Latest Post

Java LOIC - Network stress testing application

Written By Unknown on Thursday, 27 December 2012 | 06:29

JavaLOIC is a clone of LOIC written entirely in java.

This project is not related with Praetox.

Download JavaLOIC.exe (1.1 MB)
Download other versions

Platform - Windows,Linux

Source-
http://sourceforge.net/projects/javaloic/

Process Hacker 2.29 - View and manage processes, services and more with this powerful tool.

Process Hacker is a free and open source process viewer. This multi-purpose tool will assist you with debugging, malware detection and system monitoring. It includes powerful process termination, memory viewing/editing and other unique and specialized features.

Features
  • Clear overview of running processes and resource usage
  • Detailed system information and graphs
  • Views and edits services
  • Powerful process termination
  • Bypasses security software and rootkits
  • Other features useful for debugging and analyzing software

Source-
http://sourceforge.net/projects/processhacker/

HoneyDrive Desktop released!

Written By Unknown on Wednesday, 26 December 2012 | 23:39


HoneyDrive is a virtual appliance (OVA) with Xubuntu Desktop 12.04 32-bit edition installed. It contains various honeypot software packages such as Kippo SSH honeypot, Dionaea malware honeypot, Honeyd low-interaction honeypot and more. Additionally it includes useful pre-configured scripts and utilities to analyze, visualize and process the data it can capture, such as Kippo-Graph, Honeyd-Viz, and much more. Lastly, many other helpful security, forensics and malware related tools tools are also present in the distribution.
The latest version (0.1) of HoneyDrive Desktop (Santa Claus edition), which was officially released on December 26, 2012 will be hosted at SourceForge.net. I am uploading the appliance (around 2.7GBs) while writing this post and need a couple of hours. Here is the link where you will find it: http://sourceforge.net/projects/honeydrive/
Please take a look at the README.txt file on SourceForge (also included inside the the virtual disk) to learn the specific features and where everything is located.
The installation procedure is pretty straightforward: after downloading the file, you simply have to import the virtual appliance to your virtual machine manager/hypervisor (suggested software: Oracle VM VirtualBox).
Below is a comprehensive list of HoneyDrive's features, ready to be used for promotion purposes :)
  • Virtual appliance based on Xubuntu 12.04 Desktop.
  • Distributed as a single OVA file, ready to be imported.
  • Full LAMP stack installed (Apache 2, MySQL 5), plus tools such as phpMyAdmin.
  • Kippo SSH Honeypot, plus Kippo-Graph, Kippo2MySQL and other helpful scripts.
  • Dionaea malware honeypot, plus phpLiteAdmin and other helpful scripts.
  • Honeyd low-interaction honeypot, plus Honeyd2MySQL, Honeyd-Viz and other helpful scripts.
  • LaBrea sticky honeypot, Tiny Honeypot, IIS Emulator, INetSim and SimH.
  • A full suite of security, forensics and anti-malware tools for network monitoring, malicious shellcode and PDF analysis, such as ntop, p0f, EtherApe, nmap, DFF, Wireshark, ClamAV, ettercap, Automater, UPX, pdftk, Flasm, pdf-parser, Pyew, dex2jar and more.
  • Firefox plugins pre-installed, plus extra helpful software such as GParted, Terminator, VYM, Xpdf and more.
DOWNLOAD:
The latest version (0.1) of HoneyDrive Desktop (Santa Claus edition), released on December 26, 2012 is hosted at SourceForge.net: http://sourceforge.net/projects/honeydrive/
MD5 Checksum: 49e57aab8ca36a02e0114930cb11c09d
SHA-1 Checksum: f644e878527a39f87df515ba7026ae84960b239d
Please take a look at the README.txt file on SourceForge (also included inside the the virtual disk) to see where everything is located.
INSTALLATION:
After downloading the file, you simply have to import the virtual appliance to your virtual machine manager/hypervisor (suggested software: Oracle VM VirtualBox).

