Monday, September 28, 2015
A keylogger and form grabber for Google Chrome that runs as an extension ChromeLogger is a keylogger and form grabber that ...
A keylogger and form grabber for Google Chrome
that runs as an extension
ChromeLogger
is a keylogger and form grabber that runs as a Google Chrome extension.
Since it’s a Chrome addon, it’s compatible with the latest version of
Chrome on all OS’s (Windows, Mac, Linux).
ChromeLogger
will save all keystrokes typed into webpages that are opened by Chrome.
There’s also an option to capture form submissions (ie, search boxes,
login forms). After installing, ChromeLogger will be completely silent
and will automatically start recording keylogs.

ChromeLogger
works by injecting javascript into all loaded web pages. The payload
records keypresses using event listeners and saves them to Chrome’s
storage. Unlike other browser keyloggers, ChromeLogger runs natively in
Chrome (on all OS’s) without the need to install additional software.
The form grabber works in a similar way. Javascript is injected and
event listeners are added for all forms. When a form is submitted, its
data is saved to ChromeLogger’s storage. This allows form data
transferred over SSL to be saved in plaintext.
ChromeLogger’s payload is written in pure JS and the log viewer is built using AngularJS
Installation Instructions
- Download the ChromeLogger extension.
- Open a new window/tab and go to: chrome://extensions/ (the extensions page).
- Enable “Developer Mode” (top right).
- Drag and drop the downloaded ChromeLogger extension into the Extensions page.
To view ChromeLogger logs and enable the form grabber, open your Extensions page, find ChromeLogger, and click on “Options”.
Source && Download
Monday, September 28, 2015
Just as webpages grew bloated with ads, so too have ad blockers grown bloated with little-used filtering rules and features that sap t...
Just
as webpages grew bloated with ads, so too have ad blockers grown
bloated with little-used filtering rules and features that sap their
speed and hog your computer or device’s disk space, CPU cycles, and
memory. Adblock Fast runs a mere 7 optimized filtering rules to
accelerate pages 8x more but consume 6x less system resources than other
ad blockers do.
Try Adblock Fast:
A new, faster ad blocker for Chrome, Opera, and iOS 9
Exactly how much faster ?
1. 7,000x fewer filtering rules per page.
- AdBlock: 49,002 rules
- Adblock Plus: 49,002 rules
- Adblock Fast: 7 rules
2. 7x less kilobytes of disk.
- AdBlock: 843 KB
- Adblock Plus: 543 KB
- Adblock Fast: 97 KB
3. Accelerates page loading 8x.
- No ad blocker: 3.17s (control)
- AdBlock: 2.84s (0.33s faster)
- Adblock Plus: 3.23s (0.06s slower)
- Adblock Fast: 2.10s (1.07s faster)
4. Consumes 3x lower percentage of CPU.
- AdBlock: 19.4%
- Adblock Plus: 20.3%
- Adblock Fast: 6.6%
5. Consumes 3x less megabytes of memory.
- AdBlock: 162.5 MB
- Adblock Plus: 158.0 MB
- Adblock Fast: 58.5 MB
Source && Download

Saturday, June 27, 2015
Aircrack-ng is an 802.11 WEP and WPA-PSK keys cracking program that can recover keys once enough data packets have been captured. It impl...
Aircrack-ng is an 802.11 WEP and WPA-PSK keys cracking program that can recover keys once enough data packets have been captured. It implements the standard FMS attack along with some optimizations like KoreK attacks, as well as the PTW attack, thus making the attack much faster compared to other WEP cracking tools.

