Full Disclosure mailing list archives

FHTTP - The HTTP Fu***r


From: Xianuro GL <xianur0.null () gmail com>
Date: Tue, 23 Aug 2011 12:48:12 -0500

FHTTP [http://sourceforge.net/projects/fhttp/,
http://packetstormsecurity.org/files/104315]
By Xianur0 & Los Caballeros Team [hackingtelevision.blogspot.com]
Copyright (C) 2010-2011 Los Caballeros.

What is FHTTP?
FHTTP is a "framework for HTTP protocol attacks" consisting of more than
2000 lines.
Programmed entirely in Perl (with Perl-GTK user interface support).
A quick sample of FHTTP modules:
- DoS Tool - The HTTP killer (Nothing more to say :P)
- Proxy - Debugging/manipulation of queries/responses (Bypass: IDS's,
Firewalls, Proxies and more) - Recommended against "Snort" :P.
-- Proxy chaining ("CONNECT" method).
-- Evasion rules (Regex).
-- Evasion rules (Perl).
-- HTTPS removal.
- Fingerprint - Multiple fingerprinting methods that use, among other
things, keep-alive and malformed requests.
- Shodan Integration.
- Google Images integration.
- Tineye Integration.
- etc.
_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/

Current thread: