subjack is a Hostile Subdomain Takeover tool.
subjack is a Hostile Subdomain Takeover tool written in Go designed to scan a list of subdomains concurrently and identify ones that are able to be hijacked. With Go’s speed and efficiency, this tool...
View Articleoutis is a custom Remote Administration Tool (RAT).
Disclaimer: Use at your own risk. Do not use without full consent of everyone involved. For educational purposes only. outis is a custom Remote Administration Tool (RAT) or something like that. Think...
View ArticleRogueSploit – a Powerfull social engeering Wi-Fi trap!
::DISCLAIMER:: RogueSploit is intended to be used for legal security purposes only, and you should only use it to protect networks/hosts you own or have permission to test. Any other use is not the...
View ArticleWMDFrame – Weapon of Mass Destruction.
LEGAL DISCLAMER The author does not hold any responsibility about the bad use of this script, remember that attacking targets without prior concent its ilegal and punish by law, this script was build...
View ArticleJudasDNS – Nameserver DNS poisoning attacks.
LEGAL DISCLAMER The author does not hold any responsibility about the bad use of this script, remember that attacking targets without prior concent its ilegal and punish by law, this script was build...
View ArticleResponder & MultiRelay For Windows v1.2 – an LLMNR, NBT-NS and MDNS poisoner.
This tool is first an LLMNR, NBT-NS and MDNS responder, it will answer to specific NBT-NS (NetBIOS Name Service) queries based on their name suffix (see: http://support.microsoft.com/kb/163409). By...
View ArticleWiFi-Pumpkin v0.8.1 – Framework for Rogue Wi-Fi Access Point Attack.
Changelog Wifi-Pumpkin v0.8.1: ——————————————– – re-design all GUI Menu->view – added new report logger GUI – added new sessions for Rogue AP loggers – added new plugin BDFProxy-ng – added new theme...
View Articlemountain_goat – a PoC Off-Path TCP Exploits: Global Rate Limit Considered...
This is a PoC demonstrating techniques exploiting CVE-2016-5696 Off-Path TCP Exploits: Global Rate Limit Considered Dangerous....
View Articlethc-ipv6 v3.1dev-git ~ IPv6 attack toolkit.
changelog v3.1dev-git: * fake_router26: new -f option to specify the sending mac address (thanks to Scott Winegarden for the patch) [1/7/2016] * added alive2map.sh script to create a network map...
View ArticleResponder v2.3-git – an LLMNR, NBT-NS and MDNS poisoner.
Latest change v2.3-git 8/6/2016: + Fingerprint.py; Fixed color bug in Analyze mode. + settings.py; fixed minor bug. + Responder.conf; Set AutoIgnoreAfterSuccess = Off by default, up to the pentester to...
View ArticleFluxion is the future (a tool helps to automate the process of testing router...
Fluxion is a remake of linset by vk439 with fixed bugs and added features. It’s compatible with the latest release of Kali (Rolling) How it works + Scan the networks. + Capture handshake (can’t be used...
View ArticleBetterCap v1.5.0 – A complete, modular, portable and easily extensible MITM...
Changelog v 1.5.0 16/3/2016: New Features + New TCP modular and transparent proxy. + Connections within internal nodes on the network are now spoofed. + Memory usage optimization. Fixes: + Fixed a bug...
View Articlethc-ipv6 v3.1dev update – IPv6 attack toolkit.
changelog v3.1-dev: * dnssecwalk: added TCP mode (-t) * dnsrevenum6: added TCP mode (-t) * re-enabled raw mode, works now with modern kernels it seems * fake_advertise6: a second packet always was sent...
View ArticleBetterCap v1.4.5 – A complete, modular, portable and easily extensible MITM...
Changelog v1.4.5: New Features + New CREDITCARD sniffer with Luhn algorithm verification. + Handling DELETE requests. Fixes + Fixes #165 : Fixed a bug which caused the –custom-proxy argument to not...
View ArticleBetterCap v1.3.7 – A complete, modular, portable and easily extensible MITM...
Changelog v1.3.7: New Features + New PGSQL authentication parser. + New MYSQL authentication parser. + New NTLM protocol parser and NTLMSSP Authentication sniffer. + HTTP Auth parser can now parse...
View ArticleBetterCap v1.3.3 – A complete, modular, portable and easily extensible MITM...
Changelog v1.3.3: New Features: + New DICT protocol credentials parser. + New Redis protocol credentials parser. + New MPD protocol credentials parser. + New RLogin protocol credentials parser. + New...
View ArticleTHC Hydra – IPv6 attack toolkit v-3.1-dev released.
Latest Change 10/11/2015 more helper bash scripts: * small reliability patches * added man page auto generator by Benjamin Kellermann! dos_mld6.sh and local_discovery.sh to local_discovery6.sh more...
View Articlenetool.sh V- 4.5.2 released : MitM PENTESTING OPENSOURCE T00LKIT.
Changelog v-4.5 .2: + UPGRADE => msfcli replaced by msfconsole + netool.sh => “added” file selection GUI -> zenity displays + priv8.sh => “added” MitM DLINK phishing -> capture routers...
View ArticleUpdates THC Hydra – IPv6 attack toolkit v-2.8-dev.
Latest Change 10/11/2015 more helper bash scripts: – dnsrevenum6.sh: scans the reverse DNS entries of the /48 of the ipv6 address on the responsible dns server. – create_network_map.sh: Creates a GV...
View ArticleUpdates netool.sh V- 4.5 : MitM PENTESTING OPENSOURCE T00LKIT.
Changelog v-4.5 : + UPGRADE => msfpayload and msfencode replaced by msfvenom + UPGRADE => unicorn.py (meterpreter powershell by ReL1K) + netool.sh => “added” Resize terminal windows size...
View Article