Halaman

Tampilkan postingan dengan label hacker. Tampilkan semua postingan
Tampilkan postingan dengan label hacker. Tampilkan semua postingan

Rabu, 30 Juli 2014

SQL Server – Link... Link... Link... and Shell: How to Hack Database Links in SQL Server!

. Rabu, 30 Juli 2014 .

https://www.netspi.com/blog/entryid/197/how-to-hack-database-links-in-sql-server

(Read More..)

Abusing Oracle’s CREATE DATABASE LINK privilege for fun and profit!

.

http://www.notsosecure.com/blog/2014/07/08/abusing-oracles-create-database-link-privilege-for-fun-and-profit/

(Read More..)

peepdf

.

peepdf is a Python tool to explore PDF files in order to find out if the file can be harmful or not. The aim of this tool is to provide all the necessary components that a security researcher could need in a PDF analysis without using 3 or 4 tools to make all the tasks. With peepdf it's possible to see all the objects in the document showing the suspicious elements, supports all the most used filters and encodings, it can parse different versions of a file, object streams and encrypted files. With the installation of PyV8 and Pylibemu it provides Javascript and shellcode analysis wrappers too. Apart of this it's able to create new PDF files and to modify/obfuscate existent ones.
The main functionalities of peepdf are the following:

(Read More..)

Python tools for Pentesters

.


(Read More..)

Sabtu, 01 Maret 2014

Still Passing the Hash 15 Years Later

. Sabtu, 01 Maret 2014 .

http://passing-the-hash.blogspot.com/2014/02/pre-rsa-conference-demo-win-81-attack.html

(Read More..)

Minggu, 02 Juni 2013

Examination of the Bitsquatting Attack Surface (PDF):

. Minggu, 02 Juni 2013 .

https://indico.dns-oarc.net/indico/getFile.py/access?contribId=5&resId=3&materialId=slides&confId=0

(Read More..)

Jumat, 03 Mei 2013

Hacking Instagram Accounts using OAuth vulnerability

. Jumat, 03 Mei 2013 .

http://thehackernews.com/2013/05/hacking-instagram-accounts-using-oauth.html

(Read More..)

Powersploit

.

https://github.com/mattifestation

(Read More..)

Shellcode Execution in .NET using MSIL-based JIT Overwrite

.

http://www.exploit-monday.com/

(Read More..)

Sabtu, 06 April 2013

Hackersh 0.1 Release Announcement

. Sabtu, 06 April 2013 .

I am pleased to announce the Official 0.1 launch of Hackersh ("Hacker Shell") - a shell (command interpreter) written in Python with built-in security commands, and out of the box wrappers for various security tools. It uses Pythonect as its scripting engine. Since it's the first release of Hackersh, I'd like to take this opportunity to explain how it works and why you should be using it.

Hackersh is an interactive console for security research and testing. It uses Pythonect as its scripting language. Pythonect is a new, experimental, general-purpose high-level dataflow programming language based on Python. It aims to combine the intuitive feel of shell scripting (and all of its perks like implicit parallelism) with the flexibility and agility of Python. The combination of the two makes:

(Read More..)

Sabtu, 16 Maret 2013

PowerShell for Penetration Testers

. Sabtu, 16 Maret 2013 .

http://www.slideshare.net/nikhil_mittal/power-shell-forpenetrationtesters

(Read More..)

Selasa, 12 Maret 2013

PoC Keylogger android : Inserting keylogger code in Android SwiftKey using apktool

. Selasa, 12 Maret 2013 .

http://www.android-app-development.ie/blog/2013/03/06/inserting-keylogger-code-in-android-swiftkey-using-apktool/

(Read More..)

Jumat, 08 Maret 2013

Java native code injection

. Jumat, 08 Maret 2013 .

http://www.lexsi-leblog.fr/audit/java-native-code-injection.html

(Read More..)

Selasa, 26 Februari 2013

Facebook OAuth flaw allows gaining full control over any Facebook account

. Selasa, 26 Februari 2013 .

http://thehackernews.com/2013/02/facebook-oauth-flaw-allows-gaining-full.html#_

(Read More..)

Minggu, 03 Februari 2013

What’s in Your Folder: Security Cheat Sheets

. Minggu, 03 Februari 2013 .

http://blog.securitymonks.com/2009/08/15/whats-in-your-folder-security-cheat-sheets/

(Read More..)

Selasa, 01 Januari 2013

Jingle BOFs, Jingle ROPs, Sploiting all the things… with Mona v2 !!

. Selasa, 01 Januari 2013 .

https://www.corelan.be/index.php/2012/12/31/jingle-bofs-jingle-rops-sploiting-all-the-things-with-mona-v2/

(Read More..)

Rabu, 26 Desember 2012

MadMACs: MAC Address Spoofing and Host Name Randomizing App for Windows 7 (Should work in Windows Vista and Windows 8 too)

. Rabu, 26 Desember 2012 .

http://www.irongeek.com/i.php?page=security/madmacs-mac-spoofer

(Read More..)

Sabtu, 22 Desember 2012

ARP Poisoning Script

. Sabtu, 22 Desember 2012 .

http://pentestlab.wordpress.com/2012/12/22/arp-poisoning-script/

(Read More..)

Jumat, 21 Desember 2012

Attacking Ruby Session

. Jumat, 21 Desember 2012 .

Ruby on Rails Sessions

http://phenoelit.org/blog/archives/2012/12/21/let_me_github_that_for_you/index.html

(Read More..)

Sabtu, 08 Desember 2012

Configuring the Social-Engineer Toolkit (SET) to use valid SSL certificates

. Sabtu, 08 Desember 2012 .

http://skeletonkeysecurity.com/post/36794099613/configuring-the-social-engineer-toolkit-set-to-use

(Read More..)
 
{nama-blog-anda} is proudly powered by Blogger.com | Template by Agus Ramadhani | o-om.com