FireSale HackBoy

Knowledge Shared By FireSale HackBoy...

Hacking

The Art Of Exploitation...

Ethical Hacking

Security Experts...Same Techniques To Make Hacker's Stuff Useless.

Black Hat Hacking

Dark Side Of Hacking... In Short Destruction Of Cyber Stuff.

Digital Stuff

All The Digital Stuff Is Under The Influence Of Cyber Attacks... Be Safe

Showing posts with label Hacking Tools. Show all posts
Showing posts with label Hacking Tools. Show all posts

Thursday, November 3, 2011

WebSurgery – Web Application Security Testing Suite

WebSurgery is a suite of tools for security testing of web applications. It was designed for security auditors to help them with the web application planning and exploitation. Currently, it uses an efficient, fast and stable Web Crawler, File/Dir Brute forcer, Fuzzer for advanced exploitation of known and unusual vulnerabilities such as SQL Injection, Cross site scripting (XSS), Brute force for login forms, identification of firewall-filtered rules, DOS Attacks and WEB Proxy to analyze, intercept and manipulate the traffic between your browser and the target web application.
WEB Crawler
WEB Crawler was designed to be fast, accurate, stable, completely parametrable and the use of advanced techniques to extract links from Javascript and HTML Tags. It works with parametrable timing settings (Timeout, Threading, Max Data Size, Retries) and a number of rules parameters to prevent infinitive loops and pointless scanning (Case Sensitive, Dir Depth, Process Above/Below, Submit Forms, Fetch Indexes/Sitemaps, Max Requests per File/Script Parameters). It is also possible to apply custom headers (user agent, cookies etc) and Include/Exclude Filters. WEB Crawler come with an embedded File/Dir Brute Forcer which helps to directly brute force for files/dirs in the directories found from crawling.
WEB Bruteforcer
WEB Bruteforcer is a brute forcer for files and directories within the web application which helps to identify the hidden structure. It is also multi-threaded and completely parametrable for timing settings (Timeout, Threading, Max Data Size, Retries) and rules (Headers, Base Dir, Brute force Dirs/Files, Recursive, File’s Extension, Send GET/HEAD, Follow Redirects, Process Cookies and List generator configuration).
By default, it will brute force from root / base dir recursively for both files and directories. It sends both HEAD and GET requests when it needs it (HEAD to identify if the file/dir exists and then GET to retrieve the full response).
WEB Fuzzer
WEB Fuzzer is a more advanced tool to create a number of requests based on one initial request. Fuzzer has no limits and can be used to exploit known vulnerabilities such (blind) SQL Inections and more unsual ways such identifing improper input handling, firewall/filtering rules, DOS Attacks.
WEB Editor
A simple WEB Editor to send individual requests. It also contains a HEX Editor for more advanced requests.
WEB Proxy
WEB Proxy is a proxy server running locally and will allow you to analyze, intercept and manipulate HTTP/HTTPS requests coming from your browser or other application which support proxies.
You can download WebSurgery here:
Setup – setup.msi
Portable – websurgery.zip

Friday, October 7, 2011

Download Hackers Best Tools - Hacking Tools

In this article I'll tell you some best tools for HACKERS. I have collect some best hacking tools for you. You can try all there tools and feel how HACKERS Hack with the help of this tool.  All tools are for educational purpose please use it Ethically. 



LIST OF Best Tools for HACKING :
The “Nessus” Project aims to provide to the internet community a free, powerful, up-to-date and easy to use remote security scanner for Linux, BSD, Solaris, and other flavors of Unix. 

 Acunetix WVS automatically checks your web applications for SQL Injection, XSS & other web vulnerabilities. Web application attacks, launched on port 80/443, go straight through the firewall, past operating system and network level security, and right in to the heart of your application and corporate data.

Wireshark is the world's foremost network protocol analyzer. It lets you capture and interactively browse the traffic running on a computer network. 

Snort is an open source network intrusion detection system, capable of performing real-time traffic analysis and packet logging on IP networks.

 TCPdump is the most used network sniffer/analyzer for UNIX. TCPTrace analyzes the dump file format generated by TCPdump and other applications.

