SEARCH RESULTS
 
Showing 1-10 of 69 records
 
Expand article

MSF VBA payload Demo

2009-01-04 22:30:00 by CG in Carnal0wnage Blog
 
Pretty good demo by Mark Baggett using the MSF Payload with VBA output and creating a malicious word document http://markremark.blogspot.com/2009/01/metasploit-visual-basic-payloads-in.html Its a shame everyone can do this now, its been ol'reliable for quite awhile
 
 
 
 
 
Expand article

More On Leveraging Client-Side Exploits In Your Pentests--smb relay

2008-07-24 17:43:00 by CG in Carnal0wnage Blog
 
...payload. To exploit this, the target system must try to authenticate to this module. The easiest way to force a SMB authentication attempt is by embedding a UNC path (SERVERSHARE) into a web page or email message. When the victim views the web page or email, their system will automatically connect to the server specified in the UNC share (the...
 
 
 
 
 
Expand article

Metasploit and File Format Bugs

2008-08-23 22:25:00 by CG in Carnal0wnage Blog
 
...Payload information Space: 1024 Avoid: 1 characters Description This module exploits a stack overflow in CA eTrust PestPatrol. When sending an overly long string to the Initialize() property of ppctl.dll (5.6.7.9) an attacker may be able to execute arbitrary code. This control is not marked safe for scripting, so choose your attack vector...
 
 
 
 
 
Expand article

Metasploit Toolkit Book Review

2008-03-20 15:27:00 by CG in Carnal0wnage Blog
 
...Payloads). "Using" Metasploit has been covered a million times in a million other books. A book specifically on Metasploit should have covered things not covered in every other hacking book Chapter 1 is an "Introduction to Metasploit." If you haven't ever used the tool and didn't want to RTFM, then "maybe" it would be useful for you. Most of...
 
 
 
 
 
Expand article

A Successful Pentest with some Failures.

2008-10-18 19:29:00 by dean de beer in Carnal0wnage Blog
 
...payload mid phish was also something we had to do and, while we manged, it could have been done far more effeciently. I should have prepared the alternate payloads beforehand to account for this eventuality. Changing the payload on the webserver was as simple as replacing the existing on and modifying the headers in the page. The email was a...
 
 
 
 
 
Expand article

Firmware: 1.1.4 How to Jailbreak the iPod Touch using iLiberty+ (Windows)

The Article has images
2008-03-22 02:59:00 by -Administration- in iPhone nano - Apple iPhone Articles
...payloads 1. Restore phone to 1.1.4 using iTunes 2. Activate your iPod Touch by giving it a name 3. Download: iLiberty for Windows 4. Run iLiberty 5. On the Standard tab, check the box for Jailbreak (the others will be greyed-out 6. If you wish to add other programs by using a special payload file, click on the Payloads tab, check the...
 
 
 
 
 
Expand article

Firmware: 1.1.4 How to Jailbreak/Activate/Unlock the iPhone using iLiberty+ (Windows)

The Article has images
2008-03-22 02:57:00 by -Administration- in iPhone nano - Apple iPhone Articles
...payloads Activation - Checking the activation checkbox allows you to bypass the iTunes activation process. (i.e. you want to use a pre-paid SIM chip from the official iPhone carrier in your country, instead of getting a contract Unlock - Checking the unlock checkbox allows you to use the phone with any carrier that uses GSM anywhere in the...
 
 
 
 
 
Expand article

The Snare Of Unauthorized Requests

2008-04-21 15:02:04 by manunkind in PC Sympathy
 
...payload. Whether it be session stealing, cookie stealing or a complete automated reconfiguration of your router. The attack is automated, instead of directly targeted like most network attacks are. With this in mind, I like to stress the importance of the distribution layer instead of its payload. Without distribution, the payload cannot be...
 
 
 
 
 
Expand article

Similarities/Differences Between QuickPwn and ZiPhone

The Article has images
2008-08-28 19:17:00 by -Administration- in Hack that iPhone and iTouch: Learn How To Jailbreak, Hack and Unlock Apple Gadgets
...Payload medium Primary jailbreak payload is placed into iPhone memory for both jailbreaks Differences Technique ZiPhone uses, as the root filesystem device, a pseudo-device that provides a window to an arbitrary section of memory. This memory is not allocated or otherwise reserved by the operating system and hence will be used by other...