<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:media="http://search.yahoo.com/mrss/"
	>

<channel>
	<title>RootSecurity</title>
	<atom:link href="http://y2h4ck.wordpress.com/feed/" rel="self" type="application/rss+xml" />
	<link>http://y2h4ck.wordpress.com</link>
	<description>Ethical Hacking &#38; Security Articles - Defcon Group 55111</description>
	<pubDate>Thu, 10 Jul 2008 22:14:23 +0000</pubDate>
	<generator>http://wordpress.org/?v=MU</generator>
	<language>en</language>
			<item>
		<title>Hacking Web 2.0 MindMap</title>
		<link>http://y2h4ck.wordpress.com/2008/07/09/hacking-web-20-mindmap/</link>
		<comments>http://y2h4ck.wordpress.com/2008/07/09/hacking-web-20-mindmap/#comments</comments>
		<pubDate>Wed, 09 Jul 2008 14:36:05 +0000</pubDate>
		<dc:creator>y2h4ck</dc:creator>
		
		<category><![CDATA[Pentesting]]></category>

		<category><![CDATA[Web Hacking]]></category>

		<category><![CDATA[Ethical Hacking]]></category>

		<category><![CDATA[hacking mindmap]]></category>

		<category><![CDATA[Pentest]]></category>

		<guid isPermaLink="false">http://y2h4ck.wordpress.com/?p=98</guid>
		<description><![CDATA[Muitas vezes me perguntam sobre algum tipo de framework para pentest em aplicações web para que possa ser serguido. Existem diversos mindmaps para Wireless, Pentest em redes e etc. Navegando em um blog muito bom, encontrei um mindmap muito interessante para Web 2.0
Com certeza podem ser adicionadas muitas coisas a este esquema, porém ja dá [...]]]></description>
			<content:encoded><![CDATA[<div class='snap_preview'><br /><p>Muitas vezes me perguntam sobre algum tipo de framework para pentest em aplicações web para que possa ser serguido. Existem diversos mindmaps para Wireless, Pentest em redes e etc. Navegando em um blog muito bom, encontrei um mindmap muito interessante para Web 2.0</p>
<p>Com certeza podem ser adicionadas muitas coisas a este esquema, porém ja dá uma idéia interessante de por onde começar.</p>
<p><a href="http://michaeldaw.org/images/webhacking2_0.PNG" target="_self">http://michaeldaw.org/images/webhacking2_0.PNG</a></p>
<p>Good Hacking 4 All.</p>
<p><a title="Indique pessoas e ganhe dinheiro" href="http://www.bonusmega.com.br/ultrabonus" target="_blank"><img class="alignnone" src="http://www.bonusmega.com.br/banner1.gif" alt="" /></a></p>
<img alt="" border="0" src="http://feeds.wordpress.com/1.0/categories/y2h4ck.wordpress.com/98/" /> <img alt="" border="0" src="http://feeds.wordpress.com/1.0/tags/y2h4ck.wordpress.com/98/" /> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/y2h4ck.wordpress.com/98/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/y2h4ck.wordpress.com/98/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/y2h4ck.wordpress.com/98/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/y2h4ck.wordpress.com/98/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/y2h4ck.wordpress.com/98/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/y2h4ck.wordpress.com/98/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/y2h4ck.wordpress.com/98/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/y2h4ck.wordpress.com/98/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/y2h4ck.wordpress.com/98/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/y2h4ck.wordpress.com/98/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=y2h4ck.wordpress.com&blog=2298308&post=98&subd=y2h4ck&ref=&feed=1" /></div>]]></content:encoded>
			<wfw:commentRss>http://y2h4ck.wordpress.com/2008/07/09/hacking-web-20-mindmap/feed/</wfw:commentRss>
	
		<media:content url="http://a.wordpress.com/avatar/y2h4ck-128.jpg" medium="image">
			<media:title type="html">y2h4ck</media:title>
		</media:content>

		<media:content url="http://www.bonusmega.com.br/banner1.gif" medium="image" />
	</item>
		<item>
		<title>Book of Month: July</title>
		<link>http://y2h4ck.wordpress.com/2008/07/01/book-of-month-july/</link>
		<comments>http://y2h4ck.wordpress.com/2008/07/01/book-of-month-july/#comments</comments>
		<pubDate>Tue, 01 Jul 2008 12:45:56 +0000</pubDate>
		<dc:creator>y2h4ck</dc:creator>
		
		<category><![CDATA[security books]]></category>

		<category><![CDATA[Ethical Hacking]]></category>

		<category><![CDATA[Hacking]]></category>

		<category><![CDATA[hacking books]]></category>

		<category><![CDATA[Pentest]]></category>

		<category><![CDATA[security docs]]></category>

		<category><![CDATA[y2h4ck]]></category>

		<guid isPermaLink="false">http://y2h4ck.wordpress.com/?p=96</guid>
		<description><![CDATA[



Network Security Assessment: Know Your Network


Author: Chris McNab


Publisher: O&#8217;Reilly Media


Year: 2007


Pages: 504


Amazon&#8217;s book description: How secure is your network? The best way to find out is to attack it. Network Security Assessment provides you with the tricks and tools professional security consultants use to identify and assess risks in Internet-based networks-the same penetration testing model [...]]]></description>
			<content:encoded><![CDATA[<div class='snap_preview'><br /><p><img class="alignnone" src="http://www.orkspace.net/secdocs/imgbooks/126.jpg" alt="" /></p>
<table class="style_tables" border="0" cellspacing="0" cellpadding="0">
<tbody>
<tr>
<td class="title_book"><strong><a href="http://www.amazon.com/gp/product/0596510306?ie=UTF8&amp;tag=orkspace-20&amp;linkCode=as2&amp;camp=1789&amp;creative=9325&amp;creativeASIN=0596510306" target="_blank">Network Security Assessment: Know Your Network</a></strong></td>
</tr>
<tr>
<td class="desc_book"><strong>Author: </strong>Chris McNab</td>
</tr>
<tr>
<td class="desc_book"><strong>Publisher: </strong>O&#8217;Reilly Media</td>
</tr>
<tr>
<td class="desc_book"><strong>Year: </strong>2007</td>
</tr>
<tr>
<td class="desc_book"><strong>Pages: </strong>504</td>
</tr>
<tr>
<td class="desc_book"><strong>Amazon&#8217;s book description: </strong>How secure is your network? The best way to find out is to attack it. Network Security Assessment provides you with the tricks and tools professional security consultants use to identify and assess risks in Internet-based networks-the same penetration testing model they use to secure government, military, and commercial networks. With this book, you can adopt, refine, and reuse this testing model to design and deploy networks that are hardened and immune from attack.</p>
<p><a title="Indique pessoas e ganhe dinheiro!" href="http://www.bonusmega.com.br/ultrabonus" target="_blank"><img class="alignnone" src="http://www.bonusmega.com.br/banner1.gif" alt="" /></a></td>
</tr>
</tbody>
</table>
<img alt="" border="0" src="http://feeds.wordpress.com/1.0/categories/y2h4ck.wordpress.com/96/" /> <img alt="" border="0" src="http://feeds.wordpress.com/1.0/tags/y2h4ck.wordpress.com/96/" /> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/y2h4ck.wordpress.com/96/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/y2h4ck.wordpress.com/96/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/y2h4ck.wordpress.com/96/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/y2h4ck.wordpress.com/96/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/y2h4ck.wordpress.com/96/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/y2h4ck.wordpress.com/96/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/y2h4ck.wordpress.com/96/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/y2h4ck.wordpress.com/96/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/y2h4ck.wordpress.com/96/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/y2h4ck.wordpress.com/96/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=y2h4ck.wordpress.com&blog=2298308&post=96&subd=y2h4ck&ref=&feed=1" /></div>]]></content:encoded>
			<wfw:commentRss>http://y2h4ck.wordpress.com/2008/07/01/book-of-month-july/feed/</wfw:commentRss>
	
