Showing posts with label Exploits. Show all posts
Showing posts with label Exploits. Show all posts

Friday, August 22, 2014

How To Test A Website Or Web Server For Vulnerabilities

Do you want to know how to run some basic tests on your web server to see if it is vulnerable? This tutorial will teach you how to penetrate your own webserver and test for vlunerabilities. This method is very traceable, so I suggest you only use it on your own web servers and with your Hosts permission.
In this tutorial you will learn how to use a simple tool to find vulnerabilities on your webserver. The tool is called Nikto and is ran on Kali Linux.
Step 1: Run Nikto on Kali Linux
We will use Kali because Nikto is preinstalled. Go to: "Kali Linux - Vulnerability Analysis - Misc Scanners - nikto" and run it.

a

Step 2:  Scan your server
To scan for vulnerabilities on a website type:
nikto -h example.com
You can use this to scan URLs as well as IP addresses. If you want to know the IP of a website just ping it.
Example:
ping example.com


Step 3:  Analyse the server vulnerabilities.
Nikto will give you a report of potential vulnerabilities on the websites server. The scan will give you a list of potential vulnerabilities a hacker could try to exploit on the webserver. Some of the vulnerabilities could be a false positive so be aware of that possibility. Some of the vulnerabilities will be have a OSVDB prefix, which stands for Open Source Vulnerability Database which is a vast database of known vulnerabilities. You can check the vulnerability IDs here: http://www.osvdb.org 

Warning: Only use this on your own server or servers you are authorized to Pen test.

 

Thursday, August 14, 2014

Hack Candy Crush Saga on Android

So, you want to hack Candy Crush on Android. You want to impress your friends, beat someones score and appear to be a Candy Crush God. Well, I am here to tell you how to hack Candy Crush and do all of those things.

 

First you are going to download the Android Xmod games App, as seen in the picture below and in my previous tutorial on how to hack clash of clans(Which you can find HERE ). Once you have installed the app you can find your mod for Candy Crush. The App can be downloaded in the Google Play Store HERE.

Screenshot_2014-08-14-13-16-47

Once you hit launch inside of the mod the game will start with the hack injected into the application. What the exploit does is it allows you to have unlimited lives, unlimited turns and multiply your score by up to 10 times. On level 2 I was able to get 50400 points by hardly doing anything. This is the perfect Candy Crush hack for anyone who is looking to cheat to rack up points. You can share your score on facebook to make your friends jealous of your skills, but in reality you were able to figure out a very simple exploit. You are welcome.

Screenshot_2014-08-14-13-39-56Screenshot_2014-08-14-13-19-52 Screenshot_2014-08-14-13-20-12 Screenshot_2014-08-14-13-20-41 Screenshot_2014-08-14-13-22-33

Friday, August 1, 2014

Hack Clash of Clans on Android

Today I stumbled upon a Clash of clans cheat that is amazing. I have seen this for iOS before, however I have never seen it for Android. The Clash of Clans Android Game Assistant will allow you to do a few very awesome and helpful cheats in Clash of Clans, such as:

  • Stay always online in Clash of clans so your base cannot be raided.

  • Search for a minimum of a resource such as Gold, Elixer and Dark Elixer in a battle.

  • When searching for battles with your preset amount of resources it will automatically and quickly look for more loot if the critera has not been met.

  • Sandbox attack, fight friends and anyone else without actually fighting them! Just to see if you would win and for practice.Screenshots:

    The app itself:
    Screenshot_2014-08-01-19-57-29

    The user interface:

    [metaslider id=63]

    The app that allows you to exploit Clash of Clans is called xmodgames and can be downloaded on the Google Play store for free.
    https://play.google.com/store/apps/details?id=com.xmodgame&hl=en