WendelSecurity

Home | Papers | Tools | Projects | Links | Me



FTS-WS-DicTool – A program to generate or manipulate several kinds of wordlists, to test how 
strong are passwords, cookies, etc. Features:

- Incremental Brute Force (characters).
- The characters can be defined as numerical, alpha, alpha-numeric, alpha-numeric + symbols.
- Start and end number of characters that should be used to generate the wordlist.
- Open a wordlist and convert each word utilizing the “elite conversion”.
- Open a wordlist and convert each word to: caps on, caps off, only first caps on, inverted word.
- Generate a wordlist based in date of birth.
- Generate a wordlist from 2 to 4 incremental characters followed by birth.
- Generate a wordlist of default passwords used by Terra Provider (Brazil).
- Open a wordlist and increment (before or after) characters on each word.
- Generate a wordlist based in personal data.
- Open a file (Ex.: e-mail, article, information from MSN, ICQ, etc) and generate a wordlist. 

NOTE: I wrote this program for my personal use, so I don't care about validate the order 
of inputed   paramters, so you must follow the order to get it working correct! I will not lose 
my time fixing it, if you want fix it feel free to fix and send me a patch and I will update it and 
keep your credits. ;)


FTS-WS-FakeSU – A malware that modify PATH environment variable to record passwords 
typed in /bin/su application. Features:

- Configuration script that automatize installation.
- README in Portuguese & English.
- Only capture the password if the login via su doesn't fail.
- Encrypt with Rijndael 256 bits (Advanced Encryption Standard).
- Send password file via e-mail.
- Delete password file after send it via e-mail.
- Secure deletion (WIPE).
- Error message from su (incorrect password) is used in language of system.
- Decryptor of password file is embed in the package.
- Strings like passwd, e-mail, etc, are extracted in run-time (Anti strings).


FTS-WS-HU LKM for Linux kernel 2.4 wich:

- Hide user from /etc/passwd and /etc/shadow file.
- Hide user from w, who, ..., commands.
- Hide process executed by user.
- Hide messages from user name or user IP in syslog.
- Hide connections from netstat, tcptop, ...commands.
- Hide module from modules list.
- Other features less importants.

NOTE.: This version is not the last release, since I lost my last release in a damage in my hard-disk.


WS-DNS-BFX - Extract valid hosts from DNS servers that doesn't allow zone transfers.
Support IPv4, IPv6, Threads and extract multiple IPs in servers with NLB, HA, etc.


WS-bugBear - Detect and remove the well know BugBear virus.
 


 

GNU public license