Monday, December 20, 2010

TwitterPasswordDecryptor – Instantly Recover Twitter Account Passwords





TwitterPasswordDecryptor is the FREE tool to instantly recover Twitter account passwords stored by popular web browsers. Most web browsers store the login credentials for visited websites so that user don’t have to remember and enter the password every time. Each of these web browsers use their own proprietary encryption mechanism to store the login passwords including Twitter account passwords.TwitterPasswordDecryptor automatically crawls through each of these browsers and instantly recovers all of the stored Twitter passwords.


IOCTL Fuzzer v1.2 Released

Free tool to locate IOCTL vulnerabilities in Windows drivers.

IOCTL Fuzzer is a tool designed to automate the task of searching vulnerabilities in Windows kernel drivers by performing fuzz tests on them.The fuzzer’s own driver hooks NtDeviceIoControlFile in order to take control of all IOCTL requests throughout the system.
While processing IOCTLs, the fuzzer will spoof those IOCTLs conforming to conditions specified in the configuration file. A spoofed IOCTL is identical to the original in all respects except the input data, which is changed to randomly generated fuzz.


New in 1.2 version:
Windows 7 support
Full support of 64-bit versions of Windows
Exceptions monitoring
"Fair Fuzzing" feature
Different data generation modes
Boot fuzzing (during OS initialization)

Download: http://ioctlfuzzer.googlecode.com

Sunday, December 19, 2010

Havij v1.13 Advanced SQL Injection

Havij is an automated SQL Injection tool that helps penetration testers to find and exploit SQL Injection vulnerabilities on a web page.
It can take advantage of a vulnerable web application. By using this software user can perform back-end database fingerprint, retrieve DBMS users and  password hashes, dump tables and columns, fetching data from the database, running SQL  statements and even accessing the underlying file system and executing commands on the  operating system.
The power of Havij that makes it different from similar tools is its injection methods. The success rate is more than 95% at injectiong vulnerable targets using Havij.
The user friendly GUI (Graphical User Interface) of Havij and automated settings and detections makes it easy to use for everyone even amateur users.


Download:
Havij v1.13 Free  (MD5 checksum: 276a84bda58a9def55eef35bf2838a77)

BASH Shell change the color of my shell prompt under Linux or UNIX

Q. How do I change the color of my shell prompt under Linux ?
A. You can change the color of your shell prompt to impress your friend or to make your own life quite easy while working at command prompt.
In the Linux default shell is BASH.
Your current prompt setting is stored in PS1 shell variable. There are other variables too, like PS2, PS3 and PS4.
Bash displays the primary prompt PS1 when it is ready to read a command, and the secondary prompt PS2 when it needs more input to complete a command. Bash allows these prompt strings to be customized by inserting a number of backslash-escaped special characters.

 


Friday, December 17, 2010

BackTrack 4 R2 Released!

BackTrack is intended for all audiences from the most savvy security professionals to early newcomers to the information security field. BackTrack promotes a quick and easy way to find and update the largest database of security tools collection to-date. Our community of users range from skilled penetration testers in the information security field, government entities, information technology, security enthusiasts, and individuals new to the security community.
Feedback from all industries and skill levels allows us to truly develop a solution that is tailored towards everyone and far exceeds anything ever developed both commercially and freely available. The BackTrack Project is funded by Offensive Security.

BackTrack 4 R2 Release ISO

Last Update: 22.11.2010
Name:: bt4-r2.iso Size: 2000 MB
MD5: 9a94caa0e980a7331e9abc1d4c42c9a9

Download  |  Torrent 

Sunday, November 7, 2010

The Social-Engineer Toolkit v1.0 “Devolution” Release

This version adds several key components including new attack vectors, a web GUI interface, a way to automate SET behavior, and a slew of bug fixes.

The Social-Engineering Toolkit (SET) is a python-driven suite of custom tools which solely focuses on attacking the human element of pentesting. It's main purpose is to augment and simulate social-engineering attacks and allow the tester to effectively test how a targeted attack may succeed. Currently SET has two main methods of attack, one is utilizing Metasploit payloads and Java-based attacks by setting up a malicious website (which you can clone whatever one you want) that ultimately delivers your payload. The second method is through file-format bugs and e-mail phishing. The second method supports your own open-mail relay, a customized sendmail open-relay, or Gmail integration to deliver your payloads through e-mail. The goal of SET is to bring awareness to the often forgotten attack vector of social-engineering.

More info and Download: http://www.secmaniac.com

Metasploit Framework 3.5.0 Released 2010-10-20


Metasploit provides useful information and tools for penetration testers, security researchers, and IDS signature developers. This project was created to provide information on exploit techniques and to create a functional knowledgebase for exploit developers and security professionals. The tools and information on this site are provided for legal security research and testing purposes only. Metasploit is an open source project managed by Rapid7. 
  
Version 3.5.0 of the Metasploit penetration testing framework has been released, including 613 exploits, 306 auxiliary modules, and 215 payloads. This release includes major improvements to the database backend, session handling, pivoting, and the Meterpreter. While the old Web and GTK GUIs have been officially deprecated, this build includes scriptjunkie's brand new Java GUI, which uses the XMLRPC protocol in the same fashion as the commercial products. Zate Berg's Nessus plugin and importer has been integrated, as has support for importing Retina and NetSparker XML output files. The Windows installer no longer uses Cygwin, supports a tabbed native console, and includes PostgreSQL and Java. The Windows user experience has been vastly improved, as the Metasploit Console is now preconfigured with a local database, allowing access to commands like db_import, db_export, and db_nmap right out of the box

233,458,127 bytes (223M)
Windows installer including all dependencies, plus Java, PostgreSQL, and Console2.
[ PGP ] SHA1: 305af613ff330923faa2b723ee128c6eb2700a82 
 
framework-3.5.0-linux-i686.run
42,254,784 bytes (42M)
Linux 32-bit installer including all dependencies.
[ PGP ] SHA1: c17badf0aaf209c6d6ea9069b97aecde4130e732
 

Monday, October 18, 2010

Ubah tampilan clock-applet di Ubuntu

Jika anda bosan dengan tampilan jam di panel Ubuntu (clock-applet) yang standar, anda bisa saja mengubahnya sesuai dengan tema yang anda pakai.

Tampilan menumpuk:



Tampilan hanya jam:
 



Tampilan mirip OS X:

 




Bagaimana mengganti tampilan clock applet seperti diatas ?

1. Tekan Alt+F2

2. Masukkan gconf-editor dan Run.

3. Masuk ke:
Apps > Panel > Applets > Clock_Screen* > Prefs
*) mungkin berbeda di komputer anda, tapi biasanya Clock_Screen0, yang penting masuk ke prefs

4. Dobel-klik pada Format dan isi dengan custom.

5. Dobel-klik pada Custom Format dan isi dengan script dibawah ini:

Tampilan menumpuk:
http://pastebin.com/eZx6L1QX
Tampilan hanya jam:
http://pastebin.com/PeMrrnWW
Tampilan mirip OS X:
http://pastebin.com/R0cEP5HK
6. Setelah diisi dengan script diatas, tekan Enter.

Sumber

 

Subscribe in Bloglines Msn bot last visit powered by MyPagerank.Net Yahoo bot last visit powered by MyPagerank.Net
I heart FeedBurner downtime checker The Ubuntu Counter Project - user number # 31290

 
Twitter Delicious Facebook Digg Stumbleupon Favorites More

 
Powered by TadPole
FOG FLAMES