• We just launched and are currently in beta. Join us as we build and grow the community.

Beginners Guide to: Sentry MBA

Smuks

Banana Enthusiast
S Rep
0
0
0
Rep
0
S Vouches
0
0
0
Vouches
0
Posts
101
Likes
90
Bits
2 MONTHS
2 2 MONTHS OF SERVICE
LEVEL 1 400 XP
Sentry MBA can be used two ways: with or without configs. Config files are essentially pre-made configurations for cracking specific websites or targets. Since Sentry MBA is a very robust tool, it can crack a handful of different authentication types & it is pretty powerful at determining fakes or hits. Since it is able to know all of this, this means that it is also required to have a pretty big chunk of info to get started on a site. I wont be covering how to make configs in this tutorial, but I will show you how to load a configuration & how to crack with a pre-made config file. I should also note that you do need a config to crack (because I said earlier that Sentry can be used without configs), but you'll need to make it yourself on the fly. Getting Started click "settings" on the left, then "general" click "load settings from snapshot" This will let you load up a config file, as mentioned earlier. Pick one from the configs you downloaded.
  • click "lists" on the left, then "proxylist"
  • click the open button on the right to select a proxy list to use
click "wordlist" on the left make sure "mode" is set to "combo list" click the open button to select a combo list optionally, you could use the open buttons next to usernames & passwords to open their respective usernames wordlist and passwords wordlists
click "progression" on the left, then "progression" (underneath) click the "reload list" (green refresh button) on the top right to reload your combolist (to ensure you're using the correct combolist, and not an old one) slide the "bots" slider to an appropriate number of workers you'd like to use click "start" on the top left The main thing to pay attention to here, to determine whether or not we're cracking correctly, is the HTTP responses. These codes are essential to know if our requests are getting through okay. "Hits" are what we're aiming for. "Reds" are redirects. "Fakes" are, well, fakes. Sentry MBA if configured correctly, can determine when there is a fake response from the server - saving you time when cracking. "To check" is just the remaining amount of combos or usernames:passwords Sentry MBA has left to go through, with your wordlist.
enjoy cracking and have fun
i did not make this just sharing with you guys since alot of people always ask how to use it
 

436,452

314,393

314,402

Top