Source-

How To Make PCmanFM Shows All Images Thumbnail

Written By Unknown on Tuesday, 25 December 2012 | 19:36

 Change the amout of image file size we want to generate

 PCmanFM shows the thumbnails for all images



Since GNOME went to version 3 (which is a disaster), LXDE is now one of the most popular and most used desktop environments in Linux, alongside MATE and XFCE. It is good looking, modern and amazingly fast.

But don't you aware? That PCmanFM, the default File Manager for LXDE, ain't able to show all of our images/pictures/photos thumbnail. At the first time I realized this, I was lil bit confused. Why, and what happened ? Was this a bug ?

Apparently, this is not a bug. It is the default setting of PCmanFm for the sake of speed. This file manager won't show thumbnails for images/pictures with file size more than 2 MB.

So, to make PCmanFM able to show thumbnail for images with size more than 2 MB, we have to set it. To do that, just go to menu Edit > Preferences > Display, and at the bottom, change the value of  "Do not generate thumbnails for file exceeding this size" from 2000 KB to bigger size we want. Maybe 10000 KB (10MB) is enough, but if you are a photographer, you probably need more value because better image (in resolution and quality) will produce bigger file size.

That's all.

Best SQL Injection Tools


Havij SQL Injection

Havij is an automated SQL Injection tool that helps penetration testers to find and exploit SQL Injection vulnerabilities on a web page.The power of Havij that makes it different from similar tools is its injection methods. The success rate is more than 95% at injectiong vulnerable targets using Havij.The user friendly GUI (Graphical User Interface) of Havij and automated settings and detections makes it easy to use for everyone even amateur users.
havij Best SQL Injection Tools

Download


Pangolin – Automated SQL Injection Test Tool

Pangolin is a penetration testing, SQL Injection test tool on database security. It finds SQL Injection vulnerabitlities.Its goal is to detect and take advantage of SQL injection vulnerabilities on web applications. 
Pangolin+sql+injection Best SQL Injection Tools

Download


The Mole

The Mole is an automatic SQL Injection exploitation tool. Only by providing a vulnerable URL and a valid string on the site it can detect the injection and exploit it, either by using the union technique or a boolean query based technique.
the+mole Best SQL Injection Tools

Download


SQLNinja

Sqlninja’s goal is to exploit SQL injection vulnerabilities on web applications that use Microsoft SQL Server as back end. There are a lot of other SQL injection tools out there but sqlninja, instead of extracting the data, focuses on getting an interactive shell on the remote DB server and using it as a foothold in the target network.
sql+ninja Best SQL Injection Tools

Download


Safe3SI

Safe3SI is one of the most powerful and easy usage penetration tool that automates the process of detecting and exploiting SQL injection flaws and taking over of database servers. It comes with a kick-ass detection engine, many niche features for the ultimate penetration tester and a broad range of switches lasting from database fingerprinting, over data fetching from the database, to accessing the underlying file system and executing commands on the operating system via out-of-band connections.
safe3 Best SQL Injection Tools

Download


BSQL Hacker

BSQL (Blind SQL) Hacker is an automated SQL Injection Framework / Tool designed to exploit SQL injection vulnerabilities virtually in any database.
bsql+hacker Best SQL Injection Tools

Download


FatCat Automatic SQL Injectionhttp://code.google.com/p/fatcat-sql-injector/
SQL Maphttp://sqlmap.sourceforge.net/
SQL Pozionhttp://www.4shared.com/rar/kUtKKQxy/sql_poizon_v11_-_the_exploit_s.html?
Sqlsushttp://sqlsus.sourceforge.net/download.html
Dark Jumperhttp://mac.softpedia.com/get/Security/Darkjumper.shtml
source : http://www.hackingarticles.in

THC-Hydra 7.4.1 released



















THC-Hydra

Number one of the biggest security holes are passwords, as every password security study shows. Hydra is a parallized login cracker which supports numerous protocols to attack. New modules are easy to add, beside that, it is flexible and very fast.

