<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>ClubHack &#187; Tools</title>
	<atom:link href="http://www.clubhack.com/category/news/tools/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.clubhack.com</link>
	<description></description>
	<lastBuildDate>Mon, 02 Apr 2012 11:23:26 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.2</generator>
		<item>
		<title>BackTrack 5 Released</title>
		<link>http://www.clubhack.com/backtrack-5-released/</link>
		<comments>http://www.clubhack.com/backtrack-5-released/#comments</comments>
		<pubDate>Thu, 12 May 2011 15:00:41 +0000</pubDate>
		<dc:creator>Sorabh Kalra</dc:creator>
				<category><![CDATA[News]]></category>
		<category><![CDATA[Tools]]></category>
		<category><![CDATA[Web]]></category>
		<category><![CDATA[BackTrack]]></category>
		<category><![CDATA[Linux distribution]]></category>
		<category><![CDATA[Security]]></category>

		<guid isPermaLink="false">http://clubhack.com/?p=1184</guid>
		<description><![CDATA[Back Track Dev team has finally announced public availability of  BackTrack 5, code named “revolution”. BackTrack 5 has been built from scratch, and boasts several major improvements over all previous releases and its based on Ubuntu Lucid LTS  and uses  Linux Kernel 2.6.38 patched with all relevant wireless injection patches. You can grab your copy [...]]]></description>
			<content:encoded><![CDATA[<p></p><div class="zemanta-img" style="margin: 1em;">
<div class="wp-caption alignright" style="width: 300px">
	<a href="http://commons.wikipedia.org/wiki/File:Backtrack_logo.png"><span style="color: #000000;"><img src="http://upload.wikimedia.org/wikipedia/commons/thumb/0/09/Backtrack_logo.png/300px-Backtrack_logo.png" alt="Backtrack logo" width="300" height="70" /></span></a>
	<p class="wp-caption-text">Image via Wikipedia</p>
</div>
</div>
<p><span style="color: #ffffff;">Back Track Dev team has finally announced public availability of  BackTrack 5, code named “revolution”. </span></p>
<p><span style="color: #ffffff;"><a class="zem_slink" title="BackTrack" rel="homepage" href="http://www.backtrack-linux.org/">BackTrack</a> 5 has been built from scratch, and boasts several major improvements over all previous releases and its based on <a class="zem_slink" title="Ubuntu (operating system)" rel="homepage" href="http://www.ubuntu.com/">Ubuntu</a> Lucid LTS  and uses  <a class="zem_slink" title="Linux kernel" rel="homepage" href="http://www.kernel.org/">Linux Kernel</a> 2.6.38 patched with all relevant  wireless injection patches.<br />
</span></p>
<p><span style="color: #ffffff;"> You can grab your copy from (available as a torrent download) &#8211; <a href="http://www.backtrack-linux.org/downloads/">http://www.backtrack-linux.org/downloads/</a><br />
</span></p>
<p><span style="color: #ffffff;">BackTrack project is majorly sponsored and developed by <a class="zem_slink" title="Offensive Security" rel="homepage" href="http://www.offensive-security.com/"> Offensive Security</a>.</span></p>
]]></content:encoded>
			<wfw:commentRss>http://www.clubhack.com/backtrack-5-released/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>OWASP Top10 Tools and Tactics</title>
		<link>http://www.clubhack.com/owasp-top10-tools-and-tactics/</link>
		<comments>http://www.clubhack.com/owasp-top10-tools-and-tactics/#comments</comments>
		<pubDate>Wed, 20 Apr 2011 16:43:46 +0000</pubDate>
		<dc:creator>ClubHack</dc:creator>
				<category><![CDATA[News]]></category>
		<category><![CDATA[Tools]]></category>
		<category><![CDATA[Vulnerabilities]]></category>
		<category><![CDATA[Web]]></category>
		<category><![CDATA[OWASP]]></category>

		<guid isPermaLink="false">http://clubhack.com/?p=1121</guid>
		<description><![CDATA[Around a month back Infosec Resources compiled a post with nice set of tools and tactics to exploit OWASP top 10 vulnerabilities Following is a risk and tool matrix. RISK TOOL A1: Injection SQL Inject Me A2: Cross-Site Scripting (XSS) ZAP A3: Broken Authentication and Session Management HackBar A4: Insecure Direct Object References Burp A5: Cross-Site [...]]]></description>
