Monday, June 8, 2020

Hack Any Android Device Using IP Address, ADB- Explained ||Hacking Using Ghost Framework

  Admin.0Minded       Monday, June 8, 2020
Hack using Ghost framework and ADB Concept

Ghost is a framework that is used to hack android phones over the internet. The ghost framework works on the 'ADB' Concept.

What do we have for you!
What is Ghost
What is ADB
How to Enable ADB
How To Hack Using Ghost
How to uninstall Ghost
Conclusion

What is Ghost?

Ghost is a framework that gives you control of any android device. It exploits the Android Debug Bridge to remotely access the android device of a person sitting far away from you.

What is ADB

ADB stands for Android Debug Bridge.
This is a part of the android device. It is used to access an Android device remotely. Most of the time developers use this feature.
Generally, this feature is not available until you are a developer in your android device but you can have a try to check if your android debug bridge is opened or not?
ADB is a command-line tool that lets you communicate with the device through remote access. It allows us to perform various tasks such as installing an application, Running an application, Clicking Images, Playing Music, etc.
It also provides access to UNIX Shell (Unix shell is a powerful and very dangerous, it provides access to a variety of system commands).
ADB has three main components:
1. Client: The client is the person who sends the commands. All these commands run in the android machine. By using Unix Shell You can take invoke the user and use your commands by the terminal.
2. Daemon: It runs the commands given by the client on the android machine. It runs in the background.
3. Server: A server manages all the communication made between the client and Daemon. The server Also runs in the background on the android machine.

The port range is from 5555 to 5585. The server uses the port ranging from 5555 to 5585 to connect the android machine to the system or Unix Shell.


How To Enable ADB

So, to enable ADB in the device follow the process

Step1: Go to Settings
Step2: Search or jump into the section of 'about phone'
About Phone

Step3: Click on 'Build Number' Until you see a text popup that says "YOU ARE A DEVELOPER NOW"
Click on Build Number and You are a developer now

Step4: Now come back, Most of the phones have different setups of developer options. So, you can find it by coming back or re-opening the setting and finding a developer option.
choose developer option

It may ask you your Phone's password or ask you to fill the captcha. Fill it and move forward.
Step5: Click on the Developer option and Enable it.
Enable Developer mode

Step6: Now scroll and find the option that has 'USB Debugging' and Enable it. This Step is mostly not required but some devices don't allow to Enable ADB unless USB Debugging is Enabled.
Enable USB Debugging

Step7: Now, Select the ADB option or that has written Verify apps over ADB or Connect via ADB. Enable them.
Step8: You have successfully Enabled your ADB.

How To Hack Using Ghost

To hack using Ghost one must be familiar with ADB (Android Debug Bridge).
Follow the Steps to hack using Ghost.

Step1: Visit Github and Find the GHOST Framework
Step2: Copy the URL and on your Linux machine terminal type "git clone <Copied Link>" This will download the Ghost Framework on your machine.
Step3: Now, go to the ghost directory by "cd ghost" command
Step4: To install the Ghost Framework, you will have to give permission to install.sh and to give permission type "chmod +x install.sh"
All commands to install Ghost

Step5: Now run the script by typing "./install.sh"
BOOOM, You have successfully installed the Ghost framework.
Now, to launch this framework type "ghost" and this will open:
Ghost Framework Installing


Step6: Choose the type of attack you want to do but before that, you have to get the IP of the phone that has ADB enabled. To get the IP of the device and now continue.
Shodan for ips of adb

If you don't want to do on your personal device you can visit shodan and type "android debug bridge". It will give you the IP addresses and you can hack them also.
Select an option and start with the victim's IP Address.
shodan -ADB Active devices

Step7: Now, type the number and then give the IP address and the port number. The Port number range should be from 5555 to 5855.
Step8: The device is now under your control. You can upload, delete, download, and modify the data in the android machine.
Step9: You can upload your malicious payload and run it to get more access to the device.

How to uninstall Ghost

To uninstall the ghost framework follow the process.
Step1: Go to the ghost folder by typing "cd ghost".
Step2: Give uninstall.sh the executable permissions by typing "chmod +x uninstall.sh"
Step3: Now, the final step to uninstall the ghost. Type "./uninstall.sh"

You have successfully uninstalled Ghost Framework.

Conclusion

To be secure you must not enter into developers mode until you are familiar with it. Because when you allow ADB, anyone can access your device and manipulate your data. Your personal credentials may be lost and you can also get trapped into other hacks like phishing attacks, Social Engineering, Etc.

logoblog

Thanks for reading Hack Any Android Device Using IP Address, ADB- Explained ||Hacking Using Ghost Framework

Previous
« Prev Post

No comments:

Post a Comment