Showing posts with label Silent Hacker. Show all posts
Showing posts with label Silent Hacker. Show all posts

Saturday, May 11, 2013

IP-Digger v 3.0 The WeB Xploit3r Released by Team FreaK Coderz


 



IP- Digger is free pentesting and exploiting tool coded by two young indian Programmers and Hackers
Commonly known as Manoj Nath ( Silent Hacker ) and Gurender Singh ( Un_noN ) .
After the successful release of their previous two version so called
<^> IP-Digger v1.0 :- The Initial Beginning
Download Link :-
http://zyan.me/OPsBZ
<^> IP-Digger v2.0 :- The Disaster
Now The Freak Coderz team has released the Ip-Digger v3.0 The WeB Xploit3r whic includes all new features
which a hacker required while exploiting a website .
It is tool used when you are not able to take down or hack the main website but by this tool you can get the server access.
Itz all user friendly and It is free for all =))
Features Of IP-DiggEr v3.0 The WeB Xploit3r
 PHP Server Based
1 - SQLI Websites        [+] Advance Search Mode Added
2 - XSS Websites         [+] Advance Search Mode Added
3 - LFI Websites         [+] Advance Search Mode Added
4 - RFI Websites         [+] Advance Search Mode Added
5 - Admin Panels         [+] Advance Search Mode Added
6 - Upload Vulnerability [+] Advance Search Mode Added
 ASP Server Based
7 - ASP SQLI Websites         [+] Advance Search Mode Added
8 - ASP XSS Websites          [+] Advance Search Mode Added
9 - ASP Admin Panels          [+] Advance Search Mode Added
10 - ASP Upload Vulnerability [+] Advance Search Mode Added
 Website Related Tools
11 - Wordpress Website Finder
12 - Joomla Website Finder
13 - Sub Domain Scanner                    [+] New Feature Added  
14 - Web Terminator ( DDos Attack )        [+] New Feature Added
15 - IP Resolver                           [+] New Feature Added
16 - NS Lookup                             [+] New Feature Added
17 - Joomla Website Vulnerability Scanner  [+] New Feature Added
Ip- DiggEr v3.0 The WeB Xploit3r Download Link :-
http://www.mediafire.com/?nnxeo9cjdcjr733
Like Our Team Page on Facebook :- https://www.facebook.com/FreakCoderz
Users suggestions will appreciated :)


Read More...

Saturday, May 4, 2013

|| Project IP-Digger v2.0 released by Team Freak Coderz ||




IP Digger is a free pentesting tool for finding the Vulnerable websites on the Particular IP Address Given By the Attacker :) . As it is the first tool of the Freak Coderz first =))
It works perfectly on Backtrack 5 r3 :))
 

Author :- Manoj Nath ( Silent Hacker ) 

Project Name :- IP-Digger v2.0 
 
IP-Digger is for the Hackers or we can pentesters or the web admins who want to find the vulnerable websites if they have the Shared hosting. This tool can minimize the risk of getting hacked by finding the Several Vulnerable websites.
For Hackers it is a great tool for finding the vulnerable website in their Target and exploit it and then Easily defacing :)

Tool Name :- IP-Digger v2.0 The Disaster
Coded by :- Manoj Nath aka Silent Hacker ( INDIAN HACKER )
Features of IP - Digger
1) ADVANCE SQLI Vulnerable Website Finder
2) ADVANCEXSS Vulnerable Website Finder
3) ADVANCELFI Vulnerable Website Finder
4) ADVANCERFI Vulnerable Website Finder
5) ADVANCE Admin Panels
6) ADVANCE Upload Vulnerability sites finder
7) ASP SERVER BASED SCRIPT ADDED
 Joomla and Wordpress website finder
9 BUgs LeeCher section added
Download Link :-
http://zyan.me/hFeVZ
Everyones suggestions will be appreciated :))Regards
Silent Hacker =))
Read More...

Saturday, April 6, 2013

|| 340+ Websites Hacked by Silent Hacker and Hind-Hacker from Team FreaK Coderz ||



Team FreaK Coderz strikes back Defacing 340+ websites . 
Defacers Details 
Silent Hacker aka Mr. FreaK and Hind-Hacker

List of Few defaced Websites :-
http://cafehaiti.com.br/
http://ibiapucarana.org.br/
http://akropolismarhotel.com/tmp/bca.html
http://ecotrata.com.br/tmp/bca.html
http://servtaxipb.com/tmp/bca.html
http://tendasul.com/tmp/bca.html
http://fossfoundation.com/
http://itzonemohali.com/
http://idcindia.org/tmp/bca.html
http://www.thedollartimes.com/
http://miladyabode.com/
http://offersandgift.info/
http://website-designqatar.com/
http://sqayasia.com/
http://www.localswired.com/
http://www.thedollartimes.com/
http://asrglobalservices.com/
http://www.ckpa.org/
http://gladiusads.com/
http://hidetreasure.com/

Link to all websites :- http://adf.ly/MN69C 



Read More...

