Nmap NSE Vulscan 1.0 Released

by admin

Tuesday, June 25th, 2013 at 9:47 am

Vulscan is a module which enhances nmap to a vulnerability scanner. The nmap option -sV enables version detection per service which is used to determine potential flaws according to the identified product. The data is looked up in an offline version of different vulnerability databases.

Webroot loves illmob

by admin

Friday, April 19th, 2013 at 9:50 am

Looks like Webroot picked up my source code for an article ::HERE::. This is a screen shot of my Assembly code for Robin Hood

If it took them 2 years to ‘uncover’ source code for this, then I have no faith in their ability to protect against 0day threats.
posted: Saturday, June 18th, 2011 at 3:42 pm

Bitcoins…

by admin

Tuesday, April 9th, 2013 at 1:53 pm

So bitcoins are up to $235 today, just a friendly reminder of some tools I made. The bitcoin_jacker.rb that is part of the metasploit repo since 2011 ::HERE:: and a stand alone version made in MASM RobinHood which you will have to edit and compile yourself. If I help make you rich please toss some coinage my way 🙂
1KAhtigRFREAY7qnr78DKiQFLPETmwG15q

Java 0day Demo

by admin

Thursday, January 10th, 2013 at 4:15 pm

Like clockwork , the new 0day has been added to metasploit. eromang was quick to record a demo of the exploit in action http://eromang.zataz.com

New Java 1.7u10 0day

by admin

Thursday, January 10th, 2013 at 12:44 pm

Spotted in the wild, reports are still coming in.
malware.dontneedcoffee.com
The files
blog.spiderlabs.com
decrypted java source

Mimikatz updated

by admin

Tuesday, January 8th, 2013 at 11:52 pm

mimikatz now supports saved domain credentials dumping (task scheduler included) also visit site in chrome unless you manually want to translate it. blog.gentilkiwi.com

Downtime

by admin

Thursday, November 8th, 2012 at 3:45 pm

Sorry for the downtime, had some noobs trying to own the site, finding that they couldn’t do shit but ddos the site. So we switched to a better server and fixed a few things. Better luck next time clowns.

Apache Tomcat Remote Exploit (PUT request)

by admin

Sunday, March 18th, 2012 at 11:21 am

perl script can be used to unlock apache tomcat servers
remotely by using the collected login combinations.
Tt will retrieve either a ROOT or SYSTEM reverse shell depending on the operating system. More info

WCE v1.3beta 64bit released

by admin

Sunday, March 18th, 2012 at 11:19 am

Dumps login cleartext passwords stored by Windows Digest Auth pkg. Download it ::HERE::

Yay Derbycon

by admin

Sunday, October 9th, 2011 at 5:20 pm

Went to Derbycon last week and it was awesome. The people were all great and it wasn’t a scenewhore con like Defcon. Also I got a shout-out during Mubix & carnal0wnage’s talk @ 49:07 🙂

IP: Loading... - Host: Loading...
IP Geolocation: unknown.

We love our country, but fear our government.