Welcome, 38.107.191.101
The strongest bond of human sympathy outside the family relation should be one uniting working people of all nations and tongues and kindreds.
-Abraham Lincoln
Last Modified: Wednesday, 03-Mar-2010 09:37:50 EST
- hash-spit.py (using string generator)
- hotmail account bruteforcer
- Paste Crawler
- Oracle 11g Database password-hash cracker
- FTP checker in specific IP range & try checking anonymous account
- network service search engine tools using shodan query
- dpc-hashcrack.py (md5,sha1,sha224,sha256,etc)
- ftpbrute.py version 1.0
- SMTP Checker - using Authentication
- Interactive HTTP GET and POST Shell
- Queries all record types in the DNS protocol
- darkSMTP - The SMTP Scanner
- Bing MySQL Error Scanner
- Smashing Email eXtractor 2.0
- Darkzero Framework
- ExploitMyUnion (Linux Version)
- ExploitMyUnion (Windows Version)
- Sub Domain sql/ftp scanner
- ngeotrace.py - fast geoip traceroute utility
- Multi-Purpose MySQL Injection Tool
- Tool scan admin link
- InsidePro MD5 Collector
- ShoutMix reader/poster
- SSH Brute force
- exlex - passive host harvester
- Fusk Bucket English
- Multi Account Checker Gmail-Hotmail-Yahoo
- Cisco Type 7 Password Decryptor
- Malware Analyse.py
- dork Scanner
- Command Execution Shell Generator(linux)
- Uploads source files to pastebin.com
- uniGen.py - pattern based wordlist generator
- Jumper jump anywhere anytime instantly
- IRC NickServ bruteforcer
- md5 sha bruteforcer
- badabing.py Grabs URLs from Bing results
- Yahoo Account Checker!
- Hi5 Brute Forcer Login
- Multi-Purpose PostgreSQL Injection Tool - darkPGSQLi v1.0
- AC0i spider
- Webclicker v1.0a
- SQLiC.py -- SQL injection checker
- Devilzc0de.py sqli,blind,lfi,rfi,path check
- darkKML
- An ad-hoc single file webserver
- This function will return a list of ports (TCP/UDP) that the current machine is listening on. Using the Win32 IPHelper API
- Webserver Identification
- gmail Mailer and Bomber
- simpleDorkGUi: blackle even darker
- darkTouch: Website Structure Fingerprinting
- BladeProxy 0.1.0
- Munches a bunch of wordlists into one big wordlist.
- Gmail Account Checker
- Simple Conficker Scanner
- gSQLHarvest.py - md5:mail from g00gle
- Extract IP:Port from a proxylist site
- Webserver Watcher
- Admin login finder
- SQL Fuzzer v1.0
- MSSQL OLEDB Extractor
- PhpMyAdmin Brute Force (index.php)
- Python MySQL Database v1.1
- MySQL double SHA1 hash brute force
- (Eval encoded file) decrypter
- PHPass Brute Force Wordpress, Drupal, bbPress, phpBB3 and any others
- RFI scanner v2.0
- MySQL323 Wordlist Cracker
- Load_File Fuzzer v1.0
- Simple multithreaded SSH brute forcing utility written in Python using paramiko.
- STAR is a front-end written in Python for the Rough Auditing Tool for Security (RATS)
- LFI & RFI scanner v1.0
- sqlmap is an automatic blind SQL injection tool, capable to perform an active database management system fingerprint, enumerate entire remote databases and much more.
- JoomlaScan++
- PySumpas is a simple, graphical password generating utility. Using the Python Cryptography Toolkit and Damien Miller's py-bcrypt, it generates a hash or cipher from user input. The resulting output, in part or entirety, can be used as a secure password.
- darkMSSQL -Error Based Database Enumeration, Server Information Enumeration, Data Extractor
- PyProxyCheck
- EventCalendar Scanner
- doorknocker brute force
- iaxscan is a Python based scanner for detecting live IAX/2 hosts and then enumerating (by bruteforce) users on those hosts.
- Fast-Track
- Springenwerk XSS Scanner v0.4.5
- Joomla SQL Injection Scanner
- SQLi column finder
- psbot.py v0.1 (exec, connback, backdoor)
- 1xFieldBrute v1.0
- SQLi Error Scanner /w Google Search
- MySQL information_schema data extractor
- Joomla Vulnerability Scanner v1.3
- Joomla Administrator Login BruteForcer for v1.0 and v1.5
- MySQL Blind Injection Data Extractor / Information_schema Database Enumerator / Table and Column Fuzzer
- Fusil the fuzzer is a Python library used to write fuzzing programs. It helps to start process with a prepared environment (limit memory, environment variables, redirect stdout, etc.), start network client or server, and create mangled files. Fusil has many probes to detect program crash: watch process exit code, watch process stdout and syslog for text patterns (eg. "segmentation fault"), watch session duration, watch cpu usage (process and system load), etc.