			<content:encoded><![CDATA[<p></p><p>Around a month back <a href="http://infosecinstitute.com">Infosec Resources</a> compiled a post with nice set of tools and tactics to exploit <a class="zem_slink" title="OWASP" rel="wikipedia" href="http://en.wikipedia.org/wiki/OWASP">OWASP</a> top 10 vulnerabilities</p>
<hr />
<p>Following is a risk and tool matrix.</p>
<table border="0" cellpadding="2" width="600">
<tbody>
<tr>
<td bgcolor="#009933"><strong>RISK</strong></td>
<td bgcolor="#009933"><strong>TOOL</strong></td>
</tr>
<tr>
<td width="382"><strong>A1: Injection</strong></td>
<td width="204"><strong>SQL Inject Me</strong></td>
</tr>
<tr>
<td><strong>A2: <a class="zem_slink" title="Cross-site scripting" rel="wikipedia" href="http://en.wikipedia.org/wiki/Cross-site_scripting">Cross-Site Scripting</a> (XSS)</strong></td>
<td><strong>ZAP</strong></td>
</tr>
<tr>
<td><strong>A3: Broken Authentication and Session Management</strong></td>
<td><strong>HackBar</strong></td>
</tr>
<tr>
<td><strong>A4: Insecure Direct Object References</strong></td>
<td><strong>Burp</strong></td>
</tr>
<tr>
<td><strong>A5: <a class="zem_slink" title="Cross-site request forgery" rel="wikipedia" href="http://en.wikipedia.org/wiki/Cross-site_request_forgery">Cross-Site Request Forgery</a> (CSRF)</strong></td>
<td><strong>Tamper Data</strong></td>
</tr>
<tr>
<td><strong>A6: Security Misconfiguration</strong></td>
<td><strong>Watobo</strong></td>
</tr>
<tr>
<td><strong>A7: Insecure Cryptographic Storage</strong></td>
<td><strong>N/A</strong></td>
</tr>
<tr>
<td><strong>A8: Failure to Restrict URL Access</strong></td>
<td><strong>Nikto/Wikto</strong></td>
</tr>
<tr>
<td><strong>A9: Insufficient Transport Layer Protection</strong></td>
<td><strong>Calomel</strong></td>
</tr>
<tr>
<td><strong>A10: Unvalidated Redirects and Forwards</strong></td>
<td><strong>Watcher</strong></td>
</tr>
</tbody>
</table>
<hr />
<p>&nbsp;</p>
<p>The article is a good reference point for someone looking forward for <a class="zem_slink" title="Web application testing" rel="wikipedia" href="http://en.wikipedia.org/wiki/Web_application_testing">web application testing</a> on the lines of OWASP</p>
<p>Full article can be found here:</p>
<p><a href="http://resources.infosecinstitute.com/owasp-top-10-tools-and-tactics/">http://resources.infosecinstitute.com/owasp-top-10-tools-and-tactics/</a></p>
<p>&nbsp;</p>
<p>There&#8217;s another interesting article by Rakkhi Samarasekera which deals with mitigating OWASP top 10 without touching any code.</p>
<p>This might be useful for many legacy apps</p>
<p><a href="http://www.rakkhis.com/2011/03/mitigating-owasp-top-10-without-any.html">http://www.rakkhis.com/2011/03/mitigating-owasp-top-10-without-any.html</a></p>
<p>&nbsp;</p>
<p>&nbsp;</p>
<p>&nbsp;</p>
<p>&nbsp;</p>
<div class="zemanta-pixie" style="margin-top: 10px; height: 15px;"><a class="zemanta-pixie-a" title="Enhanced by Zemanta" href="http://www.zemanta.com/"><img class="zemanta-pixie-img" style="border: none; float: right;" src="http://img.zemanta.com/zemified_e.png?x-id=b1f89aed-2591-47b2-9bfd-b74e7e4156e9" alt="Enhanced by Zemanta" /></a></div>
]]></content:encoded>
			<wfw:commentRss>http://www.clubhack.com/owasp-top10-tools-and-tactics/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>yInjector &#8211; SQL Injection Penetration Tool</title>
		<link>http://www.clubhack.com/yinjector-sql-injection-penetration-tool/</link>
		<comments>http://www.clubhack.com/yinjector-sql-injection-penetration-tool/#comments</comments>
		<pubDate>Sun, 03 Apr 2011 06:55:04 +0000</pubDate>
		<dc:creator>Maximiliano Soler</dc:creator>
				<category><![CDATA[News]]></category>
		<category><![CDATA[Tools]]></category>

		<guid isPermaLink="false">http://clubhack.com/?p=1058</guid>
		<description><![CDATA[yInjector is a MySQL Injection penetration tool, created by Giovanni &#8216;Osirys&#8216; Buzzin. SQL injection is a code injection technique that exploits a security vulnerability occurring in the database layer of an application. The vulnerability is present when user input i s either incorrectly filtered for string literal escape characters embedded in SQL statements or user [...]]]></description>
			<content:encoded><![CDATA[<p></p><div class="zemanta-img" style="margin: 1em; display: block;">
