<?xml version="1.0" encoding="utf-8"?>
<!-- generator="FeedCreator 1.7.2-ppt DokuWiki" -->
<?xml-stylesheet href="http://www.pentesterscripting.com/lib/exe/css.php?s=feed" type="text/css"?>
<rdf:RDF
    xmlns="http://purl.org/rss/1.0/"
    xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"
    xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
    xmlns:dc="http://purl.org/dc/elements/1.1/">
    <channel rdf:about="http://www.pentesterscripting.com/feed.php">
        <title>PenTester Scripting</title>
        <description></description>
        <link>http://www.pentesterscripting.com/</link>
        <image rdf:resource="http://www.pentesterscripting.com/lib/tpl/arctic_dark/images/favicon.ico" />
       <dc:date>2012-02-05T12:39:21+00:00</dc:date>
        <items>
            <rdf:Seq>
                <rdf:li rdf:resource="http://www.pentesterscripting.com/discovery/ssl_tests?rev=1307296727&amp;do=diff"/>
                <rdf:li rdf:resource="http://www.pentesterscripting.com/authors/jason_haddix?rev=1306781884&amp;do=diff"/>
                <rdf:li rdf:resource="http://www.pentesterscripting.com/discovery?rev=1295363221&amp;do=diff"/>
                <rdf:li rdf:resource="http://www.pentesterscripting.com/mapping?rev=1288710611&amp;do=diff"/>
                <rdf:li rdf:resource="http://www.pentesterscripting.com/mapping/nmap_open_port_stats?rev=1288710551&amp;do=diff"/>
                <rdf:li rdf:resource="http://www.pentesterscripting.com/exploitation?rev=1288015902&amp;do=diff"/>
                <rdf:li rdf:resource="http://www.pentesterscripting.com/exploitation/p0wnpr0xy?rev=1288015861&amp;do=diff"/>
                <rdf:li rdf:resource="http://www.pentesterscripting.com/mapping/userpass?rev=1287516110&amp;do=diff"/>
                <rdf:li rdf:resource="http://www.pentesterscripting.com/exploitation/sqlinjector?rev=1287515943&amp;do=diff"/>
                <rdf:li rdf:resource="http://www.pentesterscripting.com/exploitation/get_to_post?rev=1287515766&amp;do=diff"/>
                <rdf:li rdf:resource="http://www.pentesterscripting.com/discovery/domain_account_brute_force?rev=1287514437&amp;do=diff"/>
            </rdf:Seq>
        </items>
    </channel>
    <image rdf:about="http://www.pentesterscripting.com/lib/tpl/arctic_dark/images/favicon.ico">
        <title>PenTester Scripting</title>
        <link>http://www.pentesterscripting.com/</link>
        <url>http://www.pentesterscripting.com/lib/tpl/arctic_dark/images/favicon.ico</url>
    </image>
    <item rdf:about="http://www.pentesterscripting.com/discovery/ssl_tests?rev=1307296727&amp;do=diff">
        <dc:format>text/html</dc:format>
        <dc:date>2011-06-05T17:58:47+00:00</dc:date>
        <dc:creator>Robin Wood</dc:creator>
        <title>discovery:ssl_tests</title>
        <link>http://www.pentesterscripting.com/discovery/ssl_tests?rev=1307296727&amp;do=diff</link>
        <description>#!/usr/bin/env bash

