NetStumbler.org Forums

Go Back   NetStumbler.org Forums > Newbie Lounge
Register Search Today's Posts Mark Forums Read

Reply
 
LinkBack Thread Tools Display Modes
Old 01-06-2005   #1 (permalink)
fsan
Registered Member
 
Join Date: Dec 2004
Posts: 9
what info can be gathered

Assuming that filesharing is turned off and you access an AP (say at a hotel)
what info can be gathered about you? other than what you could call "history"
info.. like the sites you visit. please keep any answers simple (as i'm still learning) and what that info might tell someone.

Thanks for any help!
fsan is offline   Reply With Quote
Old 01-06-2005   #2 (permalink)
streaker69
Psychic Amish Stumbler
 
streaker69's Avatar
 
Join Date: Jul 2004
Location: Virginville, BlueBall, Bird In Hand, Intercourse, Paradise, PA
Posts: 11,798
Quote:
Originally Posted by fsan
Assuming that filesharing is turned off and you access an AP (say at a hotel)
what info can be gathered about you? other than what you could call "history"
info.. like the sites you visit. please keep any answers simple (as i'm still learning) and what that info might tell someone.

Thanks for any help!
Every single packet that is exchanged between your machine and the AP could be captured, read and used against you in a court of law.
__________________
"One of these days, I'm going to cut you to pieces."

If you're offended by this post, please feel free to report it to one of the many helpful moderators of this forum.

Thank you.
streaker69 is offline   Reply With Quote
Old 01-06-2005   #3 (permalink)
Thorn
Did you do the math?
 
Thorn's Avatar
 
Join Date: Apr 2002
Location: Villa Straylight
Posts: 10,084
Depending on the skill level of the intruder, and how well you understand security, and how your laptop is configured, the answer ranges from "nothing" to "anything on your hard drive."

File sharing is just one small part of one area of networking. Turning it off is a start, not the end. You have to start looking at any number of other things like FTP services, firewalls, and TCP ports. Start reading up on security if this is a concern.
__________________
Thorn
"I'm The Doctor. I'm a Time Lord. I am from the planet Gallifrey in the constellation Kasterborous. I'm 903 years old and I am the man who is going to save your lives and all 6 billion people on the planet below... You got a problem with that?"
Thorn is offline   Reply With Quote
Old 01-06-2005   #4 (permalink)
Thorn
Did you do the math?
 
Thorn's Avatar
 
Join Date: Apr 2002
Location: Villa Straylight
Posts: 10,084
Maybe I misread this. Since you asked about file sharing and being on a hotel network, my thinking was that your concern lay in being a user concerned about someone coming into your machine. Now that I reread it, I'm not sure.

Are you concerned as a user on the network being accessed by someone else, or are you worried about outgoing info being tracked?
__________________
Thorn
"I'm The Doctor. I'm a Time Lord. I am from the planet Gallifrey in the constellation Kasterborous. I'm 903 years old and I am the man who is going to save your lives and all 6 billion people on the planet below... You got a problem with that?"
Thorn is offline   Reply With Quote
Old 01-06-2005   #5 (permalink)
itsnotme
Dumbass checker
 
itsnotme's Avatar
 
Join Date: Sep 2002
Location: Somewhere below Lake Ontario
Posts: 1,076
I'm wondering if he means what programs he uses, what OS he has, and what actions he does on the computer while in the hotel itself.

(At least thats what I understood from his post.)
itsnotme is offline   Reply With Quote
Old 01-06-2005   #6 (permalink)
G8tK33per
Asshole Emeritus
 
G8tK33per's Avatar
 
Join Date: May 2003
Location: S.E. VA.
Posts: 5,932
Quote:
Originally Posted by fsan
Assuming that filesharing is turned off and you access an AP (say at a hotel)
what info can be gathered about you? other than what you could call "history"
info.. like the sites you visit. please keep any answers simple (as i'm still learning) and what that info might tell someone.

Thanks for any help!
How's this for simple:

1) Use the f*cking shift key.
2) Don't surf pr0n at hotels.

...frickin' troll.
__________________
"Benjamin is nobody's friend. If Benjamin were an ice cream flavor, he'd be pralines and dick."

Sons of Confederate Veterans
G8tK33per is offline   Reply With Quote
Old 01-07-2005   #7 (permalink)
Monitr7
Not feeling funny...
 
