      1. Today
      2. c0ol

        I'm back :)

        I returned after years of absence to share new cyber security methods with you
      3. This Metasploit module exploit uses access to the UniversalOrchestrator ScheduleWork API call which does not verify the caller's token before scheduling a job to be run as SYSTEM. You cannot schedule something in a given time, so the payload will execute as system sometime in the next 24 hours. View the full article
      4. This Metasploit module exploits an arbitrary file upload vulnerability in MaraCMS versions 7.5 and below in order to execute arbitrary commands. The module first attempts to authenticate to MaraCMS. It then tries to upload a malicious PHP file to the web root via an HTTP POST request to codebase/handler.php. If the php target is selected, the payload is embedded in the uploaded file and the module attempts to execute the payload via an HTTP GET request to this file. For the linux and windows targets, the module uploads a simple PHP web shell. Subsequently, it leverages the CmdStager mixin to deliver the final payload via a series of HTTP GET requests to the PHP web shell. Valid credentials for a MaraCMS admin or manager account are required. This module has been successfully tested against MaraCMS 7.5 running on Windows Server 2012 (XAMPP server). View the full article
      5. itsMe

        ILSpy 6.2

        Features Decompilation to C# Whole-project decompilation (csproj, not sln!) Search for types/methods/properties (substring) Hyperlink-based type/method/property navigation Base/Derived types navigation, history BAML to XAML decompiler Extensible via plugins (MEF) Check out the language support status New Language Features C# 7.0: Deconstruction C# 8.0: await foreach C# 8.0: Disposable ref structs C# 8.0: Enhanced using statements C# 8.0: switch expressions C# 9.0: init accessors C# 9.0: function pointers (see #2150) C# 9.0: foreach with GetEnumerator extension methods C# 9.0: Lambda parameter discards General Add an option to enable aggressive inlining of expressions Add option for string.Concat decompilation Add an option to always qualify member references (by @Pathoschild, see #2114) ReadyToRun: Variable tracking in output (by @edkazcarlson, see #2067) ReadyToRun: Optimized debug info output (by @cshung, see #2113) Work on unifying the code formatting (see #2128) Tests upgraded to Roslyn 3.8.0-3.final UI Improvements Improve performance of Metadata DataGridCell (see #2151) Fix #2107: Add ScrollViewer around DisplaySettingsPanel Metadata: Improvements/fixes by @srutzky, see #2134, #2135, #2145, #2147 and #2153 Updated Chinese translation Bug fixes Fix #2129: be more flexible about the initialization order for the async state machine Fix #2140: ILSpy 6.2p1 no longer respects "use discards" setting Fix #2139: ArgumentOutOfRangeException for some xmldoc Fix #2039: Code generated by VB's On Error Resume Next causes "unassigned variable" compile errors Fix #2156: range syntax not being detected correctly in some cases BAML decompiler: #2109 and #2106 Fix #2086: Check that window belongs to ILSpy before sending it a WM_COPYDATA message. Fix #2090: ignore mscorlib references without public key token, when trying to resolve mscorlib. This will automatically fallback to .NET 4.0's mscorlib.dll. #1292: Fix some more problems with pinned locals. Fix #1555: Eliminate value-type temporaries emitted by mcs on field reads. Fix #2056: "remove branch into body" must be executed before the clone cleanup Fix #2101: reset removeExtraLoad flag if keepAssignmentBefore is set; implement simple case-de-duplication: abort if there are any duplicate cases. Fix #2100: 'value'-named auto property could not be recognized correctly. Fix #1441: Decompose flags enum values starting from the value with the highest Hamming Weight (popcount). [hide][Hidden Content]]
      6. itsMe


        A deobfuscation tool for Eazfuscator. Description EazFixer is a deobfuscation tool for Eazfuscator, a commercial .NET obfuscator. For a list of features, see the list below. Implemented fixes: String encryption Resource encryption Assembly embedding Not implemented, may be added in the future: Entrypoint obfuscation Data virtualization [hide][Hidden Content]]
      7. itsMe


        Simple PPTP & L2TP Protocol VPN Client written in C# using DOTras [hide][Hidden Content]]
      8. itsMe


        Proxy Grabber using ProxyScrape API. [hide][Hidden Content]]
      9. Gitjacker downloads git repositories and extracts their contents from sites where the .git directory has been mistakenly uploaded. It will still manage to recover a significant portion of a repository even where directory listings are disabled. For educational/penetration testing use only. [hide][Hidden Content]]
      10. Improve your traffic now! Simple, fast and powerful SEO plugin for WordPress. [Hidden Content] [hide][Hidden Content]]
      11. IPS Community Suite 4.5.3 Released 09/22/2020 [Hidden Content] [hide][Hidden Content]]
      12. itsMe


        Programming language: C# Name of the product: Zenon Clipper Functional: - Replacing crypto wallets: Bitcoin, Etherum, Monero, Doge Coin, Lite Coin, Dash, Zcash. - Replacing wallets: Qiwi, Payeer, Yandex Money, Ripple, WMR, WMZ, WMU. [hide][Hidden Content]]
      13. itsMe

