Skip to content

Commit

Permalink
Fix indent HTML
Browse files Browse the repository at this point in the history
  • Loading branch information
r4ulcl committed Apr 13, 2024
1 parent 23a1bb2 commit dce7790
Show file tree
Hide file tree
Showing 5 changed files with 125 additions and 109 deletions.
58 changes: 29 additions & 29 deletions APs/config/html/index.php
Original file line number Diff line number Diff line change
@@ -1,7 +1,7 @@
<?php session_start(); /* Starts the session */
if(!isset($_SESSION['UserData']['Username'])){
header("location:login.php");
exit;
if (!isset($_SESSION['UserData']['Username'])) {
header("location:login.php");
exit;
}
?>

Expand All @@ -10,42 +10,42 @@
echo "<br><br>";
echo "<br><br>";

if ($_SESSION["Username"] == "GLOBAL\GlobalAdmin") {
if (strpos($_SERVER['REMOTE_ADDR'], '192.168.8.') !== false) { //only TLS
if ($_SESSION["Username"] == "GLOBAL\GlobalAdmin") {
if (strpos($_SERVER['REMOTE_ADDR'], '192.168.8.') !== false) { //only TLS
echo "flag{B7OXb7KhFHQCz6WHUMf2}";
} else {
echo "Your Princess Is in Another Castle!";
}
}

if ($_SESSION["Username"] == "CONTOSO\Administrator") {
if ($_SESSION["Username"] == "CONTOSO\Administrator") {
if (strpos($_SERVER['REMOTE_ADDR'], '192.168.5.') !== false) { //only MGT
echo "flag{RgDOC9yrcRHMAKxgK1PJ}";
} else {
echo "Your Princess Is in Another Castle!";
}
}

if ($_SESSION["Username"] == "admin") {
if ($_SESSION["Username"] == "admin") {



if (strpos($_SERVER['REMOTE_ADDR'], '192.168.6.') !== false) { //only MGT Relay
echo "Hello";
} elseif (strpos($_SERVER['REMOTE_ADDR'], '192.168.1.') !== false) { //only HIDDEN
echo "Hello";
} elseif (strpos($_SERVER['REMOTE_ADDR'], '192.168.1.') !== false) { //only HIDDEN
echo "flag{iAYcxpe6N2A98zhglx6E}";
} elseif (strpos($_SERVER['REMOTE_ADDR'], '192.168.3.') !== false) { //only WPS
} elseif (strpos($_SERVER['REMOTE_ADDR'], '192.168.3.') !== false) { //only WPS
echo "flag{KD5TaejRFIDgIQwjgUfB}";
} elseif (strpos($_SERVER['REMOTE_ADDR'], '192.168.16.') !== false) { //only WPS
} elseif (strpos($_SERVER['REMOTE_ADDR'], '192.168.16.') !== false) { //only WPS
echo "flag{W5ri9DXRJZCTBpFFxXBM}";
} else {
echo "No FLAG, try logging in with another user ;)";
echo "No FLAG, try logging in with another user ;)";

}
}

#ALL: and strpos($_SERVER['REMOTE_ADDR'], '192.168.X.') !== false to only use users in each network

if ($_SESSION["Username"] == "CONTOSO\juan.tr") {
if ($_SESSION["Username"] == "CONTOSO\juan.tr") {
if (strpos($_SERVER['REMOTE_ADDR'], '192.168.5.') !== false) { //only MGT
echo "flag{hGDSm8oltjM9q217iJYu}";
echo "<br><br>";
Expand All @@ -54,44 +54,44 @@
}
}

if ($_SESSION["Username"] == "test1") {
if ($_SESSION["Username"] == "test1") {
if (strpos($_SERVER['REMOTE_ADDR'], '192.168.2.') !== false) { //only PSK
echo "flag{feL9kV3oMemAJiEDQLBA}";
} else {
echo "Your Princess Is in Another Castle!";
}
}

