Chrome Keylogger Extension: ChromeLogger

A keylogger and form grabber for Google Chrome that runs as an extension ChromeLogger is a keylogger and form grabber that ...


A keylogger and form grabber for Google Chrome
that runs as an extension


ChromeLogger is a keylogger and form grabber that runs as a Google Chrome extension. Since it’s a Chrome addon, it’s compatible with the latest version of Chrome on all OS’s (Windows, Mac, Linux).
ChromeLogger will save all keystrokes typed into webpages that are opened by Chrome. There’s also an option to capture form submissions (ie, search boxes, login forms). After installing, ChromeLogger will be completely silent and will automatically start recording keylogs.

ChromeLogger

ChromeLogger works by injecting javascript into all loaded web pages. The payload records keypresses using event listeners and saves them to Chrome’s storage. Unlike other browser keyloggers, ChromeLogger runs natively in Chrome (on all OS’s) without the need to install additional software.  The form grabber works in a similar way. Javascript is injected and event listeners are added for all forms. When a form is submitted, its data is saved to ChromeLogger’s storage. This allows form data transferred over SSL to be saved in plaintext.

ChromeLogger’s payload is written in pure JS and the log viewer is built using AngularJS

Installation Instructions

  1. Download the ChromeLogger extension.
  2. Open a new window/tab and go to: chrome://extensions/ (the extensions page).
  3. Enable “Developer Mode” (top right).
  4. Drag and drop the downloaded ChromeLogger extension into the Extensions page.

To view ChromeLogger logs and enable the form grabber, open your Extensions page, find ChromeLogger, and click on “Options”.

Source && Download

Chrome Keylogger Extension: ChromeLogger download Chrome Keylogger Extension: ChromeLogger Chrome Keylogger Extension: ChromeLogger

A New, Faster Ad Blocker: Adblock Fast

Just as webpages grew bloated with ads, so too have ad blockers grown bloated with little-used filtering rules and features that sap t...

A New, Faster Ad Blocker: Adblock Fast
Just as webpages grew bloated with ads, so too have ad blockers grown bloated with little-used filtering rules and features that sap their speed and hog your computer or device’s disk space, CPU cycles, and memory. Adblock Fast runs a mere 7 optimized filtering rules to accelerate pages 8x more but consume 6x less system resources than other ad blockers do.

Try Adblock Fast:
  • Chrome
  • opera-icon
  • IOS_9_Logo

A new, faster ad blocker for Chrome, Opera, and iOS 9


A New, Faster Ad Blocker: Adblock Fast benchmark

Exactly how much faster ?


1. 7,000x fewer filtering rules per page.

  • AdBlock: 49,002 rules
  • Adblock Plus: 49,002 rules
  • Adblock Fast: 7 rules

2. 7x less kilobytes of disk.

  • AdBlock: 843 KB
  • Adblock Plus: 543 KB
  • Adblock Fast: 97 KB

3. Accelerates page loading 8x.

  • No ad blocker: 3.17s (control)
  • AdBlock: 2.84s (0.33s faster)
  • Adblock Plus: 3.23s (0.06s slower)
  • Adblock Fast: 2.10s (1.07s faster)

4. Consumes 3x lower percentage of CPU.

  • AdBlock: 19.4%
  • Adblock Plus: 20.3%
  • Adblock Fast: 6.6%

5. Consumes 3x less megabytes of memory.

  • AdBlock: 162.5 MB
  • Adblock Plus: 158.0 MB
  • Adblock Fast: 58.5 MB


Source && Download

A New, Faster Ad Blocker: Adblock Fast download


Aircrack-ng 1.2 Release Candidate 2

Aircrack-ng  is an  802.11 WEP and WPA-PSK keys  cracking program that can recover keys once enough data packets have been captured. It impl...

Aircrack-ng is an 802.11 WEP and WPA-PSK keys cracking program that can recover keys once enough data packets have been captured. It implements the standard FMS attack along with some optimizations like KoreK attacks, as well as the PTW attack, thus making the attack much faster compared to other WEP cracking tools. aircrakngterm
Here is the second release candidate. Along with a LOT of fixes, it improves the support for the Airodump-ng scan visualizer. Airmon-zc is mature and is now renamed to Airmon-ng. Also, Airtun-ng is now able to encrypt and decrypt WPA on top of WEP. Another big change is recent version of GPSd now work very well with Airodump-ng. Aircrack-ng is an 802.11 WEP and WPA-PSK keys cracking program that can recover keys once enough data packets have been captured. It implements the standard FMS attack along with some optimizations like KoreK attacks, as well as the all-new PTW attack, thus making the attack much faster compared to other WEP cracking tools. In fact, Aircrack-ng is a set of tools for auditing wireless networks.

