lunes, agosto 31, 2020

Goddi (Go Dump Domain Info) - Dumps Active Directory Domain Information



Based on work from Scott Sutherland (@_nullbind), Antti Rantasaari, Eric Gruber (@egru), Will Schroeder (@harmj0y), and the PowerView authors.

Install
Use the executables in the releases section. If you want to build it yourself, make sure that your go environment is setup according to the Go setup doc. The goddi package also uses the below package.
go get gopkg.in/ldap.v2

Windows
Tested on Windows 10 and 8.1 (go1.10 windows/amd64).

Linux
Tested on Kali Linux (go1.10 linux/amd64).
  • umount, mount, and cifs-utils need to be installed for mapping a share for GetGPP
apt-get update
apt-get install -y mount cifs-utils
  • make sure nothing is mounted at /mnt/goddi/
  • make sure to run with sudo

Run
When run, will default to using TLS (tls.Client method) over 636. On Linux, make sure to run with sudo.
  • username: Target user. Required parameter.
  • password: Target user's password. Required parameter.
  • domain: Full domain name. Required parameter.
  • dc: DC to target. Can be either an IP or full hostname. Required parameter.
  • startTLS: Use to StartTLS over 389.
  • unsafe: Use for a plaintext connection.
PS C:\Users\Administrator\Desktop> .\godditest-windows-amd64.exe -username=testuser -password="testpass!" -domain="test.local" -dc="dc.test.local" -unsafe
[i] Begin PLAINTEXT LDAP connection to 'dc.test.local'...
[i] PLAINTEXT LDAP connection to 'dc.test.local' successful...
[i] Begin BIND...
[i] BIND with 'testuser' successful...
[i] Begin dump domain info...
[i] Domain Trusts: 1 found
[i] Domain Controllers: 1 found
[i] Users: 12 found
[*] Warning: keyword 'pass' found!
[*] Warning: keyword 'fall' found!
[i] Domain Admins: 4 users found
[i] Enterprise Admins: 1 users found
[i] Forest Admins: 0 users found
[i] Locked Users: 0 found
[i] Disabled Users: 2 found
[i] Groups: 45 found
[i] Domain Sites: 1 found
[i] Domain Subnets: 0 found
[i] Domain Computers: 17 found
[i] Deligated Users: 0 found
[i] Users with passwords not set to expire: 6 found
[i] Machine Accounts with passwords older than 45 days: 18 found
[i] Domain OUs: 8 found
[i] Domain Account Policy found
[i] Domain GPOs: 7 found
[i] FSMO Roles: 3 found
[i] SPNs: 122 found
[i] LAPS passwords: 0 found
[i] GPP enumeration starting. This can take a bit...
[i] GPP passwords: 7 found
[i] CSVs written to 'csv' directory in C:\Users\Administrator\Desktop
[i] Execution took 1.4217256s...
[i] Exiting...

Functionality
StartTLS and TLS (tls.Client func) connections supported. Connections over TLS are default. All output goes to CSVs and are created in /csv/ in the current working directory. Dumps:
  • Domain users. Also searches Description for keywords and prints to a seperate csv ex. "Password" was found in the domain user description.
  • Users in priveleged user groups (DA, EA, FA).
  • Users with passwords not set to expire.
  • User accounts that have been locked or disabled.
  • Machine accounts with passwords older than 45 days.
  • Domain Computers.
  • Domain Controllers.
  • Sites and Subnets.
  • SPNs and includes csv flag if domain admin (a flag to note SPNs that are DAs in the SPN CSV output).
  • Trusted domain relationships.
  • Domain Groups.
  • Domain OUs.
  • Domain Account Policy.
  • Domain deligation users.
  • Domain GPOs.
  • Domain FSMO roles.
  • LAPS passwords.
  • GPP passwords. On Windows, defaults to mapping Q. If used, will try another mapping until success R, S, etc... On Linux, /mnt/goddi is used.


