Tools

The following are recent tools published by MWR InfoSecurity.

Tool

Needle

The iOS Security Testing Framework.

+ read more

Tool

Drozer

Comprehensive security and attack framework for Android.

+ read more

Tool

Timeinator

The timing attack performed by Timeinator is similar to the "sniper" mode in Burp Intruder, however instead of sending a single request for every payload, timeinator is able to send multiple requests for each payload and...

+ read more

Tool

SharpClipHistory

Users regularly copy to their clipboard sensitive data such as usernames and passwords. This makes the clipboard history valuable to attackers when gathering information in order to perform post exploitation activities such as lateral movement.

+ read more

Tool

SharpGPOAbuse

SharpGPOAbuse is a .NET application written in C# that can be used to take advantage of a user's edit rights on a Group Policy Object (GPO) in order to compromise the objects that are controlled by...

+ read more

Tool

dref

DNS Rebinding Exploitation Framework.

+ read more

Tool

Athena

Athena is developed in C# using the .NET framework. The key aim of the tool is to provide investigators and other security professionals with a streamlined way to create structured threat information from raw IOC data...

+ read more

Tool

WePWNise

WePWNise is a proof-of-concept python script that generates architecture independent VBA code to be used in Office documents or templates. It aims in introducing a certain level of automation and intelligence to dynamically deliver its payload,...

+ read more

Tool

An IDA Pro Plugin For Windows Driver Reversing

This is an IDA Pro plugin designed to assist reverse engineers when they are reversing Windows drivers or applications that interact with them. The source code is hosted on GitHub under a 3-clause BSD license.

+ read more

Tool

Parsing Mimikatz Log Files

On internal penetration tests and simulated attacks, mimikatz (or one of its derivatives) usually forms part of the standard toolkit. It has a huge number of features but perhaps the most common is the logonPasswords verb,...

+ read more

Tool

PEAS: Access internal fileshares through Exchange ActiveSync

PEAS is a Python 2 library and command line application for running commands on an Exchange ActiveSync server. It was created in an intern research project to assist security assessments by allowing easy access to the...

+ read more

Tool

icmptunnel: Pivot with Ping

Icmptunnel is a tool to tunnel IP traffic within ICMP echo request and response (ping) packets. It’s intended for bypassing firewalls in a semi-covert way, for example when pivoting inside a network where ping is allowed.

+ read more