<div class="wp-caption alignright" style="width: 128px">
	<img class=" " title="Database" src="http://upload.wikimedia.org/wikipedia/commons/4/40/Crystal_Clear_app_database.png" alt="Database" width="128" height="128" />
	<p class="wp-caption-text">Image via Wikipedia</p>
</div>
</div>
<p><strong>yInjector </strong>is a <strong>MySQL </strong>Injection penetration tool, created by Giovanni &#8216;<em>Osirys</em>&#8216; Buzzin.</p>
<p><em><strong>SQL injection</strong> is a <a href="https://secure.wikimedia.org/wikipedia/en/wiki/Code_injection">code injection</a> technique that exploits a <a title="Security vulnerability" href="https://secure.wikimedia.org/wikipedia/en/wiki/Security_vulnerability">security vulnerability</a> occurring in the <a href="https://secure.wikimedia.org/wikipedia/en/wiki/Database">database</a> layer of an <a title="Application software" href="https://secure.wikimedia.org/wikipedia/en/wiki/Application_software">application</a>. The vulnerability is present when user input i s either incorrectly filtered for <a href="https://secure.wikimedia.org/wikipedia/en/wiki/String_literal">string literal</a> <a title="Escape sequences" href="https://secure.wikimedia.org/wikipedia/en/wiki/Escape_sequences">escape characters</a> embedded in <a href="https://secure.wikimedia.org/wikipedia/en/wiki/SQL">SQL</a> statements or user input is not <a title="Strongly-typed programming language" href="https://secure.wikimedia.org/wikipedia/en/wiki/Strongly-typed_programming_language">strongly typed</a> and thereby unexpectedly executed. (Wikipedia)</em></p>
<p><span id="more-1058"></span></p>
<p><strong>Features:</strong></p>
<p><strong>Main Feature</strong></p>
<ul>
<li>GET and POST request</li>
<li>Proxy Support</li>
<li>Log Report option avaiable</li>
</ul>
<p><strong>Exploitation Methods</strong></p>
<ul>
<li>Columns number finder</li>
<li>Database dump, SQL Injection must be provided</li>
<li>Advanced and Automated Exploitation : finds the SQL Injection to provide a Shell Assistant</li>
</ul>
<p><strong>Shell Assistant features</strong></p>
<ul>
<li>Multiple data from all DB extraction</li>
<li>MySQL Command line (SELECT)</li>
<li>md5 hash cracker assistant</li>
<li>Remote Command Execution via SQL Injection</li>
</ul>
<p>Video:  <a href="http://www.youtube.com/watch?v=2PZJF-dVx3Y" target="_blank">yInjector &#8211; SQL Injection Penetration Tool</a></p>
<p>More Information: <a href="http://y-osirys.com/softwares/" target="_blank">http://y-osirys.com/softwares/</a></p>
<div class="zemanta-pixie" style="margin-top: 10px; height: 15px;"><a class="zemanta-pixie-a" title="Enhanced by Zemanta" href="http://www.zemanta.com/"><img class="zemanta-pixie-img" style="border: none; float: right;" src="http://img.zemanta.com/zemified_e.png?x-id=724cee96-b4d6-4e3d-9da5-8c24538a418e" alt="Enhanced by Zemanta" /></a></div>
]]></content:encoded>
			<wfw:commentRss>http://www.clubhack.com/yinjector-sql-injection-penetration-tool/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>SAMHAIN v2.8.3 released</title>
		<link>http://www.clubhack.com/samhain-v2-8-3-released/</link>
		<comments>http://www.clubhack.com/samhain-v2-8-3-released/#comments</comments>
		<pubDate>Mon, 28 Mar 2011 13:53:15 +0000</pubDate>
		<dc:creator>Maximiliano Soler</dc:creator>
				<category><![CDATA[News]]></category>
		<category><![CDATA[Tools]]></category>
		<category><![CDATA[hids]]></category>
		<category><![CDATA[ids]]></category>
		<category><![CDATA[Open source]]></category>
		<category><![CDATA[Samhain]]></category>
		<category><![CDATA[tool]]></category>

		<guid isPermaLink="false">http://clubhack.com/?p=1043</guid>
		<description><![CDATA[The Samhain host-based intrusion detection system (HIDS) provides file integrity checking and log file monitoring/analysis, as well as rootkit detection, port monitoring, detection of rogue SUID executables, and hidden processes. Samhain been designed to monitor multiple hosts with potentially different operating systems, providing centralized logging and maintenance, although it can also be used as standalone [...]]]></description>
