22/12/2012

[WiFi Password Decryptor] Free Wireless Password Recovery Software


WiFi Password Decryptor is the FREE software to instantly recover Wireless account passwords stored on your system.

It automatically recovers all type of Wireless Keys/Passwords (WEP/WPA/WPA2 etc) stored by Windows Wireless Configuration Manager.
For each recovered WiFi account, it displays following information
  • WiFi Name (SSID)
  • Security Settings (WEP-64/WEP-128/WPA2/AES/TKIP)
  • Password Type
  • Password in clear text
After the successful recovery you can save the password list to HTML/XML/TEXT file. You can also right click on any of the displayed account and quickly copy the password.
Under the hood, 'WiFi Password Decryptor' uses System Service method (instead of injecting into LSASS.exe) to decrypt the WiFi passwords. This makes it more safer and reliable. Also it makes us to have just single EXE to work on both 32-bit & 64-bit platforms.

It has been successfully tested on Windows Vista and higher operating systems including Windows 8.

[Scythe Framework] Harvest Profile Id And Email


In this video i will show you how to use Scythe Framework for Harvesting a Email ID and other usernames from blogs, social-media, etc ..

I personally like this tool because,online there's tons of tools available for Email ID harvesting but this one is great .... right now only supports two Mail system.

Scythe Framework: - https://github.com/ChrisJohnRiley/Scythe

17/12/2012

[SET] Social-Engineer Toolkit v4.3 "Turbulence"



set
The Social-Engineer Toolkit (SET) v4.3 has been released today! This version is over two solid months of development and has over 60 new features, additions, fixes, and enhancements. Most notably is the new payload selection called “Multi-pyInjector”. Multi-pyInjector allows you to inject as many payloads as you want to into memory and select them all through the Social-Engineer Toolkit. In a number of situations where egress filtering may be stringent, the last thing you want is to get shut down by outbound connections. With the Multi-pyInjector technique, you can have native Metasploit payloads be directly inserted into memory realtime and without the need of touching the hard-disk.

[ScanPlanner] Scanner Nmap Online


ScanPlanner is the easiest, fastest way to run NMAP scans and tests from the web. Schedule and track your network scans and vulnerability tests with our intuitive online interface.

11/12/2012

Intercepter-Ng - Pocket Sniffer For Android

Intercepter-NG is a multifunctional network toolkit for various types of IT specialists. It has functionality of several famous separate tools and more over offers a good and unique alternative of Wireshark for android.

07/12/2012

[jSQL Injection] Java based automated SQL injection tool


jSQLi is java based free SQL Injection Tool. It is very easy for user to retrieve database information from a vulnerable web server.

SQL Injection features:

  • GET, POST, header, cookie methods
  • normal, error based, blind, time based algorithms
  • automatic best algorithms detection
  • data retrieving progression
  • proxy setting
  • evasion
  • for now supports MySQL

04/12/2012

Wireshark corrige 11 vulnerabilidades

Se ha publicado la versión de Wireshark 1.8.4/1.6.12 que soluciona once vulnerabilidades relacionadas con impactos de tipo denegación de servicio o revelación de información.
 
Wireshark es una aplicación de auditoría orientada al análisis de tráfico en redes. Su popularidad es muy elevada, puesto que soporta una gran cantidad de protocolos y es de fácil manejo. Además Wireshark es software libre (sujeto a licencia GPL) y se ejecuta sobre la mayoría de sistemas operativos Unix y compatibles, así como en Microsoft Windows.
 
Se han encontrado once vulnerabilidades en Wireshark que podrían provocar que la aplicación dejara de responder, causando una denegación de servicio o revelar información sobre el host en que se utiliza.
 

03/12/2012

[Nmap 6.25] 85 new NSE scripts

Download+Nmap+6.25After five months NMAP team release latest version of open source utility for network exploration or security auditing - NMAP 6.25 .

It was designed to rapidly scan large networks, but works fine against single hosts. Nmap runs on all major computer operating systems, and official binary packages are available for Linux, Windows, and Mac OS X.

Many systems and network administrators also find it useful for tasks such as network inventory, managing service upgrade schedules, and monitoring host or service uptime. Nmap uses raw IP packets in novel ways to determine what hosts are available on the network, what services (application name and version) those hosts are offering, what operating systems (and OS versions) they are running, what type of packet filters/firewalls are in use, and dozens of other characteristics.

29/11/2012

[Xenotix] XSS Exploit Framework 2013 v2 Released


Xenotix XSS Exploit Framework is a penetration testing tool to detect and exploit XSS vulnerabilities in Web Applications. This tool can inject codes into a webpage which are vulnerable to XSS. It is basically a payload list based XSS Scanner and XSS Exploitation kit. It provides a penetration tester the ability to test all the XSS payloads available in the payload list against a web application to test for XSS vulnerabilities. The tool supports both manual mode and automated time sharing based test modes. The exploitation framework in the tool includes a XSS encoder, a victim side XSS keystroke logger, an Executable Drive-by downloader and a XSS Reverse Shell. These exploitation tools will help the penetration tester to create proof of concept attacks on vulnerable web applications during the creation of a penetration test report.

Labels

Analysis (4) Android (2) Anonymity (2) Audit (2) BackBox (1) Backdoor (1) BeEF (1) Bluetooth (1) Browsers (1) Brute-force (4) Burp (1) Burp Suite (1) Chrome (1) connection (1) Contacto (1) Cookie (1) Cookie Cadger (1) Cracking (3) Database (1) Debug (1) Decrypt (2) DEFT (1) Disassembler (1) Dissy (1) Distro (3) Diviner (1) DLL Injection (1) DNS (1) EN (46) encrypted (1) ES (6) Exploit (5) ExploitShield (1) FAAR (1) Fingerprint (1) Firewall (1) Forensic (2) Forensics (1) Framework (4) FTP (1) FTP Password Kracker (1) GNUnet (1) Harvester (1) Hydra (1) Intercepter-Ng (1) ISME (1) java (1) JBoss (1) joomla (1) Joomscan (1) jSQL (1) Linux (36) Mac (10) Man-in-the-Middle (2) Manage (1) Metasploit (1) multithreaded (1) NetSleuth (1) Network (1) Network Database Scanner (1) Network Password Decryptor (1) News (1) Nmap (2) Online (1) OpenPGP (1) OWASP (1) P2P (1) Patator (1) Perl (1) Phishing (1) Phone (1) Process (1) Processes (1) PwnPi (1) PwnStar (1) PySQLi (1) Python (2) Recovery (2) Repair (1) Rootkit (1) Scan (7) Scanner (6) ScanPlanner (1) Script (2) Scylla (1) Scythe (1) Security (1) SET (2) ShowWindows (1) Sniffer (1) Sniffing (2) Snuck (1) Social-Engineer (1) Spooftooph (1) SQLi (2) SSL/TLS (1) SSLsplit (1) Subterfuge (1) System (1) TCHead (1) THC Hydra (1) Toolkit (3) TOR (1) Tunneling (1) TXDNS (1) Ubuntu (1) Video (2) Virtualsectiondumper (1) VMInjector (1) VMware (1) VSD (1) vulnerabilities (4) Webmaster (2) WebSploit (1) Wifi (2) Wifi Honey (1) WiFi Password Decryptor (1) Windows (27) Wireshark (1) Wordlists (1) Xenotix (1) xHydra (1) XSS (2) ZAP (2)