INURLBR – Advanced Search Engine Tool

INURLBR is a PHP based advanced search engine tool for security professionals, it supports 24 search engines and 6 deep web or special options. Very useful for the information gathering phase of a penetration test or vulnerability assessment. This tool functions in many ways enabling you to harness the power of what’s already indexed by…

Read the full post at darknet.org.uk

Continue reading INURLBR – Advanced Search Engine Tool

DNSRecon – DNS Enumeration Script

DNSRecon is a Python based DNS enumeration script designed to help you audit your DNS security and configuration as part of information gathering stage of a pen-test. DNS reconnaissance is an important step when mapping out domain resources, sub-domains, e-mail servers and so on and can often lead to you finding an old DNS entry […]

The…

Read the full post at darknet.org.uk

Continue reading DNSRecon – DNS Enumeration Script

The Panama Papers Leak – What You Need To Know

The HUGE news this week is the Panama Papers leak, a massive cache of 11.5 million documents leaked to a German Newspaper (Süddeutsche Zeitung) in August 2015. It’s one of the most significant data leaks of all time and Edward Snowden has labelled it as “the biggest leak in the history of data journalism”. It’s […]

The post The Panama…

Read the full post at darknet.org.uk

Continue reading The Panama Papers Leak – What You Need To Know

Phishing Frenzy – E-mail Phishing Framework

Phishing Frenzy is an Open Source Ruby on Rails e-mail phishing framework designed to help penetration testers manage multiple, complex phishing campaigns. The goal of the project is to streamline the phishing process while still providing clients the … Continue reading Phishing Frenzy – E-mail Phishing Framework

Responder – LLMNR, MDNS and NBT-NS Poisoner

Responder is an LLMNR, NBT-NS and MDNS poisoner. It will answer to specific NBT-NS (NetBIOS Name Service) queries based on their name suffix (see: NetBIOS Suffixes). By default, the tool will only answer to File Server Service request, which is for SMB. The concept behind this is to target our answers, and be stealthier on […]

The post…

Read the full post at darknet.org.uk

Continue reading Responder – LLMNR, MDNS and NBT-NS Poisoner

TempRacer – Windows Privilege Escalation Tool

TempRacer is a Windows Privilege Escalation Tool written in C# designed to automate the process of injecting user creation commands into batch files with administrator level privileges. The code itself is not using that many resources because it relies on callbacks from the OS. You can keep it running for the the whole day to […]

The post…

Read the full post at darknet.org.uk

Continue reading TempRacer – Windows Privilege Escalation Tool

PEiD – Detect PE Packers, Cryptors & Compilers

PEiD is an intuitive application that relies on its user-friendly interface to detect PE packers, cryptors and compilers found in executable files – its detection rate is higher than that of other similar tools since the app packs more than 600 different signatures in PE files. PEiD comes with three different scanning methods, each suitable…

Read the full post at darknet.org.uk

Continue reading PEiD – Detect PE Packers, Cryptors & Compilers

FBI Backed Off Apple In iPhone Cracking Case

So the big furore this week is because the FBI backed off Apple in the whole Apple vs the World privacy case regarding cracking the iPhone Passcode of the phone belonging to the San Bernardino gunman Syed Farook. If you’re not familiar with the case, catch up with it here: FBI–Apple encryption dispute. The latest […]

The post FBI Backed Off…

Read the full post at darknet.org.uk

Continue reading FBI Backed Off Apple In iPhone Cracking Case

NAXSI – Open-Source WAF For Nginx

NAXSI is an open-source WAF for Nginx (Web Application Firewall) which by default can block 99% of known patterns involved in website vulnerabilities. NAXSI means Nginx Anti XSS & SQL Injection Technically, it is a third party Nginx module, available as a package for many UNIX-like platforms. This module, by default, reads a small subset…

Read the full post at darknet.org.uk

Continue reading NAXSI – Open-Source WAF For Nginx

Frida – Dynamic Code Instrumentation Toolkit

Frida is basically Greasemonkey for native apps, or, put in more technical terms, it’s a dynamic code instrumentation toolkit. It lets you inject snippets of JavaScript into native apps on Windows, Mac, Linux, iOS and Android. Frida also provides you with some simple tools built on top of the Frida API. These can be used […]

The post Frida…

Read the full post at darknet.org.uk

Continue reading Frida – Dynamic Code Instrumentation Toolkit