			<content:encoded><![CDATA[<p></p><p>The Samhain     <a class="zem_slink" title="Host-based intrusion detection system" rel="wikipedia" href="http://en.wikipedia.org/wiki/Host-based_intrusion_detection_system">host-based intrusion detection system</a> (HIDS) provides      <strong>file integrity checking</strong> and <strong>log file monitoring/analysis</strong>,     as well as rootkit detection, port monitoring, detection of rogue      SUID executables, and hidden processes.</p>
<p>Samhain been designed to monitor multiple hosts     with potentially different operating systems, providing      <strong>centralized logging and maintenance</strong>,     although it can also be used as standalone application on a single     host.</p>
<p>Samhain is an open-source multiplatform application for POSIX systems      (Unix, Linux, Cygwin/Windows).</p>
<p><span id="more-1043"></span>If you want to know more about SAMHAIN, see the <a href="http://la-samhna.de/samhain/s_documentation.html" target="_blank">Documentation</a>.</p>
<p><strong>Details:</strong></p>
<p><code>Version 2.8.3a   <a href="http://la-samhna.de/samhain/samhain-current.tar.gz" target="_blank">samhain-current.tar.gz</a><br />
MD5 checksum     9885c093ab7e8d63be9ed6aaedf28138</code></p>
<p><strong>Version 2.8.3</strong></p>
<ul>
<li>Samhain now runs lstat/stat system calls in a subprocess to avoid getting blocked by hanging NFS mounts. This feature can be switched off via the new option &#8216;AvoidBlock = false&#8217; in the Misc section of the configuration file.</li>
<li>A Windows/Cygwin compile error has been fixed.</li>
<li>Some issues with the networking code have been fixed.</li>
<li>Minor code cleanup.</li>
</ul>
<p>Website: <a href="http://la-samhna.de/samhain" target="_blank">http://la-samhna.de/samhain</a></p>
<div class="zemanta-pixie" style="margin-top: 10px; height: 15px;"><a class="zemanta-pixie-a" title="Enhanced by Zemanta" href="http://www.zemanta.com/"><img class="zemanta-pixie-img" style="border: none; float: right;" src="http://img.zemanta.com/zemified_e.png?x-id=862b5bad-45b8-4a06-88fb-f3592f244171" alt="Enhanced by Zemanta" /></a></div>
]]></content:encoded>
			<wfw:commentRss>http://www.clubhack.com/samhain-v2-8-3-released/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Now Recover Your Facebook Password Using FacebookPasswordDecryptor</title>
		<link>http://www.clubhack.com/now-recover-your-facebook-password-using-facebookpassworddecryptor/</link>
		<comments>http://www.clubhack.com/now-recover-your-facebook-password-using-facebookpassworddecryptor/#comments</comments>
		<pubDate>Fri, 25 Feb 2011 10:33:22 +0000</pubDate>
		<dc:creator>SecurityXploded</dc:creator>
				<category><![CDATA[News]]></category>
		<category><![CDATA[Tools]]></category>
		<category><![CDATA[facebook]]></category>
		<category><![CDATA[password]]></category>
		<category><![CDATA[password security]]></category>

		<guid isPermaLink="false">http://clubhack.com/?p=917</guid>
		<description><![CDATA[FacebookPasswordDecryptor is the FREE software to instantly recover stored Facebook account passwords stored by popular web browsers and messengers. Most of the applications store the Login passwords to prevent hassle of entering the password everytime. Often these applications use their own proprietary encryption mechanism to store the login passwords including Facebook account passwords. FacebookPasswordDecryptor automatically [...]]]></description>
			<content:encoded><![CDATA[<p></p><p style="text-align: justify;"><span style="color: #3366ff;"><strong>FacebookPasswordDecryptor</strong> </span>is the FREE software to instantly recover stored <strong>Facebook </strong>account passwords stored by popular web browsers and messengers. Most of the applications store the Login passwords to prevent hassle of entering the password everytime. Often these applications use their own proprietary encryption mechanism to store the login passwords including Facebook account passwords. FacebookPasswordDecryptor automatically crawls through each of these applications and instantly recovers the encrypted <span style="color: #3366ff;">Facebook account </span>password.</p>
<p style="text-align: center;"><a href="http://securityxploded.com/facebookpassworddecryptor.php" target="_blank"><img class="aligncenter" src="http://securityxploded.com/images/facebookpassworddecryptor_blog_400.jpg" border="0px" alt="" /></a></p>
