Posts

Showing posts with the label RDP

Autordpwn V4.5 - The Shadow Assail Framework

Image
AutoRDPwn is a script created inwards Powershell as well as designed to automate the Shadow assault on Microsoft Windows computers. This vulnerability allows a remote aggressor to stance his victim's desktop without his consent, as well as fifty-fifty command it on request. For its right operation, it is necessary to comply alongside the requirements described inwards the user guide. Requirements Powershell 5.0 or higher Changes Version 4.5 • New ninja agency icon! • Automatic cleaning of Powershell history afterward execution • Now all dependencies are downloaded from the same repository • Many errors as well as bugs fixed • UAC & AMSI bypass inwards 64-bit systems • New module available: Remote Desktop Caching • New module available: Disable arrangement logs (Invoke-Phant0m) • New module available: Sticky Keys Hacking • New available module: Remote Desktop History • New available attack: Session Hijacking (passwordless) WARNING! This assault is real ...

Hayat - Auditing & Hardening Script For Google Cloud Platform

Image
Hayat is a auditing & hardening script for Google Cloud Platform services such as: Identity & Access Management Networking Virtual Machines Storage Cloud SQL Instances Kubernetes Clusters for now. Identity & Access Management Ensure that corporate login credentials are used instead of Gmail accounts. Ensure that at that spot are entirely GCP-managed service trouble concern human relationship keys for each service account. Ensure that ServiceAccount has no Admin privileges. Ensure that IAM users are non assigned Service Account User role at projection level. Networking Ensure the default network does non be inward a project. Ensure legacy networks does non exists for a project. Ensure that DNSSEC is enabled for Cloud DNS. Ensure that RSASHA1 is non used for key-signing cardinal inward Cloud DNS DNSSEC. Ensure that RSASHA1 is non used for zone-signing cardinal inward Cloud DNS DNSSEC. Ensure that RDP access is restricted from the Internet. Ensur...

Networkmanager - A Powerful Tool For Managing Networks Together With Troubleshoot Network Problems!

Image
H5N1 powerful tool for managing networks in addition to troubleshoot network problems! Features Network Interface - Information, Configure IP-Scanner Port-Scanner Ping Traceroute DNS Lookup Remote Desktop PuTTY ( requires PuTTY ) TightVNC ( requires TightVNC ) SNMP - Get, Walk, Set (v1, v2c, v3) Wake on LAN HTTP Headers Whois Subnet Calculator - Calculator, Subnetting, Supernetting Lookup - OUI, Port Connections Listeners ARP Table Languages English German Russian Spanish System requirements Windows 7/Server 2008 R2 or later .NET-Framework 4.6 RDP 8.1 ( How to install RDP 8.1 on Windows 7/Server 2008 R2?) Download NETworkManager

Goscan - Interactive Network Scanner

Image
GoScan is an interactive network scanner client, featuring auto-completion, which provides abstraction as well as automation over nmap. Although it started every bit a modest side-project I developed inward companionship to larn @golang , GoScan tin instantly hold upwardly used to perform host discovery, port scanning, as well as service enumeration non alone inward situations where beingness stealthy is non a priority as well as fourth dimension is express (think at CTFs, OSCP, exams, etc.), but also (with a few tweaks inward its configuration) during professional person engagements. GoScan is also peculiarly suited for unstable environments (think unreliable network connectivity, lack of " screen ", etc.), given that it fires scans as well as hold their dry reason inward an SQLite database. Scans run inward the background (detached from the top dog thread), then fifty-fifty if connecter to the box running GoScan is lost, results tin hold upwardly uploaded asynch...

Autordpwn V4.8 - The Shadow Ready On Framework

Image
AutoRDPwn is a script created inwards Powershell in addition to designed to automate the Shadow ready on on Microsoft Windows computers. This vulnerability allows a remote assaulter to persuasion his victim's desktop without his consent, in addition to fifty-fifty command it on request. For its right operation, it is necessary to comply alongside the requirements described inwards the user guide. Requirements Powershell 4.0 or higher Changes Version 4.8 • Compatibility alongside Powershell 4.0 • Automatic re-create of the content to the clipboard (passwords, hashes, dumps, etc.) • Automatic exclusion inwards Windows Defender (4 dissimilar methods) • Remote execution without password for PSexec, WMI in addition to Invoke-Command • New available attack: DCOM Passwordless Execution • New available module: Remote Access / Metasploit Web Delivery • New module available: Remote VNC Server (designed for legacy environments) • Autocomplete the host, user in addition t...

Goscan - Interactive Network Scanner

Image
GoScan is an interactive network scanner client, featuring auto-completion, which provides abstraction in addition to automation over nmap. Although it started every bit a small-scale side-project I developed inward lodge to larn @golang , GoScan tin lavatory straightaway live on used to perform host discovery, port scanning, in addition to service enumeration non solely inward situations where beingness stealthy is non a priority in addition to fourth dimension is express (think at CTFs, OSCP, exams, etc.), but also (with a few tweaks inward its configuration) during professional person engagements. GoScan is also peculiarly suited for unstable environments (think unreliable network connectivity, lack of " screen ", etc.), given that it fires scans in addition to keep their dry soil inward an SQLite database. Scans run inward the background (detached from the primary thread), in addition to then fifty-fifty if connectedness to the box running GoScan is lost, res...

Peekaboo - Tool To Enable Remote Desktop On The Targeted Machine

Image
PeekABoo tool tin post away live on used during internal penetration testing when a user needs to enable Remote Desktop on the targeted machine. It uses PowerShell remoting to perform this task. The tool solely plant if WinRM is enabled. Since Windows Server 2012 WinRM is enabled past times default on all Windows server operating systems, but non on customer operating systems. Note: Remote desktop is disabled past times default on all Windows operating systems. User would require local administrator password or administrator privileges on the server to enable RDP on a targeted machine. Screenshots Targeted motorcar on an internal network has RDP disabled: Enabling remote desktop service on a targeted motorcar past times pressing option 2 : Successfully enabled remote desktop service on a targeted machine: How to install? - git clone https://github.com/Viralmaniar/PeekABoo.git - cd PeekABoo - python peekaboo.py How create I purpose this? Press 1: This vol...

Brutedum - Beast Forcefulness Attacks Ssh, Ftp, Telnet, Postgresql, Rdp, Vnc Amongst Hydra, Medusa As Well As Ncrack

Image
BruteDum is a SSH, FTP, Telnet, PostgreSQL, RDP, VNC beast forcing tool amongst Hydra, Medusa too Ncrack. BruteDum tin dismiss function amongst aany Linux distros if they accept Python 3. Features of BruteDum SSH, FTP, Telnet, PostgreSQL, RDP, VNC amongst Hydra (recommended) SSH, FTP, Telnet, PostgreSQL, RDP, VNC amongst Medusa SSH, FTP, Telnet, PostgreSQL, RDP, VNC amongst Ncrack Scan victim's ports amongst Nmap Install too run on Linux You accept to install Python iii first: Install Python iii on Arch Linux too its distros: sudo pacman -S python3 Install Python iii on Debian too its distros: sudo apt install python3 You accept to install Hydra, Medusa, Nmap too Ncrack too: On Arch Linux too its distros: sudo pacman -S nmap hydra medusa ncrack On Debian too its distros: sudo apt install nmap hydra medusa ncrack git clone https://github.com/GitHackTools/BruteDum cd BruteDum python3 brutedum.py Screenshots Scanning victim's ports amongst N...

Seth - Perform A Mitm Assail Together With Extract Clear Text Credentials From Rdp Connections

Image
Seth is a tool written inwards Python in addition to Bash to MitM RDP connections yesteryear attempting to downgrade the connexion inwards guild to extract clear text credentials. It was developed to heighten awareness in addition to educate nigh the importance of properly configured RDP connections inwards the context of pentests, workshops or talks. The writer is Adrian Vollmer (SySS GmbH). Usage Run it similar this: $ ./seth.sh <INTERFACE> <ATTACKER IP> <VICTIM IP> <GATEWAY IP|HOST IP> [<COMMAND>] Unless the RDP host is on the same subnet every bit the victim machine, the final IP address must hold upward that of the gateway. The final parameter is optional. It tin comprise a ascendency that is executed on the RDP host yesteryear simulating WIN+R via primal press resultant injection. Keystroke injection depends on which keyboard layout the victim is using - currently it's solely reliable amongst the English linguistic communication ...

Rdpscan - A Quick Scanner For The Cve-2019-0708 Bluekeep Vulnerability

Image
This is a quick-and-dirty scanner for the CVE-2019-0708 vulnerability inward Microsoft Remote Desktop. Right now, at that topographic point are well-nigh 900,000 machines on Blue Planet Internet vulnerable to this vulnerability, thence many are to await a worm presently similar WannaCry together with notPetya. Therefore, scan your networks together with spell (or at least, enable NLA) on vulnerable systems. This is a command-line tool. You tin download the source together with compile it yourself, or you lot tin download i of the pre-compiled binaries for Windows or macOS from the link above. This tool is based exclusively on the rdesktop spell from https://github.com/zerosum0x0/CVE-2019-0708 . Primary use To scan a network, run it similar the following: rdpscan 192.168.1.1-192.168.1.255 This produces i of 3 results for each address: SAFE - if target has determined bot travel patched or at to the lowest degree require CredSSP/NLA VULNERABLE - if the target has...