		<media:content url="http://a.wordpress.com/avatar/y2h4ck-128.jpg" medium="image">
			<media:title type="html">y2h4ck</media:title>
		</media:content>

		<media:content url="http://www.orkspace.net/secdocs/imgbooks/126.jpg" medium="image" />

		<media:content url="http://www.bonusmega.com.br/banner1.gif" medium="image" />
	</item>
		<item>
		<title>FireKeeper: Firefox acts like an IDS</title>
		<link>http://y2h4ck.wordpress.com/2008/06/30/firekeeper-firefox-acts-like-an-ids/</link>
		<comments>http://y2h4ck.wordpress.com/2008/06/30/firekeeper-firefox-acts-like-an-ids/#comments</comments>
		<pubDate>Mon, 30 Jun 2008 13:05:17 +0000</pubDate>
		<dc:creator>y2h4ck</dc:creator>
		
		<category><![CDATA[Uncategorized]]></category>

		<category><![CDATA[Pentest]]></category>

		<category><![CDATA[Ethical Hacking]]></category>

		<category><![CDATA[y2h4ck]]></category>

		<category><![CDATA[firekeeper]]></category>

		<category><![CDATA[firefox ids]]></category>

		<category><![CDATA[firefox addons]]></category>

		<category><![CDATA[firefox plugin]]></category>

		<category><![CDATA[firefox security]]></category>

		<category><![CDATA[firefox hacking]]></category>

		<category><![CDATA[browser attacks]]></category>

		<guid isPermaLink="false">http://y2h4ck.wordpress.com/?p=93</guid>
		<description><![CDATA[

FireKeeper é um Intrusion Detection and Prevention System para Firefox. Ele consegue detector, bloquear e avisar o usuário sobre sites maliciosos. Firekeeper utiliza regras flexíveis muito similares as do Snort para descrever tentativas de ataques  à Browsers. 
 
As regras podem facilmente serem modificadas para filtrar diferentes tipos de conteúdo não desejado.
 
