Show Posts

This section allows you to view all posts made by this member. Note that you can only see posts made in areas you currently have access to.


Topics - noob

Pages: [1] 2 3
1
Android / In call voice changer
« on: April 10, 2013, 08:15:48 pm »
Anyone has this kind of app?

2
Android / A2SDGui
« on: April 08, 2013, 01:46:36 am »

^Just a random picture from net not from my phone***

I flashed my phone with custom rom cm7 couple days ago and this app is biggest reason why i root it.

This tool enable you to make swap and ext partition.
I have 160 mb internal phone memory and now i have 512 mb more with ext partition and now i have swap
partition 256 mb to use when ram is full.
I only cany say my phone i 2x faster and i have much more space.

Anyway this is tutorial who wana try it:

First you must have it :
1. A2SD Darktremor script http://www.darktremor.info/files/a2sd/dtapps2sd-2.7.5.3-beta04-signed.zip, save to sdcard.
2. A2SDGui, free download with ads from playstore
3. 2nd partition, it should be ext2/ext3/ext4
4. CM7

Installation
1. enter CWM recovery
2. choose mount & storage then mount system and mount data, back to first page of recovery
3. choose install zip from sdcard, apply dtapps2sd-2.7.5.3-beta04-signed.zip
4. clear cache
5. reboot to system (wait until it finished) then a2sd should be working by now, but i recomend to do the next step
6. install A2SD GUI, open app, then choose what you want CMIIW

recomended setting in my opinion
1. let dalvik cache in internal memory..
2. use moderate low memory setting and set home at memory in CM settings
3. swap on off, choose what you want, with this you can apply swap without reapply after a reboot

4
Android / 'Repair' IMEI
« on: March 08, 2013, 04:34:28 pm »
I need a tool to 'repair' IMEI on android phone,i have 2.3.6 android version.Does anyone have free tool for this if not where i can buy a cheap one?

5
Security Tools / Cross platform RAT written in Java - Frutas 0.9
« on: February 19, 2013, 01:23:17 am »
The Frutas RAT allows attackers to create a connect-back client JAR file to run on a compromised computer. When executed, it parses an embedded configuration file for a server IP and port to connect to. The back door builder provides some minor obfuscation, which allows the attacker to use a custom encryption key for some of the embedded back door functionalities



Upon receiving a back door connection, the RAT server alerts the attacker and allows them to perform various back door functions on the compromised computer, including:
 
  • Query or kill system processes
  • Browse file systems
  • Download and execute arbitrary files
  • Send popup messages
  • Open a specified website in a browser
  • Perform denial of service attacks against a specified IP address



     The back door Java file uses a custom class loader that loads encrypted class files (named Opcion[1-14]) as it receives commands from the RAT controller server. The key, specified by the attacker when creating the back door, is used to encrypt the class files using DES as a stream cipher.



    Rar password:evilzone.org

6
Tutorials / Whana build your hacking skills and dont wana break a law?
« on: December 21, 2012, 10:11:22 pm »
If you wana be a decent hacker, you wana test your knowledge without ilegal breaking
on private servers  and risking to be caught this is blog for you.Most of you heard for this guy and there are also many who didnt.

Code: [Select]
http://g0tmi1k.blogspot.com/
This guy dedicate last couple years breaking into virtual operating systems, which have been purposely vunerable by designe.He recorded,writed and shared every step he made to get into thous systems.All tools he use you can find on backtrack distribution,no windows included.

7
Video Tutorials / Derbycon 2012 Videos
« on: October 06, 2012, 05:55:24 pm »


Code: [Select]
http://www.irongeek.com/i.php?page=videos/derbycon2/mainlist

8
Code: [Select]
http://sectooladdict.blogspot.com/2012/07/2012-web-application-scanner-benchmark.html

9


Its a grate book,i like the part wher they intoduce you in new method how hackers generate new exploits easily with IDA in a updated software like flash ,java...
First couple chapter are boring,ninja and samurai
Alote more covered in book:disguise, espionage, stealth...

11
Tutorials / Remote and Local File Inclusion Vulnerabilities 101
« on: April 18, 2012, 02:30:33 pm »
1. Executive Summary
2. Introduction
3. PHP internals
3.1 PHP execution process
3.2 PHP include function
4. Malicious file includes – RFI
4.1 Classic RFI
4.2 Classic RFI “in the wild”
4.3 Advanced RFI using PHP streams
5. Malicious File Includes (MFI)
5.1 Adding PHP code to log files
5.2 Uploading user content with Embedded PHP code
5.2.1 Editing file content to embed PHP code
5.2.2 PHP code-embedded files detection
6. Malicious file inclusion in the wild
6.1 Background
6.2 Remote file inclusion in the wild
6.2.1 Attack sources analysis
6.2.2 Shell hosting URLs analysis
6.2.3 Shell analysis
7. Mitigating RFI/LFI
8. Appendix A – PHP streams and wrappers

Code: [Select]
http://www.imperva.com/docs/HII_Remote_and_Local_File_Inclusion_Vulnerabilities.pdf

12
Security Tools / Web Sploit Toolkit
« on: April 08, 2012, 11:43:08 pm »
 WebSploit Is An Open Source Project For Scan And Analysis Remote System From Vulnerability



Description :
 
 
  • Autopwn - Used From Metasploit For Scan and Exploit Target Service
  • wmap - Scan,Crawler Target Used From Metasploit wmap plugin
  • format infector - inject reverse & bind payload into file format
  • phpmyadmin - Search Target phpmyadmin login page
  • lfi - Scan,Bypass local file inclusion Vulnerability & can be bypass some WAF
  • apache users - search server username directory (if use from apache webserver)
  • Dir Bruter - brute target directory with wordlist
  • admin finder - search admin & login page of target
  • MLITM Attack - Man Left In The Middle, XSS Phishing Attacks
  • MITM - Man In The Middle Attack
Code: [Select]
http://sourceforge.net/projects/websploit/files/WebSploit%20Toolkit%20V.1.5/

13
Hacking and Security / [POC] Windows RDP Vulnerability Exploit
« on: March 17, 2012, 12:27:34 am »


Code: [Select]
http://pastebin.com/UzDKcCQy
Code: [Select]
http://pastie.org/private/feg8du0e9kfagng4rrg

14


SecurityTube today launched a FREE community edition of the courseware it uses for the SecurityTube Metasploit Framework Expert (SMFE) course and certification. They already have students from over 40+ countries taking their courses and online labs.
 This DVD goes to show their long lasting commitment to FREE Infosec Education for one and all.

Direct DVD Download ( 2 GB ) :
Code: [Select]
http://dvd.securitytube.net/SMFE-Community.zip

15
trixd00r is an advanced and invisible userland backdoor based on TCP/IP for UNIX systems. It consists of a server and a client. The server sits and waits for magic packets using a sniffer. If a magic packet arrives, it will bind a shell over TCP or UDP on the given port or connecting back to the client again over TCP or UDP. The client is used to send magic packets to trigger the server and get a shell.

Download:
Code: [Select]
www.nullsecurity.net/tools/trixd00r-0.0.1.tar.gz
youtube video:http://www.youtube.com/watch?v=Hs-nRUrnzwE&feature=player_embedded

Pages: [1] 2 3


Intern0t SoldierX py1337 SecurityOverride programisiai iExploit
Want to be here? Contact Ande, Bluechill or Kulverstukas on the forum or at IRC.