This paper describes the basic process of using the proxmark3 to clone Proxcards and then introduces ProxBrute, a new tool for brute forcing valid proxcard values.
2d0fd9f79fb7dbb051b1d0d095dea1dd28993622fb07d852518c7f7100181d3b
ProxBrute is a custom firmware written for the proxmark3. It extends the currently available firmware (revision 465) to support brute force attacks against proximity card access control systems. This version of ProxBrute requires the knowledge of a [once] valid tag value to vertically or horizontally escalate the tag's privileges.
a155a9dd000312c20ecbe6ca6bab1bc991183e9dea73578a76754b148ab1332a
ntop versions 3.3.10 and below suffer from a basic authentication null pointer denial of service vulnerability.
aad3f03488f5dcebf8a3f95a8a2dd8fd1ea219bc8c5bf2382388fed6da94eb39
Whitepaper called Defeating the iPhone Passcode.
4057ba42acd5baab592ee9f0a9a299e6dee396369e8d1034ae8a86a9271d0b89
FirmChannel Digital Signage version 3.24 suffers from a cross site scripting vulnerability.
bcb35fe0a2c40a10309b3795346c219cd63abc3846b20cc4b2ddf929a5a51479
Hammer Software MetaGauge version 1.0.0.17 suffers from a directory traversal vulnerability.
b7c38dcf52a5a106beaa86d8e29567cd70e6d8a1d3f7b880295137d31cfcfc8e
Cisco BBSM Captive Portal suffers from a cross site scripting vulnerability.
3678e1a7be3cdc235260ae444cf866aabaab44bd2264b0c8d01b9db67da91971
Swiki version 1.5 suffers from cross site scripting vulnerabilities.
9ab010fffeaf6a43e91740ca213df427dbb5e10d74dc70052a56e02070d5a49c
The Beehive/SendFile.NET Secure File Transfer appliance appears to have credentials hardcoded within the outboxWriteUnsent() function of the FTPThread.class file of SendFile.jar.
c8a5ae71651f04dc4e1c0bb97062c1dfd25c5c55219dfbc64c34da8a90a332be
This paper provides a step by step walk-through of popular wireless attacks. It also describes how to perform the new AP Impersonation attack using FreeRADIUS-WPE, the new EAP-MD5 Brute force attack, and a variety of other not-so documented attacks.
42a7ff7f286496f8417cfa70abc4a67d3d2149f5bb50e623e09c0ea73a33a0cb