Hydra available for Linux, Windows/Cygwin, Solaris 11, FreeBSD 8.1 and OSX, Currently supports AFP, Cisco AAA, Cisco auth, Cisco enable, CVS, Firebird, FTP, HTTP-FORM-GET, HTTP-FORM-POST, HTTP-GET, HTTP-HEAD, HTTP-PROXY, HTTPS-FORM-GET, HTTPS-FORM-POST, HTTPS-GET, HTTPS-HEAD, HTTP-Proxy, ICQ, IMAP, IRC, LDAP, MS-SQL, MYSQL, NCP, NNTP, Oracle Listener, Oracle SID, Oracle, PC-Anywhere, PCNFS, POP3, POSTGRES, RDP, Rexec, Rlogin, Rsh, SAP/R3, SIP, SMB, SMTP, SMTP Enum, SNMP, SOCKS5, SSH (v1 and v2), Subversion, Teamspeak (TS2), Telnet, VMware-Auth, VNC and XMPP.





A very fast network logon cracker which support many different services.
See feature sets and services coverage page - incl. a speed comparison against ncrack and medusa

Current Version: 7.4.1 Last update 2012-12-24


 [0x00] News and Changelog

Check out the feature sets and services coverage page - including a speed comparison against ncrack and medusa (yes, we win :-) ) Read below for Linux compilation notes. And there is a new section below for online tutorials.


CHANGELOG for 7.4.1
===================
* Quickfix to compile for people who do not have libssh installed

CHANGELOG for 7.4
-----------------
* New module: SSHKEY - for testing for ssh private keys (thanks to deadbyte(at)toucan-system(dot)com!)
* Added support for win8 and win2012 server to the RDP module
* Better target distribution if -M is used
* Added colored output (needs libcurses)
* Better library detection for current Cygwin and OS X
* Fixed the -W option
* Fixed a bug when the -e option was used without -u, -l, -L or -C, only half of the logins were tested
* Fixed HTTP Form module false positive when no answer was received from the server
* Fixed SMB module return code for invalid hours logon and LM auth disabled
* Fixed http-{get|post-form} from xhydra
* Added OS/390 mainframe 64bit support (thanks to dan(at)danny(dot)cz)
* Added limits to input files for -L, -P, -C and -M - people were using unhealthy large files! ;-)
* Added debug mode option to usage (thanks to Anold Black)

You can also take a look at the full CHANGES file
 
Source and Binaries

1. The source code of state-of-the-art Hydra: hydra-7.4.1.tar.gz
(compiles on all UNIX based platforms - even MacOS X, Cygwin on Windows, ARM-Linux, etc.)

2. The source code of the stable tree of Hydra ONLY in case v7 gives you problems on unusual and old platforms:
hydra-5.9.1-src.tar.gz

3. The Win32/Cywin binary release: --- not anymore ---
Install cygwin from http://www.cygwin.com
and compile it yourself. If you do not have cygwin installed - how
do you think you will do proper securiy testing? duh ...

4. ARM and Palm binaries here are old and not longer maintained:
ARM: hydra-5.0-arm.tar.gz
Palm: hydra-4.6-palm.zip
 
Source-
 

Fixing nm-applet (Network Manager Applet) icon in LXDE/XFCE/MATE Desktop

Written By Unknown on Monday, 24 December 2012 | 23:05



If we use MATE or LXDE, we probably often got a bug in Network Manager Applet (nm-applet) particularly if we use a mobile broadband connection. The bug is there is no icon when the connection is established. What does really cause this ? Well, apparently, the cause is very small, actually not a big deal. The cause is in the crappy default gnome icon theme (yeah, tango icon theme and the gnome icon theme is the ugliest icon themes ever).

To fix this, just follow these simple steps :
  1. Choose a good icon theme for 24 pix panel size
    (I took an icon from /usr/share/icons/Faenza/status/24/nm-signal-100.png
  2. Rename the icon to be nm-wwan-tower.png
  3. Move the icon into the system
    sudo mv nm-wwan-tower.png /usr/share/icons/hicolor/22x22/apps
  4. Logout login, or reboot the system, and last, try it by connecting to the Internet.
 
Support : Creating Website | Johny Template | Mas Template
Copyright © 2011. Turorial Grapich Design and Blog Design - All Rights Reserved
Template Created by Creating Website Published by Mas Template
Proudly powered by Blogger