<p>It presents both GUI interface as well as command line version, the later is more helpful for <span style="color: #3366ff;">Penetration testers</span>. Apart from normal users who can use it to recover their lost password, it can come in handy for <span style="color: #3366ff;">Forensic</span> Folks.</p>
<p>Currently it supports Faceboook password recovery from following applications</p>
<ul>
<li><strong>Internet Explorer</strong></li>
<li><strong>Firefox</strong></li>
<li><strong>Google Chrome</strong></li>
<li><strong>Opera Browser</strong></li>
<li><strong>Apple Safari</strong></li>
<li><strong>Flock Browser</strong></li>
<li><strong>Paltalk Messenger</strong></li>
<li><strong>Miranda Messenger</strong></li>
</ul>
<p style="text-align: justify;">Though it is primarily designed to recover one&#8217;s lost password it can be very useful in many ways. For example in cases where you have to hand over your laptop to some one else, you can run FacebookPasswordDecryptor and remove any password from all the stored applications.</p>
<p style="text-align: justify;">It is also possbile for this tool to be misused by <span style="color: #3366ff;">spywares </span>and dark guys to get hold of your secret Facebook passwords after compromising your system. Facebook being most popular, it is one of the most targeted account by spywares/trojans. <span style="color: #3366ff;"><strong>To protect against such threats it is adivsed to set up master password wherever it is possible.</strong></span> For example in Firefox you can protect your saved passwords with master password. As not all applications have such kind of protection mechanism, it is not good idea to store the passwords in every application. Also in the event of<span style="color: #3366ff;"> spyware infection</span> or insider attack you are advised to immediately change your important passwords before anything else.</p>
<p style="text-align: justify;">It can happen to anybody either you are normal user or security expert. Like what happened to our Rohit but good thing is that he was able to <a href="http://blog.rohit11.com/2011/02/someone-is-trying-to-hack-me.html" target="_blank">discover the attack</a> while it was happening and changed all his 83 passwords !</p>
<p style="text-align: justify;">FacebookPasswordDecryptor comes with <span style="color: #3366ff;">Portable edition</span> as well as with integrated Installer. Portable version allows you to run it directly from USB or other portable devices without installing it on the system. It works on wide range of platforms starting from Windows XP to latest operating system <span style="color: #3366ff;">Windows 7</span>.</p>
<p>For more details and to download this free tool, visit <a title="Facebook Password Decryptor" href="http://securityxploded.com/facebookpassworddecryptor.php" target="_blank"><strong>FacebookPasswordDecryptor </strong></a>!</p>
<p>&nbsp;</p>
<p>&nbsp;</p>
]]></content:encoded>
			<wfw:commentRss>http://www.clubhack.com/now-recover-your-facebook-password-using-facebookpassworddecryptor/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Python tools for Penetration Testers – 0×03</title>
		<link>http://www.clubhack.com/python-tools-for-penetration-testers-%e2%80%93-0%c3%9703/</link>
		<comments>http://www.clubhack.com/python-tools-for-penetration-testers-%e2%80%93-0%c3%9703/#comments</comments>
		<pubDate>Tue, 22 Feb 2011 03:30:59 +0000</pubDate>
		<dc:creator>Maximiliano Soler</dc:creator>
				<category><![CDATA[News]]></category>
		<category><![CDATA[Tools]]></category>

		<guid isPermaLink="false">http://clubhack.com/?p=172</guid>
		<description><![CDATA[If you are involved in vulnerability research, reverse engineering or penetration testing, I suggest to try out the Python programming language. It has a rich set of useful libraries and programs. Fuzzing Sulley: fuzzer development and fuzz testing framework consisting of multiple extensible components Peach Fuzzing Platform: extensible fuzzing framework for generation and mutation based [...]]]></description>
