본문 바로가기

모의해킹 (WAPT)175

ASP Nuke SQL Injection Vulnerability ''' __ __ ____ _ _ ____ | \/ |/ __ \ /\ | | | | _ \ | \ / | | | | / \ | | | | |_) | | |\/| | | | |/ /\ \| | | | _ 2010. 9. 13.
Automated vs. Manual Security Automated vs. Manual Security: You can't filter "The Stupid" http://blip.tv/play/AYHwpGEC 2010. 9. 6.
PuTTY DLL Hijacking Exploit (winmm.dll) /* Exploit Title: PuTTY DLL Hijacking Exploit (winmm.dll) Date: August 25, 2010 Author: storm (storm@gonullyourself.org) Version: 0.60 Tested on: Windows Vista SP2 http://www.gonullyourself.org/ gcc -shared -o winmm.dll PuTTY-DLL.c -DWIN32_LEAN_AND_MEAN PuTTY is a standalone program, so just plop the .dll in whatever directory the binary is in. */ #include #define DllExport __declspec (dllexport.. 2010. 8. 26.
The Art of Grey-Box Attack ###### Info ###### Title: The Art of Grey-Box Attack Author: ZeQ3uL (Prathan Phongthiproek) JabAv0C (Wiswat Aswamenakul) Team : CWH Underground [www.milw0rm.com/author/1456] Website: cwh.citec.us / www.citec.us Date: 2009-07-04 ########## Contents ########## [0x00] - Introduction [0x01] - The Art of Microsoft Windows Attack [0x01a] - Scanning & Enumeration [0x01b] - Gaining Access [0x01c] - Esca.. 2010. 8. 25.
Hackedy Hack - Guide to using Access Diver How to use AccessDiver - find logins on many sites-WORKS! This program checks for vulnerabilities on a site, and bruteforces it. This has a great probability of working, and if it doesn't you can load your own wordlist for bruteforcing So first download AccessDiver from: CODE http://www.accessdiver.com/downloads.htm 2010. 8. 23.