[vc_row][vc_column][vc_column_text]Hashcatch deauthenticates clients connected to all nearby WiFi networks and tries to capture the handshakes. It can be used in any linux device including Raspberry Pi and Nethunter devices so that you can capture handshakes while walking your dog Written by @SivaneshAshok PoC of hashcatch (running with a couple of WiFi…
-
Hacking - Information Gathering - Linux - Networking - Password Attacks - Pentesting Tools - Vulnerability Scanner - Wireless Attacks - Wireless Network
-
Sn1per – Automated Pentest Recon Scanner
Sn1per – is an automated scanner that can be used during a penetration test to enumerate and scan for vulnerabilities, the tools include the following well-known tools like: nmap, arachni, amap, cisco-torch, dnsenum, enum4linux, golismero, hydra, metasploit-framework, nbtscan, nmap smtp-user-enum, sqlmap, sslscan, theharvester, w3af, wapiti, whatweb, whois, nikto, wpscan and…
-
FSociety Hacking Tools Pack – A Penetration Testing Framework
fsociety Hacking Tools Pack – A Penetration Testing Framework A Penetration Testing Framework , you will have evry script that a hacker needs Fsociety Contains All Tools Used In Mr Robot Series Menu Information Gathering Password Attacks Wireless Testing Exploitation Tools Sniffing & Spoofing Web Hacking Private Web Hacking Post…
-
Evilginx – MITM Attack Framework anAdvanced Phishing with Two-factor Authentication Bypass
Evilginx is a man-in-the-middle attack framework used for phishing credentials and session cookies of any web service. It’s core runs on Nginx HTTP server, which utilizes proxy_pass and sub_filter to proxy and modify HTTP content, while intercepting traffic between client and server. Usage usage: evilginx_parser.py [-h] -i INPUT -o OUTDIR…
-
D-TECT – Pentesting the Modern Web
D-TECT is an All-In-One Tool for Penetration Testing. This is specially programmed for Penetration Testers and Security Researchers to make their job easier, instead of launching different tools for performing different task. D-TECT provides multiple features and detection features which gather target information and finds different flaws in it. Compatibility:…
-
THC-Hydra 8.2 Released
When you need to brute force crack a remote authentication service, Hydra is often the tool of choice. It can perform rapid dictionary attacks against more than 50 protocols, including telnet, ftp, http, https, smb, several databases, and much more. Like THC Amap this release is from the fine folks…
-
Weeman v1.7 – HTTP Server for Phishing
HTTP server for phishing in python. (and framework) Usually you will want to run Weeman with DNS spoof attack. (see dsniff, ettercap). Press 1.7 – is out 25-03-2016 Added profiles Weeman framework 0.1 is out !!! Added command line options. Beautifulsoup dependency removed. Weeman will do the following steps: Create…
-
ATSCAN – Search / Site / Server Scanner
ATSCAN – Search / Site / Server Scanner SEARCH engine XSS scanner. Sqlmap. LFI scanner. Filter wordpress and Joomla sites in the server. Find Admin page. Decode / Encode MD5 + Base64. Ports scan. Scan E-mails in sites. Use proxy. Random user agent. Fandom search engine. Scan errors. Detect Cms.…
-
Weeman – HTTP Server for Phishing
Weeman – HTTP server for phishing in python. Weeman has support for most of the (bigest) websites. Usually you will want run Weeman with DNS spoof attack. (see dsniff, ettercap). Weeman will do the following steps: Create fake html page. Wait for clients Grab the data (POST). Try to login…
-
BruteX v1.2 was Released!
Automatically brute force all services running on a target including: Open ports DNS domains Usernames Passwords USAGE: ./brutex target DEPENDENCIES: NMap Hydra SNMPWalk DNSEnum CHANGELOG: 20150915 – v1.2 adds dnsenum / removes DNSDict6 as no longer supported on Kali 2.0 20150904 – v1.2 removed wfuzz web file brute forcing as…