More info


domingo, agosto 30, 2020

RFCrack Release - A Software Defined Radio Attack Tool

RFCrack uses the following hardware with RFCat libraries:
YardStick One: 
https://goo.gl/wd88sr

I decided to cleanup my RF testing harness and release it as a tool named RFCrack
Mostly because it has been pain to set up use-case scenarios from scratch for every device I am testing. Rather then release a tool no one knows how to use. The below video will be a quick but comprehensive tutorial to get you started If you've been following the blogs, this will greatly simplify your testing, in the following ways:
  • RFCrack handles all of your data conversions. 
  • It allows you to capture, replay and save payloads for use anytime 
  • It will handle rolling code bypass attacks on your devices. 
  • You can jam frequencies and fuzz specific values 
  • It will also allow you to scan specific frequencies in discovery mode or incrementally probe them 
  • RFCrack will hopefully have keyless entry & engine bypass support in the near future

This is the first release, everything works as intended but there will be plenty of updates as I continue to do research and find reasons to add features needed for testing. I am still making changes and making it more flexible with modifiable values and restructuring code.  If you have any legitimate use case scenarios or need a specific value to be modifiable, hit me up and I will do my best to update between research, if its a legitimate use case.

You can reach me at:
Twitter: @Ficti0n
http://cclabs.io , http://consolecowboys.com

GitHub Code for RFCrack:

https://github.com/cclabsInc/RFCrack

Full RF Hacking Course in Development:

Not all of the attacks in the tool have been covered in the RF hacking blog series and a few more are in research mode, as such, not yet added to the tool but will probably be covered in a full length online class on Hacking with RF which includes all targets and equipment.  Send an email to info(at)cclabs.io if your interested.



Walkthrough Training Video:




Until Next time: 

Cheers, and enjoy the tool for your personal use testing devices, feedback and bug reports are appreciated.  I have another RF blog coming out shortly based on my friends research into hacking garages/gates and creating keyfobs.  I will post when its ready. 

Related links


  1. Physical Pentest Tools
  2. Hacker Tools Free Download
  3. Pentest Tools Find Subdomains
  4. Pentest Tools Open Source
  5. Hacker Search Tools
  6. Hacking Tools For Beginners
  7. Hacking Tools And Software
  8. Pentest Recon Tools
  9. Hacking Tools For Games
  10. Hacker Tools Online
  11. Hack Tools Mac
  12. Hack Tool Apk
  13. Hack Tool Apk
  14. Hacking Tools Github
  15. Pentest Tools Kali Linux
  16. Hack Tools 2019
  17. Hacking Tools 2020
  18. Pentest Tools Windows
  19. Pentest Tools Tcp Port Scanner
  20. Hacking Tools Windows
  21. Hacker Tools For Ios
  22. Hack App
  23. Pentest Tools Online
  24. Pentest Tools Url Fuzzer
  25. Hack Tools Online
  26. Hacking Tools Free Download
  27. Hacking Tools Online
  28. Hack Apps
  29. Best Pentesting Tools 2018
  30. Hack App
  31. Hacking Tools For Pc
  32. Pentest Recon Tools
  33. Pentest Tools Windows
  34. Pentest Tools Website
  35. Easy Hack Tools
  36. Pentest Tools Kali Linux
  37. Pentest Tools Review
  38. Hacking Tools Usb
  39. Hacking Apps
  40. Free Pentest Tools For Windows
  41. Blackhat Hacker Tools
  42. Hack Website Online Tool
  43. Hacking Tools For Pc
  44. Best Pentesting Tools 2018
  45. Hacker
  46. Hack Tools Download
  47. Hacker Tools 2019
  48. Hack Tools
  49. What Is Hacking Tools
  50. Hacking Tools Online
  51. Tools 4 Hack
  52. Hack App
  53. Pentest Tools For Mac
  54. Pentest Tools Download
  55. Hacker Tools Mac
  56. Game Hacking
  57. Hacker Tool Kit
  58. Hacker Tools 2020
  59. Easy Hack Tools
  60. Pentest Tools Apk
  61. Hacking Tools 2020
  62. Android Hack Tools Github
  63. Hacker Tools For Pc
  64. Hacker Tools Windows
  65. Hacker Tools For Mac
  66. Computer Hacker
  67. Tools Used For Hacking
  68. Easy Hack Tools
  69. Pentest Tools Linux
  70. Free Pentest Tools For Windows
  71. Hacks And Tools
  72. Pentest Tools Nmap
  73. Easy Hack Tools
  74. Hacker Tools For Ios
  75. Hacking App
  76. Pentest Tools Open Source
  77. Pentest Automation Tools
  78. Pentest Tools Find Subdomains
  79. Hack Tools
  80. Hacker Tools Windows
  81. Best Hacking Tools 2019
  82. Hacker Tools Apk Download
  83. Hackers Toolbox
  84. Hacking Tools For Mac
  85. Hack Tools For Windows
  86. Hack Tools Mac
  87. Pentest Tools For Ubuntu
  88. Hacking Tools For Kali Linux
  89. Hacker Tools 2019
  90. Pentest Tools For Android
  91. Hacking Tools Software
  92. Pentest Tools Port Scanner
  93. Hacking Tools And Software
  94. Hacker Tools Mac
  95. Hacking Tools Kit
  96. Beginner Hacker Tools
  97. Physical Pentest Tools
  98. Pentest Tools For Windows
  99. Hacker Tools Software
  100. Pentest Tools Tcp Port Scanner
  101. Hacking Tools Mac
  102. Pentest Tools Linux
  103. Hacking Tools For Windows
  104. Hack And Tools
  105. Tools 4 Hack
  106. Hacker Hardware Tools
  107. Hacking Tools And Software
  108. Bluetooth Hacking Tools Kali
  109. Hacking Tools For Games
  110. Growth Hacker Tools
  111. Hack Apps
  112. Hacker Hardware Tools
  113. How To Hack
  114. Hacker Tools Apk Download
  115. How To Install Pentest Tools In Ubuntu
  116. Tools 4 Hack
  117. Pentest Box Tools Download
  118. Hacking Tools 2020
  119. Hacking Tools For Windows
  120. Pentest Recon Tools
  121. Hack Tools Mac
  122. Hak5 Tools
  123. Hack Tool Apk
  124. How To Install Pentest Tools In Ubuntu
  125. Hack Tool Apk No Root
  126. Hacks And Tools
  127. Pentest Tools Free
  128. Hak5 Tools
  129. Hacker Tools 2020
  130. Hack Tools For Games
  131. Hacking Tools For Windows 7
  132. Hacking Tools Pc
  133. Hack Tools For Games
  134. Pentest Tools Free
  135. Best Hacking Tools 2019
  136. Hack Tools Download
  137. Hack Tools 2019
  138. Usb Pentest Tools
  139. Usb Pentest Tools
  140. Pentest Tools Free
  141. Hacking Tools Name
  142. Pentest Tools Framework
  143. Pentest Box Tools Download
  144. Best Hacking Tools 2020
  145. Hack Tools For Ubuntu
  146. Kik Hack Tools
  147. Kik Hack Tools

Ask And You Shall Receive



I get emails from readers asking for specific malware samples and thought I would make a mini post about it.

Yes, I often obtain samples from various sources for my own research.

 I am sometimes too lazy/busy to post them but don't mind sharing.
If you are looking for a particular sample, feel free to ask. I might have it.

Send MD5 (several or few samples). I cannot provide hundreds/thousands of samples or any kind of feeds. If you ask for a particular family, I might be able to help if I already have it.

Unfortunately, I do not have time to do homework for students and provide very specific sets for malware with specific features as well as guarantee the C2s are still active.  Send your MD5(s) or at least malware family and I check if I have it :) If i have it, I will either send you or will post on the blog where you can download.

If you emailed me in the past and never got an answer, please remind me. Sometimes emails are long with many questions and I flag them to reply to later, when I have time and they get buried or I forget. It does not happen very often but accept my apologies if it happened to you.