Here is the second release candidate. Along with a LOT of fixes, it improves the support for the Airodump-ng scan visualizer. Airmon-zc is mature and is now renamed to Airmon-ng. Also, Airtun-ng is now able to encrypt and decrypt WPA on top of WEP. Another big change is recent version of GPSd now work very well with Airodump-ng.
Aircrack-ng is an 802.11 WEP and WPA-PSK keys cracking program that can recover keys once enough data packets have been captured. It implements the standard FMS attack along with some optimizations like KoreK attacks, as well as the all-new PTW attack, thus making the attack much faster compared to other WEP cracking tools. In fact, Aircrack-ng is a set of tools for auditing wireless networks.
Aircrack-ng Changelog
Version 1.2-rc2 (changes from aircrack-ng 1.2-rc1) – Released 10 April 2015:
Airtun-ng: Adds WPA CCMP and TKIP decryption and CCMP encryption
Compilation: Added support for DUMA.
Makefile: Renamed ‘unstable’ to ‘experimental’.
Airodump-ng: Fixed XML sanitizing.
Airmon-ng: Airmon-zc is now stable enough to replace airmon-ng.
Manpages: Removed airdriver-ng manpage and references to it (forgot to do it before the previous release).
Manpages: Updated ‘see also’ references in all manpages.
PCRE: Added it in various places and docs.
WZCook: Fixed processing values stored in register.
Updated a few headers files (if_llc, ieee80211, ethernet and if_arp).
Travis CI: updated make parameter and add testing with pcre.
Compilation: de-hardcode -lpcap to allow specifying pcap libraries.
Makefile: Fixed installing/uninstalling Airdrop-ng documentation files.
Makefile: Fixed uninstalling ext_scripts.
Airodump-ng: Added new paths (and removed one) for OUI files and simplified logic to find the OUI file.
Aircrack-ng: Fixed ignoring -p when specified after -S.
Airmon-ng: fixes for openwrt busybox ps/grep issues which do not seem present in other versions of busybox
Airmon-ng: fix vm detection.
Airserv-ng: Fixed channel setting (and assert call).
Airodump-ng: Fixes to NetXML (unassociated clients missing and various other small bugs) and update the code to match current NetXML output.
Airodump-ng: Removed requirement for 2 packets before AP is written to output (text) files.
Airodump-ng: Fixed formatting of ESSID and display of WPA/WPA2 (as well as a bunch of other small fixes) in CSV file.
Airodump-ng: Fixed GPSd.
Airodump-ng: Allow to specify write interval for CSV, kismet CSV and NetXML files.
Airserv-ng: Fixed wrong station data displayed in Airodump-ng.
General: Fixed 64 bit promotion issues.
General: Fixed a bunch of uninitialized values and non-zeroed structures (upon allocating them).
General: Added Stack protection.
Various other small fixes and improvements.
Saturday, June 27, 2015
DDOS aka Distributed Denial of Service (DDoS) attack is an attempt to make an online service unavailable by overwhelming it with traffic ...
DDOS aka Distributed Denial of Service (DDoS) attack is an attempt to make an online service unavailable by overwhelming it with traffic from multiple sources. Attacker target a wide variety of important resources and present a major challenge to making sure people can publish and access important information.
Monday, June 15, 2015
Opabinia – GUI Based SSL Auditor Tool for Windows hackers June 15, 2015 Security Resources , Tools SSLAuditor/Op...
Opabinia – GUI Based SSL Auditor Tool for Windows
SSLAuditor/Opabinia – Utility to audit SSL and RDP services
SSLAuditor has five components that Looks for risks in the SSL an RDP Services. The Components can be seen in the graphic on below.
Wednesday, June 10, 2015
Add headers to all Burp requests to bypass some WAF products. This extension will automatically add the following headers to all reque...
Add headers to all Burp requests to bypass some WAF products. This
extension will automatically add the following headers to all requests.
X-Originating-IP: 127.0.0.1
X-Forwarded-For: 127.0.0.1
X-Remote-IP: 127.0.0.1
X-Remote-Addr: 127.0.0.1
Wednesday, June 10, 2015
This is the official repository of The Exploit Database , a project sponsored by Offensive Security .
Wednesday, June 10, 2015
Framework for Man-In-The-Middle attacks
Framework for Man-In-The-Middle attacks
Wednesday, June 10, 2015
Proxenet is a hacker friendly proxy for web application penetration tests.
Proxenet is a hacker friendly proxy for web application
penetration tests.
Wednesday, June 03, 2015
Linux Web Dashboard linux-dash is a low-overhead monitoring web dashboard for a GNU/Linux machine Linux Dash is an open-source...
Linux Web Dashboard linux-dash is a low-overhead monitoring web dashboard for a GNU/Linux machine
Linux Dash is an open-source dashboard to monitor Linux servers. It prides itself on its simplicity and ease of use. It can be very handy to have a high-level dashboard for a server instance. With a wide array of modules for server statistics, it also serves as a great visual debugging tool.
