Black Hat & Shmoocon
Posted by scriptjunkie in Uncategorized on December 14, 2010
Just got accepted to both Black Hat DC 2011 and Shmoocon 2011! Unfortunately, I will not be able to attend Shmoocon. I wish I could come; I have never spoken there before, and it’s a great conference. Instead you will have to see me at Black Hat. Link: http://www.blackhat.com/html/bh-dc-11/bh-dc-11-briefings.html#Weeks
Sessionthief linux
Posted by scriptjunkie in Uncategorized on September 14, 2010
In response to a number of questions about how to get sessionthief running on linux, here are the steps to get it working on Ubuntu: First, I apologize, because if anyone tried, the compilation failed due to a case-mismatch on a filename. I had not noticed because I had stored the files on a FAT-formatted […]
Screwing with Nmap
Posted by scriptjunkie in /dev/urandom on August 20, 2010
It is always interesting to me to see what defense can be put up against tools used by attackers/pen testers. I don’t believe there are any public exploits against Nmap (Secunia is not aware of any at least) and I doubt I could find a useful one against a basic scan. On the other hand, […]
Sessionthief
Posted by scriptjunkie in /dev/urandom on July 17, 2010
Another little project I put together a couple of years ago is sessionthief. When I need to quickly demonstrate the insecurity of open wireless networks, this is my first choice, as it has the ability to immediately hack into most websites another user on the same LAN is logged into. It performs HTTP session cloning […]