
How to use social engineering outside network can anyone tell Please
I need Ur help bro !!! Can u guide me plzz ... I want to contact u personally !!!
Why would you want Google involved in your private devices ??
How can I comment on Twitter you blocked me before I could send one tweet.
Not working on Windows, please send another which uses windows
it says connection refused
I have nothing to say. I'm regular. XD
Thank you I never you can hack on chrom
Man how to get password of ip
blink
please
Does this work on Firefox? I don't want to use Chrome. Ever.
Yep, it does, there is an extension for this
👌
Can we hack wpa3 pdotocol
you da real mvp... dude... windows... seriously....windows....god dammit... horray chrome extension..
Coool❤️❤️
Please try to be less speedy
You can adjust the playback speed on TH-cam to accommodate your antiquated 9600 baud rate.
thank you Jim
@@NullByteWHT I was referencing "NTC" and his less than stellar commentary. .... you remind me of a much younger me, "what happens if we do this, well shit that was disastrous, let's not do that again!" Mounting tape drives just as the system operator secures the spool to the spindle but before he has looped it through the heads and on to another reel..... ziiiippppppp two thousand feet of tape in the floor and my name echoing off the computer labs ceilings and hallways..... good days those! Stay smart my friend.
First one to like and comment
Hack fbi
hrmmmm
except like OVH ssh keys if your using chrome they could back door it
Hack fbi internet
so why do I need a google spyware extention when all ya gotta do is hit crtl+alt+T and enter ssh root@192.168.x.x and giver shit all day... ?? I legit would never trust a browser extention with SSH credentials to my servers LOLOL huge security leak bud. Show us the source code..
Because not everyone is running the same OS as you. This was a guide on not needing to install terminal software.
google sucks bro.
Then use firefox, the point is that you can SSH from any computer with a browser, not that you dislike google.
Hack fbi internet