			<content:encoded><![CDATA[<p></p><p>If you are involved in vulnerability research, reverse engineering or  penetration testing, I suggest to try out the Python programming  language. It has a rich set of useful libraries and programs.</p>
<h3>Fuzzing</h3>
<ul>
<li><a href="http://code.google.com/p/sulley/">Sulley</a>: fuzzer  development and fuzz testing framework consisting of multiple extensible  components</li>
<li><a href="http://peachfuzz.sourceforge.net/">Peach Fuzzing Platform</a>:  extensible fuzzing framework for generation and mutation based fuzzing</li>
<li><a href="http://antiparser.sourceforge.net/">antiparser</a>: fuzz  testing and fault injection API</li>
<li><a href="http://theartoffuzzing.com/">TAOF</a>, including <a href="http://theartoffuzzing.com/joomla/index.php?option=com_content&amp;task=view&amp;id=21&amp;Itemid=40">ProxyFuzz</a>,  a man-in-the-middle non-deterministic network fuzzer</li>
<li><a href="http://untidy.sourceforge.net/">untidy</a>: general purpose  XML fuzzer</li>
<li><a href="http://www.powerfuzzer.com/">Powerfuzzer</a>: highly  automated and fully customizable web fuzzer (HTTP protocol based  application fuzzer)</li>
<li><a href="https://www.isecpartners.com/file_fuzzers.html">FileP</a>:  file fuzzer. Generates mutated files from a list of source files and  feeds them to an external program in batches</li>
<li><a href="http://www.fuzzing.org/wp-content/SMUDGE.zip">SMUDGE</a></li>
<li><a href="http://www.packetstormsecurity.org/fuzzer/mistress.rar">Mistress</a>:  probe file formats on the fly and protocols with malformed data, based  on pre-defined patterns</li>
<li><a href="https://www.isecpartners.com/fuzzbox.html">Fuzzbox</a>:  multi-codec media fuzzer</li>
<li><a href="https://www.isecpartners.com/forensic_fuzzing_tools.html">Forensic  Fuzzing Tools</a>: generate fuzzed files, fuzzed file systems, and file  systems containing fuzzed files in order to test the robustness of  forensics tools and examination systems</li>
<li><a href="https://www.isecpartners.com/windows_ipc_fuzzing_tools.html">Windows  IPC Fuzzing Tools</a>: tools used to fuzz applications that use Windows  Interprocess Communication mechanisms</li>
<li><a href="https://www.isecpartners.com/wsbang.html">WSBang</a>:  perform automated security testing of SOAP based web services</li>
<li><a href="http://construct.wikispaces.com/">Construct</a>: library  for parsing and building of data structures (binary or textual). Define  your data structures in a declarative manner</li>
<li><a href="http://sites.google.com/site/felipeandresmanzano/fuzzer.py?attredirects=0">fuzzer.py  (feliam)</a>: simple fuzzer by Felipe Andres anzano</li>
</ul>
<p>More information: <a href="http://dirk-loss.de/python-tools.htm" target="_blank">here</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.clubhack.com/python-tools-for-penetration-testers-%e2%80%93-0%c3%9703/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Python tools for Penetration Testers &#8211; 0&#215;02</title>
		<link>http://www.clubhack.com/python-tools-for-penetration-testers-0x02/</link>
		<comments>http://www.clubhack.com/python-tools-for-penetration-testers-0x02/#comments</comments>
		<pubDate>Tue, 22 Feb 2011 03:26:14 +0000</pubDate>
		<dc:creator>Maximiliano Soler</dc:creator>
				<category><![CDATA[News]]></category>
		<category><![CDATA[Tools]]></category>

		<guid isPermaLink="false">http://clubhack.com/?p=168</guid>
		<description><![CDATA[If you are involved in vulnerability research, reverse engineering or penetration testing, I suggest to try out the Python programming language. It has a rich set of useful libraries and programs. Debugging and reverse engineering Paimei: reverse engineering framework, includes PyDBG, PIDA, pGRAPH Immunity Debugger: scriptable GUI and command line debugger IDAPython: IDA Pro plugin [...]]]></description>
			<content:encoded><![CDATA[<p></p><p>If you are involved in vulnerability research, reverse engineering or  penetration testing, I suggest to try out the Python programming  language. It has a rich set of useful libraries and programs.</p>
<h3>Debugging and reverse engineering</h3>
<ul>
