An attack dictionary that can be used by fuzzing tools in pen testing endeavors. The format is simple with one attack string per line in the text file. Any fuzzing tool (such as E-Or or WSFuzzer) ...
VMware Linux image including some web applications and SOAP services for the purpose of pen testing education and practice. It has numerous entities already installed including WebGoat and WebMaven. ...
Script to create one sorted and unique wordlist from multiple wordlists. It takes as input N raw text files, a directory of them, or both. It parses the input and filters by string length ...
This primer will provide a basic level explanation of how seeded (or salted) hashes of clear text data are structured / created. The original formalization of this concept comes from RFC-3112. This ...
This case study will analyze a massive undertaking of centrally consolidating user data, and in particular passwords, from numerous sources. The effort goes way beyond just the securely capturing ...