Full Version: Gso Coding
GAN_GR33N
i had a little idea while waiting for dcom2 and using z0rQuE's mediahacker exploit.

Why don't we all quit being lameass script kiddies and start coding our own stuff.

i think through working together (i sound like a feed the children commercial) we

could put together exploits and tools alot faster than waiting on them. this group

could allow everyone, beginners through advanced coders



just an idea, if lame let me know, if your down hiy me up at

mkeith@getsecured.net or post back to this board
Ollie
good idea, sounds gr8 bt im too much of a lame ass to learn how 2 code lol. bt do know alot abt using dos (cmd.exe) 2 get on remote pcs in alot of different ways and weaknesses of windows systems lol. so maybe i can be of sum assistance. i also have red hat 9 installed on this pc n i know a lil bit of unix bt not 2 advanced lol.
woutiir
fina idea, but the amount of c coders at this forum is pretty low..

Gr. woutiir
GSecur
Great Idea!, I'll work with you guys. I can program up to a certain amount in C and am always willing to push my limits. Name a project and let's start wink.gif
mrBob
hehe, the GSO exploit team cool.gif
woutiir
What we should do is open a new forum on this. So the ppl who are interested can work there. Publish new vulns there and ideas on how to exploit it. Maybe some tutorials to learn from eachother etc etc...

Just a thougth,

Gr. woutiir
GSecur
Done, wink.gif What else do you think we need.
GAN_GR33N
i think mostley we need ideas

there are a billion tools that would be useful and just have not been thought of
so ideas ideas ideas. and when we find a few we like we get hacking

i have been working on 2 tools

the first is a telnet scanner that works alot like grinder. it connects to port 23 grabs the banner and moves on. just because i do this alot by hand and have'nt seen a program that does it

the second is a prog called troll. when a single machine on a network is compromised troll can be started and will identify and try to takeover all other systems on the network

if anyone has any other ideas or comments please post them
GSecur
Both tools sound like good ideas, One question I have is what exploit are you using with troll?

What I would like to see is suggestions for tools in this thread, In two days I will collect all of the suggestions and then make it into a poll for members to vote on.

Then once a project is decided I will password protect that forum, and only the developers will have access. This will prevent some less than fovarable members stealing code wink.gif

Does that suit the developers?
GAN_GR33N
sounds fine to me
hookgr
i'm in guys !!!
i could help too.
i think we should make an exploit for some ports running in all windows systems and everywhere i asked they say they don't belong in a daemon!
they are for use with windows default firewall!!!
(but i personally think microsoft uses these for remote control (and for firewall) it's ports like: 1024, 1025 335 and others!!)

are you ready?
dArTh_BaLLs
hey guys this is a great idea... if you'd allow i'd love to help... i know some c/c++ and im willing to push my limits also... so if you'd allow it count me in
agopsi
Hey guys that is great idea;)and i`d like to help too;)
ArEs
well wondeful idea and i`ll help as far as ic an , but i think this should be done unpublic...well the splooits can be published but not all tools etc...u know u don`t have to enter a lot in to google as a total idiotic noob to get here...and i guess thats a little disturbing , with all the idiots coming here...this is just a suggestion but i`d add a htaccess to this smile.gif just monitor like the last 2 weeks , the idiotic questions have doubled ..just a matter of time until they start asking " hey can u teach me to hack, i wanna impress my friends" ...well thats my suggestion smile.gif
n3tw0rk
i will like to join the force as well smile.gif . I know C to a certain extent and willing to learn more. Though i have not worked specifically in exploit development, but i do know to a certain extent, how it is done, i have intermediate knowledge of linux as well.
Intervention
I'm good with delphi, maybe I can create some decent looking gui's to go along with any exploit.

peace out.
EarthsHero
I am up for this to, I am new to the forum, but i have been around a computers for years!
I am the most familiar with 4th generation coding and i do know tons of other skripts, and of course am ready to learn what ever need be, also am good with porting proxies, wingates,shells.
gimmy msg if u need me
CODE
ICQ:301859443
gogu258
I like that...what you say about autoupdate from windows?!How can M$ activate it without remote access...even if it's set on disable...so sorry for my english, it isn't my base language.
Dillinja
Some very good contributions guys! Cheers!