        Good Public RAT

        @c0ol [Hidden Content]
      14. c0ol

        Good Public RAT

        Hi, I'm looking for a great recent public rat that has good persistence. some idea ? thank you
      15. IObit Malware Fighter 8 PRO La protección completa en tiempo real de tu PC, para tus datos personales y navegación en línea El motor Anti-virus de Bitdefender Evita que más de 200 millones de amenazas de seguridad infecten y dañen tu computadora. Protección Inteligente Utiliza detección avanzada del comportamiento e inteligencia artificial para detectar actividades maliciosas de cualquier programa para prevenir que los ciber-criminales obtengan control de tu ordenador. Defensa de Ransomware Reforzada Combina el motor exclusive anti-ransomware de IObit con la protección por contraseña de la Caja Fuerte para garantizar que todos tus archivos importantes estén seguros de ataques y accesos no autorizados. [Hidden Content] [hide][Hidden Content]]
      16. PwnFox PwnFox is a Firefox/Burp extension that provides usefull tools for your security audit. If you are a chrome user you can check [Hidden Content]. Single click BurpProxy Connect to Burp with a simple click, this will probably remove the need for other add-ons like foxyProxy. However, if you need the extra features provided by foxyProxy you can leave this unchecked. Containers Profiles PwnFox gives you fast access to Firefox containers. This allows you to have multiple identities in the same browser. When PwnFox and the Add container header option are enabled, PwnFox will automatically add an X-PwnFox-Color header to highlight the query in Burp. PwnFoxBurp will automatically highlight and strip the header, but you can also specify your own behavior with addons like logger++. Security header remover Sometimes it’s easier to work with the security header disabled. You can now do it with a single button press. Don’t forget to reenable them before testing your final payload. Headers stripped: Content-Security-Policy X-XSS-Protection X-Frame-Options X-Content-Type-Options [hide][Hidden Content]]
      17. BurpCrypto Burpcrypto is a collection of burpsuite encryption plug-ins, supporting AES/RSA/DES/ExecJs(execute JS encryption code in burpsuite). Usage Add this jar to your burpsuite’s Extensions. Switch to the BurpCrypto tab, select you to need the Cipher tab. Set key or some value. Press “Add processor”, and give a name for this processor. Switch to Intruder->Payloads->Payload Processing. Press “Add”, select “Invoke Burp extension”, and the select processor you just created. Press “Start attack”, have fun! Changelog v0.1.4.2 add aes zeropadding. [hide][Hidden Content]]
      18. itsMe


        PwnedPasswordsChecker - Search (Offline) If Your Password (NTLM Or SHA1 Format) Has Been Leaked (HIBP Passwords List V5) PwnedPasswordsChecker is a tool that checks if the hash of a known password (in SHA1 or NTLM format) is present in the list of I Have Been Pwned leaks and the number of occurrences. [hide][Hidden Content]]
      19. Yesterday
      20. CCleaner Professional es la versión más potente del famoso limpiador de PC con Windows de Piriform. Facilita acelerar una computadora lenta y mantener su actividad privada, automáticamente y en segundo plano. Con la confianza de millones y aclamado por la crítica, hay una razón por la cual CCleaner Pro es la herramienta de optimización de PC favorita del mundo. Fácil de usar, limpieza con un clic para que los principiantes puedan optimizar sus computadoras en segundos. Además, está repleto de características avanzadas para usuarios avanzados. Computadora más rápida Protección de la privacidad Monitoreo en tiempo real Limpieza programada Actualizaciones automáticas Soporte Premium [Hidden Content] [hide][Hidden Content]]
      21. itsMe

        Batch Text Replacer 2.13.5

        With Batch Text Replacer (formerly Batch Text Replacer), you have a powerful tool at hand to edit multiple text files simultaneously. The program contains a variety of powerful features to adjust the contents of text files as needed. For example, whole sections within a text can be replaced, inserted or removed. Furthermore, you can add or remove line breaks, change the encoding of text files using the integrated text converter and much more. All functions can be combined and saved as a template for reuse. The built-in backup function allows you to reverse the changes if necessary. By using the integrated file search of the program, files can be searched for certain keywords in advance, allowing you to narrow down the text files to be edited in a preselection (additionally to the separately usable filter). [Hidden Content] [hide][Hidden Content]]
      22. FlixGrab+ is an unique application for downloading entire NetFlix serials, TV shows, documentaries, movies. With the FlixGrab you can download and watch any NetFlix video offline on any device without spending internet traffic and without disrupting NetFlix limitations! Note: The application is for personal use only. DO NOT SHARE a downloaded material in any way. Note: It will not work for you, if you do not have an active account on Netflix. [Hidden Content] [hide][Hidden Content]]
      23. Last week
      24. itsMe

        Spotify Email Valid Checker

        Spotify Email Valid Checker 2020 (Without Proxies) [hide][Hidden Content]]
      25. itsMe

        FCommunity - Multi Checkers

        multi Checkers (Hma/Hulu/Spotify/Call of duty/Instagram/smtp2go/VyprVpn) in One Tool Named FCommunity [hide][Hidden Content]]