É uma [...]]]></description>
			<content:encoded><![CDATA[<div class='snap_preview'><br /><p style="text-align:left;">
<p class="MsoNormal" style="margin-bottom:0.0001pt;line-height:normal;"><img class="alignnone" src="http://firekeeper.mozdev.org/img/firekeeper_logo.png" alt="" width="162" height="134" /></p>
<p class="MsoNormal" style="margin-bottom:0.0001pt;line-height:normal;"><span style="font-size:10pt;">FireKeeper é um Intrusion Detection and Prevention System para Firefox. </span><span style="font-size:10pt;" lang="PT-BR">Ele consegue detector, bloquear e avisar o usuário sobre sites maliciosos. Firekeeper utiliza regras flexíveis muito similares as do Snort para descrever tentativas de ataques <span> </span>à Browsers.<span> </span></span></p>
<p class="MsoNormal" style="margin-bottom:0.0001pt;line-height:normal;"><span style="font-size:10pt;" lang="PT-BR"> </span></p>
<p class="MsoNormal" style="margin-bottom:0.0001pt;line-height:normal;"><span style="font-size:10pt;" lang="PT-BR">As regras podem facilmente serem modificadas para filtrar diferentes tipos de conteúdo não desejado.</span></p>
<p class="MsoNormal" style="margin-bottom:0.0001pt;line-height:normal;"><span style="font-size:10pt;" lang="PT-BR"> </span></p>
<p class="MsoNormal" style="margin-bottom:0.0001pt;line-height:normal;"><span style="font-size:10pt;" lang="PT-BR">É uma extenssão muito boa e durante alguns testes foi muito eficiente contra ataques de Stored XSS attacks, Reflective XSS attacks e contra JavaScripts que tentavam acessar conteúdos privados no sistema.</span></p>
<p class="MsoNormal" style="margin-bottom:0.0001pt;line-height:normal;"><span style="font-size:10pt;" lang="PT-BR"> </span></p>
<p class="MsoNormal" style="margin-bottom:0.0001pt;line-height:normal;"><span style="font-size:10pt;" lang="PT-BR">Entre algumas das principais features do Firekeeper podemos citar:</span></p>
<p class="MsoNormal" style="margin-bottom:0.0001pt;line-height:normal;"><span style="font-size:10pt;" lang="PT-BR"> </span></p>
<p class="MsoNormal" style="margin-bottom:0.0001pt;line-height:normal;"><span style="font-size:10pt;" lang="PT-BR">- Consegue varrer tráfego que chega ao Firefox – HTTP(s) responde headers, body e URL e assim cancelar o processamento de responses suspeitos.</span></p>
<p class="MsoNormal" style="margin-bottom:0.0001pt;line-height:normal;"><span style="font-size:10pt;" lang="PT-BR">- HTTPS responses são varridas após a descompressão/decrypt.</span></p>
<p class="MsoNormal" style="margin-bottom:0.0001pt;line-height:normal;"><span style="font-size:10pt;" lang="PT-BR">- O algoritmo de detecção é muito rápido (tirado diretamente do snort).</span></p>
<p class="MsoNormal" style="margin-bottom:0.0001pt;line-height:normal;"><span style="font-size:10pt;" lang="PT-BR">- Alertas interativos permitem que diferentes respostas sejam tomadas para diferentes tipos de tentativas de ataque.</span></p>
<p class="MsoNormal" style="margin-bottom:0.0001pt;line-height:normal;"><span style="font-size:10pt;" lang="PT-BR">- Pode utilizar arquivos contendo regras e também automaticamente carregar arquivos em hosts remotos.</span></p>
<p class="MsoNormal" style="margin-bottom:0.0001pt;line-height:normal;"><span style="font-size:10pt;" lang="PT-BR"> </span></p>
<p class="MsoNormal" style="margin-bottom:0.0001pt;line-height:normal;"><span style="font-size:10pt;" lang="PT-BR">Realmente vale a pena para administradores que tentam melhorar a segurança dos usuários utilizando firefox criando um repositório de regras atualizadas na rede e configurando os browsers para atualizarem automaticamente estas regras.</span></p>
<p class="MsoNormal" style="margin-bottom:0.0001pt;line-height:normal;"><span style="font-size:10pt;" lang="PT-BR"> </span></p>
<p class="MsoNormal" style="margin-bottom:0.0001pt;line-height:normal;"><span style="font-size:10pt;" lang="PT-BR">Abaixo seguem alguns links que devem ser visitados para maiores informações sobre o Firekeeper:</span></p>
<p class="MsoNormal" style="margin-bottom:0.0001pt;line-height:normal;"><span style="font-size:10pt;" lang="PT-BR"> </span><img class="alignnone" src="http://www.ghacks.net/wp-content/uploads/2008/06/firekeeper-500x375.jpg" alt="FireKeeper blocking Attack Attempt" /></p>
<p class="MsoNormal" style="margin-bottom:0.0001pt;line-height:normal;"><span style="font-size:10pt;" lang="PT-BR"><a href="http://blues.ath.cx/firekeeper/">http://blues.ath.cx/firekeeper/</a></span></p>
<p class="MsoNormal" style="margin-bottom:0.0001pt;line-height:normal;"><span style="font-size:10pt;" lang="PT-BR">FireKeeper Project Weblog</span></p>
<p class="MsoNormal" style="margin-bottom:0.0001pt;line-height:normal;"><span style="font-size:10pt;" lang="PT-BR"> </span></p>
<p class="MsoNormal" style="margin-bottom:0.0001pt;line-height:normal;"><span style="font-size:10pt;" lang="PT-BR"><a href="http://firekeeper.mozdev.org/">http://firekeeper.mozdev.org/</a></span></p>
<p class="MsoNormal" style="margin-bottom:0.0001pt;line-height:normal;"><span style="font-size:10pt;" lang="PT-BR">Site do Projeto onde pode ser baixado e instalado o Firekeeper</span></p>
<p class="MsoNormal" style="margin-bottom:0.0001pt;line-height:normal;">
<p class="MsoNormal" style="margin-bottom:0.0001pt;line-height:normal;">Good Hacking 4 All.</p>
<p class="MsoNormal" style="margin-bottom:0.0001pt;line-height:normal;"><span style="font-size:12pt;" lang="PT-BR"> </span></p>
<img alt="" border="0" src="http://feeds.wordpress.com/1.0/categories/y2h4ck.wordpress.com/93/" /> <img alt="" border="0" src="http://feeds.wordpress.com/1.0/tags/y2h4ck.wordpress.com/93/" /> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/y2h4ck.wordpress.com/93/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/y2h4ck.wordpress.com/93/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/y2h4ck.wordpress.com/93/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/y2h4ck.wordpress.com/93/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/y2h4ck.wordpress.com/93/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/y2h4ck.wordpress.com/93/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/y2h4ck.wordpress.com/93/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/y2h4ck.wordpress.com/93/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/y2h4ck.wordpress.com/93/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/y2h4ck.wordpress.com/93/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=y2h4ck.wordpress.com&blog=2298308&post=93&subd=y2h4ck&ref=&feed=1" /></div>]]></content:encoded>
			<wfw:commentRss>http://y2h4ck.wordpress.com/2008/06/30/firekeeper-firefox-acts-like-an-ids/feed/</wfw:commentRss>
	
		<media:content url="http://a.wordpress.com/avatar/y2h4ck-128.jpg" medium="image">
			<media:title type="html">y2h4ck</media:title>
		</media:content>

		<media:content url="http://firekeeper.mozdev.org/img/firekeeper_logo.png" medium="image" />

		<media:content url="http://www.ghacks.net/wp-content/uploads/2008/06/firekeeper-500x375.jpg" medium="image">
			<media:title type="html">FireKeeper blocking Attack Attempt</media:title>
		</media:content>
	</item>
		<item>
		<title>Linksys WRT54G Security Bypass Vulnerability</title>
		<link>http://y2h4ck.wordpress.com/2008/06/25/linksys-wrt54g-security-bypass-vulnerability/</link>
		<comments>http://y2h4ck.wordpress.com/2008/06/25/linksys-wrt54g-security-bypass-vulnerability/#comments</comments>
		<pubDate>Wed, 25 Jun 2008 16:55:27 +0000</pubDate>
		<dc:creator>y2h4ck</dc:creator>
		
		<category><![CDATA[General Hacking]]></category>

		<category><![CDATA[Network Security]]></category>

		<category><![CDATA[Hacking]]></category>

		<category><![CDATA[Pentest]]></category>

		<category><![CDATA[Ethical Hacking]]></category>

		<category><![CDATA[y2h4ck]]></category>

		<category><![CDATA[linksys wrt54g]]></category>

		<category><![CDATA[linksys hacking]]></category>

		<category><![CDATA[megabonus]]></category>

		<category><![CDATA[ultrabonus]]></category>

		<category><![CDATA[bonus]]></category>

		<category><![CDATA[wireless router]]></category>

		<category><![CDATA[802.11g]]></category>

		<guid isPermaLink="false">http://y2h4ck.wordpress.com/?p=90</guid>
		<description><![CDATA[A interface web no Linksys WRT54g router com firmware
1.00.9 não solicita credenciais  quando requisitados
scripts que permite que atacantes acessem features
de administração usando requisições diretas à:
- Advanced.tri
- AdvRoute.tri
- Basic.tri
E muito mais. Recomendo a todos a leitura
to material completo em:
http://www.milw0rm.com/exploits/5926
E recomendo a atualização do Firmware  
Good Hacking 4 All.

