Tuesday, August 16, 2011

WiFi Slax Wireless Hacking Live CD 3.1




WiFi Slax Wireless Hacking Live CD 3.1 | 635 Mb

WEP is an encryption scheme, based on the RC-4 cipher, that is available on all 802.11a, b and g wireless products. WEP uses a set of bits called a key to scramble information in the data frames as it leaves the access point or client adapter and the scrambled message is then decrypted by the receiver. Both sides must have the same WEP key, which is usually a total of 64 or 128 bits long




A semi-random 24 bit number called an Initialization Vector (IV), is part of the key, so a 64 bit WEP key actually contains only 40 bits of \ strong\ encryption while a 128 bit key has 104. The IV is placed in encrypted frame\ s header, and is transmitted in plain text.
Traditionally, cracking WEP keys has been a slow and boring process. An attacker would have to capture hundreds of thousands or millions of packets? a process that could take hours or even days, depending on the volume of traffic passing over the wireless network. After enough packets were captured, a WEP cracking program such as Aircrack would be used to find the WEP key.

Basic Directions:
1)Boot from cd
2)Get the wep key
3)Write it down
4)Reboot into windows
5)Connect using wep key.




Download-Hotfile

http://hotfile.com/dl/84031397/5cc9387/WIfi.S.W.H.B.part1.rar.html
http://hotfile.com/dl/84031847/4b51bb3/WIfi.S.W.H.B.part2.rar.html
http://hotfile.com/dl/84032512/e1c5b9d/WIfi.S.W.H.B.part3.rar.html
http://hotfile.com/dl/84033083/9d04c26/WIfi.S.W.H.B.part4.rar.html
http://hotfile.com/dl/84032767/605d80d/WIfi.S.W.H.B.part5.rar.html
http://hotfile.com/dl/84032185/17dfd46/WIfi.S.W.H.B.part6.rar.html
http://hotfile.com/dl/84033179/8e03956/WIfi.S.W.H.B.part7.rar.html

Download-Uploading

http://uploading.com/files/6aabdddm/WIfi.S.W.H.B.part1.rar/
http://uploading.com/files/666233b2/WIfi.S.W.H.B.part2.rar/
http://uploading.com/files/d8ce9637/WIfi.S.W.H.B.part3.rar/
http://uploading.com/files/27bef47c/WIfi.S.W.H.B.part4.rar/
http://uploading.com/files/3d675d2a/WIfi.S.W.H.B.part5.rar/
http://uploading.com/files/5372c61e/WIfi.S.W.H.B.part6.rar/
http://uploading.com/files/e88164ab/WIfi.S.W.H.B.part7.rar/

Download-Fileserve

http://www.fileserve.com/file/CWyxzFP
http://www.fileserve.com/file/q2qHFAU
http://www.fileserve.com/file/g9rwNze
http://www.fileserve.com/file/fk9zjmk
http://www.fileserve.com/file/4r3U7cP
http://www.fileserve.com/file/TJ99gcK
http://www.fileserve.com/file/afKMHcP

Download-Filesonic

http://www.filesonic.com/file/34216529/WIfi.S.W.H.B.part1.rar
http://www.filesonic.com/file/34216657/WIfi.S.W.H.B.part2.rar
http://www.filesonic.com/file/34216593/WIfi.S.W.H.B.part3.rar
http://www.filesonic.com/file/34216521/WIfi.S.W.H.B.part4.rar
http://www.filesonic.com/file/34216715/WIfi.S.W.H.B.part5.rar
http://www.filesonic.com/file/34216455/WIfi.S.W.H.B.part6.rar
http://www.filesonic.com/file/34216025/WIfi.S.W.H.B.part7.rar

Tutorial on Password guessing attack

utorial on Password guessing attack


Passwords are used in every system for authentication of a user. Password is a set of symbol asssociated with a user. Password guessing attack is a type of attack in which an attacker tries to gain access of a system or network with a guessed password. Guessing a password is very simple type of attack but it is most effective if you know about the victim. The latest form of password guessing attack is carried out by automated tools which guess and try the password again and again to get the access of a system.
If you are doing it without any tool, you can try some information of users as a password which are generally taken as a passowrd. such as mobile number, birthday, name of gf/bf, birthday. So if you use this type of passwords then you can be hacked easily by a simple guess.


Password guessing attacks can be classified into two.


Brute Force Attack: A Brute Force attack is a type of password guessing attack and it consists of trying every possible code, combination, or password until you find the correct one. This type of attack may take long time to complete. A complex password can make the time for identifying the password by brute force long.
Dictionary Attack: A dictionary attack is another type of password guessing attack which uses a dictionary of common words to identify the user’s password.


We also have hybrid attacks, which append, prepend, or insert numerical (0-9) and special (!@#$%*, etc.) characters to dictionary terms. Passwords guessed at this level might be something like "129good45guess" or "pa55w0rd."'

recover all WEP keys and wireless network passwords stored in system by Wireless WEP Key Password Spy 1.1


Wireless WEP Key Password Spy 1.1

This software will instantly recover all WEP keys and wireless network passwords that have been stored on your computer. To get started, click “Find Wireless WEP Keys”. It will then display the adapter GUID and all recovered information associated with it including the wireless network name (SSID), the encryption type (WEP 40, WEP 104, or WPA-PSK), and the WEP key associated with each network. At the bottom of the screen you can see the name of your current Ethernet adapter, the total Kb sent and received during the current Windows session, and the current down/up throughput.


Download here: 

Wfuzz v.2.0 released | Web application bruteforcer

Wfuzz v.2.0 released | Web application bruteforcer 




Wfuzz is a tool designed for bruteforcing Web Applications, it can be used for finding resources not linked (directories, servlets, scripts, etc), bruteforce GET and POST parameters for checking different kind of injections (SQL, XSS, LDAP,etc), bruteforce Forms parameters (User/Password), Fuzzing,etc. 


It's very flexible, here are some functionalities:



  1. Multiple Injection points capability with multiple dictionaries
  2. Recursion (When doing directory bruteforce)
  3. Post, headers and authentication data brute forcing
  4. Output to HTML
  5. Colored output
  6. Hide results by return code, word numbers, line numbers, regex.
  7. Cookies fuzzing
  8. Multi threading
  9. Proxy support
  10. SOCK support
  11. Time delays between requests
  12. Authentication support (NTLM, Basic)
  13. All parameters bruteforcing (POST and GET)
  14. Dictionaries tailored for known applications (Weblogic, Iplanet, Tomcat, Domino, Oracle 9i, Vignette, Coldfusion and many more. (Many dictionaries are from Darkraver's Dirb, www.open-labs.org)



Highlights in this version: 


- Infinite payloads. You can now define as many FUZnZ words as you need . 
- Multiple encoders per payload. You can now define as many encoders as you need for each payload independently. 
- Payload combination. You can now combine your payloads in different ways by specifying iterators. 
- Increased flexibility. You can now define in an easy way new payloads,iterators,encoders and output handlers and they will be part of wfuzz straight away. 
- Baseline support. You can now define a default value for each payload and compare the results against them. 


Download Here:
http://code.google.com/p/wfuzz/downloads/list

HOW TO HIDE A URL | CHANGE URL | MASK URL| RENAME URL EASILY|HOW TO CHANGE PHISHING URL

Now I am back with new topic “How to hide a url | Chnage URL | Mask url .While sending mail, you have to include in mail, the link to your phisher page. So, instead of sending mail with actual url which can create a sense of doubt in victim’s mind, we can hide the url. Dot.tk is an online service which enables you to
hide/mask the url.
hide-url-800x800
hide-url-800x800
Hide/Mask a url:
Consider you have hosted your phisher page and your phisher link is something like:
http://www.hackinghome.com/block-website
So, whenever victim checks out this link, he will find the link suspicious. This can be detrimental for our hack. So, the best way is to make this link less suspicious i.e. to hide/mask the url.
1. So, go to Dot.tk to hide a url.
2. Enter your phisher link in the textbox and hit on Next.
3. Enter the link you want to rename your phisher link to.
hide url
hide url
4. Now, you can send this masked phisher link to your victim. The victim will now find our phisher link less suspicious as we have hidden the actual phisher link using .tk domain.
rename url to new url
rename url to new url
So friends, I hope you are now able to hide a url using this url masker service.If you have any problem in this tutorial on
how to hide/mask a url,
please mention it in comments bellow.
Enjoy the .tk domain to hide a url…

Fern wifi cracker for wireless penetration testing

Fern wifi cracker for wireless penetration testing


This is a wireless security auditing application that is written in python and uses python-qt4. This application uses the aircrack-ng suite of tools.


It should work on any version of linux running the following:


Requirements:

  • python
  • python-qt4
  • macchanger
  • aircrack-ng
  • xterm
  • subversion

For Slax Distributions, download the zipped module package on the download section, and follow the instructions in the "README" file.


To install simply run the following command in terminal after changing directory to the path were the downloaded package is:


root@host:~# dpkg -i Fern-Wifi-Cracker_1.2_all.deb


Icons and Running the application:


Software Icon can be found at the application Menu of the GNOME desktop interfaces


Icon can also be found at /usr/share/applications for KDE and also GNOME:


There you find "Fern_Wifi_Cracker.desktop"


To get the source code for this project from SVN, here's the checkout link:


root@host:~# svn checkout http://fern-wifi-cracker.googlecode.com/svn/Fern-Wifi-Cracker/


Download Here
http://code.google.com/p/fern-wifi-cracker/downloads/list

download bsqlhacker | Advanced SQL Injection Framework

download bsqlhacker | Advanced SQL Injection Framework
 to


BSQL Hacker is an automated SQL Injection Framework / Tool designed to exploit SQL injection vulnerabilities virtually in any database.


BSQL Hacker aims for experienced users as well as beginners who want to automate SQL Injections (especially Blind SQL Injections).


It's easy to use for beginners and provide great amount of customisation and automation support for experienced users. Features a nice metasploit alike exploit repository to share and update SQL Injection exploits.


Key Features

  • Easy Mode
  • SQL Injection Wizard
  • Automated Attack Support (database dump)
  • ORACLE
  • MSSQL
  • MySQL (experimental)
  • General
  • Fast and Multithreaded
  • 4 Different SQL Injection Support
  • Blind SQL Injection
  • Time Based Blind SQL Injection
  • Deep Blind (based on advanced time delays) SQL Injection
  • Error Based SQL Injection
  • Can automate most of the new SQL Injection methods those relies on Blind SQL Injection
  • RegEx Signature support
  • Console and GUI Support
  • Load / Save Support
  • Token / Nonce / ViewState etc. Support
  • Session Sharing Support
  • Advanced Configuration Support
  • Automated Attack mode, Automatically extract all database schema and data mode
  • Update / Exploit Repository Features
  • Metasploit alike but exploit repository support
  • Allows to save and share SQL Injection exploits
  • Supports auto-update
  • Custom GUI support for exploits (cookie input, URL input etc.)
  • GUI Features
  • Load and Save
  • Template and Attack File Support (Users can save sessions and share them. Some sections like username, password or cookie in the templates can be show to the user in a GUI)
  • Visually view true and false responses as well as full HTML response, including time and stats
  • Connection Related
  • Proxy Support (Authenticated Proxy Support)
  • NTLM, Basic Auth Support, use default credentials of current user/application
  • SSL (also invalid certificates) Support
  • Custom Header Support
  • Injection Points (only one of them or combination)
  • Query String
  • Post
  • HTTP Headers
  • Cookies
  • Other
  • Post Injection data can be stored in a separated file
  • XML Output (not stable)
  • CSRF protection support (one time session tokens or asp.net viewstate ort similar can be used for separated login sessions, bypassing proxy pages etc.)
Read More:

Download Here:

Free download WiFi Tools Hack AIO (Multi/2010)

WiFi Tools Hack AIO (Multi/2010) | 2.07 GB

This is a nice program for free internet hack, this pack will give you a chance to enjoy free internet and feel a freebie. The archives are cracking programs, discovery, optimization, tuning, monitoring and scanning Wi-Fi networks. After all, who does not love a to use free internet.


Download-Hotfile

http://hotfile.com/dl/91149406/f0dc891/22.2010_Wifi.part01.rar.html
http://hotfile.com/dl/91149571/76cfe64/22.2010_Wifi.part02.rar.html
http://hotfile.com/dl/91149753/21bd80a/22.2010_Wifi.part03.rar.html
http://hotfile.com/dl/91149830/f4257ba/22.2010_Wifi.part04.rar.html
http://hotfile.com/dl/91149920/ab9d3df/22.2010_Wifi.part05.rar.html
http://hotfile.com/dl/91149375/97a5829/22.2010_Wifi.part06.rar.html
http://hotfile.com/dl/91149456/3c366a6/22.2010_Wifi.part07.rar.html
http://hotfile.com/dl/91149588/5ea6cca/22.2010_Wifi.part08.rar.html
http://hotfile.com/dl/91149714/7cb746a/22.2010_Wifi.part09.rar.html
http://hotfile.com/dl/91149803/1f8addb/22.2010_Wifi.part10.rar.html
http://hotfile.com/dl/91149344/632a5a5/22.2010_Wifi.part11.rar.html
http://hotfile.com/dl/91149418/de03f05/22.2010_Wifi.part12.rar.html
http://hotfile.com/dl/91149519/645902b/22.2010_Wifi.part13.rar.html
http://hotfile.com/dl/91149614/03a8ea8/22.2010_Wifi.part14.rar.html
http://hotfile.com/dl/91149669/00f1d77/22.2010_Wifi.part15.rar.html