# Description:
#       Script to extract the most security relevant details from a 
#       target SSL/TLS implementation by using sslscan.
# Author:  Raul Siles (raul _AT_ taddong _DOT_ com)
#          Taddong (www.taddong.com)
# Date:    2011-05-27
# Version: 1.0
#
# - Current SSL/TLS tests: 
#   SSLv2, NULL cipher, weak ciphers -key length-, strong 
#   ciphers -AES-, MD5 signed cert, SSL/TLS renegotiation
#
# Requires: 
# - sslscan
# https://sourceforge.net/projects/ssls…</description>
    </item>
    <item rdf:about="http://www.pentesterscripting.com/authors/jason_haddix?rev=1306781884&amp;do=diff">
        <dc:format>text/html</dc:format>
        <dc:date>2011-05-30T18:58:04+00:00</dc:date>
        <dc:creator>Jason Haddix</dc:creator>
        <title>authors:jason_haddix</title>
        <link>http://www.pentesterscripting.com/authors/jason_haddix?rev=1306781884&amp;do=diff</link>
        <description>Jason is a Sr Web Application Penetration Tester for HP. He focuses on external network and webapp assessments. He also is a regular contributor to ethicalhacker.net and various other online hackery publications. Find him at - @jhaddix on twitter and &lt;http://www.securityaegis.com&gt;</description>
    </item>
    <item rdf:about="http://www.pentesterscripting.com/discovery?rev=1295363221&amp;do=diff">
        <dc:format>text/html</dc:format>
        <dc:date>2011-01-18T15:07:01+00:00</dc:date>
        <dc:creator>Adrien de Beaupre</dc:creator>
        <title>discovery</title>
        <link>http://www.pentesterscripting.com/discovery?rev=1295363221&amp;do=diff</link>
        <description>Discovery is probably one of the most important portions of a penetration test.  It is where we try to determine what potential flaws exist in the target.  The scripts found in this section will focus on finding these flaws so that they can be used in the exploitation phase of the penetration test.  Some examples would be user name harvesting or scanning for routers exposed to the network.</description>
    </item>
    <item rdf:about="http://www.pentesterscripting.com/mapping?rev=1288710611&amp;do=diff">
        <dc:format>text/html</dc:format>
        <dc:date>2010-11-02T15:10:11+00:00</dc:date>
        <dc:creator>Robin Wood</dc:creator>
        <title>mapping</title>
        <link>http://www.pentesterscripting.com/mapping?rev=1288710611&amp;do=diff</link>
        <description>Mapping is the part of a penetration test where we attempt to determine what is part of the target.  For example, during a web pen-test, we would find all of the functionality of the site during this phase.  These scripts will help us fill out our target map.</description>
    </item>
    <item rdf:about="http://www.pentesterscripting.com/mapping/nmap_open_port_stats?rev=1288710551&amp;do=diff">
        <dc:format>text/html</dc:format>
        <dc:date>2010-11-02T15:09:11+00:00</dc:date>
        <dc:creator>Robin Wood</dc:creator>
        <title>mapping:nmap_open_port_stats - created</title>
        <link>http://www.pentesterscripting.com/mapping/nmap_open_port_stats?rev=1288710551&amp;do=diff</link>
        <description>This script will take a .nmap file from an nmap scan and give you a csv file containing a count of how many times each different port number was found open. For example:

	*  port, count
	*   22, 100
	*   53, 6
	*   80, 88

It only looks at TCP ports but to change to UDP is fairly easy, to get both just add a second hits hash and put on in one and one in the new one.</description>
    </item>
    <item rdf:about="http://www.pentesterscripting.com/exploitation?rev=1288015902&amp;do=diff">
        <dc:format>text/html</dc:format>
        <dc:date>2010-10-25T14:11:42+00:00</dc:date>
        <dc:creator>Robin Wood</dc:creator>
        <title>exploitation</title>
        <link>http://www.pentesterscripting.com/exploitation?rev=1288015902&amp;do=diff</link>
        <description>Exploitation is probably everyone favorite portion of a penetration test.  It is where we get to actually launch attacks.  The scripts in this section will target vulnerabilities in the target and the leverage these to further our penetration.

----------

TYPO3 CMS Insecure Randomness Exploit - REF: TYPO3-SA-2009-001 Detailed Advisory - c22.cc</description>
    </item>
    <item rdf:about="http://www.pentesterscripting.com/exploitation/p0wnpr0xy?rev=1288015861&amp;do=diff">
        <dc:format>text/html</dc:format>
        <dc:date>2010-10-25T14:11:01+00:00</dc:date>
        <dc:creator>Robin Wood</dc:creator>
        <title>exploitation:p0wnpr0xy - created</title>
        <link>http://www.pentesterscripting.com/exploitation/p0wnpr0xy?rev=1288015861&amp;do=diff</link>
        <description>Direct from Mark himself...

