<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>ethicalhack3r &#187; Toolz</title>
	<atom:link href="http://www.ethicalhack3r.co.uk/category/toolz/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.ethicalhack3r.co.uk</link>
	<description></description>
	<lastBuildDate>Tue, 24 Jan 2012 13:20:01 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=</generator>
		<item>
		<title>[Video] WPScan and Metasploit&#8217;s Meterpreter</title>
		<link>http://www.ethicalhack3r.co.uk/security/video-wpscan-and-metasploits-meterpreter/</link>
		<comments>http://www.ethicalhack3r.co.uk/security/video-wpscan-and-metasploits-meterpreter/#comments</comments>
		<pubDate>Tue, 27 Sep 2011 13:10:56 +0000</pubDate>
		<dc:creator>ethicalhack3r</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Toolz]]></category>

		<guid isPermaLink="false">http://www.ethicalhack3r.co.uk/?p=16537</guid>
		<description><![CDATA[Video demonstrating the PoC of WPScan using Metasploit&#8217;s meterpreter to exploit a vulnerable WordPress plugin. WPScan and Metasploit&#8217;s Meterpreter from ryan dewhurst on Vimeo.]]></description>
		<wfw:commentRss>http://www.ethicalhack3r.co.uk/security/video-wpscan-and-metasploits-meterpreter/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Setting up Tor on BackTrack</title>
		<link>http://www.ethicalhack3r.co.uk/security/setting-up-tor-on-backtrack/</link>
		<comments>http://www.ethicalhack3r.co.uk/security/setting-up-tor-on-backtrack/#comments</comments>
		<pubDate>Thu, 08 Sep 2011 16:33:59 +0000</pubDate>
		<dc:creator>ethicalhack3r</dc:creator>
				<category><![CDATA[General]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Toolz]]></category>

		<guid isPermaLink="false">http://www.ethicalhack3r.co.uk/?p=16496</guid>
		<description><![CDATA[I was playing around with getting wpscan to run through the Tor network so I needed to setup Tor (from source) and Privoxy on BackTrack. These are the steps I took to setup Tor and Privoxy on Backtrack 5 R1. (wpscan does not yet support scanning through the Tor network) I am no Tor expert [...]]]></description>
		<wfw:commentRss>http://www.ethicalhack3r.co.uk/security/setting-up-tor-on-backtrack/feed/</wfw:commentRss>
		<slash:comments>3</slash:comments>
		</item>
		<item>
		<title>WordPress CD</title>
		<link>http://www.ethicalhack3r.co.uk/toolz/wordpress-cd/</link>
		<comments>http://www.ethicalhack3r.co.uk/toolz/wordpress-cd/#comments</comments>
		<pubDate>Wed, 13 Jul 2011 17:35:26 +0000</pubDate>
		<dc:creator>ethicalhack3r</dc:creator>
				<category><![CDATA[Toolz]]></category>

		<guid isPermaLink="false">http://www.ethicalhack3r.co.uk/?p=16472</guid>
		<description><![CDATA[I needed a research environment to help develop WPScan so I put together a VirtualBox virtual machine with every WordPress release installed (not including MU or BETA/Candidates). The download, untar and database creation was all automated. The manual bit was installing them all. Installed are the following versions of WordPress: wordpress-0.71-gold wordpress-1.0-platinum wordpress-1.0.1-miles wordpress-1.0.2-blakey wordpress-1.2-delta [...]]]></description>
		<wfw:commentRss>http://www.ethicalhack3r.co.uk/toolz/wordpress-cd/feed/</wfw:commentRss>
		<slash:comments>11</slash:comments>
		</item>
		<item>
		<title>Did lulzsec expose your friends password?</title>
		<link>http://www.ethicalhack3r.co.uk/security/did-lulzsec-expose-your-freinds-password/</link>
		<comments>http://www.ethicalhack3r.co.uk/security/did-lulzsec-expose-your-freinds-password/#comments</comments>
		<pubDate>Sun, 26 Jun 2011 23:45:22 +0000</pubDate>
		<dc:creator>ethicalhack3r</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Toolz]]></category>