Monitr7's Avatar
 
Join Date: Jan 2003
Location: Rebrandsoftware's mom's house...
Posts: 1,699
Quote:
Originally Posted by G8tK33per
How's this for simple:

1) Use the f*cking shift key.
2) Don't surf pr0n at hotels.

...frickin' troll.
And what's wrong with surfing p0rn at hotels?
__________________
WTOTD Industries - Where quality is Job #3.

G8tK33per doesn't care about the tarded people!
-Kanye West
Monitr7 is offline   Reply With Quote
Old 01-07-2005   #8 (permalink)
The Others
PeaceDriver
 
The Others's Avatar
 
Join Date: Apr 2002
Location: Dos Palabras, Mandoras
Posts: 2,920
Quote:
Originally Posted by Monitr7
And what's wrong with surfing p0rn at hotels?
Any true geek can get it for free off the hotel TV
__________________
all good ends all

?u=273

Last edited by The Others : 01-07-2005 at 05:05 AM. Reason: spelling was bad. Too bad I'd already been quoted...
The Others is offline   Reply With Quote
Old 01-07-2005   #9 (permalink)
Dutch
Humourless EuroMod.
 
Dutch's Avatar
 
Join Date: Mar 2004
Location: City of Mermaids, Denmark
Posts: 6,813
Quote:
Originally Posted by Monitr7
And what's wrong with surfing p0rn at hotels?
Wrong question... What's wrong with surfing p0rn, Full Stop.

Dutch
__________________
All your answers are belong to Google. SEARCH DAMMIT!
Warning. Warning.
Low C8H10N4O2 level detected. Operator halted....
Dutch is offline   Reply With Quote
Old 01-07-2005   #10 (permalink)
Dutch
Humourless EuroMod.
 
Dutch's Avatar
 
Join Date: Mar 2004
Location: City of Mermaids, Denmark
Posts: 6,813
Quote:
Originally Posted by The Others
Any true geek can get it for free of the hotel TV
True Geeks™ are to busy drooling over the receptionist, to watch the hotel TV.

Dutch
__________________
All your answers are belong to Google. SEARCH DAMMIT!
Warning. Warning.
Low C8H10N4O2 level detected. Operator halted....
Dutch is offline   Reply With Quote
Old 01-07-2005   #11 (permalink)
Monitr7
Not feeling funny...
 
Monitr7's Avatar
 
Join Date: Jan 2003
Location: Rebrandsoftware's mom's house...
Posts: 1,699
Quote:
Originally Posted by The Others
Any true geek can get it for free off the hotel TV
please explain... i am looking for free p0rn... i have tried using my neighbor's access poynt thing, but they have something on it called wep and i think thats not letting me connect... any help please? i will share p0rn that i find... lol
__________________
WTOTD Industries - Where quality is Job #3.

G8tK33per doesn't care about the tarded people!
-Kanye West
Monitr7 is offline   Reply With Quote
Old 01-07-2005   #12 (permalink)
beakmyn
root\.workspace\.garbage.
 
Join Date: Aug 2003
Posts: 4,796
Quote:
Originally Posted by The Others
Any true geek can get it for free off the hotel TV
Yeah, but after 10 minutes the channel automatically scrambles again. What a pain in the ass. Unless you know a better way PM me

If you're going to be on a Hotel network using your business computer then anything you do is subject to logging and compromise. So if you logging into your email they can see your username, password, and email. If your surfing the internet they can all the pages. With the product IRIS they don't have to look at packet dumps as this program puts the packets back together so they see what you see.

Although you may have file sharing turned off there's still other ways to get into your computer. A determined criminal would hijack your connection and inject a program into your packet stream that would allow them entry. This assumes Internet Explorer is your browser of choice.

Or if they're really devious they could see that your using email then impersonate you onto your corporate network, whereby they could send you an email that appeared to be coming from the Hotel and attach a "security" (Trojan Horse) program that they say you must run in order to secure your connection.