       ]]></description>
			<content:encoded><![CDATA[<div class='snap_preview'><br /><p>A interface web no Linksys WRT54g router com firmware<br />
1.00.9 não solicita credenciais  quando requisitados<br />
scripts que permite que atacantes acessem features<br />
de administração usando requisições diretas à:</p>
<p>- Advanced.tri<br />
- AdvRoute.tri<br />
- Basic.tri</p>
<p>E muito mais. Recomendo a todos a leitura<br />
to material completo em:</p>
<p>http://www.milw0rm.com/exploits/5926<br />
E recomendo a atualização do Firmware <img src='http://s.wordpress.com/wp-includes/images/smilies/icon_wink.gif' alt=';-)' class='wp-smiley' /> </p>
<p>Good Hacking 4 All.</p>
<p><span style="font-size:12pt;font-family:&quot;"><a href="http://www.bonusmega.com.br/ultrabonus" target="_blank"><span style="text-decoration:none;"><!--[if gte vml 1]&gt;                    &lt;![endif]--><!--[if !vml]--><span><img class="alignnone" src="http://www.bonusmega.com.br/banner1.gif" border="0" alt="Indique pessoas, ganhe Bônus!" width="452" height="56" /></span></span></a><a href="http://www.bonusmega.com.br/ultrabonus" target="_blank"><span style="text-decoration:none;"><!--[endif]--></span></a></span></p>
<img alt="" border="0" src="http://feeds.wordpress.com/1.0/categories/y2h4ck.wordpress.com/90/" /> <img alt="" border="0" src="http://feeds.wordpress.com/1.0/tags/y2h4ck.wordpress.com/90/" /> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/y2h4ck.wordpress.com/90/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/y2h4ck.wordpress.com/90/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/y2h4ck.wordpress.com/90/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/y2h4ck.wordpress.com/90/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/y2h4ck.wordpress.com/90/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/y2h4ck.wordpress.com/90/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/y2h4ck.wordpress.com/90/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/y2h4ck.wordpress.com/90/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/y2h4ck.wordpress.com/90/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/y2h4ck.wordpress.com/90/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=y2h4ck.wordpress.com&blog=2298308&post=90&subd=y2h4ck&ref=&feed=1" /></div>]]></content:encoded>
			<wfw:commentRss>http://y2h4ck.wordpress.com/2008/06/25/linksys-wrt54g-security-bypass-vulnerability/feed/</wfw:commentRss>
	
		<media:content url="http://a.wordpress.com/avatar/y2h4ck-128.jpg" medium="image">
			<media:title type="html">y2h4ck</media:title>
		</media:content>

		<media:content url="http://www.bonusmega.com.br/banner1.gif" medium="image">
			<media:title type="html">Indique pessoas, ganhe Bônus!</media:title>
		</media:content>
	</item>
		<item>
		<title>BackTrack 3 - Final Release</title>
		<link>http://y2h4ck.wordpress.com/2008/06/20/backtrack-3-final-release/</link>
		<comments>http://y2h4ck.wordpress.com/2008/06/20/backtrack-3-final-release/#comments</comments>
		<pubDate>Fri, 20 Jun 2008 17:41:50 +0000</pubDate>
		<dc:creator>y2h4ck</dc:creator>
		
		<category><![CDATA[Pentesting]]></category>

		<category><![CDATA[backtrack]]></category>

		<category><![CDATA[Ethical Hacking]]></category>

		<category><![CDATA[Hacking]]></category>

		<category><![CDATA[pen-test]]></category>

		<category><![CDATA[Pentest]]></category>

		<guid isPermaLink="false">http://y2h4ck.wordpress.com/?p=89</guid>
		<description><![CDATA[Max Moser to BugTraq:

BackTrack 3 Final - Release Information
Released yesterday exclusively on pauldotcom.com

Muts, Martin and I have slaved for weeks and months, together with the help of many remote-exploit&#8217;ers to bring you this fine release. As usual, this version overshadows the previous ones with extra cool things.

SAINT
SAINT has provided BackTrack users with a functional version [...]]]></description>
			<content:encoded><![CDATA[<div class='snap_preview'><br /><p class="MsoPlainText">Max Moser to BugTraq:</p>
<p class="MsoPlainText">
<p class="MsoPlainText">BackTrack 3 Final - Release Information</p>
<p class="MsoPlainText">Released yesterday exclusively on pauldotcom.com</p>
<p class="MsoPlainText">
<p class="MsoPlainText">Muts, Martin and I have slaved for weeks and months, together with the help of many remote-exploit&#8217;ers to bring you this fine release. As usual, this version overshadows the previous ones with extra cool things.</p>
<p class="MsoPlainText">
<p class="MsoPlainText">SAINT</p>
<p class="MsoPlainText">SAINT has provided BackTrack users with a functional version of SAINT, pending a free request for an IP range license through the SAINT website, valid for 1 year.</p>
<p class="MsoPlainText">
<p class="MsoPlainText">Maltego</p>
<p class="MsoPlainText">The guys over at Paterva have created a special version of Maltego v2.0 with a community license especially for BackTrack users. We would like to thank Paterva for co-operating with us and allowing us to feature this amazing tool in BackTrack.</p>
<p class="MsoPlainText">
<p class="MsoPlainText">Nessus</p>
<p class="MsoPlainText">Tenable would not allow for redistribution of Nessus on BackTrack 3.</p>
<p class="MsoPlainText">
<p class="MsoPlainText">Kernel</p>
<p class="MsoPlainText">2.6.21.5. Yes, yes, stop whining&#8230;.We had serious deliberations concerning the BT3 kernel. We decided not to upgrade to a newer kernel as wireless injection patches were not fully tested and verified. We did not want to jeopardize the awesome wireless capabilities of BT3 for the sake of sexiness or slightly increased hardware compatibilities. All relevant security patches have been applied.</p>
<p class="MsoPlainText">
<p class="MsoPlainText">Tools</p>
<p class="MsoPlainText">As usual, updated, sharpened, SVN&#8217;ed and armed to the teeth. This release we have some special features such as spoonwep, fastrack and other cool additions.</p>
<p class="MsoPlainText">
<p class="MsoPlainText">Availability</p>
<p class="MsoPlainText">For the first time we distribute three different version of Backtrack 3</p>
<p class="MsoPlainText"><span> </span>- CD version</p>
<p class="MsoPlainText"><span> </span>- USB version</p>
<p class="MsoPlainText"><span> </span>- VMWare version</p>
<p class="MsoPlainText">
<p class="MsoPlainText">BackTrack 3 final download page is here:</p>
<p class="MsoPlainText"><a href="http://remote-exploit.org/backtrack_download.html">http://remote-exploit.org/backtrack_download.html</a></p>
<p class="MsoPlainText">
<p class="MsoPlainText">
<p class="MsoPlainText">Final Requests</p>
<p class="MsoPlainText">We request the community to not mirror or torrent this release, or otherwise distribute it online without our knowledge.</p>
<p class="MsoPlainText">We are trying to gather statistics about bt3 downloads. If you would like to mirror BT3 then please:</p>
<p class="MsoPlainText">
<p class="MsoPlainText">1) Think again! Traffic generated by BT3 downloads is CRAZY.</p>
<p class="MsoPlainText">2) Please contact us before doing so.</p>
<p class="MsoPlainText">3) Send us monthly statistics of downloads for the iso.</p>
<p class="MsoPlainText">
<p class="MsoPlainText">If you would like to add a link to BackTrack downloads to your website, please use:</p>
<p class="MsoPlainText">
<p class="MsoPlainText"><a href="http://www.remote-exploit.org/backtrack_download.html">http://www.remote-exploit.org/backtrack_download.html</a> as the download link.</p>
<p class="MsoPlainText">
<p class="MsoPlainText">
<p class="MsoPlainText">Rants</p>
<p class="MsoPlainText">Problems, fixes, bugs, opinions - should all end up in our Remote Exploit community forums, and our wiki:</p>
<p class="MsoPlainText">
<p class="MsoPlainText"><a href="http://forums.remote-exploit.org/">http://forums.remote-exploit.org</a></p>
<p class="MsoPlainText"><a href="http://wiki.remote-exploit.org/">http://wiki.remote-exploit.org</a></p>
<p class="MsoPlainText">
<p class="MsoPlainText">
<p class="MsoPlainText">
<p class="MsoPlainText">Over and out,</p>
<p class="MsoPlainText">
<p class="MsoPlainText">Max, Muts, MjM</p>
<p class="MsoPlainText">
<p class="MsoPlainText"><a title="Ganhe Muito dinheiro !!" href="http://www.bonusmega.com.br/ultrabonus" target="_blank"><img src="http://www.bonusmega.com.br/banner1.gif" alt="" width="468" height="60" /></a></p>
<img alt="" border="0" src="http://feeds.wordpress.com/1.0/categories/y2h4ck.wordpress.com/89/" /> <img alt="" border="0" src="http://feeds.wordpress.com/1.0/tags/y2h4ck.wordpress.com/89/" /> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/y2h4ck.wordpress.com/89/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/y2h4ck.wordpress.com/89/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/y2h4ck.wordpress.com/89/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/y2h4ck.wordpress.com/89/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/y2h4ck.wordpress.com/89/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/y2h4ck.wordpress.com/89/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/y2h4ck.wordpress.com/89/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/y2h4ck.wordpress.com/89/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/y2h4ck.wordpress.com/89/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/y2h4ck.wordpress.com/89/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=y2h4ck.wordpress.com&blog=2298308&post=89&subd=y2h4ck&ref=&feed=1" /></div>]]></content:encoded>
			<wfw:commentRss>http://y2h4ck.wordpress.com/2008/06/20/backtrack-3-final-release/feed/</wfw:commentRss>
	
