Android Botnet: Command and Control Channel over SMS!

With the advancements made by different security vendors it is seemingly becoming difficult for botnet masters to remain undetected. Reports suggest that operating systems such as the Windows 7 have become 7 times secure than older versions such as Windows XP. Hence the obvious move of a botnet was to another increasingly insecure platform – cellphones. Bots [...]

Defender’s Quest at its core is a tower defense game with role playing elements. You are still fighting waves of monsters with your towers in every map, but instead of playing with anonymous defenders, you are playing with characters that level up, have skill trees and equipment.

Our characters which you can place on the map. [...]

Be the first to comment!

It so happens that we missed posting about OWTF or the Offensive Web, etc. Testing Framework the first time it was released about a month ago. But then, I started to study about OSCP and stumbled across OWTF. They say that the OSCP is quiet tough first time around as ready made tools such as Nessus are not [...]

Be the first to comment!

Androguard (Android Guard) is a tool written in python which helps us to analyze, display, modify and save your apps easily and statically by creating your own software (by using the API), or by using the tool (androlyze) in command line. This tool is useful when you would like to do reverse engineering on a [...]

Be the first to comment!

We have discussed about Seccubus in our previous posts here. A few days ago, it was updated to Seccubus 2.0.beta2 .
 
“Seccubus is a tool to automatically fire regular security scans with Nessus. Compare results of the current scan with the previous scan and report on the delta in a web interface. Main objective of the tool is [...]

Be the first to comment!

ClubHACK has released the February 2012 version of their magazine. It is the first Indian “Hacking” Magazine. This 25th issue marks the second year of this awesome magazine.

Contents of ClubHACK Magazine January 2012:

Tech Gyan: Exploiting Remote System without Being Online
This paper demonstrates unique kind of communication technique between attacker machine and victim machine during the exploitation of any victim system. Usually, [...]

Be the first to comment!

One of the most famous network logon cracker – THC-HYDRA, was a few minutes ago. We now have THC-HYDRA version 7.2! Our previous post regarding THC-HYDRA can be found here.

“THC-HYDRA is a very fast network logon cracker which support many different services. This tool is a proof of concept code, to give researchers and security consultants the possibility [...]

Be the first to comment!

Our first post regarding Razorback can be found here. Now, Snort VRT has released an update – Razorback version 0.4.1!

“Razorback is a framework for an intelligence driven security solution. It consists of a Dispatcher at the core of the system, surrounded by Nuggets of varying types.”
Again, we haven’t been able to find the change log [...]

Be the first to comment!

We covered Naxsi in our List of Open Source Web Application Firewalls! Recently, Naxsi version 0.43 was released.

“Naxsi is an open source, high performance, low rules maintenance, Web Application Firewall module for Nginx, the infamous web server and reverse-proxy. Its goal is to help people securing their web applications against attacks like SQL Injections, Cross [...]

Be the first to comment!