Android Botnet: Command and Control Channel over SMS!

With the advancements made by different security vendors it is seemingly becoming difficult for botnet masters to remain undetected. Reports suggest that operating systems such as the Windows 7 have become 7 times secure than older versions such as Windows XP. Hence the obvious move of a botnet was to another increasingly insecure platform – cellphones. Bots [...]

Mobius Forensic Toolkit is being continuously developed and it has been recently updated! The bug fixed release is Mobius Forensic Toolkit version 0.5.11.

“Mobius Forensic Toolkit is a forensic framework written in Python/GTK that manages cases and case items, providing an abstract interface for developing extensions. Cases and item categories are defined using XML files for [...]

Be the first to comment!

POC proof-of-concept exploit code for a recently spotted privilege escalation flaw CVE-2012-0056 ( POC Linux privilege escalation exploits ) in the Linux kernel has left Linux vendors scrambling to push out a patch.
As per POC Linux privilege escalation exploits papers flaw affects versions 2.6.39 and above of the Linux kernel code, and the OS’ creator Linus Torvalds published [...]

Be the first to comment!

Happy Republic Day!

by Mayuresh on January 26, 2012

in Site News

Here’s wishing all our Indian brothers a Happy Republic Day!

63rd Republic Day of India

A day to be immensely proud about
A day of ecstasy, patriotism and love for our Motherland
A day to remember the many valiant freedom-fighters and martyrs
A day to share our joy of freedom with the world at large
A day to realise the cost [...]

Be the first to comment!

Our first post regarding Mutillidae can be found here. A few days ago an update – Mutillidae version 2.1.13 – was released. We seem to have missed a lot of updates about this tool, but we plan to correct it.

“Mutillidae is a free, open source web application provided to allow security enthusiest to pen-test and [...]

Be the first to comment!

Our first post about JavaSnoop can be found here. A few days ago, the authors released an updated version – JavaSnoop 1.1 RC1!
“JavaSnoop is a tool for testing (re: hacking) Java desktop applications or applets. It is a tool that lets you intercept methods, alter data and otherwise hack Java applications running on your computer. JavaSnoop does [...]

Be the first to comment!

Anti consists of 2 parts: The Anti version itself and extendable plugins. Upcoming updates will add functionality, plugins or vulnerabilities/exploits to Anti
Using Anti is very intuitive on each run, it will map your network, scan for active devices and vulnerabilities, and will display the information accordingly: Green led signals an ‘Active device’, Yellow led signals [...]

Be the first to comment!

Our first post regarding WeBaCoo can be found here. A few hours ago, an update WeBaCoo version 0.2.1 was released.

“The WeBaCoo (Web Backdoor Cookie) script-kit is a tiny stealth PHP backdoor that is capable to provide a “pseudo”-terminal connection on a remote web server injected with a chunk of malicious PHP code. It does so [...]

Be the first to comment!

Our first post regarding NessusDB can be found here. Risu is the new name for NessusDB. We now have an update – NessusDB aka Risu version 1.4.9!
“Risu is a Nessus parser, that converts the generated reports into a ActiveRecord database, this allows for easy report generation and vulnerability verification.“
Official change log for Risu v1.4.9:

Added a simple [...]

Be the first to comment!