		<media:content url="http://a.wordpress.com/avatar/y2h4ck-128.jpg" medium="image">
			<media:title type="html">y2h4ck</media:title>
		</media:content>

		<media:content url="http://www.bonusmega.com.br/banner1.gif" medium="image" />
	</item>
		<item>
		<title>Hack in The Box Conference 2007</title>
		<link>http://y2h4ck.wordpress.com/2008/06/19/hack-in-the-box-conference-2007/</link>
		<comments>http://y2h4ck.wordpress.com/2008/06/19/hack-in-the-box-conference-2007/#comments</comments>
		<pubDate>Thu, 19 Jun 2008 02:52:41 +0000</pubDate>
		<dc:creator>y2h4ck</dc:creator>
		
		<category><![CDATA[General Hacking]]></category>

		<category><![CDATA[General Security]]></category>

		<category><![CDATA[Ethical Hacking]]></category>

		<category><![CDATA[hack in the box conference]]></category>

		<category><![CDATA[Hacking]]></category>

		<category><![CDATA[hacking material]]></category>

		<category><![CDATA[HITB]]></category>

		<category><![CDATA[penetration testing]]></category>

		<category><![CDATA[y2h4ck]]></category>

		<guid isPermaLink="false">http://y2h4ck.wordpress.com/?p=88</guid>
		<description><![CDATA[
Pessoal, segue mais um post contendo o link para o material da HITBConf (HackintheBox) que acontece todos os anos em Outubro em Dubai.  Seguem os Mainstream Medias e blogs contendo informações do evento.
http://conference.hitb.org/hitbsecconf2007kl/
Good Hacking 4 All.
       ]]></description>
			<content:encoded><![CDATA[<div class='snap_preview'><br /><p><img src="http://www.hackinthebox.org/hitb.gif" alt="" width="412" height="84" /></p>
<p>Pessoal, segue mais um post contendo o link para o material da HITBConf (HackintheBox) que acontece todos os anos em Outubro em Dubai.  Seguem os Mainstream Medias e blogs contendo informações do evento.</p>
<p><a href="http://conference.hitb.org/hitbsecconf2007kl/" target="_blank">http://conference.hitb.org/hitbsecconf2007kl/</a></p>
<p>Good Hacking 4 All.</p>
<img alt="" border="0" src="http://feeds.wordpress.com/1.0/categories/y2h4ck.wordpress.com/88/" /> <img alt="" border="0" src="http://feeds.wordpress.com/1.0/tags/y2h4ck.wordpress.com/88/" /> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/y2h4ck.wordpress.com/88/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/y2h4ck.wordpress.com/88/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/y2h4ck.wordpress.com/88/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/y2h4ck.wordpress.com/88/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/y2h4ck.wordpress.com/88/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/y2h4ck.wordpress.com/88/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/y2h4ck.wordpress.com/88/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/y2h4ck.wordpress.com/88/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/y2h4ck.wordpress.com/88/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/y2h4ck.wordpress.com/88/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=y2h4ck.wordpress.com&blog=2298308&post=88&subd=y2h4ck&ref=&feed=1" /></div>]]></content:encoded>
			<wfw:commentRss>http://y2h4ck.wordpress.com/2008/06/19/hack-in-the-box-conference-2007/feed/</wfw:commentRss>
	
		<media:content url="http://a.wordpress.com/avatar/y2h4ck-128.jpg" medium="image">
			<media:title type="html">y2h4ck</media:title>
		</media:content>

		<media:content url="http://www.hackinthebox.org/hitb.gif" medium="image" />
	</item>
		<item>
		<title>Windows Vista - Login Bypass</title>
		<link>http://y2h4ck.wordpress.com/2008/06/13/windows-vista-login-bypass/</link>
		<comments>http://y2h4ck.wordpress.com/2008/06/13/windows-vista-login-bypass/#comments</comments>
		<pubDate>Fri, 13 Jun 2008 18:46:47 +0000</pubDate>
		<dc:creator>y2h4ck</dc:creator>
		