<li><a href="http://code.google.com/p/paimei">Paimei</a>: reverse  engineering framework, includes <a href="http://pedram.redhive.com/PyDbg/">PyDBG</a>, PIDA, pGRAPH</li>
<li><a href="http://www.immunityinc.com/products-immdbg.shtml">Immunity  Debugger</a>: scriptable GUI and command line debugger</li>
<li><a href="http://d-dome.net/idapython/">IDAPython</a>: IDA Pro plugin  that integrates the Python programming language, allowing scripts to  run in IDA Pro</li>
<li><a href="http://code.google.com/p/pyemu/">PyEMU</a>: fully  scriptable IA-32 emulator, useful for malware analysis</li>
<li><a href="http://code.google.com/p/pefile/">pefile</a>: read and work  with Portable Executable (aka PE) files</li>
<li><a href="http://dkbza.org/pydasm.html">pydasm</a>: Python interface  to the <a href="http://www.nologin.org/main.pl?action=codeView&amp;codeId=49&amp;">libdasm</a> x86 disassembling library</li>
<li><a href="http://pydbgeng.sourceforge.net/">PyDbgEng</a>: Python  wrapper for the Microsoft Windows Debugging Engine</li>
<li><a href="http://oss.coresecurity.com/projects/uhooker.htm">uhooker</a>:  intercept calls to API calls inside DLLs, and also arbitrary addresses  within the executable file in memory</li>
<li><a href="http://www.ragestorm.net/distorm/">diStorm64</a>:  disassembler library for AMD64, licensed under the BSD license</li>
<li><a href="http://bitbucket.org/haypo/python-ptrace/wiki/Home">python-ptrace</a>:  debugger using ptrace (Linux, BSD and Darwin system call to trace  processes) written in Python</li>
</ul>
<p>More information: <a href="http://dirk-loss.de/python-tools.htm" target="_blank">here</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.clubhack.com/python-tools-for-penetration-testers-0x02/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Python tools for Penetration Testers &#8211; 0&#215;01</title>
		<link>http://www.clubhack.com/python-tools-for-penetration-testers-0x01/</link>
		<comments>http://www.clubhack.com/python-tools-for-penetration-testers-0x01/#comments</comments>
		<pubDate>Tue, 22 Feb 2011 03:06:54 +0000</pubDate>
		<dc:creator>Maximiliano Soler</dc:creator>
				<category><![CDATA[News]]></category>
		<category><![CDATA[Tools]]></category>

		<guid isPermaLink="false">http://clubhack.com/?p=157</guid>
		<description><![CDATA[If you are involved in vulnerability research, reverse engineering or penetration testing, I suggest to try out the Python programming language. It has a rich set of useful libraries and programs. Network Scapy: send, sniff and dissect and forge network packets. Usable interactively or as a library pypcap, Pcapy and pylibpcap: several different Python bindings [...]]]></description>
			<content:encoded><![CDATA[<p></p><p>If you are involved in vulnerability research, reverse engineering or penetration testing, I suggest to try out the Python programming language. It has a rich set of useful libraries and programs.</p>
<p><strong>Network</strong></p>
<ul>
<li><a href="http://secdev.org/projects/scapy">Scapy</a>: send, sniff  and dissect and forge network packets. Usable interactively or as a  library</li>
<li><a href="http://code.google.com/p/pypcap/">pypcap</a>, <a href="http://oss.coresecurity.com/projects/pcapy.html">Pcapy</a> and <a href="http://pylibpcap.sourceforge.net/">pylibpcap</a>: several  different Python bindings for libpcap</li>
<li><a href="http://code.google.com/p/libdnet/">libdnet</a>: low-level  networking routines, including interface lookup and Ethernet frame  transmission</li>
<li><a href="http://code.google.com/p/dpkt/">dpkt</a>: fast, simple  packet creation/parsing, with definitions for the basic TCP/IP protocols</li>
<li><a href="http://oss.coresecurity.com/projects/impacket.html">Impacket</a>:  craft and decode network packets. Includes support for higher-level  protocols such as NMB and SMB</li>
<li><a href="http://jon.oberheide.org/pynids/">pynids</a>: libnids  wrapper offering sniffing, IP defragmentation, TCP stream reassembly and  port scan detection</li>
<li><a href="http://dirtbags.net/py-pcap/">Dirtbags py-pcap</a>: read  pcap files without libpcap</li>
<li><a href="http://monkey.org/%7Ejose/software/flowgrep/">flowgrep</a>:  grep through packet payloads using regular expressions</li>