if ($_SESSION["Username"] == "test2") {
if ($_SESSION["Username"] == "test2") {
if (strpos($_SERVER['REMOTE_ADDR'], '192.168.2.') !== false) { //only PSK
echo "flag{feL9kV3oMemAJiEDQLBA}";
} else {
echo "Your Princess Is in Another Castle!";
}
}

if ($_SESSION["Username"] == "free1") {
if (strpos($_SERVER['REMOTE_ADDR'], '192.168.10.') !== false) { //only OPN
if ($_SESSION["Username"] == "free1") {
if (strpos($_SERVER['REMOTE_ADDR'], '192.168.10.') !== false) { //only OPN
echo "flag{2VphtQyGxsHmRoxGV05a}";
} else {
echo "Your Princess Is in Another Castle!";
}
}

if ($_SESSION["Username"] == "free2") {
if ($_SESSION["Username"] == "free2") {
if (strpos($_SERVER['REMOTE_ADDR'], '192.168.10.') !== false) { //only OPN
echo "flag{2VphtQyGxsHmRoxGV05a}";
} else {
echo "Your Princess Is in Another Castle!";
}
}

if ($_SESSION["Username"] == "anon1") {
if ($_SESSION["Username"] == "anon1") {
# NO AP LOGIN
echo "flag{b7UP2psiy5LJiShuFZGD}";
echo "flag{b7UP2psiy5LJiShuFZGD}";
}

if ($_SESSION["Username"] == "administrator") {
if ($_SESSION["Username"] == "administrator") {
if (strpos($_SERVER['REMOTE_ADDR'], '192.168.1.') !== false) { //only WEP
echo "flag{g9Ywbxflpye7P0sVAgRQ}";
} else {
Expand All @@ -100,13 +100,13 @@
}

#relay user
if ($_SESSION["Username"] == "CONTOSOREG\luis.da") { # RELAY
echo "flag{NBLvyxgwckKnyGup6HNj}";
echo "<br><br>";
echo "<br><br>";
if ($_SESSION["Username"] == "CONTOSOREG\luis.da") { # RELAY
echo "flag{NBLvyxgwckKnyGup6HNj}";
echo "<br><br>";
echo "<br><br>";
}

if ($_SESSION["Username"] == "CORPO\god") { # RELAY creds stolen in responder in regional network
if ($_SESSION["Username"] == "CORPO\god") { # RELAY creds stolen in responder in regional network
if (strpos($_SERVER['REMOTE_ADDR'], '192.168.7.') !== false) { //only WEP
echo "flag{3v1GXNkW0dh3T57ppoP1}";
echo "<br><br>";
Expand All @@ -125,7 +125,7 @@
# 802.11 Options<br>
ssid=wifi-corp<br>
channel=6<br>";
echo "Certificate Authority: <a href=\"/.internalCA/\"> http://", $_SERVER['SERVER_ADDR'], "/.internalCA/ </a>";
echo "Certificate Authority: <a href=\"/.internalCA/\"> http://", $_SERVER['SERVER_ADDR'], "/.internalCA/ </a>";
} else {
echo "Your Princess Is in Another Castle!";
}
Expand All @@ -138,4 +138,4 @@
echo "<br><br>";
?>

Congratulation! You have logged into password protected page. <a href="logout.php">Click here</a> to Logout.
Congratulation! You have logged into password protected page. <a href="logout.php">Click here</a> to Logout.
10 changes: 5 additions & 5 deletions APs/config/html/lab.php
Original file line number Diff line number Diff line change
@@ -1,7 +1,7 @@
<?php session_start(); /* Starts the session */
if(!isset($_SESSION['UserData']['Username'])){
header("location:login.php");
exit;
if (!isset($_SESSION['UserData']['Username'])) {
header("location:login.php");
exit;
}
?>

Expand All @@ -12,5 +12,5 @@

?>

Congratulation! You have logged into password protected page. <a href="index.php">Click here</a> to go to index.php to get the flag.

