With the wireless networks (IEEE 802.11) devices proliferate, wireless network security issues become the focus of attention. Beini is used for wireless network security assessment of a system.
Beini:A wireless network security testing system,it is based on Tiny Core Linux. FeedingBottle:Aircrack-ng's GUI on Beini.
Cain & Abel is a password recovery tool for Microsoft Operating Systems. It allows easy recovery of various kind of passwords by sniffing the network, cracking encrypted passwords using Dictionary, Brute-Force and Cryptanalysis attacks, recording VoIP conversations, decoding scrambled passwords, recovering wireless network keys, revealing password boxes, uncovering cached passwords and analyzing routing protocols. The program does not exploit any software vulnerabilities or bugs that could not be fixed with little effort. It covers some security aspects/weakness present in protocol's standards, authentication methods and caching mechanisms; its main purpose is the simplified recovery of passwords and credentials from various sources, however it also ships some "non standard" utilities for Microsoft Windows users.
Cain & Abel has been developed in the hope that it will be useful for network administrators, teachers, security consultants/professionals, forensic staff, security software vendors, professional penetration tester and everyone else that plans to use it for ethical reasons. The author will not help or support any illegal activity done with this program. Be warned that there is the possibility that you will cause damages and/or loss of data using this software and that in no events shall the author be liable for such damages or loss of data. Please carefully read the License Agreement included in the program before using it.
The latest version is faster and contains a lot of new features like APR (Arp Poison Routing) which enables sniffing on switched LANs and Man-in-the-Middle attacks. The sniffer in this version can also analyze encrypted protocols such as SSH-1 and HTTPS, and contains filters to capture credentials from a wide range of authentication mechanisms. The new version also ships routing protocols authentication monitors and routes extractors, dictionary and brute-force crackers for all common hashing algorithms and for several specific authentications, password/hash calculators, cryptanalysis attacks, password decoders and some not so common utilities related to network and system security.
Havij is an automated SQL Injection tool that helps penetration testers to find and exploit SQL Injection vulnerabilities on a web page.
It can take advantage of a vulnerable web application. By using this software user can perform back-end database fingerprint, retrieve DBMS users and password hashes, dump tables and columns, fetching data from the database, running SQL statements and even accessing the underlying file system and executing commands on the operating system.
The power of Havij that makes it different from similar tools is its injection methods. The success rate is more than 95% at injectiong vulnerable targets using Havij.
The user friendly GUI (Graphical User Interface) of Havij and automated settings and detections makes it easy to use for everyone even amateur users.
How to Activate:
1.Run Havij.exe
2. Once it opens you will see register..
3. Click Register
Make sure you are connected to the internet
4. Under Name:
You write: Cracked@By.Exidous
5. Under File:
You select the folder where you are currently running the Havij program from and select Havij Key
There are a lot of vulnerabilities that allow us to exploit a website, all of them are old and documented. We can found LFI, RFI, SQL, XSS, SSI, ICH and other attacks. For that reason I'm going to center this paper only in attacks that allow us access to the system and to execute commands remotely. It would be bored to write another paper with all types of vulnerabilities, telling the same you know, for that I'll try to contribute with any new thing and remember basic concepts superficially.
Kon-Boot for Windows enables logging in to any password protected machine profile without without any knowledge of the password. This tool changes the contents of Windows kernel while booting, everything is done virtually – without any interferences with physical system changes. So far following systems were tested to work correctly with Kon-Boot:
Windows Server 2008 Standard SP2 (v.275) Windows Vista Business SP1 Windows Vista Ultimate SP1 Windows Vista Ultimate SP1 Windows Server 2003 Enterprise Windows XP Windows XP SP1 Windows XP SP2 Windows XP SP3 Windows 7 How to use Kon-Boot: Kon boot can either be burned on a CD or put on a USB stick or put on a Floppy disk
bypass the Windows login screen and go straight to the desktop. Great
Kon-Boot is less then 100kb in file size so don't panic about the size. If your using it off a CD put the CD into the computer with the password protected Windows Login make sure the computer is set to boot from CD in the BIOS a screen like the picture above will display and then get to the Windows login screen simply press 'ENTER'
and thing about Kon-Boot is it leaves no traces and doesn't edit or remove the password on the computer you can reboot the computer after you have logged into it and the owner of the computer will have no ideal anyone was on it.
Kon-Boot for Windows enables logging in to any password protected machine profile without without any knowledge of the password. This tool changes the contents of Windows kernel while booting, everything is done virtually -- without any interferences with physical system changes. So far following systems were tested to work correctly with Kon-Boot:
Windows Server 2008 Standard SP2 (v.275)
Windows Vista Business SP0
Windows Vista Ultimate SP1
Windows Vista Ultimate SP0
Windows Server 2003 Enterprise
Windows XP
Windows XP SP1
Windows XP SP2
Windows XP SP3
Windows 7
How to use Kon-Boot:
Kon boot can either be burned on a CD or put on a USB stick or put on a Floppy disk
Kon-Boot is less then 100kb in file size so don't panic about the size.
If your using it off a CD put the CD into the computer with the password protected Windows Login make sure the computer is set to boot from CD in the BIOS a screen like the picture above will display and then get to the Windows login screen simply press 'ENTER' and bypass the Windows login screen and go straight to the desktop.
Great thing about Kon-Boot is it leaves no traces and doesn't edit or remove the password on the computer you can reboot the computer after you have logged into it and the owner of the computer will have no ideal anyone was on it.
http://www.wuala.com/zarabyte/misc/?lang=en
Look for KonBootv1.1.zipYou need WinRAR to open the ZIP file locate the KONCD folder it has a ISO in it you need to burn the ISO using Nero or another program that can burn ISO's to a CD its a small file so don't freak out.