2010-05-03 17:13:09 +00:00
|
|
|
##
|
|
|
|
# This file is part of the Metasploit Framework and may be subject to
|
|
|
|
# redistribution and commercial restrictions. Please see the Metasploit
|
2012-02-21 01:40:50 +00:00
|
|
|
# web site for more information on licensing and terms of use.
|
|
|
|
# http://metasploit.com/
|
2010-05-03 17:13:09 +00:00
|
|
|
##
|
2009-09-12 15:40:33 +00:00
|
|
|
|
2010-05-03 17:13:09 +00:00
|
|
|
require 'msf/core'
|
2009-09-12 15:40:33 +00:00
|
|
|
|
|
|
|
class Metasploit3 < Msf::Auxiliary
|
|
|
|
|
|
|
|
include Msf::Exploit::DECT_COA
|
2010-05-03 17:13:09 +00:00
|
|
|
|
2009-09-12 15:40:33 +00:00
|
|
|
def initialize
|
|
|
|
super(
|
|
|
|
'Name' => 'DECT Base Station Scanner',
|
|
|
|
'Description' => 'This module scans for DECT base stations',
|
2011-12-29 17:27:10 +00:00
|
|
|
'Author' => [ 'DK <privilegedmode[at]gmail.com>' ],
|
2009-09-12 15:40:33 +00:00
|
|
|
'License' => MSF_LICENSE,
|
2011-10-16 09:53:53 +00:00
|
|
|
'References' => [ ['URL', 'http://www.dedected.org'] ]
|
2010-05-03 17:13:09 +00:00
|
|
|
)
|
|
|
|
|
2009-09-12 15:40:33 +00:00
|
|
|
end
|
2010-05-03 17:13:09 +00:00
|
|
|
|
2009-09-12 15:40:33 +00:00
|
|
|
|
|
|
|
def print_results
|
|
|
|
print_line("RFPI\t\tChannel")
|
|
|
|
@base_stations.each do |rfpi, data|
|
|
|
|
print_line("#{data['rfpi']}\t#{data['channel']}")
|
2010-05-03 17:13:09 +00:00
|
|
|
end
|
2009-09-12 15:40:33 +00:00
|
|
|
end
|
|
|
|
|
|
|
|
def run
|
|
|
|
@base_stations = {}
|
2010-05-03 17:13:09 +00:00
|
|
|
|
2009-09-12 15:40:33 +00:00
|
|
|
print_status("Opening interface: #{datastore['INTERFACE']}")
|
2012-11-29 06:05:36 +00:00
|
|
|
print_status("Using band: #{datastore['BAND']}")
|
2010-05-03 17:13:09 +00:00
|
|
|
|
2009-09-12 15:40:33 +00:00
|
|
|
open_coa
|
2010-05-03 17:13:09 +00:00
|
|
|
|
2009-09-12 15:40:33 +00:00
|
|
|
begin
|
|
|
|
|
|
|
|
print_status("Changing to fp scan mode.")
|
|
|
|
fp_scan_mode
|
|
|
|
print_status("Scanning...")
|
|
|
|
|
|
|
|
while(true)
|
|
|
|
data = poll_coa()
|
|
|
|
|
|
|
|
if (data)
|
|
|
|
parsed_data = parse_station(data)
|
|
|
|
if (not @base_stations.key?(parsed_data['rfpi']))
|
|
|
|
print_status("Found New RFPI: #{parsed_data['rfpi']}")
|
|
|
|
@base_stations[parsed_data['rfpi']] = parsed_data
|
|
|
|
end
|
|
|
|
end
|
|
|
|
|
|
|
|
next_channel
|
|
|
|
|
2011-07-15 15:33:35 +00:00
|
|
|
vprint_status("Switching to channel: #{channel}")
|
2010-06-22 18:58:38 +00:00
|
|
|
select(nil,nil,nil,1)
|
2010-05-03 17:13:09 +00:00
|
|
|
end
|
2009-09-12 15:40:33 +00:00
|
|
|
ensure
|
|
|
|
print_status("Closing interface")
|
|
|
|
stop_coa()
|
|
|
|
close_coa()
|
|
|
|
end
|
2010-05-03 17:13:09 +00:00
|
|
|
|
2009-09-12 15:40:33 +00:00
|
|
|
print_results
|
|
|
|
end
|
|
|
|
end
|