Aircrack-ng Changelog

Version 1.2-rc2 (changes from aircrack-ng 1.2-rc1) – Released 10 April 2015:
  • Airtun-ng: Adds WPA CCMP and TKIP decryption and CCMP encryption
  • Compilation: Added support for DUMA.
  • Makefile: Renamed ‘unstable’ to ‘experimental’.
  • Airodump-ng: Fixed XML sanitizing.
  • Airmon-ng: Airmon-zc is now stable enough to replace airmon-ng.
  • Manpages: Removed airdriver-ng manpage and references to it (forgot to do it before the previous release).
  • Manpages: Updated ‘see also’ references in all manpages.
  • PCRE: Added it in various places and docs.
  • WZCook: Fixed processing values stored in register.
  • Updated a few headers files (if_llc, ieee80211, ethernet and if_arp).
  • Travis CI: updated make parameter and add testing with pcre.
  • Compilation: de-hardcode -lpcap to allow specifying pcap libraries.
  • Makefile: Fixed installing/uninstalling Airdrop-ng documentation files.
  • Makefile: Fixed uninstalling ext_scripts.
  • Airodump-ng: Added new paths (and removed one) for OUI files and simplified logic to find the OUI file.
  • Aircrack-ng: Fixed ignoring -p when specified after -S.
  • Airmon-ng: fixes for openwrt busybox ps/grep issues which do not seem present in other versions of busybox
  • Airmon-ng: fix vm detection.
  • Airserv-ng: Fixed channel setting (and assert call).
  • Airodump-ng: Fixes to NetXML (unassociated clients missing and various other small bugs) and update the code to match current NetXML output.
  • Airodump-ng: Removed requirement for 2 packets before AP is written to output (text) files.
  • Airodump-ng: Fixed formatting of ESSID and display of WPA/WPA2 (as well as a bunch of other small fixes) in CSV file.
  • Airodump-ng: Fixed GPSd.
  • Airodump-ng: Allow to specify write interval for CSV, kismet CSV and NetXML files.
  • Airserv-ng: Fixed wrong station data displayed in Airodump-ng.
  • General: Fixed 64 bit promotion issues.
  • General: Fixed a bunch of uninitialized values and non-zeroed structures (upon allocating them).
  • General: Added Stack protection.
  • Various other small fixes and improvements.


Project Shield: Google Wants to Protect News and Human Rights Websites from DDOS Attack

DDOS aka Distributed Denial of Service (DDoS) attack is an attempt to make an online service unavailable by overwhelming it with traffic ...

google-project-shield
DDOS aka Distributed Denial of Service (DDoS) attack is an attempt to make an online service unavailable by overwhelming it with traffic from multiple sources. Attacker target a wide variety of important resources and present a major challenge to making sure people can publish and access important information.

SSLAuditor v4 (Opabinia)

Opabinia – GUI Based SSL Auditor Tool for Windows   hackers   June 15, 2015   Security Resources ,  Tools SSLAuditor/Op...


SSLAuditor/Opabinia – Utility to audit SSL and RDP services
SSLAuditor has five components that Looks for risks in the SSL an RDP Services. The Components can be seen in the graphic on below.


BypassWAF - Burp Plugin to Bypass Some WAF Devices

Add headers to all Burp requests to bypass some WAF products. This extension will automatically add the following headers to all reque...


Add headers to all Burp requests to bypass some WAF products. This extension will automatically add the following headers to all requests.
  X-Originating-IP: 127.0.0.1
  X-Forwarded-For: 127.0.0.1
  X-Remote-IP: 127.0.0.1
  X-Remote-Addr: 127.0.0.1

The Exploit-Database Git Repository

This is the official repository of The Exploit Database , a project sponsored by Offensive Security .


This is the official repository of The Exploit Database, a project sponsored by Offensive Security.

MITMf - Framework for Man-In-The-Middle attacks

Framework for Man-In-The-Middle attacks


Framework for Man-In-The-Middle attacks

Proxenet - Hacker Friendly Proxy for Web Application Penetration Tests

Proxenet is a hacker friendly proxy for web application penetration tests.


Proxenet is a hacker friendly proxy for web application penetration tests.

Linux Web Dashboard : linux-dash

Linux Web Dashboard   linux-dash  is a low-overhead monitoring web dashboard for a GNU/Linux machine Linux Dash is an open-source...

Linux Web Dashboard  linux-dash is a low-overhead monitoring web dashboard for a GNU/Linux machine
Linux Dash is an open-source dashboard to monitor Linux servers. It prides itself on its simplicity and ease of use. It can be very handy to have a high-level dashboard for a server instance. With a wide array of modules for server statistics, it also serves as a great visual debugging tool.

Linux Web Dashboard dash Linux Web Dashboard