Thursday, 14 March 2013

asp-auditor tool in BackTrack 5 R3

asp-auditor tool in BackTrack 5 R3

This video is a simple demo of tool called asp-audit. This tool is used to identify vulnerable and weakly configured ASP.NET servers. This tool is written in perl. It is included in backtrack.
Following is the syntax of this tool.



perl asp-audit.pl http//www.target.com


Wednesday, 13 March 2013

cms-explorer tool in Backtrack 5 R3

cms-explorer tool in Backtrack 5 R3

CMS Explorer is designed to reveal the the specific modules, plugins, components and themes that various CMS driven web sites are running.


Additionally, CMS Explorer can be used to aid in security testing. While it performs no direct security checks, the "explore" option can be used to reveal hidden/library files which are not typically accessed by web clients but are nonetheless accessible. This is done by retrieving the module's current source tree and then requesting those file names from the target system. These requests can be sent through a distinct proxy to help "bootstrap" security testing tools like Burp, Paros, Webinspect, etc.

CMS Explorer can also search OSVDB for vulnerabilities with the installed components.

CMS Explorer currently supports module/theme discovery with the following products:

  • Drupal

  • Wordpress

  • Joomla!

  • Mambo


And exploration of the following products:

  • Drupal

  • Wordpress




Tuesday, 12 March 2013

How to Lock and Unlock Folder in Remote Victim PC using Metasploit





Monday, 11 March 2013

Phrozen Keylogger Lite v1.0 download

Phrozen Keylogger Lite v1.0 download

Phrozen Keylogger Lite is finally available, developed by Dark comet RAT developer. Phrozen Keylogger Lite is a powerful and user friendly keylogger especially created for Microsoft Windows systems. Phrozen Keylogger Lite is compatible with all currently supported versions of Windows, which effectively means Windows XP to the recently released Windows 8.


Phrozen Keylogger Lite has been especially created to capture all keystrokes from any type of keyboard (PS/2, USB and even Virtual Keyboards). The captured keystrokes are stored into a local database. There they are sorted by their process name and the active window into a log.


Phrozen Keylogger Lite is running silently in background. When the program is successfully installed on a computer, it will capture all keystrokes fully stealthily and the program will remain hidden from every user. It will not slow down the computer it is installed on.


If you want to consult the logs of the current day or previous days just press the so-called “Magic Shortcut” and enter your personal password and the logs will be made visible in a new window. You can easily manage, export, delete, mark as important, mail, etc. these logs.


Phrozen Keylogger Lite also gives you the possibility to manage black listed words. When such a word is entered via keystrokes you will immediately be sent a mail which contains the entire context in which that ‘black listed word’ appears. This is a very useful feature: suppose you have forbidden your son to go to a specific gambling site and he does go there against your wishes, you then immediately get a mail that warns you of this transgression.


Download
Phrozen Keylogger Lite v1.0