cloudxtreme / thicknet Goto Github PK
View Code? Open in Web Editor NEWThis project forked from spiderlabs/thicknet
TCP session interception and injection framework
License: GNU General Public License v3.0
This project forked from spiderlabs/thicknet
TCP session interception and injection framework
License: GNU General Public License v3.0
thicknet Steve Ocepek <[email protected]> Wendel G. Henrique <[email protected]> http://www.spiderlabs.com INTRODUCTION ============ thicknet is a TCP session manipulation and take-over framework. Cool stuff includes: o True L2 packet forwarding o Detection of already-running sessions o Ability to takeover sessions and issue commands o Modular implementation REQUIREMENTS ============ Perl 5.8+ Perl Modules / libraries: Net::Pcap Net::IP Net::Libdnet NetPacket::IP NetPacket::TCP NetPacket::Ethernet Data::HexDump AnyEvent EV USAGE ===== perl thicknet.pl [interface] If interface is not supplied, a prompt will appear to choose one. Ensure that your user account has root/admin privileges necessary to sniff packets. The program console is contextual, use '?' to obtain a list of commands at each level. When using injection, do not add a semicolon (;) to the end of your SQL statements -- this is not supported by the wire-side protocol. thicknet will automatically forward all packets not destined for the specified interface's IP - ENSURE THAT IP FORWARDING IS DISABLED. Use vamp.pl (included in this package) to initiate ARP poisoning and redirect packets to your own host. To enable protocol downgrade (Oracle only currently), use the 'd' command. Note that this may cause disconnects for some new sessions, depending on client version. The username and 8i hash will be printed to the screen for each successful downgrade. COPYRIGHT ========= thicknet - A tool to manipulate and take control of TCP sessions Created by Steve Ocepek and Wendel G. Henrique Copyright (C) 2010, 2011 Trustwave Holdings, Inc. This program is free software: you can redistribute it and/or modify it under the terms of the GNU General Public License as published by the Free Software Foundation, either version 3 of the License, or (at your option) any later version. This program is distributed in the hope that it will be useful, but WITHOUT ANY WARRANTY; without even the implied warranty of MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU General Public License for more details. You should have received a copy of the GNU General Public License along with this program. If not, see <http://www.gnu.org/licenses/>
A declarative, efficient, and flexible JavaScript library for building user interfaces.
๐ Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.
TypeScript is a superset of JavaScript that compiles to clean JavaScript output.
An Open Source Machine Learning Framework for Everyone
The Web framework for perfectionists with deadlines.
A PHP framework for web artisans
Bring data to life with SVG, Canvas and HTML. ๐๐๐
JavaScript (JS) is a lightweight interpreted programming language with first-class functions.
Some thing interesting about web. New door for the world.
A server is a program made to process requests and deliver data to clients.
Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.
Some thing interesting about visualization, use data art
Some thing interesting about game, make everyone happy.
We are working to build community through open source technology. NB: members must have two-factor auth.
Open source projects and samples from Microsoft.
Google โค๏ธ Open Source for everyone.
Alibaba Open Source for everyone
Data-Driven Documents codes.
China tencent open source team.