- MySQL Blind Table and Column Fuzzer
- Encrypt and crack md5/sha1 (Spanish)
- Simple Reverse Shell (Spanish)
- ProxyStrike is an active Web Application Proxy and is a tool designed to find vulnerabilities while browsing an application. It current has SQL injection and cross site scripting modules. This is the Linux / Mac OSX version.
- Fetches the robots.txt listing, Website Description, Website Title, Website Keywords, Crawl the website as per user defined depth
- del.icio.us captcha cracker
- Runs the netstat command every 10 seconds in a graphical window
- Basic Network Keylogger
- Simple password generator
- Joomla, Mambo, PHP-Nuke, and XOOPS CMS SQL injection vulnerability scanning tool written in Python.
- Attempts to crack hash ( md5, sha1, sha256, sha384, sha512) against any givin wordlist.
- Test program that reads chip and PIN credit cards using the ENV standard. This will most likely be integrated into RFIDIOt in the future.
- creddump is a python tool to extract various credentials and secrets from Windows registry hives. It currently extracts LM and NT hashes (SYSKEY protected), cached domain passwords, and LSA secrets. It essentially performs all the functions that bkhive/samdump2, cachedump, and lsadump2 do, but in a platform-independent way.
- Perfect Keylogger Admin Password Decryptor & Settor
- Wfuzz is a tool designed for bruteforcing Web Applications, it can be used for finding resources not linked (directories, files), bruteforce HEADERS, GET and POST parameters for checking different kind of injections (SQL, XSS, LDAP,etc), bruteforce Forms parameters (User/ Password), Fuzzing, etc.
- Command line arguments fuzzer used for finding local vulnerabilities in setuid/setgid binaries.
- FileWatcher - monitors your filesystem for changes you specify the file system uses regmon for registry monitoring and use libdiff for registry comparisons
- HTTPCheck v0.1 by intense2k
- File integrity MD5 Tool
- Untidy: Python-based XML fuzzer
- Simple Python Keylogger for Windows
- LX is a set of python methods which will help in exploit development and black box security testing.
- This packet sniffer uses the pcap library to listen for packets in transit over the specified interface. The returned packages can be filtered according to a BPF filter (see tcpdump(3) for further information on BPF filters).
- Python sniffer that identifies interactive SSH sessions. It detects when an intruder uses SSH with: a wrong password, a good one or with a password cracking program. It uses two techniques: SSH client's banner identification and SSH session total bytes.
- Enumerate known hostnames for a given IP address.
- EXE to BAT converter Version 2.0
- PyFault is a python library aimed at fault injection scenarios in Win32 based applications.
- GUI port scanner
- WordPress Bruteforcer
- Website vulnerability scanner. (SQL, XSS, etc)
- Gathers information about the system the script is running on, including OS, browsers and HD space.
- A port forwarding proxy server that hex-dumps traffic in both directions.
- Extracts email addresses from google.
- Extract win32 jmp's from dll's (edit objdump path, line 23).
- Lists every link in a given site.
- Quick n Dirty DNS zone trasnfer tool
- XTEA Block Encryption Algorithm
- Fuzzer - tries to find BufferOverFlow, Sql-Injection, Variable Manipulation and Traversal
- PyScan - port scanner written in python
- Detects hidden tasks, modules, syscalls, some corrupted symbols and also hidden connections.
- Python Intrusion Detection Enviroment.
- Python TCP Forwarder.
- whois lookup but in python.
- Bindshell for python. (fancy version)
- Bindshell for python. (small version)
- This function produces a classic 3 columns hex dump of a string.
- A simple CGI that executes arbitrary shell commands.
- An RFC 2821 smtp proxy.
- A script for encrypting/decrypting small files.
- Helps run your python script as a daemon, writes a PID file.
- Forward Samba (SMB/Windows shared drives) connections though an encrypted SSH connection.
- VNC client (requires PyObjC, and Mac OS X)
- This is a python module that interfaces to libpcap, the UNIX packet capture library.
- Extension module allowing one to create and play with raw sockets and TCP/UDP/ICMP packets.
- Libdisassembly is simply a python library for disassembling x86 opcodes.
- A python script which blocks brute force login attempts detected via swatch by editing hosts.deny.
- SQLbrute is a multithreaded blind SQL injection exploitation tool (in python) for enumerating information from Microsoft SQL and Oracle databases using error/no error techniques.
- A command line argument fuzzer. It is very useful for auditing setuid binaries for command line overflows.
- Taof is a GUI cross-platform python generic network protocol fuzzer.
- Oracle Database PL/SQL Fuzzing Tool.
- Check file integrity using md5sum.txt files, with progress feedback.
- Shows last time of login for all accounts.
- Simple md5 hash utility for generating md5 checksums of files.
- Attempts to crack /etc/shadow with dictionary.
- A TCP and UDP proxy man-in-the-middle fuzzer.
- Instant Aim Hash Cracker. (also crack's MD5's)
- This cleanses user input of potentially dangerous HTML or scripting code that can be used to launch "cross-site scripting" ("XSS") attacks
Advertise Here
Advertise Here
This site is maintained by d3hydr8[at]gmail[dot]com
darkc0de.com ™ © 2006-Now
EOF