Author Archive for: ‘muts’

  • Offsec Web Server Hacked

    For the past couple of weeks we have been watching escalating DOS attacks against our web server, specifically against the Metasploit Unleashed Wiki. Today as we were watching our apache logs, we noticed unusual requests. A quick analysis showed that our web server was compromised …

    Read More →
  • Offensive Security Exploit Archive

    For the past few months, Offensive Security has been working with additional exploit addicts (Rel1k) at maintaining the integrity of the Milw0rm exploit archive. For those who don’t know, Milw0rm has been dormant in the past few weeks, for reasons which remain with str0ke (he …

    Read More →
  • Metasploit Rising

    The Framework that we all know and love is about to take a massive leap into the future.   The MSF crew as well as the MSF itself has been placed under Rapid 7′s corporate umbrella. The framework will continue to be free, running under …

    Read More →
  • News and Updates

    We’ve got a bunch of exciting news, I’ll try to make this as short and concise as possible. The guys from the Metasploit project have teamed up with Offensive Security to significantly expand our current Metasploit Unleashed public course. Work is underway! Apropos MSFU, some …

    Read More →
  • Free Online Information Security Training By Offensive Security

    We are finally ready to present the free information security training – Metasploit Unleashed – Mastering the Framework. This resource will be a living, breathing Metasploit documentation entity. We will keep on updating and adding new modules and chapters as the MSF evolves. For a …

    Read More →
  • Sniffing DECT Phones – The Details

    5M7X has completed his DECT write-up, and it rocks. As DECT phone manufacturers rarely give any indication about their phone encryption capabilities, the only reliable way to check the security of your phone is to test it yourself.

    Read More →
  • Social Engineering at its best

    In conjunction with a team of social engineers, penetration testers and information security experts, www.social-engineer.org is opening its “virtual” doors today. The team at Offensive Security has been working with many contributors and specialists to put together the Webs Official Framework for Social Engineering. www.social-engineer.org …

    Read More →
  • Sniffing DECT Phones with BackTrack

    BIG FAT HAIRY NOTE: IT IS ILLEGAL TO RECORD PHONE CONVERSATIONS IN MANY COUNTRIES. For a list of state privacy laws in the US, click here and here. Thanks to 5m7x, dedected is soon to be added to the BackTrack repositories. In our internal tests, …

    Read More →
  • Metasploit Unleashed – Information Security Training at its best.

    The “Metasploit Unleashed” online courseware is almost ready! We had several technical issues which delayed the release of the course by a couple of weeks. Here’s a quick teaser, showing some of the TOC. We expect the online version to be released in a week …

    Read More →
  • Microsoft IIS FTP 5.0 Remote SYSTEM Exploit

    A remote Microsoft FTP server exploit was released today by Kingcope, and can be found at http://milw0rm.com/exploits/9541, A quick examination of the exploit showed some fancy manipulations in a highly restrictive environment that lead to a”useradd” type payload. The main issue was the relatively small …

    Read More →
Page 4 of 6« First...«23456»