Tuesday, February 26, 2013

Exploiting a Web server - A complete tutorial by Mr. FreaK aka Silent Hacker



Hello Everyone ! Today I Mr. Freak aka Silent Hacker and am here to tell you about " How to exploit any server " . This is guide for the beginners to learn How to Hack the website by Exploiting the Server .  Here are some common question asked by the Newbie regarding this.

Why this Method ?
- This method is used when the Target site is not vulnerable to any of the vulnerabilities such as LFI , RFI , SQLI , XSS etc. 

Any benefit of this method ?
- By this method attacker is able to get the server access by finding the vulnerable website in the server and then attacker tries to get the access of the website what the attacker wants.  


 So here we begin :-

First of the things we require :-

  • Any PHP shell ( i am using DK shell beta version )
  • A Target website (  http://www.pakistanescortservices.com )
  • Brain xD
As in my example Our target is  www.pakistanescortservices.com  first of all we will try to find any vulnerability in the website. In my case target website is made in Wordpress . So we  scan it with Wp-Scan which is a Backtrack tool . Leave Backtrack we try to explore more about it . So, if you remember about SYMLINK . Yeah that's right Wordpress or Joomla websites can be hacked through the method called Symlink . 
One more Question arises here How to do Symlink when we don't have the server access. 
That's the thing we are going to Learn :D
Now we need to get the Target website's IP address . As we know we have lots of ways to get the Website IP address you can use any of the method.
I am going to use Yougetsignal.com website. The reason of using this site is that from this Reverse IP Lookup website we can also come to know about how many websites are hosted in the same server and which are the hosted sites ( We can get the Approx. websites )

So from above Image you can see that we got the IP Address of the website.
Now the Main work begins :D
Copy the IP address and go to http://www.bing.com
In the search type :- 
" ip:173.192.51.226 "
 ( Without quotes )
Now we will get the sites hosted in same Ip address now we need to find the vulnerable website in the server. For that we will use this search command :-
ip:173.192.51.226 .php?id= 

We are using .php?id= because sqli website contains .php?id= in their respective Url's

Now we have got the website for checking whether the website is vulnerable or not we will put the " ' " single inverted comma at the end of the Url . If we will get the SQL Syntax error then it means the website is Vulnerable to SQL Injection .
In my case the vulnerable website is :- http://www.mansol.com.pk/job.php?query=165'
Now You can inject your sql injection queries to the website by manually or Using tool for SQL Injection Such as Havij , SQL Map etc.

My Manual SQL Injection tutorial link :- http://zyan.me/PzUyJ 
Links for Tools :- Havij 1.15 Pro :- Click here

Now after analyzing the Target I got the Admin's User Info as Follows :-
Username:- admin
      Password:- *********
*Password not shown as per the security reasons 
Now find the admin panel of the website . In Havij there is option " Find Admin " You can get the admin panel from there .
Put the username and Password there and Login!
Now we have to upload the shell in the website . We need to look for the upload area . In this website i got it in the File Manager and i upload my shell there.
After successfully i uploaded my shell . Now time to get the shell link of the Upload shell.
Now open your uploaded shell then in my shell i.e. DK shell beta version . This is a auto Symlink Option click that.
Now search for your target www.pakistanescortservices.com and click on the Green Highlighted text. There you will find the Website Symlinked :D
As the website is in Wordpress click on wp-config you will get the config file and put in the Database .

My Manual Symlink video link :- Symlink tutorial by Silent Hacker ( Also shown how to change the database config and using it )
My Symlink Video by Using Perl Script :- Symlink by using Perl Script
*You can get the tools in the video description :D

Now after getting the database change the username and password of the website. Login in the website and upload shell and Do whatever you want to do :)
Target taken down successfully :- http://www.pakistanescortservices.com/

Thanx for reading my Tutorial . If you are facing any problem regarding this topic you can contact me on Facebook :-  https://www.facebook.com/Sil3nt.H4x0r
Here you can get my all videos regarding Hacking tutorial :)









Read More...

Thursday, November 1, 2012

Two more Bangaldeshi Government sites hacked by Silent Hacker and Mr. FreaK India



Silent Hacker and Mr. FreaK India Hit again on BD server .This time they hacked 2 government sites + some other site on the same server. Last time while on going cyber war Silent Hacker hacked more than 40 bangladesh government sites .

Site link :-

Bangladesh Seri-culture Research and Technology Institute :P

http://www.bsrti.gov.bd/

http://legend-h.org/deface.php?id=817700


http://www.ptichittagong.gov.bd/

http://howladergroup.com/

http://khaaki.com/


http://muktakeshigirlsschool.com/

http://www.tapobannews.com/

Read More...

Sunday, October 7, 2012

Finance Department Batagram Pakistan Government sites hacked by Silent Hacker



Silent Hacker from Team Indishell defaced the Pakistan's Finance Government site . It's is not the first time the pakistani government server is penetrated by Indian Hackers . In last year almost 150+ pakistani government sites are owned by Indian Hackers .

Site link :- http://financebatagram.gov.pk/Sil3nT_H4x0r.html
Mirror Link :- http://www.hack-db.com/55870.html

Read More...