Security Basics mailing list archives

Re: About War Driving ..


From: gaurav saha <gauravsaha007 () yahoo com>
Date: Thu, 30 Nov 2006 14:18:28 -0800 (PST)

Hey Guys,
thanks a lot . Will try WPA . btw ..i did try mac
filtering and as some people suggested he seems to be
changing the mac address ..and hence ... 
i also tried to give access to only the people in our
companies but still he then uses some valid macs of
the user whose macs i have allowed ..
Yes he seems to be very near to our network and just
using our wep .. is there any way to catch him in
person (red handed)..I mean physically .

well i did try doing all sort of security probe in my
network the one problem i found was WEP mechanism .
and then i also port scan and did a short va on his
system . he seems to be running debian (kernel 2.6.x)
and has only 1 port on his box open (111)

other than that nothing much ..I also tried using
arpscan / dsniff and tried to see what sites he has
been browsing . but only found usernames like 
hotty_male23in () yahoo com and emails of that kind .
(cudn't find the password though)

not much of http sites sites but mostly what his
machines is connecting after i reset his connection
seem to be torrent related .
from there i concluded he is using some torrent thing.
and our building is 7 floors and there are about 3
companies .and the person whos been using up all our
b/w doesn't seem to be one of our employee .

so any method to catch hold of this guy .
---gaurav



 
____________________________________________________________________________________
Do you Yahoo!?
Everyone is raving about the all-new Yahoo! Mail beta.
http://new.mail.yahoo.com


Current thread: