lists.openwall.net   lists  /  announce  owl-users  owl-dev  john-users  john-dev  passwdqc-users  yescrypt  popa3d-users  /  oss-security  kernel-hardening  musl  sabotage  tlsify  passwords  /  crypt-dev  xvendor  /  Bugtraq  Full-Disclosure  linux-kernel  linux-netdev  linux-ext4  linux-hardening  linux-cve-announce  PHC 
Open Source and information security mailing list archives
 
Hash Suite: Windows password security audit tool. GUI, reports in PDF.
[<prev] [next>] [day] [month] [year] [list]
Message-ID: <d6f24f6f-1fe9-6891-4103-77ad11090c23@riseup.net>
Date: Tue, 18 Aug 2020 01:18:17 +0200
From: psy <epsylon@...eup.net>
To: fulldisclosure@...lists.org
Subject: [FD] New Release: UFONet v1.6 - "M4RAuD3R!"...

Hi Community,

I am glad to present a new release of this tool:

  - https://ufonet.03c8.net

"UFONet is a free software, P2P and cryptographic -disruptive toolkit-
that allows to perform DoS and DDoS attacks; on the Layer 7 (APP/HTTP)
through the exploitation of Open Redirect vectors on third-party
websites to act as a botnet and on the Layer3 (Network) abusing the
protocol."

See these links for more info:

  - UFONet schema (WebAbuse Single DDoS attack) [1]
  - UFONet (v1.2 "HackRon") slides [2]

---------

Main options are:

  * DDoS (botnet) + DoS
  * Auto-update
  * Clean code
  * Documentation with examples
  * Web/GUI Interface
  * Proxy to connect to 'zombies' (ex: tor)
  * Change HTTP Headers (User-Agent, Referer, Host...)
  * Configure requests (Timeout, Retries, Delay, Threads...)
  * Search for 'zombies' on different search engines
  * Test vulnerabilities on 'zombies'
  * Download/Upload 'zombies' from/to others
  * Inspect a target (HTML objects sizes)
  * Set a place to 'bite' on a target (ex: big file)
  * Control number of rounds to attack
  * Apply cache evasion techniques
  * Advanced queries (ex: Verb tunneling exploitation)
  * Supports GET/POST
  * Multithreading
  * Order 'zombies' to attack you for benchmarking
  * Geomapping / Visual data
  * [...]

This release (v1.6) called "M4RAuD3R!" has added this new features:

  * Added:[DDoS] UDP amplification
  * Added:[DDoS] SNMP amplification
  * Added:[DoS] TCP-ACK flood
  * Added:[DoS] TCP-RST flood
  * Added:[DoS] IP-FRAGMENTATION flood
  * Added:[DoS] IP-OVERLAP flood
  * Added:[DoS] ICMP flood
  * Added:[DoS] UDP flood
  * Modified/Updated: Web/GUI
  * Updated Documentation
  * Updated FAQ (online)
  * Updated Website
  * [...]

---------

FAQ:

  - https://ufonet.03c8.net/FAQ.html

---------

Packages:

  * [source]:

  - https://code.03c8.net/epsylon/ufonet

  * [mirror]:

  - https://github.com/epsylon/ufonet

  * [.zip]:

  - https://ufonet.03c8.net/ufonet/ufonet-v1.6.zip

  * [.tar.gz]:

  - https://ufonet.03c8.net/ufonet/ufonet-v1.6.tar.gz

-------------------------

[1] - https://ufonet.03c8.net/ufonet/ufonet-schema.png
[2] - https://ufonet.03c8.net/ufonet/UFONet-v1.2-slides.pdf

Download attachment "0xB3C1FD78B8AC3776.asc" of type "application/pgp-keys" (3075 bytes)

Download attachment "signature.asc" of type "application/pgp-signature" (834 bytes)


_______________________________________________
Sent through the Full Disclosure mailing list
https://nmap.org/mailman/listinfo/fulldisclosure
Web Archives & RSS: http://seclists.org/fulldisclosure/

Powered by blists - more mailing lists

Powered by Openwall GNU/*/Linux Powered by OpenVZ