Before you ask, check if it is already available via Contagio or Contagio Mobile.
1. Search the blog using the search box on the right side
2. Search here https://www.mediafire.com/folder/b8xxm22zrrqm4/BADINFECT
3. Search here https://www.mediafire.com/folder/c2az029ch6cke/TRAFFIC_PATTERNS_COLLECTION
4. Search here https://www.mediafire.com/folder/78npy8h7h0g9y/MOBILEMALWARE

Cheers,  Mila

Related links


How To Start | How To Become An Ethical Hacker

Are you tired of reading endless news stories about ethical hacking and not really knowing what that means? Let's change that!
This Post is for the people that:

  • Have No Experience With Cybersecurity (Ethical Hacking)
  • Have Limited Experience.
  • Those That Just Can't Get A Break


OK, let's dive into the post and suggest some ways that you can get ahead in Cybersecurity.
I receive many messages on how to become a hacker. "I'm a beginner in hacking, how should I start?" or "I want to be able to hack my friend's Facebook account" are some of the more frequent queries. Hacking is a skill. And you must remember that if you want to learn hacking solely for the fun of hacking into your friend's Facebook account or email, things will not work out for you. You should decide to learn hacking because of your fascination for technology and your desire to be an expert in computer systems. Its time to change the color of your hat 😀

 I've had my good share of Hats. Black, white or sometimes a blackish shade of grey. The darker it gets, the more fun you have.

If you have no experience don't worry. We ALL had to start somewhere, and we ALL needed help to get where we are today. No one is an island and no one is born with all the necessary skills. Period.OK, so you have zero experience and limited skills…my advice in this instance is that you teach yourself some absolute fundamentals.
Let's get this party started.
  •  What is hacking?
Hacking is identifying weakness and vulnerabilities of some system and gaining access with it.
Hacker gets unauthorized access by targeting system while ethical hacker have an official permission in a lawful and legitimate manner to assess the security posture of a target system(s)

 There's some types of hackers, a bit of "terminology".
White hat — ethical hacker.
Black hat — classical hacker, get unauthorized access.
Grey hat — person who gets unauthorized access but reveals the weaknesses to the company.
Script kiddie — person with no technical skills just used pre-made tools.
Hacktivist — person who hacks for some idea and leaves some messages. For example strike against copyright.
  •  Skills required to become ethical hacker.
  1. Curosity anf exploration
  2. Operating System
  3. Fundamentals of Networking
*Note this sites





Continue reading


  1. Pentest Tools Free
  2. Hacking App
  3. Pentest Tools For Ubuntu
  4. Hacker Tools Apk Download
  5. Pentest Tools Apk
  6. Hacker
  7. Hacking Tools 2020
  8. Growth Hacker Tools
  9. Beginner Hacker Tools
  10. Hack Tools Download
  11. Hacker Tools Linux
  12. Pentest Tools For Android
  13. Pentest Tools Free
  14. Pentest Tools Website Vulnerability
  15. Termux Hacking Tools 2019
  16. Pentest Tools Url Fuzzer
  17. Hacking Tools Usb
  18. Pentest Tools Open Source
  19. Tools Used For Hacking
  20. Blackhat Hacker Tools
  21. Hacking Tools For Games
  22. Hack Rom Tools
  23. Hacker Tools
  24. Hackrf Tools
  25. Hacking Tools Download
  26. Physical Pentest Tools
  27. Pentest Tools Download
  28. Hacker Tools Free Download
  29. Hacking Tools Windows 10
  30. Hacker Tools Free
  31. Ethical Hacker Tools
  32. Pentest Tools Find Subdomains
  33. Pentest Tools For Ubuntu
  34. Game Hacking
  35. Hacking Tools 2019
  36. Pentest Tools Website Vulnerability
  37. Computer Hacker
  38. Pentest Box Tools Download
  39. Hack Tools
  40. Hacker Tools 2020
  41. Pentest Tools Url Fuzzer
  42. Hack And Tools
  43. Pentest Tools Bluekeep
  44. Hacker
  45. Github Hacking Tools
  46. Black Hat Hacker Tools
  47. Bluetooth Hacking Tools Kali
  48. Beginner Hacker Tools
  49. Hacking Tools 2019
  50. Pentest Tools Windows
  51. Hacking Tools Windows 10
  52. Tools Used For Hacking
  53. Hacking Tools 2020
  54. Hack App
  55. What Is Hacking Tools
  56. Top Pentest Tools
  57. Hack Tools Mac
  58. Hacking Tools 2020
  59. Hacking Tools For Mac
  60. Bluetooth Hacking Tools Kali
  61. Pentest Tools Github