		<category><![CDATA[Ethical Hacking]]></category>

		<category><![CDATA[Fun Stuff]]></category>

		<category><![CDATA[General Security]]></category>

		<category><![CDATA[General Hacking]]></category>

		<category><![CDATA[Hacking]]></category>

		<category><![CDATA[login bypass]]></category>

		<category><![CDATA[pen-test]]></category>

		<category><![CDATA[Pentesting]]></category>

		<category><![CDATA[Windows Hacking]]></category>

		<category><![CDATA[windows vista hacking]]></category>

		<category><![CDATA[y2h4ck]]></category>

		<guid isPermaLink="false">http://y2h4ck.wordpress.com/?p=87</guid>
		<description><![CDATA[No Vídeo abaixo, o atacante com acesso físico à uma estação executando Windows Vista utiliza um Live-CD com a distribuição BackTrack-3. Montando a partição do sistema, ele acessa o c:\windows\system32\&#62; e modifica o binário Utilman.exe pelo cmd.exe, assim quando o sistema iniciar e o Utilman.exe for solicitado, seja executado um shell para o atacante com [...]]]></description>
			<content:encoded><![CDATA[<div class='snap_preview'><br /><p>No Vídeo abaixo, o atacante com acesso físico à uma estação executando Windows Vista utiliza um Live-CD com a distribuição BackTrack-3. Montando a partição do sistema, ele acessa o c:\windows\system32\&gt; e modifica o binário Utilman.exe pelo cmd.exe, assim quando o sistema iniciar e o Utilman.exe for solicitado, seja executado um shell para o atacante com privilégios de &lt;SYSTEM&gt;.</p>
<p style="text-align:center;"><span style="text-align:center; display: block;"><a href="http://y2h4ck.wordpress.com/2008/06/13/windows-vista-login-bypass/"><img src="http://img.youtube.com/vi/cOxWuKL2hWI/2.jpg" alt="" /></a></span></p>
<p>Good Hacking 4 All.</p>
<p><a href="http://www.bonusmega.com.br/ultrabonus"><img class="alignleft" style="float:left;" src="http://www.bonusmega.com.br/banner1.gif" alt="" width="468" height="60" /></a></p>
<img alt="" border="0" src="http://feeds.wordpress.com/1.0/categories/y2h4ck.wordpress.com/87/" /> <img alt="" border="0" src="http://feeds.wordpress.com/1.0/tags/y2h4ck.wordpress.com/87/" /> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/y2h4ck.wordpress.com/87/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/y2h4ck.wordpress.com/87/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/y2h4ck.wordpress.com/87/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/y2h4ck.wordpress.com/87/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/y2h4ck.wordpress.com/87/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/y2h4ck.wordpress.com/87/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/y2h4ck.wordpress.com/87/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/y2h4ck.wordpress.com/87/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/y2h4ck.wordpress.com/87/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/y2h4ck.wordpress.com/87/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=y2h4ck.wordpress.com&blog=2298308&post=87&subd=y2h4ck&ref=&feed=1" /></div>]]></content:encoded>
			<wfw:commentRss>http://y2h4ck.wordpress.com/2008/06/13/windows-vista-login-bypass/feed/</wfw:commentRss>
	
		<media:content url="http://a.wordpress.com/avatar/y2h4ck-128.jpg" medium="image">
			<media:title type="html">y2h4ck</media:title>
		</media:content>

		<media:content url="http://img.youtube.com/vi/cOxWuKL2hWI/2.jpg" medium="image" />

		<media:content url="http://www.bonusmega.com.br/banner1.gif" medium="image" />
	</item>
		<item>
		<title>ShmooCon 2008 - Presentation Videos</title>
		<link>http://y2h4ck.wordpress.com/2008/06/12/shmoocon-2008-presentation-videos/</link>
		<comments>http://y2h4ck.wordpress.com/2008/06/12/shmoocon-2008-presentation-videos/#comments</comments>
		<pubDate>Thu, 12 Jun 2008 16:54:58 +0000</pubDate>
		<dc:creator>y2h4ck</dc:creator>
		
		<category><![CDATA[General Hacking]]></category>

		<category><![CDATA[Ethical Hacking]]></category>

		<category><![CDATA[Hacking]]></category>

		<category><![CDATA[pen-test]]></category>

		<category><![CDATA[penetration testing]]></category>

		<category><![CDATA[Pentesting]]></category>

		<category><![CDATA[shmoocon]]></category>

		<category><![CDATA[shmoocon 2008]]></category>

		<category><![CDATA[shmoocon videos]]></category>

		<category><![CDATA[y2h4ck]]></category>

		<guid isPermaLink="false">http://y2h4ck.wordpress.com/?p=86</guid>
		<description><![CDATA[
Seguem os videos da ShmooCon 2008. O evento foi muito bom e todos os vídeos são de excelente qualidade. Recomendo a todos.
Apresentações &#38; Tools:
http://www.shmoocon.org/2008/presentations/
Videos:
http://www.shmoocon.org/2008/videos
Good Hacking 4 All
       ]]></description>
			<content:encoded><![CDATA[<div class='snap_preview'><br /><p><img src="http://www.shmoocon.org/images/shmoocon.gif" alt="" width="379" height="62" /></p>
<p>Seguem os videos da ShmooCon 2008. O evento foi muito bom e todos os vídeos são de excelente qualidade. Recomendo a todos.</p>
<p>Apresentações &amp; Tools:</p>
<p>http://www.shmoocon.org/2008/presentations/</p>
<p>Videos:</p>
<p>http://www.shmoocon.org/2008/videos</p>
<p>Good Hacking 4 All</p>
<img alt="" border="0" src="http://feeds.wordpress.com/1.0/categories/y2h4ck.wordpress.com/86/" /> <img alt="" border="0" src="http://feeds.wordpress.com/1.0/tags/y2h4ck.wordpress.com/86/" /> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/y2h4ck.wordpress.com/86/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/y2h4ck.wordpress.com/86/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/y2h4ck.wordpress.com/86/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/y2h4ck.wordpress.com/86/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/y2h4ck.wordpress.com/86/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/y2h4ck.wordpress.com/86/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/y2h4ck.wordpress.com/86/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/y2h4ck.wordpress.com/86/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/y2h4ck.wordpress.com/86/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/y2h4ck.wordpress.com/86/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=y2h4ck.wordpress.com&blog=2298308&post=86&subd=y2h4ck&ref=&feed=1" /></div>]]></content:encoded>
			<wfw:commentRss>http://y2h4ck.wordpress.com/2008/06/12/shmoocon-2008-presentation-videos/feed/</wfw:commentRss>
	