Congratulation! You have logged into password protected page. <a href="index.php">Click here</a> to go to index.php to
get the flag.
149 changes: 81 additions & 68 deletions APs/config/html/login.php
Original file line number Diff line number Diff line change
@@ -1,34 +1,42 @@
<?php session_start(); /* Starts the session */


/* Check Login form submitted */if(isset($_POST['Submit'])){
/* Define username and associated password array */$logins = array(
'GLOBAL\GlobalAdmin' => 'SuperSuperSecure@!@',
'CONTOSO\Administrator' => 'SuperSecure@!@',
'CONTOSO\juan.tr' => 'bulldogs1234',
'CONTOSOREG\luis.da' => 'u89gh68!6fcv56ed',
'CORPO\god' => 'tommy1',
'admin' => 'admin',
'test1' => 'OYfDcUNQu9PCojb',
'test2' => '2q60joygCBJQuFo',
'free1' => 'Jyl1iq8UajZ1fEK',
'free2' => '5LqwwccmTg6C39y',
'administrator' => '123456789a',
'anon1' => 'CRgwj5fZTo1cO6Y');


/* Check and assign submitted Username and Password to new variable */$Username = isset($_POST['Username']) ? $_POST['Username'] : '';
$Password = isset($_POST['Password']) ? $_POST['Password'] : '';

/* Check Username and Password existence in defined array */if (isset($logins[$Username]) && $logins[$Username] == $Password){
/* Success: Set session variables and redirect to Protected page */$_SESSION['UserData']['Username']=$logins[$Username];
/* Success: Set session variables USERNAME */$_SESSION['Username']=$Username;

header("location:index.php");
exit;
} else {
/*Unsuccessful attempt: Set error message */$msg="<span style='color:red'>Invalid Login Details</span>";
}
/* Check Login form submitted */
if (isset($_POST['Submit'])) {
/* Define username and associated password array */
$logins = array(
'GLOBAL\GlobalAdmin' => 'SuperSuperSecure@!@',
'CONTOSO\Administrator' => 'SuperSecure@!@',
'CONTOSO\juan.tr' => 'bulldogs1234',
'CONTOSOREG\luis.da' => 'u89gh68!6fcv56ed',
'CORPO\god' => 'tommy1',
'admin' => 'admin',
'test1' => 'OYfDcUNQu9PCojb',
'test2' => '2q60joygCBJQuFo',
'free1' => 'Jyl1iq8UajZ1fEK',
'free2' => '5LqwwccmTg6C39y',
'administrator' => '123456789a',
'anon1' => 'CRgwj5fZTo1cO6Y'
);


/* Check and assign submitted Username and Password to new variable */
$Username = isset($_POST['Username']) ? $_POST['Username'] : '';
$Password = isset($_POST['Password']) ? $_POST['Password'] : '';

/* Check Username and Password existence in defined array */
if (isset($logins[$Username]) && $logins[$Username] == $Password) {
/* Success: Set session variables and redirect to Protected page */
$_SESSION['UserData']['Username'] = $logins[$Username];
/* Success: Set session variables USERNAME */
$_SESSION['Username'] = $Username;

header("location:index.php");
exit;
} else {
/*Unsuccessful attempt: Set error message */
$msg = "<span style='color:red'>Invalid Login Details</span>";
}
}


Expand Down Expand Up @@ -94,49 +102,54 @@
?>

<?php
/* Check IP from GLOBAL */
if (strpos($_SERVER['REMOTE_ADDR'], '192.168.8.') !== false){
session_start(); /* Starts the session */
$Username = 'GLOBAL\GlobalAdmin';
$Password = 'SuperSuperSecure@!@';
$_SESSION['UserData']['Username']=$Username;
/* Success: Set session variables USERNAME */$_SESSION['Username']=$Username;
echo "Router Login";

header("location:index.php");
exit;
}
/* Check IP from GLOBAL */
if (strpos($_SERVER['REMOTE_ADDR'], '192.168.8.') !== false) {
session_start(); /* Starts the session */
$Username = 'GLOBAL\GlobalAdmin';
$Password = 'SuperSuperSecure@!@';
$_SESSION['UserData']['Username'] = $Username;
/* Success: Set session variables USERNAME */
$_SESSION['Username'] = $Username;
echo "Router Login";