 Hping is a command-line oriented TCP/IP packet assembler/analyzer, kind of like the “ping” program (but with a lot of extensions).

 DNSiff is a collection of tools for network auditing and penetration testing. dsniff, filesnarf, mailsnarf, msgsnarf, urlsnarf, and webspy passively monitor a network for interesting data (passwords, e-mail, files, etc.).

 Ettercap is a multipurpose sniffer/interceptor/logger for switched LAN. It supports active and passive dissection of many protocols (even ciphered ones)and includes many feature for network and host analysis.

Nikto is an Open Source (GPL) web server scanner which performs comprehensive tests against web servers for multiple items, including over 2500 potentially dangerous files/CGIs, versions on over 375 servers, and version specific problems on over 230 servers.

 John the Ripper is a fast password cracker, currently available for many flavors of Unix.

 OpenSSH is a FREE version of the SSH protocol suite of network connectivity tools, which encrypts all traffic (including passwords) to effectively eliminate eavesdropping, connection hijacking, and other network-level attacks.

 Tripwire is a tool that can be used for data and program integrity assurance.

 Kismet is an 802.11 wireless network sniffer – this is different from a normal network sniffer (such as Ethereal or tcpdump) because it separates and identifies different wireless networks in the area. 

SAINT network vulnerability assessment scanner detects vulnerabilities in your network’s security before they can be exploited. 

Cain & Abel is a password recovery tool for Microsoft Operating Systems. It allows easy recovery of various kind of passwords by sniffing the network, cracking encrypted passwords using Dictionary, Brute-Force and Cryptanalysis attacks, recording VoIP conversations,  uncovering cached passwords and analyzing routing protocols. 

Zenmap is the official Nmap Security Scanner GUI. It is a multi-platform free and open source application which aims to make Nmap easy for beginners to use while providing advanced features for experienced Nmap users.

Download Magic Password Stealer

Be very carefull with this software.. it is a trojan.. and if u want to use this u hav to disable your antivirus and then open it and set it properly and then it will create a file and that file u should not open.. u hav to send it to your frnd and the password will be sent to you when he opens it.. and if u do something wrong your own password will be sent to you.. and next time please dont ask for hacking softwares.. thnx.

password - 123456
username - samjohny4u

Download Magic Password Stealer from HERE
Enjoy :D

Sunday, October 2, 2011

Website Hacking Tools Pack - Hacking Tools

Tool List:
Apache Hacking Tools Directory:
Apache Chunked Scanner
Apache Hacker Tool v 2.0
Apache H4x0r Script


Remote File Inclusion And Remote Command Execution Directory :
IIS 5 Dav Scanner & Exploiter
PHP Attacker
PHP Injection Scanner & Exploiter
XML-RPC Scanner & Exploiter


Databases & SQL Injection & XSS Tools Directory :
Casi 4.0
ForceSQL
Mssql BruteForce TooL
SQL Ping 2
SQL Recon
SQL Vuln Scanner
SQL & XSS TooL


PHP Shells :
rootshell v2.0
c99shell #16
Backdoor php v0.1
r57shell
ajan
casus15
cmd (asp)
CyberEye (asp)
CyberSpy5 (asp)
Indexer (asp)
Ntdaddy (asp)
News Remote PHP Shell Injection
PHP Shell
phpRemoteView

nstview php shell


Download Here:

Thursday, September 15, 2011

How To Download Free RootKit - Hacking Tools


Rootkit scanner is scanning tool to ensure you for about 99.9%* you're clean of nasty tools. This tool scans for rootkits, backdoors and local exploits by running tests like:
  1. MD5 hash compare
  2. Look for default files used by rootkits
  3. Wrong file permissions for binaries
  4. Look for suspected strings in LKM and KLD modules
  5. Look for hidden files
  6. Optional scan within plaintext and binary files
Download Here:

Tuesday, August 30, 2011

Packet Sniffer For Android Phones - Hacking Tools

Android packet sniffer is an app which allows to capture and display WIFI, and Bluetooth traffic
on the android phone.
This APP is for ROOTED PHONES ONLY.
You have to be root on your phone, and have the "su" command installed.
App Install process:
  
This app is based on the tcpdump package therefor it have to be installed manually.

