Halaman

Tampilkan postingan dengan label Hacking. Tampilkan semua postingan
Tampilkan postingan dengan label Hacking. Tampilkan semua postingan

Senin, 24 Desember 2018

Hacking Android app with Frida

. Senin, 24 Desember 2018 .

https://android.jlelse.eu/hacking-android-app-with-frida-a85516f4f8b7


https://www.frida.re/docs/android/


https://gsec.hitb.org/materials/sg2016/whitepapers/Hacking%20Soft%20Tokens%20-%20Bernhard%20Mueller.pdf

(Read More..)

Minggu, 23 Desember 2018

Powershell Empire

. Minggu, 23 Desember 2018 .

Empire is a pure PowerShell post-exploitation agent built on cryptologically-secure communications and a flexible architecture. Empire implements the ability to run PowerShell agents without needing powershell.exe, rapidly deployable post-exploitation modules ranging from key loggers to Mimikatz, and adaptable communications to evade network detection, all wrapped up in a usability-focused framework.



Why PowerShell?

PowerShell offers a multitude of offensive advantages, including full .NET access, application whitelisting, direct access to the Win32 API, the ability to assemble malicious binaries in memory, and a default installation on Windows 7+. Offensive PowerShell had a watershed year in 2014, but despite the multitude of useful projects, many pentesters still struggle to integrate PowerShell into their engagements in a secure manner.




(Read More..)

Selasa, 02 Mei 2017

Android-Applications-Reversing-101

. Selasa, 02 Mei 2017 .

https://www.evilsocket.net/2017/04/27/Android-Applications-Reversing-101/

(Read More..)

Selasa, 21 Februari 2017

basicRAT

. Selasa, 21 Februari 2017 .

This is a cross-platform Python Remote Access Trojan (RAT), basicRAT was created to maintain a clean design full-featured Python RAT. Currently a work in progress and still being actively hacked on.
Disclaimer: This RAT is for research purposes only, and should only be used on authorized systems. Accessing a computer system or network without authorization or explicit permission is illegal.

https://github.com/vesche/basicRAT

(Read More..)

PRET - Printer Exploitation Toolkit

.

http://hacking-printers.net/wiki/index.php/Main_Page
https://github.com/RUB-NDS/PRET

(Read More..)

Malboxes

.

https://gosecure.net/2017/02/16/introducing-malboxes-a-tool-to-build-malware-analysis-virtual-machines/

Introducing Malboxes: a Tool to Build Malware Analysis Virtual Machines

(Read More..)

decompile py2exe

.


[SHARE] Berikut ini adalah 2 repositori script python yang dapat rekan-rekan gunakan untuk proses reverse engineering aplikasi yang dibuat menggunakan py2exe. Repositori pertama adalah untuk py2exe yang dibuat menggunakan python versi 2, sedangkan repositori kedua adalah untuk py2exe yang menggunakan python versi 3.
* https://github.com/matiasb/unpy2exe
* https://github.com/NVISO-BE/decompile-py2exe

(Read More..)

OSINT : Belati

.

https://github.com/aancw/Belati

(Read More..)

PentestBox : Portable Penetration Testing Environment for the Windows Operating System

.

https://pentestbox.org/

(Read More..)

Sabtu, 19 Maret 2016

pupy Remote Administration Tool with an embedded Python interpreter.

. Sabtu, 19 Maret 2016 .

Pupy is an opensource, multi-platform (Windows, Linux, OSX, Android) Remote Administration Tool with an embedded Python interpreter.  
 

(Read More..)

Rabu, 30 Juli 2014

SQL Server – Link... Link... Link... and Shell: How to Hack Database Links in SQL Server!

. Rabu, 30 Juli 2014 .

https://www.netspi.com/blog/entryid/197/how-to-hack-database-links-in-sql-server

(Read More..)

Abusing Oracle’s CREATE DATABASE LINK privilege for fun and profit!

.

http://www.notsosecure.com/blog/2014/07/08/abusing-oracles-create-database-link-privilege-for-fun-and-profit/

(Read More..)

peepdf

.

peepdf is a Python tool to explore PDF files in order to find out if the file can be harmful or not. The aim of this tool is to provide all the necessary components that a security researcher could need in a PDF analysis without using 3 or 4 tools to make all the tasks. With peepdf it's possible to see all the objects in the document showing the suspicious elements, supports all the most used filters and encodings, it can parse different versions of a file, object streams and encrypted files. With the installation of PyV8 and Pylibemu it provides Javascript and shellcode analysis wrappers too. Apart of this it's able to create new PDF files and to modify/obfuscate existent ones.
The main functionalities of peepdf are the following:

(Read More..)

0xfeedface - Reverse Engineering EBOOK

.

0xfeedface.org/~shawn/docs/Reversing&Exploiting/

(Read More..)

Kamis, 29 Mei 2014

Bypassing web application firewalls using HTTP headers

. Kamis, 29 Mei 2014 .

http://h30499.www3.hp.com/t5/Fortify-Application-Security/Bypassing-web-application-firewalls-using-HTTP-headers/ba-p/6418366#.U4dluNKSz3R

(Read More..)

Sabtu, 01 Maret 2014

Still Passing the Hash 15 Years Later

. Sabtu, 01 Maret 2014 .

http://passing-the-hash.blogspot.com/2014/02/pre-rsa-conference-demo-win-81-attack.html

(Read More..)

Sabtu, 18 Januari 2014

NTLM Challenge Response is 100% Broken (Yes, this is still relevant)

. Sabtu, 18 Januari 2014 .

http://markgamache.blogspot.com/2013/01/ntlm-challenge-response-is-100-broken.html
http://markgamache.blogspot.com/2013/01/ntlm-hasnt-been-relevant-for-like-12.html

Rehashing Pass the Hash 

http://markgamache.blogspot.com/2013/01/rehashing-pass-hash.html

https://github.com/SpiderLabs/Responder

Introducing Responder-1.0

http://blog.spiderlabs.com/2012/10/introducing-responder-10.html

http://blog.spiderlabs.com/2013/01/owning-windows-networks-with-responder-17.html

http://blog.spiderlabs.com/2013/02/owning-windows-network-with-responder-part-2.html

(Read More..)

Selasa, 14 Januari 2014

Bypassing Windows ASLR using “Run without permission” Add-ons

. Selasa, 14 Januari 2014 .

http://www.greyhathacker.net/?p=756

(Read More..)

Sabtu, 11 Januari 2014

CounterStrike Lawful Interception slides: http://t.co/8KeouQAOjM

. Sabtu, 11 Januari 2014 .

CounterStrike Lawful Interception slides: http://t.co/8KeouQAOjM

(Read More..)

Sabtu, 21 Desember 2013

ARP poisoning with Python

. Sabtu, 21 Desember 2013 .

http://danmcinerney.org/arp-poisoning-with-python-2/

(Read More..)
 
{nama-blog-anda} is proudly powered by Blogger.com | Template by Agus Ramadhani | o-om.com