      1. Today
      2. dEEpEst

        Hacking Library

      Insanity-Framework THIS PROJECT ARE CLOSED NOW - FEEL FREE TO CONTINUE IT Copyright 2017 Insanity Framework (IF) 2.0 END Written by: * Alisson Moretto - 4w4k3 Special Thanks to Thomas Perkins - Ekultek Insanity Payload consists of encrypting your code and decrypting it in memory, thus avoiding a possible av signature, also has the ability to wait long enough to bypass a running sandbox. **NOTE: Insanity payloads may experience a 1 minute delay while connecting, this is necessary in order to bypass most avs and sandboxes. ** Twitter: @4w4k3Official DISCLAIMER: "DISCLAIMED. IN NO EVENT SHALL THE COPYRIGHT HOLDER OR CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE." Taken from LICENSE. INSTALLATION OF DEPENDENT LIBRARIES cd Insanity-Framework chmod +x install.sh ./install.sh That's it Features Bypass most AV and Sandboxes. Remote Control. Payload Generation. Some Phishing methods are included on payloads generated. Detect Virtual Machines. Multiple Session disabled. Persistence and others features can be enabled. Bypass UAC. Memory Injection. Needed dependencies apt wine wget Linux sudo access python2.7 python 2.7 on Wine Machine pywin32 on Wine Machine VCForPython27 on Wine Machine Tested on: Kali Linux - SANA Kali Linux - ROLLING Ubuntu 14.04-16.04 LTS Debian 8.5 Linux Mint 18.1 Black Arch Linux Cloning: git clone [Hidden Content] Running: sudo python insanity.py If you have another version of Python: sudo python2.7 insanity.py Screenshot: More in Screens Contribute: Send me more features if you want it 😄 I need your help for Insanity to become better! Things needed to be improved and future updates: File Transfer (FTP) Webcam Snaps and Streaming Keylogging Print Screens
      4. Yesterday
      5. dEEpEst

        Loki [Remote Access Tool]

        Loki Loki is Remote Access Tool. Loki uses RSA-2048 with AES-256 to keep your communication secure. Warning: DO NOT upload any samples generated by this program to online scanners. Requirements Python 3.6.x Server tested on Windows 10 Kali Linux Bot tested on Windows 10 Kali Linux Features Upload & Download Chrome Launching Persistence Screenshot Keylogger Ddos SFTP SSH Installation pip install -r requirements.txt Server side open /lib/const.py & configure your private and public IP's start loki.py navigate to [Hidden Content] login, Username: loki Password: ikol navigate to settings, selected server tab and start the server on the same IP as your private IP Click the home button Generate a payload Navigate to the builder directory Run: python builder.py -h After connection You can click the hostname of the bot once it connects Explore FYI The bot will call the server using the Public IP, not the private IP The bot will call the server using the port specified on the server tab
      6. dEEpEst

        Carbanak Source with Plugins

        Updated-Carbanak-Source-with-Plugins [Hidden Content] -Run in a VM, don't be derp- If you're curious as to why, I think like 1 or 2 file hashes are slightly different, it's because I translated a couple RU sentences into EN. Other than that this is untouched from original beta.virusbay.io files. Oh and if FLARE crew are hiring smart-ass millenials with barely any talent, no skill and zero previous experience... hit me up. ^^ shout-out to ThreatHunters
      7. This bug report describes a bug in systemd that allows a service with DynamicUser in collaboration with another service or user to create a setuid binary that can be used to access its UID beyond the lifetime of the service. This bug probably has relatively low severity, given that there are not many services yet that use DynamicUser, and the requirement of collaboration with another process limits the circumstances in which it would be useful to an attacker further; but in a system that makes heavy use of DynamicUser, it would probably have impact. View the full article
      8. EscobarMoney

        CapBreaker 1.2.0 - Stable version

      Recover Deleted photo is an application that has a very high search on google play because most people lose photos and want to recover them. This application is for illiterate users, those who delete an image in the gallery and do not know how to search in the hidden directory, then the image can be in a directory (whatsapp folder for example) so this application can help these users to recover their images.
      10. Lavavo CD Ripper version 4.20 license activation name SEH buffer overflow exploit. View the full article
      12. itsMe?


      13. itsMe?


      14. Sales page: [Hidden Content] Download: [HIDE][Hidden Content]]
      15. osTicket version 1.11 suffers from cross site scripting and local file inclusion vulnerabilities. View the full article
      18. Email/User: Email Proxies: Yes (Good proxies) Capture: Captures balance & points Recommended Bots: 50/100 [HIDE][Hidden Content]]
      19. Email/User: Email Proxies: Yes Capture: Captures points & level Recommended Bots: 50/100 [HIDE][Hidden Content]]
      Fatz GC Checker 1.0 by Yuri - Blazing Fast / 200 CPM - Capture / Balance - Clean UI / Easy to use Powered by Yuri
      23. JioFi 4G M2S version 1.0.2 suffers from a denial of service vulnerability. View the full article
      24. JioFi 4G M2S version 1.0.2 suffers from cross site scripting and html injection vulnerabilities. View the full article
      25. VyprVPN Checker 1.0 by Yuri - Fast / 4K CPM - Capture / Plan - 100% Accurate / Doesn't miss - Clean UI / Easy to use [HIDE][Hidden Content]]
      26. Backup Key Recovery version 2.2.4 denial of service proof of concept exploit. View the full article
      27. HeidiSQL Portable version denial of service proof of concept exploit. View the full article
