ROPgadget
dnscat2
ROPgadget | dnscat2 | |
---|---|---|
2 | 5 | |
3,723 | 3,258 | |
- | - | |
4.6 | 0.0 | |
8 months ago | about 2 months ago | |
Python | PHP | |
GNU General Public License v3.0 or later | BSD 3-clause "New" or "Revised" License |
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
ROPgadget
-
Buffer overflows in CTFs
It may also include lines to find what is called "ROP gadgets" and libraries such as gdb to determine the offset for the buffer overflow.
-
Awesome CTF : Top Learning Resource Labs
ROP Gadget - Framework for ROP exploitation.
dnscat2
- HOUDINI: A web app with huge number of Docker Images for Network Security with run commands and cheatsheet (Hundreds of Offensive and Useful Docker Images for Network Intrusion )
-
Awesome CTF : Top Learning Resource Labs
Dnscat2 - Hosts communication through DNS.
- Are there any methods to protect against DNS tunneling (non-encrypted) in an open-source firewall appliance?
-
Awesome Penetration Testing
dnscat2 - Tool designed to create an encrypted command and control channel over the DNS protocol, which is an effective tunnel out of almost every network.
-
DNS exfiltration of data: step-by-step simple guide
Another commonly used tool is dnscat. I’ve seen it successfully used by adversaries and during pentests.
What are some alternatives?
write-ups
iodine - Official git repo for iodine dns tunnel
falcon-tools - Some tools and exploits for the NVIDIA Falcon v5 TSEC engines
Metasploit - Metasploit Framework
rp - rp++ is a fast C++ ROP gadget finder for PE/ELF/Mach-O x86/x64/ARM/ARM64 binaries.
RsaCtfTool - RSA attack tool (mainly for ctf) - retrieve private key from weak public key and/or uncipher data
beambreak - Boosted Board Reverse Engineering Project
pwntools - CTF framework and exploit development library
hashcat - World's fastest and most advanced password recovery utility
bettercap - The Swiss Army knife for 802.11, BLE, IPv4 and IPv6 networks reconnaissance and MITM attacks.
CyberChef - The Cyber Swiss Army Knife - a web app for encryption, encoding, compression and data analysis