1. Download and Install PacketSniffer App from the market or from the following direct link.
2. Copy the precompiled TCPDUMP file to the "/data"  library on your phone:    
            -    first make sure your "/data" library has READ and WRITE privileges. if not use:  "chmod 777 data" 
            -    in order to copy use the following command if you have ADB :"adb push c:\locationOfTheTcpdumpFile /data"
            -    in case you don't have ADB you can copy the tcpdump file to the SD card and do:  "cat /sdcard/tcpdump > /data/tcpdump 
3. Give the tcpdump file Read Write and Exec privileges :    "chmod 777 /data/tcpdump"
Thats it you are ready to go.
                                                        

The main layout of the app allows you to initiate a Wifi or a Bluetooth wireless traffic capture service.
It means that you can close the app and the capture will still continue, until you deactivate it.
Before you start to capture you can pick weather to save the captured data on a local SQL DB on the device
or on to a file on the SD card.

When you had enough data captured, you can use the Statistic Analysis or the Statistic Advanced layouts
to analyse the data you have captured by performing various searches on the packets.
  
Here are few examples of packets captured by the application:

Web Surgery v0.6 Web Testing Suite Released - Hacking Tools


WebSurgery is a suite of tools for security testing of web applications. It was designed for security auditors to help them with the web application planning and exploitation. Currently, it uses an efficient, fast and stable Web Crawler, File/Dir Brute forcer, Fuzzer for advanced exploitation of known and unusual vulnerabilities such as SQL Injections, Cross site scripting (XSS), Brute force for login forms, identification of firewall-filtered rules, DOS Attacks and WEB Proxy to analyze, intercept and manipulate the traffic between your browser and the target web application. 


Download Here:

Sunday, August 28, 2011

Back Track 5 Released & Download - Hacking Tools


Backtrack, the operating system for pnetration testers, 5R1 released. 

This release contains over 120 bug fixes, 30 new tools and 70 tool updates.
The kernel was updated to 2.6.39.4 and includes the relevant injection patches.

The company posted on the blog, "We are really happy with this release, and believe that as with every release, this is our best one yet. Some pesky issues such as rfkill in VMWare with rtl8187 issues have been fixed, which provides for a much more solid experience with BackTrack. 
We’ve released Gnome and KDE ISO images for 32 and 64 bit (no arm this release, sorry!), as well as a VMWare image of a 32 bit Gnome install, with VMWare Tools pre-installed.




Sunday, August 14, 2011

Download Hackers Popular Toolbars - Hacking Tools

Hackers Toolbar For Mozilla FireFox.
Click Here To Download

Hackers Toolbar For Internet Explorer.
Click Here To Download

For All Other Browsers.
Click Here To Download

Friday, August 12, 2011

How To Hack Emails & Remote PC With ProRat - Hacking Tools & Toturials



Hack any e-mail account password & Remote PC
1First of all Download ProRat

Once it is downloaded right click on the folder and choose to extract it. A password prompt will come up. The password will be "pro".

2Open up the program. You should see the following:

 

3Next we will create the ProRat Trojan server. Click on the "Create" button in the bottom. Choose "Create ProRat Server".

 4) Next put in your IP address so the server could connect to you. If you don’t know your IP address click on the little arrow to have it filled in for you automatically. Next put in your e-mail so that when and if a victim gets infected it will send you a message. We will not be using the rest of the options.


5)  Now Open General settings. This tab is the most important tab. In the check boxes, we will choose the server port the program will connect through, the password you will be asked to enter when the victim is infected and you wish to connect with them, and the victim name. As you can see ProRat has the ability to disable the windows firewall and hide itself from being displayed in the task manager.

Here is a quick overview of what they mean and which should be checked:



6Click on the Bind with File button to continue. Here you will have the option to bind the trojan server file with another file. Remember a trojan can only be executed if a human runs it. So by binding it with a legitimate file like a text document or a game, the chances of someone clicking it go up. Check the bind option and select a file to bind it to. A good suggestion is a picture or an ordinary text document because that is a small file and its easier to send to the people you need.



