1 00:00:00,510 --> 00:00:07,230 OK, so welcome back in this lecture, I will show you a different method on how to capture the username 2 00:00:07,230 --> 00:00:11,280 and password from the victim using a BHP script. 3 00:00:12,510 --> 00:00:18,930 So first off, I will change the directory to slash for W W slash HDMI. 4 00:00:19,890 --> 00:00:25,950 This is the location for the patch website where where the captive portal files are located. 5 00:00:26,910 --> 00:00:35,650 So if I use, as you can see all the files now here I have added two more fires, which is captured 6 00:00:35,650 --> 00:00:38,820 Ducky HD and post that BHP. 7 00:00:39,840 --> 00:00:44,940 So let's open both that BHP using nano and the name of the fire. 8 00:00:46,020 --> 00:00:48,270 And here is the BHP Coal. 9 00:00:48,630 --> 00:00:54,810 Basically, this code will grab the username and password from the login form and save it in a file 10 00:00:54,810 --> 00:00:59,070 called Capsule HD, which I already created. 11 00:01:00,300 --> 00:01:09,630 So I'll close this and open index got HDMI using nano and fire me now here. 12 00:01:09,630 --> 00:01:10,920 Own form name. 13 00:01:10,950 --> 00:01:15,780 Go to action and type flash post that BHP. 14 00:01:16,890 --> 00:01:22,950 This is the BHP file, which will be used to capture the login credentials from the victim. 15 00:01:24,270 --> 00:01:30,060 And don't forget to save the file and then restart the web server using service. 16 00:01:30,060 --> 00:01:31,890 Apache2 Restart. 17 00:01:33,560 --> 00:01:38,390 OK, now let's go to the victim machine and connect to free Wi-Fi. 18 00:01:39,770 --> 00:01:49,400 And in the log in for I would die John for the username and let me in for the password and click login. 19 00:01:50,900 --> 00:01:58,250 Okay, so let's go back to the machine and see if I have managed to capture the login information from 20 00:01:58,250 --> 00:01:59,000 the victim. 21 00:02:00,110 --> 00:02:05,500 So I will open the capture file using nano and put capture data. 22 00:02:07,310 --> 00:02:10,580 And you can see the username and password. 23 00:02:11,600 --> 00:02:13,380 So that's it for now. 24 00:02:13,400 --> 00:02:16,640 Thanks for watching, and I'll see you next time.