The list goes on.
__________________
Daughter with arms inside shirt: "Daddy I'm not Armish"

┌──────────────────────────────┐
NS Icons Explained|et hoc genus omne
└──────────────────────────────┘
beakmyn is offline   Reply With Quote
Old 01-07-2005   #13 (permalink)
fsan
Registered Member
 
Join Date: Dec 2004
Posts: 9
Thanks for the replies that were responding to my question.
Since a few asked, my reason for asking was just wondering what info could be obtained about who was using the AP. From the info you folks have given it seems that the only info likely to be gotten would be all the content received/sent -possibly email address (if you checked your email) and not much else? (without a determined attacker)
So a coffee shop might know everywhere your surfing but not WHO is doing it
unless you give them the info by checking email or such. It would seem to be
difficult then to build a database of people that have used their system.
fsan is offline   Reply With Quote
Old 01-07-2005   #14 (permalink)
nashr
Uber Geek
 
nashr's Avatar
 
Join Date: Aug 2002
Location: Virginia
Posts: 1,613
Quote:
Originally Posted by fsan
Thanks for the replies that were responding to my question.
Since a few asked, my reason for asking was just wondering what info could be obtained about who was using the AP. From the info you folks have given it seems that the only info likely to be gotten would be all the content received/sent -possibly email address (if you checked your email) and not much else? (without a determined attacker)
So a coffee shop might know everywhere your surfing but not WHO is doing it
unless you give them the info by checking email or such. It would seem to be
difficult then to build a database of people that have used their system.
If you're talking about a database of people using the system, then I assume you mean gathering data over time. It could be done, but why would a typical wifi cafe bother? Unless the FBI/CIA or some other nameless three-letter-agency is trying to track down the latest spammer, there would be no payoff. Further, most wifi cafes don't have the know-how or support staff to manage something like this.

Simple answer, unless there's a geek on staff (or in the customer crowd) I don't think this is a high risk. Now, having said that, I do enjoy being a packet voyeur at my favorite wifi cafe sometime.

Hmmm, packet-voyeur... have I just invented a new fetish? LMAO - how about war-voyeur?
__________________
Help! I've been Simpsonized!
nashr is offline   Reply With Quote
Old 01-07-2005   #15 (permalink)
streaker69
Psychic Amish Stumbler
 
streaker69's Avatar
 
Join Date: Jul 2004
Location: Virginville, BlueBall, Bird In Hand, Intercourse, Paradise, PA
Posts: 11,798
Quote:
Originally Posted by fsan
Thanks for the replies that were responding to my question.
Since a few asked, my reason for asking was just wondering what info could be obtained about who was using the AP. From the info you folks have given it seems that the only info likely to be gotten would be all the content received/sent -possibly email address (if you checked your email) and not much else? (without a determined attacker)
So a coffee shop might know everywhere your surfing but not WHO is doing it
unless you give them the info by checking email or such. It would seem to be
difficult then to build a database of people that have used their system
.
Don't be so sure about that statement. It would depend upon how determined they are to build a database. They could log your MAC address which is unique only to your NIC, not duplicated anywhere unless it's spoofed by a hacker. Once you log on, they could write a script that could run an NBTSTAT of your machine if it's a winders machine then it would return your computer name, workgroup and the current user logged in. Someone who's determined can get the information.

NEVER use a unecrypted public AP to transfer personal data. You don't know who is listening to the transmission.

Remember, the data you save, could be your own.
__________________
"One of these days, I'm going to cut you to pieces."

If you're offended by this post, please feel free to report it to one of the many helpful moderators of this forum.

Thank you.
streaker69 is offline   Reply With Quote
Reply


Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On



Google
 
Web NetStumbler.org

All times are GMT -7. The time now is 08:11 AM.


Powered by vBulletin® Version 3.6.8
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO 3.0.0 ©2007, Crawlability, Inc.


All messages express the views of the author and are for entertainment purposes only. Netstumbler.org cannot be held responsible for the authenticity of the content or the actions of its members. By using this site and its services, you warrant that you will not post any messages that are discriminating, obscene, hateful, threatening, or otherwise violates any laws and you release Netstumbler.org from any future claims of any kind whatsoever including, but not limited to, addiction and loss of productivity. All forum messages, private messages and any other content are properties of Netstumbler.org. Even if publicly available, personal or copyrighted information are not to be posted without the consent of the owner. Distribution of licensed and copyrighted materials in any way not endorsed by the copyright owner is strictly prohibited. You may not use this site and its resources to spam other sites or individuals or perform any action that violates any law. Items sold or bought in the For Sale forum are sold as is and no warranty or insurance of any kind is provided. Netstumbler.org cannot be held responsible for the outcome of any transactions and no warranty of any kind is provided, either express or implied. Vulgar words are not allowed in the subject lines ; they may be used in the message body in any forum. The Administrator, Super Moderators and Moderators of Netstumbler.org have the right to remove, edit, move or close any thread for any reason and to reveal your identity and other known information in the event of a complaint or legal action arising from any message posted by you.