		<media:content url="http://a.wordpress.com/avatar/y2h4ck-128.jpg" medium="image">
			<media:title type="html">y2h4ck</media:title>
		</media:content>

		<media:content url="http://www.shmoocon.org/images/shmoocon.gif" medium="image" />
	</item>
		<item>
		<title>sqlninja - Blind SQL Injection Exploit Framework</title>
		<link>http://y2h4ck.wordpress.com/2008/06/10/sqlninja-blind-sql-injection-exploit-framework/</link>
		<comments>http://y2h4ck.wordpress.com/2008/06/10/sqlninja-blind-sql-injection-exploit-framework/#comments</comments>
		<pubDate>Tue, 10 Jun 2008 18:15:37 +0000</pubDate>
		<dc:creator>y2h4ck</dc:creator>
		
		<category><![CDATA[Ethical Hacking]]></category>

		<category><![CDATA[General Hacking]]></category>

		<category><![CDATA[Pentesting]]></category>

		<category><![CDATA[Web Hacking]]></category>

		<category><![CDATA[Hacking]]></category>

		<category><![CDATA[exploits]]></category>

		<category><![CDATA[sql injection]]></category>

		<category><![CDATA[penetration testing]]></category>

		<category><![CDATA[sql]]></category>

		<category><![CDATA[mssql hacking]]></category>

		<category><![CDATA[pen-test]]></category>

		<category><![CDATA[sqlninja]]></category>

		<guid isPermaLink="false">http://y2h4ck.wordpress.com/?p=82</guid>
		<description><![CDATA[Sqlninja é uma ferramenta criada para explorar vulnerabilidades de SQL injection em aplicações web que utilizam-se do Microsoft SQL Server em seu back-end.
Seu principal objetivo é prover acesso remoto no servidor Database vulnerável. Pode ser utilizado por penetration testers para ajudar automatizar o processo de intrusão em um servidor DB quando uma vulnerabilidade de SQL [...]]]></description>
			<content:encoded><![CDATA[<div class='snap_preview'><br /><p class="MsoNormal" style="line-height:normal;"><span style="font-size:9pt;" lang="PT-BR">Sqlninja é uma ferramenta criada para explorar vulnerabilidades de SQL injection em aplicações web que utilizam-se do Microsoft SQL Server em seu back-end.</span></p>
<p class="MsoNormal" style="line-height:normal;"><span style="font-size:9pt;" lang="PT-BR">Seu principal objetivo é prover acesso remoto no servidor Database vulnerável. Pode ser utilizado por penetration testers para ajudar automatizar o processo de intrusão em um servidor DB quando uma vulnerabilidade de SQL Injection é localizada.</span></p>
<p class="MsoNormal" style="line-height:normal;"><span style="font-size:9pt;" lang="PT-BR">A ferramenta é distribuida sob a GPLv2 e classificada no SecurityHacks&#8217; </span><span style="font-size:9pt;"><a href="http://www.security-hacks.com/2007/05/18/top-15-free-sql-injection-scanners" target="_new"><span style="color:blue;">Top 15 Free SQL Injection Scanners</span></a></span><span style="font-size:9pt;" lang="PT-BR">, e pode trazer bons resultados durante um pen-test <img src='http://s.wordpress.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </span></p>
<p class="MsoNormal" style="line-height:normal;"><strong><span style="font-size:9pt;" lang="PT-BR">Features</span></strong></p>
<p class="MsoNormal" style="line-height:normal;"><span style="font-size:9pt;" lang="PT-BR">A documentação completa pode ser encontrada no Tarball e também </span><span style="font-size:9pt;"><a href="http://sqlninja.sourceforge.net/sqlninja-howto.html" target="_blank"><span style="color:blue;">aqui</span></a></span><span style="font-size:9pt;" lang="PT-BR">. Abaixo segue uma pequena lista das principais funcionalidades do Sqlninja:</span></p>
<ul type="disc">
<li class="MsoNormal"><span style="font-size:9pt;">Fingerprint of the remote SQL      Server (version, user performing the queries, user privileges, xp_cmdshell      availability, DB authentication mode)</span></li>
<li class="MsoNormal"><span style="font-size:9pt;">Bruteforce of &#8217;sa&#8217; password (in 2      flavors: dictionary-based and incremental)</span></li>
<li class="MsoNormal"><span style="font-size:9pt;">Privilege escalation to sysadmin      group if &#8217;sa&#8217; password has been found</span></li>
<li class="MsoNormal"><span style="font-size:9pt;">Creation of a custom xp_cmdshell      if the original one has been removed</span></li>
<li class="MsoNormal"><span style="font-size:9pt;">Upload of netcat (or any other      executable) using only normal HTTP requests (no FTP/TFTP needed)</span></li>
<li class="MsoNormal"><span style="font-size:9pt;">TCP/UDP portscan from the target      SQL Server to the attacking machine, in order to find a port that is      allowed by the firewall of the target network and use it for a reverse      shell</span></li>
<li class="MsoNormal"><span style="font-size:9pt;">Direct and reverse bindshell, both      TCP and UDP</span></li>
<li class="MsoNormal"><span style="font-size:9pt;">DNS-tunneled pseudo-shell, when no      TCP/UDP ports are available for a direct/reverse shell, but the DB server      can resolve external hostnames (check the documentation for details about      how this works)</span></li>
<li class="MsoNormal"><span style="font-size:9pt;">Evasion techniques to confuse a      few IDS/IPS/WAF</span></li>
<li class="MsoNormal"><span style="font-size:9pt;">Integration with Metasploit3, to      obtain a graphical access to the remote DB server through a VNC server      injection</span></li>
</ul>
<p class="MsoNormal" style="line-height:normal;"><strong><span style="font-size:9pt;"> </span></strong></p>
<p class="MsoNormal" style="line-height:normal;"><span style="font-size:9pt;" lang="PT-BR">Sqlninja é escrito em perl e pode ser executado em qualquer Unix com o interpretador perl e foi testado com sucesso em:</span></p>
<ul type="disc">
<li class="MsoNormal"><span style="font-size:9pt;">Linux</span></li>
<li class="MsoNormal"><span style="font-size:9pt;">FreeBSD</span></li>
<li class="MsoNormal"><span style="font-size:9pt;">Mac OS X</span></li>
</ul>
<p class="MsoNormal" style="line-height:normal;"><span style="font-size:9pt;" lang="PT-BR">Segue abaixo um DEMO de um pen-test em uma aplicação vulnerável, usando o sqlninja para obter acesso ao DB Server. </span></p>
<p class="MsoNormal" style="line-height:normal;"><span style="font-size:9pt;" lang="PT-BR">http://sqlninja.sourceforge.net/sqlninjademo1.html</span></p>
<p class="MsoNormal" style="line-height:normal;"><span style="font-size:9pt;">Good Hacking 4 All.</span></p>
<p class="MsoNormal" style="line-height:normal;text-align:center;"><a href="http://www.bonusmega.com.br/ultrabonus" target="_blank"><img class="alignleft" style="float:left;" src="http://www.bonusmega.com.br/banner1.gif" alt="" width="468" height="60" /></a></p>
<img alt="" border="0" src="http://feeds.wordpress.com/1.0/categories/y2h4ck.wordpress.com/82/" /> <img alt="" border="0" src="http://feeds.wordpress.com/1.0/tags/y2h4ck.wordpress.com/82/" /> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/y2h4ck.wordpress.com/82/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/y2h4ck.wordpress.com/82/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/y2h4ck.wordpress.com/82/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/y2h4ck.wordpress.com/82/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/y2h4ck.wordpress.com/82/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/y2h4ck.wordpress.com/82/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/y2h4ck.wordpress.com/82/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/y2h4ck.wordpress.com/82/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/y2h4ck.wordpress.com/82/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/y2h4ck.wordpress.com/82/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=y2h4ck.wordpress.com&blog=2298308&post=82&subd=y2h4ck&ref=&feed=1" /></div>]]></content:encoded>
			<wfw:commentRss>http://y2h4ck.wordpress.com/2008/06/10/sqlninja-blind-sql-injection-exploit-framework/feed/</wfw:commentRss>
	
