Full Disclosure mailing list archives

UFONet v-1.3 - [SLY] SingularitY!


From: psy <epsylon () riseup net>
Date: Sat, 9 Mar 2019 11:08:51 +0100

Hi,

I have released a new version for UFONet:

https://ufonet.03c8.net/

"UFONet - is a toolkit designed to launch DDoS and DoS attacks."

---------

See these links for more info:

  - CWE-601:Open Redirect [1]
  - OWASP:URL Redirector Abuse [2]
  - Botnet requests schema [3]

---------

Main options are:

  * DDoS (botnet) + DoS
  * Auto-update
  * Clean code
  * Documentation with examples
  * Web/GUI Interface
  * Proxy to connect to 'zombies' (ex: tor)
  * Change HTTP Headers (User-Agent, Referer, Host...)
  * Configure requests (Timeout, Retries, Delay, Threads...)
  * Search for 'zombies' on different search engines
  * Test vulnerabilities on 'zombies'
  * Download/Upload 'zombies' from/to others
  * Inspect a target (HTML objects sizes)
  * Set a place to 'bite' on a target (ex: big file)
  * Control number of rounds to attack
  * Apply cache evasion techniques
  * Advanced queries (ex: Verb tunneling exploitation)
  * Supports GET/POST
  * Multithreading
  * Order 'zombies' to attack you for benchmarking
  * Geomapping / Visual data
  * [...]

This release (v1.3) called "SingularitY!" has added this new features:

  + TCP STARVATION attack [*]
  + DNS Amplification attack
  + New searh engines: StarPage + DuckduckGo
  + GUI:RANKING
  + Code patches from 1.2.1 (review TIMELOG)

-----

FAQ:

- https://ufonet.03c8.net/FAQ.html

---------

Packages:

  * [source]:

  - https://code.03c8.net/epsylon/ufonet

  * [mirror]:

  - https://github.com/epsylon/ufonet

  * [.zip]:

  - https://ufonet.03c8.net/ufonet/ufonet-v1.3.zip

  * [.tar.gz]:

  - https://ufonet.03c8.net/ufonet/ufonet-v1.3.tar.gz

-------------------------

Media/Contribution:

  * VIDEO: v1.3 - "UFONet - [SLY] SIngularitY!":

  - https://ufonet.03c8.net/ufonet/ufonet-sly.ogv

-------------------------

[1] - http://cwe.mitre.org/data/definitions/601.html
[2] -
https://www.owasp.org/index.php/OWASP_Periodic_Table_of_Vulnerabilities_-_URL_Redirector_Abuse2
[3] - https://ufonet.03c8.net/ufonet/ufonet-schema.png

Happy hacking!

-----

[*] RFC793 lacks an exception (tested ~100.000srv with an incorrect
IPTABLES) and shutdown server in minutes (sometimes seconds).



Attachment: signature.asc
Description: OpenPGP digital signature


_______________________________________________
Sent through the Full Disclosure mailing list
https://nmap.org/mailman/listinfo/fulldisclosure
Web Archives & RSS: http://seclists.org/fulldisclosure/

Current thread: