Subscribe via feed.
Archive for January, 2017

Mac OSX ARP spoof (MiTM)

Posted by deepquest under OSX security tools, tools (No Respond)

Arpy is an easy-to-use ARP spoofing MiTM tool for Mac. It provides 3 targeted functions: Packet Sniffing Visited Domains Visited Domains with Gource

Tags: ,

WD My Cloud Mirror 2.11.153 Remote Command Execution / Authentication Bypass

Posted by deepcore under exploit (No Respond)

WD My Cloud Mirror version 2.11.153 suffers from remote command execution and authentication bypass vulnerabilities.

Create tar/zip archives that can exploit directory traversal vulnerabilities

Posted by deepquest under tools (No Respond)

evilarc lets you create a zip file that contains files with directory traversal characters in their embedded path.

Osint tool get info about peoples

Posted by deepquest under tools (No Respond)

Osint tool to get results from Google, Bing, Yahoo,British Telecom,Pages Blanches,Paginas Blancas,SpravKaru,Das Telefon Bush,Yellow Pages,lullar, about peoples.

Apple Security Advisory 2017-01-23-7

Posted by deepcore under Apple (No Respond)

Apple Security Advisory 2017-01-23-7 – iTunes for Windows 12.5.5 is now available and addresses code execution vulnerabilities.

Tags: , ,

EggShell: an iOS and OS X surveillance tool

Posted by deepquest under OSX security tools, tools (No Respond)

EggShell (formerly known as NeonEggShell) is an iOS and OS X surveillance tool written in python. This tool creates an command line session with extra functionality like downloading files, taking pictures, location tracking, and gathering data on a target. Communication between server and target is encrypted with a random 128 bit AES key. EggShell also […]

Tags: , , , ,

pwnd.sh is a post-exploitation framework

Posted by deepquest under OSX security tools, tools (No Respond)

pwnd.sh is a post-exploitation framework (and an interactive shell) developed in Bash shell scripting. It aims to be cross-platform (Linux, Mac OS X, Solaris etc.) and with little to no external dependencies.

Tags: , ,

WiFi Bruteforcer on Android

Posted by deepquest under Android, software, tools (No Respond)

Android App to crack WiFi Passwords without requiring device rooting.

Tags: , , ,

[papers] Phrack: Team Shellphish – Cyber Grand Shellphish

Posted by deepcore under Security (No Respond)

Phrack: Team Shellphish – Cyber Grand Shellphish

Tags: ,

PHP 5.6.x / MyBB 1.8.3 Remote Code Execution

Posted by deepcore under exploit (No Respond)

MyBB versions 1.8.3 and below alongside PHP versions prior to 5.6.30 suffer from a GMP deserialization type confusion vulnerability.