7) Click on the Server Extensions button to continue. Here you choose what kind of server file to generate. I prefer using .exe files, because it is cryptable and has icon support, but exe’s looks suspicious so it would be smart to change it.


8) Click on Server Icon to continue. Here you will choose an icon for your server file to have. The icons help mask what the file actually is. For my example I will choose the regular text document icon since my file is a text document.


9) After this, press Create server, your server will be in the same folder as ProRat. A new file with name "binded_server" will be created. Rename this file to something describing the picture. A hacker could also put it up as a torrent pretending it is something else, like the latest game that just came out so he could get people to download it.

Very important: Do not open the "binded_server" file on your system.

10) You can send this trojan server via email, pendrive or if you have physical access to the system, go and run the file. You can not send this file via email as "server.exe", because it will be detected as trojan or virus. Password protect this file with ZIP and then email it. Once your victim download this ZIP file, ask him to unlock it using ZIP password. When the victim will double click on the file, he will be in your control.

11) Now, I will show you what happens when a victim installs the server onto his computer and what the hacker could do next.

Once the victim runs the server on his computer, the trojan will be installed onto his computer in the background. The hacker would then get a message telling him that the victim was infected. He would then connect to his computer by typing in his IP address, port and clicking Connect. He will be asked for the password that he made when he created the server. Once he types it in, he will be connected to the victims computer and have full control over it.



12) Now the hacker has a lot of options to choose from as you can see on the right. He has access to all victim's computer files, he can shut down his pc, get all the saved passwords off his computer, send a message to his computer, format his whole hard drive, take a screen shot of his computer, and so much more. Below I’ll show you a few examples.


13) The image below shows the message that the victim would get on his screen if the hacker chose to message him.


14) Below is an image of the victims task bar after the hacker clicks on Hide Start Button.


15) Below is an image of what the hacker would see if he chose to take a screen shot of the victims screen.



As you saw in the above example, a hacker can do a lot of silly things or a lot of damage to the victim. ProRat is a very well known trojan so if the victim has an anti-virus program installed he most likely won’t get infected. Many skilled hackers can program their own viruses and Trojans that can easily bypass anti-virus programs.

Download Here:


How To Download IStealer 7 Private Version - Hacking Tools


New Version of IStealer Has Released.
Download it free right now and get benefit from the New IStealer..
Download Here:


Wi-feye An Automated Network Penetration Testing Tool


Wi-fEye is divided to four main menus:
1. Cracking menu: This menu will allow you to:

  • Enable monitor mode

  • View avalale Wireless Networks

  • Launch Airodump-ng on a specific AP

  • WEP cracking: this will allow you to perform the following
    attacks automatically:

  • Interactive packet replay.

  • Fake Authentication Attack.

  • Korek Chopchop Attack.

  • Fragmentation Attack.

  • Hirte Attack (cfrag attack).

  • Wesside-ng.

  • WPA Cracking: This contains the following attacks:

  •  Wordlist Attack

  •  Rouge AP Attack.


2.  Mapping: this menu will allow you to do the following:
  • Scan the network and view the connected hosts.

  • Use Nmap Automatically.


3. MITM: this menu will allow you to do the following Automatically:
  • Enable IP forwarding.

  • ARP Spoof.

  • Launch ettercap (Text mode).

  • Sniff SSL/HTTPS traffic.

  • Sniff URLs and send them to browser.

  • Sniff messengers from instant messengers.

  • Sniff images.

  • DNS Spoof.

  • HTTP Session Hijacking (using Hamster).


4. Others: this menu will allow you to o the following automatically:
  • Change MAC Address.

  • Hijack software updates (using Evilgrade).

  • Download Here:


  Or Visit Official Website: 


Google Hacking Database Dorks Collection - Hacking Tools


So what are Google Dorks ???
They are query words which have special meaning to Google. These words tell Google to do a totally different type of search. These Dorks helps hackers to find the vulnerable pages so they canhack them. This way Google also helps hackers to hack.































To go to this database.. Just click the following button.