		<media:content url="http://a.wordpress.com/avatar/y2h4ck-128.jpg" medium="image">
			<media:title type="html">y2h4ck</media:title>
		</media:content>

		<media:content url="http://www.bonusmega.com.br/banner1.gif" medium="image" />
	</item>
		<item>
		<title>Book of Month: June</title>
		<link>http://y2h4ck.wordpress.com/2008/06/02/book-of-month-june/</link>
		<comments>http://y2h4ck.wordpress.com/2008/06/02/book-of-month-june/#comments</comments>
		<pubDate>Mon, 02 Jun 2008 14:19:15 +0000</pubDate>
		<dc:creator>y2h4ck</dc:creator>
		
		<category><![CDATA[security books]]></category>

		<category><![CDATA[Book of Month]]></category>

		<category><![CDATA[Hacking]]></category>

		<category><![CDATA[hacking book]]></category>

		<category><![CDATA[pentest book]]></category>

		<category><![CDATA[Pentesting]]></category>

		<category><![CDATA[security]]></category>

		<category><![CDATA[security book]]></category>

		<guid isPermaLink="false">http://y2h4ck.wordpress.com/?p=81</guid>
		<description><![CDATA[



The Web Application Hacker&#8217;s Handbook: Discovering and Exploiting Security Flaws


Author: Dafydd Stuttard, Marcus Pinto


Publisher: Wiley


Year: 2007


Pages: 736


Amazon&#8217;s book description: This book is a practical guide to discovering and exploiting security flaws in web applications. The authors explain each category of vulnerability using real-world examples, screen shots and code extracts. The book is extremely practical in [...]]]></description>
			<content:encoded><![CDATA[<div class='snap_preview'><br /><p><img src="http://www.orkspace.net/secdocs/imgbooks/018.jpg" alt="" width="120" height="151" /></p>
<table class="style_tables" border="0" cellspacing="0" cellpadding="0">
<tbody>
<tr>
<td class="title_book"><strong><a href="http://www.amazon.com/gp/product/0470170778?ie=UTF8&amp;tag=orkspace-20&amp;linkCode=as2&amp;camp=1789&amp;creative=9325&amp;creativeASIN=0470170778" target="_blank">The Web Application Hacker&#8217;s Handbook: Discovering and Exploiting Security Flaws</a></strong></td>
</tr>
<tr>
<td class="desc_book"><strong>Author: </strong>Dafydd Stuttard, Marcus Pinto</td>
</tr>
<tr>
<td class="desc_book"><strong>Publisher: </strong>Wiley</td>
</tr>
<tr>
<td class="desc_book"><strong>Year: </strong>2007</td>
</tr>
<tr>
<td class="desc_book"><strong>Pages: </strong>736</td>
</tr>
<tr>
<td class="desc_book"><strong>Amazon&#8217;s book description: </strong>This book is a practical guide to discovering and exploiting security flaws in web applications. The authors explain each category of vulnerability using real-world examples, screen shots and code extracts. The book is extremely practical in focus, and describes in detail the steps involved in detecting and exploiting each kind of security weakness found within a variety of applications such as online banking, e-commerce and other web applications. The topics covered include bypassing login mechanisms, injecting code, exploiting logic flaws and compromising other users. Because every web application is different, attacking them entails bringing to bear various general principles, techniques and experience in an imaginative way. The most successful hackers go beyond this, and find ways to automate their bespoke attacks. This handbook describes a proven methodology that combines the virtues of human intelligence and computerized brute force, often with devastating results.</td>
</tr>
</tbody>
</table>
<img alt="" border="0" src="http://feeds.wordpress.com/1.0/categories/y2h4ck.wordpress.com/81/" /> <img alt="" border="0" src="http://feeds.wordpress.com/1.0/tags/y2h4ck.wordpress.com/81/" /> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/y2h4ck.wordpress.com/81/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/y2h4ck.wordpress.com/81/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/y2h4ck.wordpress.com/81/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/y2h4ck.wordpress.com/81/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/y2h4ck.wordpress.com/81/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/y2h4ck.wordpress.com/81/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/y2h4ck.wordpress.com/81/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/y2h4ck.wordpress.com/81/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/y2h4ck.wordpress.com/81/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/y2h4ck.wordpress.com/81/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=y2h4ck.wordpress.com&blog=2298308&post=81&subd=y2h4ck&ref=&feed=1" /></div>]]></content:encoded>
			<wfw:commentRss>http://y2h4ck.wordpress.com/2008/06/02/book-of-month-june/feed/</wfw:commentRss>
	
		<media:content url="http://a.wordpress.com/avatar/y2h4ck-128.jpg" medium="image">
			<media:title type="html">y2h4ck</media:title>
		</media:content>

		<media:content url="http://www.orkspace.net/secdocs/imgbooks/018.jpg" medium="image" />
	</item>
	</channel>
</rss>