Recon-ng : Web Reconnaisance framework for Penetration testers
Posted by Mohit Kumar at Sunday, February 17, 2013
Automated HTTP Enumeration Tool
Posted by Mohit Kumar at Friday, February 15, 2013
PySQLi - Python SQL injection framework
Posted by Mohit Kumar at Sunday, November 04, 2012
Phemail.py: Phishing EMail Social Engineering Tool
- Find corporate email addresses: Phemail has an option for harvesting corporate email addresses and save them to a file. Phemail.py leverages Google to search for LinkedIn specific corporate e-mail targets.
- Create a phishing email template: You get to create your own custom phishing templates. Do not forget to add the string “{0}” in each URL as the script will replace this string with the correct URL automatically.
- Host/upload a single PHP file: This file contains JavaScript code which attempts to collect web browser information and save it in a log file in /tmp directory.
- Run the php file as shown in the following example: # phemail.py -e test-emails.txt -f "Tax report " -r "Tax Report " -s "Important information about your tax" -b body.txt -w http://YOUR-WEBSITE.com
Posted by Mohit Kumar at Thursday, August 16, 2012
HTExploit : Open Source Tool to Bypass Standard Directory Protection
- Multiples modules to execute.
- Save the output to an specify directory.
- HTML Reporting.
- Use multiples wordlist to probe against htaccess bypassing.
- Mode verbose for a full detailed information.
- Multi-platform and flexible.
Posted by Mohit Kumar at Saturday, August 04, 2012
BBQSQL : Blind SQL injection framework ( Python )
- URL
- HTTP Method
- Headers
- Cookies
- Encoding methods
- Redirect behavior
- Files
- HTTP Auth
- Proxies
Posted by Mohit Kumar at Friday, August 03, 2012
Anonymous FTP Scanner - Python Script
Posted by Mohit Kumar at Sunday, July 22, 2012
Sensitive Buster v 1.0 - Tool to find out Sensitive Data
Usage:
1-first You Must Install Active Python
2-Open Command Prompt
3-./sensitivebuster.py
There are 5 Mode In This Version The Mode it
-shell
-backup
-admin
-dir
-files
4-./sensitivebuster http://example.com -m backup -p
5-./sensitivebuster http://example.com -m backup -p 127.0.0.1:8080
Password : r00tw0rm.com
Posted by Mohit Kumar at Wednesday, July 18, 2012
TheHarvester v 2.0 - Collects email accounts, usernames and hostnames
- Google - emails,subdomains/hostnames
- Google profiles - Employee names
- Bing search - emails, subdomains/hostnames,virtual hosts
- Pgp servers - emails, subdomains/hostnames
- Linkedin - Employee names
- Exalead - emails,subdomain/hostnames
- Searching emails accounts for the domain microsoft.com, it will work with the first 500 google results.
- Searching emails accounts for the domain microsoft.com in a PGP server, here it's not necessary to specify the limit.
Searching for user names that works in the company microsoft, we use google as search engine, so we need to specify the limit of results we want to use:
- Searching in all sources at the same time, with a limit of 200 results:
Posted by Mohit Kumar at Friday, July 06, 2012
Plecost 0.2.2-9-beta : Wordpress fingerprinting tool
Threads version Usage:
Posted by Mohit Kumar at Friday, July 06, 2012
Creddump - Extracts credentials from Windows registry hives
- LM and NT hashes (SYSKEY protected)
- Cached domain passwords
- LSA secrets
Posted by Mohit Kumar at Thursday, July 05, 2012
Patator :Multi-purpose bruteforce Python Script
- ftp_login : Brute-force FTP
- ssh_login : Brute-force SSH
- telnet_login : Brute-force Telnet
- smtp_login : Brute-force SMTP
- smtp_vrfy : Enumerate valid users using the SMTP VRFY command
- smtp_rcpt : Enumerate valid users using the SMTP RCPT TO command
- finger_lookup : Enumerate valid users using Finger
- http_fuzz : Brute-force HTTP/HTTPS
- pop_passd : Brute-force poppassd (not POP3)
- ldap_login : Brute-force LDAP
- smb_login : Brute-force SMB
- mssql_login : Brute-force MSSQL
- oracle_login : Brute-force Oracle
- mysql_login : Brute-force MySQL
- pgsql_login : Brute-force PostgreSQL
- vnc_login : Brute-force VNC
- dns_forward : Forward lookup subdomains
- dns_reverse : Reverse lookup subnets
- snmp_login : Brute-force SNMPv1/2 and SNMPv3
- unzip_pass : Brute-force the password of encrypted ZIP files
- keystore_pass : Brute-force the password of Java keystore files
Posted by Mohit Kumar at Tuesday, June 26, 2012
SPyMap Portscanner - A python based portscanner, using scapy
Posted by Mohit Kumar at Thursday, June 14, 2012
Fastest Subdomain Bruteforcer Python Script
Posted by Mohit Kumar at Sunday, June 10, 2012
CVE-2012-2122 : Mysql Authentication Bypass Exploit
Posted by Mohit Kumar at Sunday, June 10, 2012
iCrack - python md5 online | offline cracker
Posted by Mohit Kumar at Sunday, June 10, 2012
SMB checker and Remote Code Execution Vulnerability Exploiter Script
Posted by Mohit Kumar at Sunday, June 10, 2012
Joomla Folder Scanner v.1.0b4 Released
- Components: 230 entries
- Languages: 75 entries
- Modules: 683 entries
- Plugins: 30 entries
- Templates: 67 entries
- Multithread support, speed up scanning up to 10x faster!
- Scan admin and public directories.
- Reveal installed components, languages, modules, plugins and templates.
- No joomla user or admin access required.
- Easily customizable.
Posted by Mohit Kumar at Thursday, June 07, 2012
WebSploit Toolkit v 1.8 - Latest Release
Posted by Mohit Kumar at Wednesday, June 06, 2012
Admin Page Finder - Python Script
Posted by Mohit Kumar at Tuesday, June 05, 2012