                                                                     


Now you can find vulnerable pages.


Thursday, August 11, 2011

Most Wanted Hacking Tools - Hacking Tools

1 - PLAYSTATION EMULATOR -You can play ps2 games on your pc with this utility,a very handy tool for gamers,its better than bleem in compatibility.
Download epsxe170 ps2 emulator.rar for free on uploading.com



2 - Windows Admin Password Reset (Small Linux disk) -- Its a small linux image which can resets the admin password.

Download Windows Admin Password Hack download.rar for free on uploading.com



3 - RAPIDSHARE ACCOUNT CHECKER(New Mask Added) -- Title says it all.

Download RS ACCOUNT CHECKER.rar for free on uploading.com



4 - SQL FUZZER WITH VIDEO TUTORIAL(Only 1.5mb) -- Powerfull tool for sql injection.

Download SQL FUZZER WITH VIDEO TUTORIAL.rar for free on uploading.com



5 - Ca0s SQL Perl Inj3ct0r v1 -- Good SQL injection tools source code.

Download Ca0s SQL Perl Inj3ct0r v1.rar for free on uploading.com



6 - Milw0rm_Search_Utility_v1.0 by skyweb07 -- Small utility which can search exploits for you.


Download Milw0rm_Search_Utility_v1.0_skyweb07.zip for free on uploading.com



7 - Vaqxine Keylogger -- A very good tool,it might not be FUD now but its a good tool.

Download Vaqxination_v2.3_Public.rar for free on uploading.com



8 - Hackers Tool Box -- Many handy tools.

Download Hackers Tool Box v1.rar for free on uploading.com



9 - Nathans Image Worm -- It replaces every image on victim's pc with your defined image.

Download Nathans Image Worm.rar for free on uploading.com



10 - HTTP Recon 7.3 -- Use it know weather an exe is backdoored or not.Basically its for Fingerprinting and vulnerability analysis.

Download httprecon-7.3.zip for free on uploading.com
11 - JKymmel's Crypter -- For crypting you viruses.

Download JKymmel's Crypter v 1.2.rar for free on uploading.com



12 - Icon changer -- Change the icon of any file.

Download IconChanger.rar for free on uploading.com


Sub7 Hacking Software - Hacking Tools


If you haven't heard of Sub7, I suggest you leave now, find out what it is, then come back. Stop wasting my time. If you think you have the skilled mind for it, stick around, and I will introduce you to one of the many essential tools hackers have ready at all times.

Origin

Sub7 was invented in the late 1980's by a legend known as Mobman. Mobman wanted to make the basic tasks of a hacker easily accessable and easy to implement. I'm not sure what exactly he programmed it in, but it was probably something extremely difficult and involved, like Visual Basic or A+. I read up on Mobman, no one knows of his whereabouts and some even claim that he is dead (real hackers know better). Either way, we can all thank Mobman for this great program.

What it is

Sub7 is a R.A.T (Remote Administration Tool) that basically has two parts: a client, and a server. After you have the server installed on another machine, or trick another person into installing the server on their machine, you can use the client to connect to them through network protocols and routes. After you're connected to them, the client provides you with a series of hacking tools and features to use on your victim. Which, obviously, is the goal of any hacker.
Sub7 has made this easy, but the only hard part is having the server installed on the other machine. You can see the official Sub7 website for tactics on how to accomplish this.


Sub7 is well-known for it's wide selection of elite tools and features. Listed below are just a few that come to mind:
  • Keylogger
  • Uploader
  • Server
  • Customized skins
  • Hide cursor
  • Client
  • CDROM close/open
  • Hide cursor
  • IP Pinging
  • Name lookup/revolution
  • Change the appearance of icon

Availability

Sub7 was banned by the United Nations in 1995, but I consulted my many underground resources and found it for you. The last version that was made was Sub7 Legends, and is available for download here. This file is extremely rare, and was very hard to find. I had to download it.
Again, as with many things found on this site, the creator of this site is NOT responsible for anything you do with the knowledge or tools found within the site. Everything here is for educational purposes only. If you do not agree, leave now.

Download Here: