Section: .. / web /
| /// File Name: |
cpt1.tar.gz |
Description:
|
Proxy Toolkit is coded in Java and checks to see what information a web proxy forwards.
| | Author: | Toxic Ocean | | Homepage: | http://www.blackhat.be | | File Size: | 9259 | | Last Modified: | Sep 27 00:56:58 2001 |
| MD5 Checksum: | 4e1a802f5639dd03e31d7a28712f80e1 |
|
| /// File Name: |
bulletins.txt |
Description:
|
This is an article discussing some dangers of Myspace bulletins. It includes proof of concept code that can be used to download hundreds of thousands of bulletins that most users assume to be only accessible by friends.
| | Author: | stderr | | Homepage: | http://stderr.linuxinit.net/ | | File Size: | 8645 | | Last Modified: | Jul 2 05:34:00 2006 |
| MD5 Checksum: | ca8ab8c1de038f57e1ef013f912f5ae6 |
|
| /// File Name: |
Bscan.c |
Description:
|
Bscan is a banner grabber for httpd which uses non-blocking sockets for improved speed.
| | Author: | DrBIOS, Bagabontu | | File Size: | 8546 | | Last Modified: | Jan 24 02:28:53 2003 |
| MD5 Checksum: | 2f77c7ea5bdc18fe67c42343f78e8536 |
|
| /// File Name: |
transconnect-0.3-beta.tar.gz |
Description:
|
TransConnect is an implementation of function interposing to allow users behind an HTTP proxy (which allows https) to use networking applications like telnet, ssh, fetchmail, irc, whois, etc. as if they were directly connected to the Internet.
| | Homepage: | http://transconnect.sourceforge.net | | Changes: | Support for FreeBSD, NetBSD, OpenBSD, and SunOS in addition to Linux. Testing was done on Linux, SunOS 5.7, and FreeBSD. | | File Size: | 8515 | | Last Modified: | Apr 22 14:36:38 2001 |
| MD5 Checksum: | aaa42c4eb1900aa8c5c3f569e2a3d4aa |
|
| /// File Name: |
gatekeeper32.zip |
Description:
|
GateKeeper 3.2 s a little bit of JavaScript code that you can use to restrict access to some or all of your web pages without the need for CGI scripting or server based authentication methods. Access is via password.
| | Author: | Jbarta | | Homepage: | http://junior.apk.net/~jbarta/tutor/keeper/index.html | | File Size: | 8156 | | Last Modified: | Nov 30 22:27:51 1999 |
| MD5 Checksum: | 4c690231a98acc2ffd62f74c51f6109c |
|
| /// File Name: |
surfjack-0.1b.zip |
Description:
|
surfjack is a tool that allows you to hijack HTTP connection to steal cookies.
| | Author: | Sandro Gauci | | Homepage: | http://www.enablesecurity.com/ | | File Size: | 7738 | | Last Modified: | Aug 12 23:24:33 2008 |
| MD5 Checksum: | 3d7198ac087f82d1103d553251725621 |
|
| /// File Name: |
refspoof.c |
Description:
|
Refspoof acts like a proxy server and is able to spoof your HTTP referrer and user-agent. This comes in handy to bypass certain authentication mechanisms or user-agent limitations for some download managers.
| | Author: | softxor | | Homepage: | http://bunnies.phpnet.us/ | | File Size: | 7029 | | Last Modified: | Dec 8 18:15:01 2006 |
| MD5 Checksum: | efa2344a37c1108a34821fce25644a3b |
|
| /// File Name: |
httpda.pl |
Description:
|
HTTPda is a perl script that searches a remote site for forms, .cgi and .pl files.
| | Author: | CrZ | | Homepage: | http://lbyte.void.ru | | File Size: | 7017 | | Last Modified: | Dec 11 00:53:46 2002 |
| MD5 Checksum: | 465b8871a98763d32337fd999d039419 |
|
| /// File Name: |
whopper.pl-0.3.txt |
Description:
|
World Hopper is a simple yet powerful tool used to connect to remote services through a chain of HTTP (CONNECT) proxy servers for the sole purpose of gaining a higher level of anonymity. It opens a listening socket at port 1337 (default) and then waits for a client to connect. When a client connects, World Hopper builds a chain of proxy servers. Tested with: telnet, pop3 and irc.
| | Author: | Vincent 'rastakid' van Scherpenseel | | Homepage: | http://proximus.syn-ack.org/whopper/ | | File Size: | 6934 | | Last Modified: | Jul 20 03:13:16 2005 |
| MD5 Checksum: | 7b39d4347b995a8882a930adda4948de |
|
| /// File Name: |
squid_nufw_helper-1.0.0-rc1.tar.gz |
Description:
|
squid-nufw-helper is an external ACL helper for Squid that provides Single Sign On capabilities. It uses the NuFW firewall suite and supports the NuFW users SQL logging scheme. The module allows for strict SSO identification and authentication of users on any Squid proxy, including transparent proxies.
| | Author: | Vincent Deffontaines | | File Size: | 6667 | | Last Modified: | Jul 28 14:54:59 2004 |
| MD5 Checksum: | c9a529abc2d0795dec84dc732888ef1c |
|
| /// File Name: |
webspider_1.1.pl |
Description:
|
Webspider v1.1 is a perl script that, when given a start page, will "follow" every link it finds, scanning the HTML code for the use of CGI's. WebSpider will report every CGI used by a webmaster in seconds.
| | Author: | T-Omicron | | Homepage: | http://t-omicr0n.hexyn.be | | File Size: | 6419 | | Last Modified: | Apr 20 21:18:23 2001 |
| MD5 Checksum: | 84f662378857cb44c6ad1c862b682e26 |
|
| /// File Name: |
pudding01.tar.gz |
Description:
|
Pudding is a proxy which recodes HTTP requests using most of RFP's IDS evasion encoding methods, plus random UTF-8 encoding support. Allows any web aware program/exploit/cgi-scanner to evade IDS without modification of the original code. Encoding methods include all uppercase, hex encoding, /./ directory insertion, fake parameters, premature URL endings, windows delimiters, and random UTF8 encoding.
| | Author: | Roelof W Temmingh | | Homepage: | http://www.sensepost.com | | File Size: | 6236 | | Last Modified: | Jan 12 19:40:35 2001 |
| MD5 Checksum: | c59f537e8c2babca36afbce55c28089b |
|
| /// File Name: |
redir-httpd.c |
Description:
|
redir-httpd is an ultra-minimalist, non-RFC-compliant HTTP server that will ONLY issue redirects to another site. It's good for running on home systems that have permanent connectivity (i.e. DSL and cable-modem subscribers). It should be short enough to be easily understood (and thus audited for potential security issues), and still fairly robust.
| | Homepage: | http://www.technopagan.org | | File Size: | 5421 | | Last Modified: | Jan 8 18:45:27 2001 |
| MD5 Checksum: | 2d3c8337450315d0a149061df88218be |
|
| /// File Name: |
httprox.txt |
Description:
|
Httprox is a perl-based HTTP proxy that modifies or adds an HTTP header for all outgoing HTTP traffic. It can handle multiple connections and is useful for Web-application penetration testing, such as modification of the Cookie, User-Agent and Referrer fields, or adding HTTP headers that would normally not be present.
| | Author: | Craig Heffner | | Homepage: | http://www.craigheffner.com/security | | File Size: | 4552 | | Last Modified: | Oct 13 20:23:14 2006 |
| MD5 Checksum: | e10a97075e3d43e3d85baada44328db1 |
|
| /// File Name: |
decss.tar.gz |
Description:
|
DeCSS is a handy Perl script which removes CSS tags from HTML pages.