		<guid isPermaLink="false">http://www.ethicalhack3r.co.uk/?p=16446</guid>
		<description><![CDATA[I assume you have all heard about Lulzsec over the past few months so I will not go into their backstory and instead get straight to the point. Yesterday, 26th June 2011, they released their last data dump on ThePirateBay (TPB) containing usernames and passwords from a few different sources. One of those sources was [...]]]></description>
		<wfw:commentRss>http://www.ethicalhack3r.co.uk/security/did-lulzsec-expose-your-freinds-password/feed/</wfw:commentRss>
		<slash:comments>9</slash:comments>
		</item>
		<item>
		<title>Introducing WPScan &#8211; WordPress Security Scanner</title>
		<link>http://www.ethicalhack3r.co.uk/security/introducing-wpscan-wordpress-security-scanner/</link>
		<comments>http://www.ethicalhack3r.co.uk/security/introducing-wpscan-wordpress-security-scanner/#comments</comments>
		<pubDate>Thu, 16 Jun 2011 13:29:01 +0000</pubDate>
		<dc:creator>ethicalhack3r</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Toolz]]></category>

		<guid isPermaLink="false">http://www.ethicalhack3r.co.uk/?p=16298</guid>
		<description><![CDATA[After creating the WordPress Brute Force Tool last weekend, I decided to create a bigger project out of it, called WPScan. WPScan is a black box WordPress Security Scanner written in Ruby which attempts to find known security weaknesses within WordPress installations. Its intended use it to be for security professionals or WordPress administrators to [...]]]></description>
		<wfw:commentRss>http://www.ethicalhack3r.co.uk/security/introducing-wpscan-wordpress-security-scanner/feed/</wfw:commentRss>
		<slash:comments>18</slash:comments>
		</item>
		<item>
		<title>WordPress Brute Force Tool</title>
		<link>http://www.ethicalhack3r.co.uk/security/wordpress-brute-force-tool/</link>
		<comments>http://www.ethicalhack3r.co.uk/security/wordpress-brute-force-tool/#comments</comments>
		<pubDate>Mon, 13 Jun 2011 13:36:22 +0000</pubDate>
		<dc:creator>ethicalhack3r</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Toolz]]></category>

		<guid isPermaLink="false">http://www.ethicalhack3r.co.uk/?p=16206</guid>
		<description><![CDATA[Following on from my previous post Patching WordPress Username Disclosure I got bored over the weekend and decided to implement Veronica Valeros&#8217;s username disclosure technique into a WordPress password brute force tool. It is nothing revolutionary or difficult to code, but it may come in handy one day on a pentest or web application assessment, [...]]]></description>
		<wfw:commentRss>http://www.ethicalhack3r.co.uk/security/wordpress-brute-force-tool/feed/</wfw:commentRss>
		<slash:comments>10</slash:comments>
		</item>
		<item>
		<title>DVWA 1.0.7 is here!</title>
		<link>http://www.ethicalhack3r.co.uk/security/dvwa-1-0-7-is-here/</link>
		<comments>http://www.ethicalhack3r.co.uk/security/dvwa-1-0-7-is-here/#comments</comments>
		<pubDate>Wed, 08 Sep 2010 21:28:42 +0000</pubDate>
		<dc:creator>ethicalhack3r</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Toolz]]></category>