Have a feeling something very good is gonna come out of this! biggrin.gif
ComSec
QUOTE (Intervention @ Sep 22 2003, 09:20 PM)
I'm good with delphi, maybe I can create some decent looking gui's to go along with any exploit.

peace out.

now thats interesting.....you might be who were looking for ....read the

Help Wanted sticky in this forum.... we have the exploits just need a GUI building for them

what we are looking for is a GUI cross between BrutusAET and CGI4 by mehmet with proxy options...

and it must be able to scan also accept mutiple exploit examples like

thing to include

brute force U/P
scanner with vuln lists and ports
scripts options
proxy options
telnet
ftp
import list
save options...inc html format

exploits lists will include

PHP
IIS
Unicode
SQL
CGI
FTP
DB
XSS
Services

etc,etc

and also a U/P brute or worldlist

some tall order i know....but it would be some tool for pentesting security
biggrin.gif biggrin.gif

if your or anyone is interested then let us know and another project can be started

cheers
aisketui
cool.gif

i'm a reall beginner but i can help (be a tester) because i working in a place where there it a lots op machine with difference os (most of them are not uptodate patch)
z0rQuE
nice idea, but I don't think ayone of you guys know what writing an exploit actually is and how it works wink.gif


Edit by Shaun2k2
Don't be so negative towards us, what you say in absolute BS mate, a lot of us are experienced security experts (not me however), whereas people such as you give this board a bad name, and possibly wreck it for others. I can, and so can the others, explain exactly what an exploit is, I have written exploits in the past, and have a good idea as of where to start if asked to write any exploit needed, providing that I have the right information regarding the vulnerability. This goes for the others too.

Just a heads up.

GSecur
Somebody has a negative attitude.
ComSec
QUOTE (z0rQuE @ Sep 24 2003, 11:18 AM)
nice idea, but I don't think ayone of you guys know what writing an exploit actually is and how it works  wink.gif

great am curious...i admit am no coder .... got any of your examples...love to see them....inc programs if you have any...

i hope your not going to say they are not released ..

but then again i know you will come up with the goods.... looking forward wink.gif
woutiir
Well, great to see that alot of ppl are interested in the project. See the GSO Coding section for detailles on our missions...


Good luck everyone!

Gr. woutiir
Carlos
GSO Software...

This sounds very interesting... I particuarly like the idea of Troll in particular, the LanHacking utility, I've had somewhat of an idea to make something like Troll in the past but obviously not enough codgin knowledge.

I'm a begining C programer and I would like to join this group and help/learn from it.

Cheers!
blackdevil
i would like to join too...i'm coding in delphi and i'm currently working on a little client server project as backdoor for RA....

i could code some guis for ya projects if ya need....


so if ya need help, just tell me smile.gif

greetz
Pr0x
i'm in, hit me up
Chii
heya all
am interested in joining u all , dunnot know if u need any absolute beginner codding in c but i can test or make coffee lol:) just tell me ! i really wanna help by all means !!!
shoot me at 136007819


respect !
total_noob
im willing to help , im not sure if you guys consider vb or vb.NET a language lol but yea i do alittle coding in that... im in the process or learning C
coder
count me in, although i don't think it matters what language they are written in. although i'd suggest Perl. it's cross-platform, and even C coders can read it. anyway- coding an exploit is easy once you have a vuln. to exploit- it's just automating the steps to the vuln' in code. dry.gif
StreetZone_
I*m With You Guys , Me LoVeS This Idea!
SgtRush
I don't write code....yet. So as much as I admire this idea I won't be of much help. However I do think it is a good idea and I want to wish you all the best of luck. If my coding skills ever become more than a pipedream I will offer my assistance then. I look forward to your first published efforts as a team.
GroundZero
I think its a great chance for all to learn under eachohter! I want help you guys, i have experience in c and perl, so i think we can make some very useful tools or GUI's... On this board we have some very good coders, so let the party begin..wink.gif

"Welcome in the world of bytes and numbers...."

GroundZero
onlinepass
Hi all,

Every one is too enthusiastic to join the effort. Cool iam in too but with an Idea.

I have read articles regarding Buffer Overflows.....found a couple in the Windows OS... they might be Local Vuln ... but iam not an experienced Coder in C or C++ to write my own Code....as i was thinking of a project...and just today saw the GSO Project

The idea goes like this

We have shell code for every exploit and i read somewhere that the shell code can be REUSED by making simple changes in the offsets of EXPLOIT. If this was true then why cant we create a HEADER like <SHELL.H> which consists of a generic shell code and create methods for updating the shell according to the requirements....

may be this is just a vague idea...but i think its worth giving a thought...

=================

for the beginning exploit coders this will be like a good start.... to pick up one step at a time.


Please Comment on this

Regards,
Onlinepass
intranet
I posted similarly in another forum here, but I would love to help out. I have some experience in Perl on Windows and Linux systems, have done some GUI's for both. I have quite a few years linux exp. and run a few machines with different OS's for testing . Slackware is my linux flavor of choice, but also have access to a few machines running other ones.

I am really interested in this as a learning experience and would love to help in any way I can.
Codecfault
count me in, i know some C++
=k3Rn=
sounds really intresting.
i'll have an eye on this thread !
gman24
I know
C,C++,java,visual basic,qbasic,javascript,html,some other stuff.

Some
assembly
Linux commandline scripts


Free time is extremly limited though.(college, work)
This is a "lo-fi" version of our main content. To view the full version with more information, formatting and images, please click here.

 
Invision Power Board © 2001-2005 Invision Power Services, Inc.