April 18th, 2008
RFIDIOt is a python library for exploring RFID devices. It currently drives a couple of RFID readers made by ACG, called the HF Dual ISO and the LFX. Includes sample programs to read/write tags and the beginnings of library routines to handle the data structures of specific tags like MIFARE(r).
See the rest here:
RFIDIOt-0.1s.tgz
Posted in Exploit | No Comments »
April 18th, 2008
RFIDIOt is a python library for exploring RFID devices. It currently drives a couple of RFID readers made by ACG, called the HF Dual ISO and the LFX. Includes sample programs to read/write tags and the beginnings of library routines to handle the data structures of specific tags like MIFARE(r). This is the Windows version.
See the original post here:
RFIDIOt-Windows-0.1s.zip
Posted in Exploit | No Comments »
April 18th, 2008
GNU SIP Witch is a pure SIP-based office telephone call server that supports generic phone system features like call forwarding, hunt groups and call distribution, call coverage and ring groups, holding, and call transfer, as well as offering SIP specific capabilities such as presence and messaging. It supports secure telephone extensions for making calls over the Internet, and intercept/decrypt-free peer-to-peer audio and video extensions. It is not a SIP proxy, a …
See original here:
sipwitch-0.1.0.tar.gz
Posted in Exploit | No Comments »
April 17th, 2008
Being a Security Professional requires constant out-of-box thinking. For those that don’t know; Along with being a very old member on HSC, I am the CTO of Security Brigade.
My job these days involves a lot of Penetration Testing, Vulnerability Assessment, Source Code Audits, PCI Compliance, Other Compliances and Regulatory …
See more here:
Security - Thinking out of the box
Posted in Exploit | No Comments »
April 17th, 2008
afick is another file integrity checker, designed to be fast and fully portable between Unix and Windows platforms. It works by first creating a database that represents a snapshot of the most essential parts of your computer system. Then a user can run the script to discover all modifications made since the snapshot was taken (i.e. files added, changed, or removed). The configuration syntax is very close to that of aide or tripwire, and a graphical interface is provided.
See more here:
afick-2.11-1.tgz
Posted in Exploit | No Comments »
April 16th, 2008
NuFW is a set of daemons that filters packets on a per-user basis. The gateway authorizes a packet depending on which remote user has sent it. On the client side, users have to run a client that sends authentication packets to the gateway. On …
See the original post here:
nufw-2.2.15.tar.gz
Posted in Exploit | No Comments »
April 15th, 2008
I was reading an interesting blog post on Billy Rios Blog about new Google XSS found in Google spreadsheet.In the specific, that XSS is in my opinion to blame more to Internet Explorer, the only vulnerable browser to this XSS, than to Google itself.
The javascript injection is caused by Internet Explorer rendering text/plain as active content that is HTML. Indeed Billy just created a link to the spreadheet in CSV format. The spreadsheet contains a javascript snippet […]
Read the rest here:
Exploiting browsers mental diseases
Posted in Exploit | No Comments »
April 14th, 2008
Clam AntiVirus is an anti-virus toolkit for Unix. The main purpose of this software is the integration with mail servers (attachment …
Read more:
clamav-0.93.tar.gz
Posted in Exploit | No Comments »
April 11th, 2008
Simple Python Keylogger is a cross-platform keylogger. It is primarily designed for backup purposes, but can be used as a stealth keylogger too. Source archive that works on Linux.
Here is the original:
pykeylogger-1.0.2_src.zip
Posted in Exploit | No Comments »
April 11th, 2008
Simple Python Keylogger is a cross-platform keylogger. It is primarily designed for backup purposes, but can be used as a stealth keylogger too. Windows version.
View original post here:
pykeylogger-1.0.2_win32.zip
Posted in Exploit | No Comments »