| | Homepage: | http://www.pigdog.org/decss/ | | File Size: | 4090 | | Last Modified: | Feb 18 14:16:48 2000 |
| MD5 Checksum: | 1dd7fe2c77e0c4d3ceafbbd9caa61356 |
|
| /// File Name: |
wsh-1.1.2.tar.gz |
Description:
|
Wsh is a remote UNIX shell that works via HTTP. The client script provides a shell-like prompt, encapsulating user commands into HTTP POST requests and sending them to the server script. The server script extracts and executes commands and returns STDOUT and STDERR output. Features include command line history support, file upload/download, and it can work through an HTTP proxy server.
| | Homepage: | http://dyatlov.ru | | Changes: | Fixed bugs. | | File Size: | 4071 | | Last Modified: | Sep 20 19:12:33 2002 |
| MD5 Checksum: | 70d3400b56d74486f441f6e1baf34d03 |
|
| /// File Name: |
googlegath.txt |
Description:
|
googlegath is a free open source utility to obtain informations through Google searches. It could be useful for penetration testing, security scanning, etc. googlegath has been tested on GNU/Linux, *BSD systems.
| | Author: | Matteo Cantoni | | Homepage: | http://www.nothink.org/perl/googlegath/ | | File Size: | 3900 | | Last Modified: | Dec 8 16:53:07 2006 |
| MD5 Checksum: | 7258710bb9b915f89b5a84dcbc1c06ae |
|
| /// File Name: |
Liskit_1.6.zip |
Description:
|
Liskit is a tool for finding directory traversal bugs in webservers by trying to download a file called "a", placed outside of the webroot. Liskit has found directory traversals in several webservers.
| | Author: | t-Omicr0n | | Homepage: | http://t-Omicr0n.hexyn.be | | File Size: | 3468 | | Last Modified: | Apr 8 21:12:15 2001 |
| MD5 Checksum: | 68b2ec72088692a4e759b22eb156aec5 |
|
| /// File Name: |
genraid3r.c |
Description:
|
CGI exploit generator that enables an engineer to test standard known CGI exploits with a utility that is customizable which will print to STDOUT and without the need for a browser.
| | Author: | J0hny_Lightning | | File Size: | 3464 | | Last Modified: | Mar 4 00:31:54 2003 |
| MD5 Checksum: | 80b74700aefdebdec85ccd622519430f |
|
| /// File Name: |
wsh-1.0.tar.gz |
Description:
|
Wsh is a remote UNIX shell that works via HTTP. The client script provides a shell-like prompt, encapsulating user commands into HTTP POST requests and sending them to the server script. The server script extracts and executes commands and returns STDOUT and STDERR output. Features include command line history support, file upload/download, and it can work through an HTTP proxy server.
| | Homepage: | http://dyatlov.ru | | File Size: | 3414 | | Last Modified: | Jun 12 23:16:37 2002 |
| MD5 Checksum: | 7b6fba0bdc10c46d09d4229de1558599 |
|
| /// File Name: |
sendfile.pl |
Description:
|
sendfile.pl is a tool which uses echo to send files to any webserver which has an unchecked open() call in a cgi script.
| | Author: | Vade79 | | Homepage: | http://www.realhalo.org | | File Size: | 3066 | | Last Modified: | May 14 02:32:18 2000 |
| MD5 Checksum: | 33971fcef545107c5761f80bcf94e386 |
|
| /// File Name: |
centurion.tar.gz |
Description:
|
Centurion checks any cgi script on remote server for vulnerabilities like directory traversal bugs, null byte, and incorrect filtering of meta characters. Tested on CGI, PL, PHP, and SHTML.
| | Author: | Lbyte | | Homepage: | http://lbyte.void.ru | | File Size: | 2993 | | Last Modified: | Apr 17 02:46:04 2002 |
| MD5 Checksum: | db9b9c51c5dbe5a50845950f12b1ae10 |
|
| /// File Name: |
proxytest.pl |
Description:
|
proxytest.pl is a perl script that reads in a list of proxies from a text file and checks their state.
| | Author: | bunker | | Homepage: | http://rawlab.altervista.org | | File Size: | 2952 | | Last Modified: | Apr 28 20:05:21 2006 |
| MD5 Checksum: | 98163d1a3063701248933a04275bbb1e |
|
|
|
|
|