Friday, September 9, 2011

Packet Sniffer for Android phones


Packet Sniffer for Android phones

This is a nice app to capture and display WiFi and bluetooth traffic on Android phones. But for using this app, you have to root your phone and have "su" command install.



This app is based on the tcpdump package therefor it have to be installed manually.
1. Download and Install PacketSniffer App from the market or from the following link.
http://dl.dropbox.com/u/3775726/PacketSniffer/PacketSniffer.apk
2. Copy the precompiled TCPDUMP file to the "/data"  library on your phone:  
             first make sure your "/data" library has READ and WRITE privileges. if not use:  "chmod 777 data"
             in order to copy use the following command if you have ADB :"adb push c:\locationOfTheTcpdumpFile /data"
            in case you don't have ADB you can copy the tcpdump file to the SD card and do:  "cat /sdcard/tcpdump > /data/tcpdump
3. Give the tcpdump file Read Write and Exec privileges :    "chmod 777 /data/tcpdump"


Before you start to capture you can pick weather to save the captured data on a local SQL DB on the device
or on to a file on the SD card.


Read More on
https://sites.google.com/site/androidarts/packet-sniffer

download Sniffjoke - Anti-sniffing Framework & Tool For Session Scrambling


download Sniffjoke - Anti-sniffing Framework & Tool For Session Scrambling

SniffJoke is an application for Linux that handle transparently your TCP connection, delaying, modifying and injecting fake packets inside your transmission, make them almost impossible to be correctly read by a passive wiretapping technology (IDS or sniffer).


An Internet client running SniffJoke injects in the transmission flow some packets able to seriously disturb passive analysis like sniffing, interception and low level information theft. No server support is needed!


The internet protocols have been developed to allow two elements to communicate, not some third-parts to intercept their communication. This will happen, but the communication system has been not developed with this objective. SniffJoke uses the network protocol in a permitted way, exploiting the implicit difference of network stack present in an operating system respect the sniffers dissector.


How Does It Work?
It works only under Linux (at the moment), creates a fake default gateway in your OS (the client or a default gateway) using a TUN interface check every traffic passing thru it, tracks every session and
applyies two concepts: the scramble and the hack.


The scramble is the technology to bring:


A sniffer to accept as true a packet who will be discarded by the server, or
A sniffer to drop a packet who will be accepted by the server.
The scramble technology brings in desynchronisation between the sniffer flow and the real flow.


The bogus packet accepted by the sniffer is generated by the “plugin” is a C++ simple class, which in a pseudo statefull tracking will forge the packet to be injected inside the flow. is pretty easy to develop
anew one, and if someone wants to make research on sniffers attack (or fuzzing the flow searching for bugs) need to make the hand inside its.


The configuration permits to define blacklist/whitelist ip address to scramble, a degree of aggressivity for each port, which plugin will be used.


download here:
http://www.delirandom.net/sniffjoke/sniffjoke-howto-usage/

DarkComet-RAT v.4.0 released


DarkComet-RAT (Remote Administration Tool) is the most complete and one of the most stable RAT in the scene.this software is design for people that have a very good knowledge in computer security, it can be userfull in many case. 


Remote control your network computers (LAN / WAN) 
Remote assist your clients if you manage a company 
Find your lost passwords in your computers 
Spy your home networks (For your childs,Wife,Husband...) 
Test the security of your computers or your company 
To develop your knowledge in RAT softwares 


Change log: 
DarkComet-RAT is now compiled on Delphi XE instead of Delphi 2010. 
Synthax highlighter added in remote keylogger. 
Get hard drive information added in file manager 
Bot logs in main form had change, it is more efficient / fast and user friendly 
Whole system parser is now far stable and faster 
No-IP was moded and is now better ;) 
Flags manager has been ported to the main client settings form 
Now you can change the default size Width and Height of the users thumbnails 
No more menu in the top of the SIN (Main Window - Users list)so it is more clear 
and much more 


Download Here:
http://www.darkcomet-rat.com/process_download.php?id=5

Tutorial on Arbitrary File uploading Vulnerability


Tutorial on Arbitrary File uploading Vulnerability

Arbitrary File uploading vulnerabilities are the type of vulnerabiliy which occurs in web applications in which there is a file uploading form but file format is not checked or filtered during file upload.
Now you are thinking that what is the problem in that. Now think that the website has a uploader form which do not check for file type and you have a malicious  PHP, ASP script. You can upload the script using this form and then you can execute your malicious script on the website server. You can run any kind of commands on the server using your script which would lead to a full compromise of the server.
If you do not know how to create a malicious script, you can simly download those scripts from internet and use it on any server having this type of vulnerability.


Some PHP Shells :-


Ani-Shell
R57 Shell
C99 Shell


Note: This tutorial and script is only for educational purpose. Use of these scripts on web servers in illegal.

Download Xcobra - Web Application Vulnerability Scanner


Download Xcobra - Web Application Vulnerability Scanner

Xcobra - Web Application Vulnerability Scanner.


Features
URL finder with adjustable deep
Passive XSS scan
Forms processing
Simple SQL injection scan
Blind SQL injection scan
Plugins
Report generators (Text, HTML, ...)
CLI and GUI interfaces
Cross-platform (Python + GTK)


Download
http://code.google.com/p/xcobra/downloads/list