		<guid isPermaLink="false">http://www.ethicalhack3r.co.uk/?p=788</guid>
		<description><![CDATA[After 9 months since the last release we are proud to present the all new Damn Vulnerable Web Application version 1.0.7. What&#8217;s new? The vulnerability help page has been improved. We now display the logged on username along with the vulnerability level and php-ids status. Blind SQL injection has been implemented. We now have official [...]]]></description>
		<wfw:commentRss>http://www.ethicalhack3r.co.uk/security/dvwa-1-0-7-is-here/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Skipfish &#8211; Automated web security scanner</title>
		<link>http://www.ethicalhack3r.co.uk/security/skipfish-automated-web-security-scanner/</link>
		<comments>http://www.ethicalhack3r.co.uk/security/skipfish-automated-web-security-scanner/#comments</comments>
		<pubDate>Sun, 21 Mar 2010 02:49:44 +0000</pubDate>
		<dc:creator>ethicalhack3r</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Toolz]]></category>

		<guid isPermaLink="false">http://www.ethicalhack3r.co.uk/?p=633</guid>
		<description><![CDATA[A couple of days ago (March 19th) Michal Zalewski famous for tools such as p0f and his excellent book 'Silence on the wire' announced the release of an open source automated web security scanner called Skipfish from the <a href="http://googleonlinesecurity.blogspot.com/">Google Online Security Blog</a>.

<strong>
</strong>

<img src="http://www.ethicalhack3r.co.uk/wp-content/uploads/2010/03/sf_name.png" alt="" title="sf_name" width="203" height="93" class="alignnone size-full wp-image-638" />

<strong>
</strong>

<blockquote>Key features:

<strong>High speed:</strong> pure C code, highly optimized HTTP handling, minimal CPU footprint - easily achieving 2000 requests per second with responsive targets. 

<strong>Ease of use:</strong> heuristics to support a variety of quirky web frameworks and mixed-technology sites, with automatic learning capabilities, on-the-fly wordlist creation, and form autocompletion. 

<strong>Cutting-edge security logic:</strong> high quality, low false positive, differential security checks, capable of spotting a range of subtle flaws, including blind injection vectors. </blockquote>]]></description>
		<wfw:commentRss>http://www.ethicalhack3r.co.uk/security/skipfish-automated-web-security-scanner/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>SecurityPodcasts Boxee App</title>
		<link>http://www.ethicalhack3r.co.uk/security/securitypodcasts-boxee-app/</link>
		<comments>http://www.ethicalhack3r.co.uk/security/securitypodcasts-boxee-app/#comments</comments>
		<pubDate>Tue, 19 Jan 2010 20:05:33 +0000</pubDate>
		<dc:creator>ethicalhack3r</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Toolz]]></category>

		<guid isPermaLink="false">http://www.ethicalhack3r.co.uk/?p=529</guid>
		<description><![CDATA[What is Boxee? Boxee is the best way to enjoy entertainment from the Internet and computer on your TV http://www.boxee.tv/ Boxee allows you to develop &#8216;Apps&#8217; which are basically XML files which grab RSS feeds. These Apps can be installed through remote repositorys. To truncate and combine all the security podcasts I used Yahoo! Pipes. [...]]]></description>
		<wfw:commentRss>http://www.ethicalhack3r.co.uk/security/securitypodcasts-boxee-app/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Dionaea &#8211; Low interaction honeypot</title>
		<link>http://www.ethicalhack3r.co.uk/security/dionaea-low-interaction-honeypot/</link>
		<comments>http://www.ethicalhack3r.co.uk/security/dionaea-low-interaction-honeypot/#comments</comments>
		<pubDate>Sun, 17 Jan 2010 19:34:26 +0000</pubDate>
		<dc:creator>ethicalhack3r</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Toolz]]></category>

		<guid isPermaLink="false">http://www.ethicalhack3r.co.uk/?p=506</guid>
		<description><![CDATA[After running Glastopf (Glastopf – Web Application Honeypot) for a few days and not getting any hits, I was a bit disappointed. I speculate that maybe you need to give web application honeypots more time to propagate across the Internet and get picked up by search engines to receive any significant hits, or even give [...]]]></description>
		<wfw:commentRss>http://www.ethicalhack3r.co.uk/security/dionaea-low-interaction-honeypot/feed/</wfw:commentRss>
		<slash:comments>9</slash:comments>
		</item>
	</channel>
</rss>

