Mobius Forensic Toolkit is being continuously developed and it has been recently updated! The bug fixed release is Mobius Forensic Toolkit version 0.5.11.
“Mobius Forensic Toolkit is a forensic framework written in Python/GTK that manages cases and case items, providing an abstract interface for developing extensions. Cases and item categories are defined using XML files for [...]
Tagged as: Forensics, Mobius Forensic Toolkit, Reverse Engineering, System forensics
POC proof-of-concept exploit code for a recently spotted privilege escalation flaw CVE-2012-0056 ( POC Linux privilege escalation exploits ) in the Linux kernel has left Linux vendors scrambling to push out a patch.
As per POC Linux privilege escalation exploits papers flaw affects versions 2.6.39 and above of the Linux kernel code, and the OS’ creator Linus Torvalds published [...]
Tagged as: Exploit, kernel, PoC Linux privilege escalation, system seciroty
Here’s wishing all our Indian brothers a Happy Republic Day!
63rd Republic Day of India
A day to be immensely proud about
A day of ecstasy, patriotism and love for our Motherland
A day to remember the many valiant freedom-fighters and martyrs
A day to share our joy of freedom with the world at large
A day to realise the cost [...]
Tagged as: Miscellaneous
Our first post regarding Mutillidae can be found here. A few days ago an update – Mutillidae version 2.1.13 – was released. We seem to have missed a lot of updates about this tool, but we plan to correct it.
“Mutillidae is a free, open source web application provided to allow security enthusiest to pen-test and [...]
Tagged as: application security, cross-site scripting, Mutillidae, Vulnerability Scanner, web security
Our first post about JavaSnoop can be found here. A few days ago, the authors released an updated version – JavaSnoop 1.1 RC1!
“JavaSnoop is a tool for testing (re: hacking) Java desktop applications or applets. It is a tool that lets you intercept methods, alter data and otherwise hack Java applications running on your computer. JavaSnoop does [...]
Tagged as: java penetration testing, JavaSnoop
Anti consists of 2 parts: The Anti version itself and extendable plugins. Upcoming updates will add functionality, plugins or vulnerabilities/exploits to Anti
Using Anti is very intuitive on each run, it will map your network, scan for active devices and vulnerabilities, and will display the information accordingly: Green led signals an ‘Active device’, Yellow led signals [...]
Tagged as: Anti, MITM, network security, Penetration Testing, system security, Vulnerability Scanner
Our first post regarding WeBaCoo can be found here. A few hours ago, an update WeBaCoo version 0.2.1 was released.
“The WeBaCoo (Web Backdoor Cookie) script-kit is a tiny stealth PHP backdoor that is capable to provide a “pseudo”-terminal connection on a remote web server injected with a chunk of malicious PHP code. It does so [...]
Tagged as: Cookiejacking, Hookworm, HTTP, web security, WeBaCoo, weevely
Our first post regarding NessusDB can be found here. Risu is the new name for NessusDB. We now have an update – NessusDB aka Risu version 1.4.9!
“Risu is a Nessus parser, that converts the generated reports into a ActiveRecord database, this allows for easy report generation and vulnerability verification.“
Official change log for Risu v1.4.9:
Added a simple [...]
Tagged as: Nessus 4, NessusDB, reporting tool, Risu, vulnerability assessment