---
title: Ghost Phisher
categories: Wireless Attacks
tags: [kali linux,wireless attacks,information gathering,ghost phisher]
date: 2016-10-25 11:50:00
---
0x00 Ghost Phisher介紹
-------------
Ghost Phisher是一個使用Python編程語言和Python Qt GUI庫編寫的無線和以太網安全審計和攻擊程序,可以偽造DNS服務器、DHCP服務器、HTTP服務器并且內置自動抓取和記錄認證信息的功能模塊。這個程序可用于制作蜜罐,也可用于釣魚(安全測試)的相關工作。
Ghost Phisher目前支持以下功能:
```plain
HTTP服務器
內置RFC 1035 DNS服務器
內置RFC 2131 DHCP服務器
網頁托管和憑證記錄器(網絡釣魚)
Wifi接入點模擬器
會話劫持(被動和以太網模式)
ARP緩存欺騙(用于MITM和DOS攻擊)
使用綁定的Metasploit進行滲透
使用SQlite數據庫進行自動憑證日志記錄
更新支持
```
工具來源:https://code.google.com/p/ghost-phisher/
[Ghost Phisher主頁][1] | [Kali Ghost Phisher Repo倉庫][2]
- 作者:Saviour Emmanuel Ekiko
- 證書:GPLv3
0x01 Ghost Phisher功能
---------------
ghost-phisher - 用于網絡釣魚和滲透攻擊的圖形用戶界面套件
<!--more-->
0x02 Ghost Phisher用法示例
-----------------
YouTube:[How to create fake wifi hotspot (ghost phisher) using kali linux 2][3]
```shell
root@kali:~# ghost-phisher
```
![ghost-phisher.gif][4]
[1]: https://code.google.com/p/ghost-phisher/
[2]: http://git.kali.org/gitweb/?p=packages/ghost-phisher.git;a=summary
[3]: https://www.youtube.com/watch?v=QpMZXp1NryE
[4]: https://www.hackfun.org/usr/uploads/2016/10/690577029.gif
- Information Gathering
- acccheck
- ace-voip
- Amap
- Automater
- bing-ip2hosts
- braa
- CaseFile
- CDPSnarf
- cisco-torch
- Cookie Cadger
- copy-router-config
- DMitry
- dnmap
- dnsenum
- dnsmap
- DNSRecon
- dnstracer
- dnswalk
- DotDotPwn
- enum4linux
- enumIAX
- Fierce
- Firewalk
- fragroute
- fragrouter
- Ghost Phisher
- GoLismero
- goofile
- hping3
- InTrace
- iSMTP
- lbd
- Maltego Teeth
- masscan
- Metagoofil
- Miranda
- nbtscan-unixwiz
- Nmap
- ntop
- p0f
- Parsero
- Recon-ng
- SET
- smtp-user-enum
- snmp-check
- sslcaudit
- SSLsplit
- sslstrip
- SSLyze
- THC-IPV6
- theHarvester
- TLSSLed
- twofi
- URLCrazy
- Wireshark
- WOL-E
- Xplico
- Vulnerability Analysis
- BBQSQL
- BED
- cisco-auditing-tool
- cisco-global-exploiter
- cisco-ocs
- cisco-torch
- copy-router-config
- Doona
- Exploitation Tools
- Wireless Attacks
- Ghost-Phisher
- mfoc
- Forensics Tools
- Binwalk
- bulk-extractor
- Web Applications
- apache-users
- BurpSuite
- sqlmap
- w3af
- Sniffing-Spoofing
- Bettercap
- Burp Suite
- DNSChef
- Fiked
- hamster-sidejack
- HexInject
- Password Attacks
- crunch
- hashcat
- John the Ripper
- Johnny
- Hardware Hacking
- android-sdk
- apktool
- Arduino
- dex2jar
- Sakis3G
- Reverse Engineering
- apktool