<li><a href="http://code.google.com/p/httplib2/">httplib2</a>:  comprehensive HTTP client library that supports many features left out  of other HTTP libraries</li>
</ul>
<p>More information: <a href="http://dirk-loss.de/python-tools.htm" target="_blank">here</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.clubhack.com/python-tools-for-penetration-testers-0x01/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>HBGary&#8217;s RAZOR Non Signature based Malware detection</title>
		<link>http://www.clubhack.com/hbgarys-razor-non-signature-based-malware-detection/</link>
		<comments>http://www.clubhack.com/hbgarys-razor-non-signature-based-malware-detection/#comments</comments>
		<pubDate>Thu, 03 Feb 2011 02:26:07 +0000</pubDate>
		<dc:creator>VishalK™</dc:creator>
				<category><![CDATA[News]]></category>
		<category><![CDATA[Tools]]></category>

		<guid isPermaLink="false">http://clubhack.com/?p=864</guid>
		<description><![CDATA[With the rise of non signature based Malware detection tools, HBGary&#8217;s announced the release of their new product Razor. Razor appliance uses a &#8220;virtual-machine system&#8221; that takes all files and copies them to inspect for malware by &#8220;detonating&#8221; the file copies in a sandbox to examine whether any document contains malicious content. It also watches [...]]]></description>
			<content:encoded><![CDATA[<p></p><p>With the rise of non signature based Malware detection tools, HBGary&#8217;s announced the release of their new product Razor.</p>
<p>Razor appliance uses a &#8220;virtual-machine system&#8221; that takes all files and copies them to inspect for malware by &#8220;detonating&#8221; the file copies in a sandbox to examine whether any document contains malicious content. It also watches for malicious command-and-control activity, and can automatically block further traffic associated with a malicious site.</p>
<p>More details &#8211; <a href="http://itnews.com/security/27901/security-firm-detonates-copies-suspicious-files-sniff-out-malware-botnet-attacks">http://itnews.com/security/27901/security-firm-detonates-copies-suspicious-files-sniff-out-malware-botnet-attacks</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.clubhack.com/hbgarys-razor-non-signature-based-malware-detection/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Microsoft releases &#8216;Shim&#8217; to counter IE Attacks</title>
		<link>http://www.clubhack.com/microsoft-releases-shim-to-counter-ie-attacks/</link>
		<comments>http://www.clubhack.com/microsoft-releases-shim-to-counter-ie-attacks/#comments</comments>
		<pubDate>Fri, 14 Jan 2011 07:48:16 +0000</pubDate>
		<dc:creator>VishalK™</dc:creator>
				<category><![CDATA[General]]></category>
		<category><![CDATA[News]]></category>
		<category><![CDATA[Research]]></category>
		<category><![CDATA[Tools]]></category>

		<guid isPermaLink="false">http://clubhack.com/?p=860</guid>
		<description><![CDATA[Shim is a term used to describe an application compatibility workaround. Microsoft&#8217;s workaround used the Application Compatibility Toolkit to modify the core library of IE &#8212; a DLL, or Dynamic-Link library, named &#8220;Mshtml.dll,&#8221; that contains the rendering engine &#8212; in memory each time IE runs. The modification prevents recursive loading of a CSS, which effectively [...]]]></description>
			<content:encoded><![CDATA[<p></p><p>Shim is a term used to describe an application compatibility workaround. Microsoft&#8217;s workaround used the Application Compatibility Toolkit to modify the core library of IE &#8212; a DLL, or Dynamic-Link library, named &#8220;Mshtml.dll,&#8221; that contains the rendering engine &#8212; in memory each time IE runs. The modification prevents recursive loading of a CSS, which effectively stops the existing attacks.</p>
<p>Source &#8211; <a href="http://www.computerworld.com/s/article/9204579/Microsoft_turns_to_creative_tactic_to_block_IE_attacks">http://www.computerworld.com/s/article/9204579/Microsoft_turns_to_creative_tactic_to_block_IE_attacks</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.clubhack.com/microsoft-releases-shim-to-counter-ie-attacks/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