I wrote p0wnpr0xy because I was repeatedly launching SQLMAP and similar tools against various URLs as I was browsing a site.  The tools required that I grab the cookie and build the command line.   After manually launching SQLMAP a third time against a website I decided to automate it.   I gave more details and made a video on sample use</description>
    </item>
    <item rdf:about="http://www.pentesterscripting.com/mapping/userpass?rev=1287516110&amp;do=diff">
        <dc:format>text/html</dc:format>
        <dc:date>2010-10-19T19:21:50+00:00</dc:date>
        <dc:creator>Robin Wood</dc:creator>
        <title>mapping:userpass - created</title>
        <link>http://www.pentesterscripting.com/mapping/userpass?rev=1287516110&amp;do=diff</link>
        <description>#!/usr/bin/env python
#Username passwod generator - Mark Baggett
#Searches for Linkedin.com users of the target company.  
#Then lauches CEWL on each users LinkedIn Profile to build a custom password list per users
#If the user has a photo on linkedin, it will use TinEye to find other accounts or pages used by that individual and use CEWL on them
#If the user list &quot;Their website&quot;, facebook, myspace, etc in linkedin we build password lists off of those pages.
#The Default CeWL path assumes your u…</description>
    </item>
    <item rdf:about="http://www.pentesterscripting.com/exploitation/sqlinjector?rev=1287515943&amp;do=diff">
        <dc:format>text/html</dc:format>
        <dc:date>2010-10-19T19:19:03+00:00</dc:date>
        <dc:creator>Robin Wood</dc:creator>
        <title>exploitation:sqlinjector - created</title>
        <link>http://www.pentesterscripting.com/exploitation/sqlinjector?rev=1287515943&amp;do=diff</link>
        <description>#SQLInjector   -  MySQL Blind SQL injector.  Uses techniques outlined in this paper http://www.exploit-db.com/papers/13696/ to generate fewer queries.
# Written by Mark Baggett
# download from www.pauldotcom.com
# known issues;
# uses md5 for page comparison rather than searching for a string.   This can be a problem if the page includes dynamic banner ads.  
# M,N and 0-9 period and comma are not representative of the actual correct frequent character set
# lettertable() function needs be expan…</description>
    </item>
    <item rdf:about="http://www.pentesterscripting.com/exploitation/get_to_post?rev=1287515766&amp;do=diff">
        <dc:format>text/html</dc:format>
        <dc:date>2010-10-19T19:16:06+00:00</dc:date>
        <dc:creator>Robin Wood</dc:creator>
        <title>exploitation:get_to_post - created</title>
        <link>http://www.pentesterscripting.com/exploitation/get_to_post?rev=1287515766&amp;do=diff</link>
        <description>#XSS GET to POST script by mark baggett http://www.pauldotcom.com
#start it like this...    python get2post.py
#use it like this...  http://&lt;yourIPaddress&gt;:8080/?target=http://www.targeturl.com&amp;postparam=postvalue&amp;anotherparam=itsvalue&amp;postvariable=itsvalue

import os
import sys
import BaseHTTPServer
import urlparse
import re

class XSSWebHandler(BaseHTTPServer.BaseHTTPRequestHandler):
  clientfilter=&quot;&quot;
  def do_GET(self):
    self.send_response(200)
    self.end_headers()
    (ignore, ignore, i…</description>
    </item>
    <item rdf:about="http://www.pentesterscripting.com/discovery/domain_account_brute_force?rev=1287514437&amp;do=diff">
        <dc:format>text/html</dc:format>
        <dc:date>2010-10-19T18:53:57+00:00</dc:date>
        <dc:creator>Robin Wood</dc:creator>
        <title>discovery:domain_account_brute_force</title>
        <link>http://www.pentesterscripting.com/discovery/domain_account_brute_force?rev=1287514437&amp;do=diff</link>
        <description>The comments say it all...


#!/bin/sh

echo
echo &quot;*******************************************************&quot;
echo &quot;*                                                     *&quot;
echo &quot;*  Welcome to the Domain Account Bruteforce Tool.     *&quot;
echo &quot;*             By Sean gambles 21st Sep 2010           *&quot;
echo &quot;*******************************************************&quot;
echo
echo &quot;This tool makes use of the nmap smb-enum-users script,&quot;
echo &quot;by basically exporting the results, in a cleaned up form&quot;
echo &quot;int…</description>
    </item>
</rdf:RDF>