header("location:index.php");
exit;
}

# Check IP from CONTOSOREG Relay
if (strpos($_SERVER['REMOTE_ADDR'], '192.168.7.') !== false){
#relay user
echo "<br><br>";
echo "<br><br>";
echo "flag{NBLvyxgwckKnyGup6HNj}";
echo "<br><br>";
echo "<br><br>";
}
# Check IP from CONTOSOREG Relay
if (strpos($_SERVER['REMOTE_ADDR'], '192.168.7.') !== false) {
#relay user
echo "<br><br>";
echo "<br><br>";
echo "flag{NBLvyxgwckKnyGup6HNj}";
echo "<br><br>";
echo "<br><br>";
}

# Check IP from CONTOSOREG Tablets Relay
if (strpos($_SERVER['REMOTE_ADDR'], '192.168.18.') !== false){
#relay user
echo "<br><br>";
echo "<br><br>";
echo "flag{gsnyT98GxngXgMPJEIKw}";
echo "<br><br>";
echo "<br><br>";
}
# Check IP from CONTOSOREG Tablets Relay
if (strpos($_SERVER['REMOTE_ADDR'], '192.168.18.') !== false) {
#relay user
echo "<br><br>";
echo "<br><br>";
echo "flag{gsnyT98GxngXgMPJEIKw}";
echo "<br><br>";
echo "<br><br>";
}
?>

<form action="" method="post" name="Login_Form">
<table width="400" border="0" align="center" cellpadding="5" cellspacing="1" class="Table">
<?php if(isset($msg)){?>
<tr>
<td colspan="2" align="center" valign="top"><?php echo $msg;?></td>
</tr>
<?php if (isset($msg)) { ?>
<tr>
<td colspan="2" align="center" valign="top">
<?php echo $msg; ?>
</td>
</tr>
<?php } ?>
<tr>
<td colspan="2" align="left" valign="top"><h3>Login</h3></td>
<td colspan="2" align="left" valign="top">
<h3>Login</h3>
</td>
</tr>
<tr>
<td align="right" valign="top">Username</td>
Expand All @@ -155,10 +168,10 @@

<?php
if (strpos($_SERVER['REMOTE_ADDR'], '192.168.8.') !== false) { //only MGT TLS
echo "<br><br>";
echo "Hello Global Admin:";
echo "<br><br>";
echo "Your pass is: SuperSuperSecure@!@";
echo "<br><br>";
echo "Hello Global Admin:";
echo "<br><br>";
echo "Your pass is: SuperSuperSecure@!@";

}
}
?>
8 changes: 6 additions & 2 deletions APs/config/html/logout.php
Original file line number Diff line number Diff line change
@@ -1,2 +1,6 @@
<?php session_start(); /* Starts the session */session_destroy(); /* Destroy started session */header("location:login.php"); /* Redirect to login page */exit;
?>
<?php
session_start(); /* Starts the session */
session_destroy(); /* Destroy started session */
header("location:login.php"); /* Redirect to login page */
exit;
?>
9 changes: 4 additions & 5 deletions Attacker/installTools.sh
Original file line number Diff line number Diff line change
Expand Up @@ -273,11 +273,10 @@ cd wifite2
sudo python3 setup.py install

# Fluxion
cd $TOOLS

git clone https://www.github.com/FluxionNetwork/fluxion.git
cd fluxion
./fluxion.sh
#cd $TOOLS
#git clone https://www.github.com/FluxionNetwork/fluxion.git
#cd fluxion
#./fluxion.sh

# Kismet
##sudo apt-get install -y build-essential git libwebsockets-dev pkg-config zlib1g-dev libnl-3-dev libnl-genl-3-dev libcap-dev libpcap-dev libnm-dev libdw-dev libsqlite3-dev libprotobuf-dev libprotobuf-c-dev protobuf-compiler protobuf-c-compiler libsensors4-dev libusb-1.0-0-dev python3 python3-setuptools python3-protobuf python3-requests python3-numpy python3-serial python3-usb python3-dev python3-websockets librtlsdr0 libubertooth-dev libbtbb-dev
Expand Down

0 comments on commit dce7790

Please sign in to comment.