Penetration Testing mailing list archives

Re: pen testing flash games.


From: "Jay" <jay.tomas () infosecguru com>
Date: Mon, 23 Jul 2007 12:32:03 -0400

http://web.archive.org/web/20070202160839rn_1/www.kinesissoftware.com/index.php

Jay

----- Original Message -----
From: Mister Dookie [mailto:misterdookie () gmail com]
To: atrysk () hushmail com,pen-test () securityfocus com
Sent: Wed, 18 Jul 2007 17:27:23 -0400
Subject: Re: pen testing flash games.

Hello,

If anybody finds and archived or active download location for
KineticFusion, please let us know. Thanks!

Regards,
John

On 7/18/07, Mister Dookie <misterdookie () gmail com> wrote:
Hello,

If anybody finds and archived or active download location for
KineticFusion, please let us know. Thanks!

Regards,
John

On 6/27/07, atrysk () hushmail com <atrysk () hushmail com> wrote:
Greetings!

You might also try Ave.  It's a "pay-to-play" application, but well
worth the $.

====
"IMPERATOR ?FLA v4.0 generates FLA files with Flash 6 (MX), Flash 7
(MX 2004), Flash 8 or Flash 9 (CS3) library from the selected input
SWF (compiled with Adobe's or Macromedia's Flash) and thereby makes
it possible to alter the content of a SWF even when the
corresponding FLA got lost. Furthermore it gives you the
opportunity to extract all classes (*.as files) and included media
files (pictures, sounds and videos) to separate files on your
system."
====

       http://www.ave-imperator.com/

T






On Tue, 26 Jun 2007 17:59:47 -0500 bugtraq () cgisecurity net wrote:

Someone mentioned decompiling, but didn't provide a link to a
useful
tool.
I use this myself.

Flare
http://www.nowrap.de/flare.html

"Flare processes an SWF and extracts all scripts from it. The
output
is written to a single text file. Only ActionScript is extracted,
no
text or images. Flare is freeware. Windows, Mac OS X and Linux
versions are available."

This site has some other cool tools as well.

Regards,
- Robert
http://www.cgisecurity.com/ Application Security news and more
http://www.webappsec.org/
http://www.qasec.com/



-------------------------------------------------------------------
-----
This List Sponsored by: Cenzic

Are you using SPI, Watchfire or WhiteHat?
Consider getting clear vision with Cenzic
See HOW Now with our 20/20 program!

http://www.cenzic.com/c/2020
-------------------------------------------------------------------
-----

--
Click to get a free credit repair consultation, raise your FICO score
http://tagline.hushmail.com/fc/Ioyw6h4d7lzJDAnpmMJ5a8si8M0bCsfRkJkV0yq4skmySbIaTyWPvf/


------------------------------------------------------------------------
This List Sponsored by: Cenzic

Are you using SPI, Watchfire or WhiteHat?
Consider getting clear vision with Cenzic
See HOW Now with our 20/20 program!

http://www.cenzic.com/c/2020
------------------------------------------------------------------------




------------------------------------------------------------------------
This List Sponsored by: Cenzic

Swap Out your SPI or Watchfire app sec solution for
Cenzic's robust, accurate risk assessment and management
solution FREE - limited Time Offer

http://www.cenzic.com/c/wf-spi
------------------------------------------------------------------------


------------------------------------------------------------------------
This list is sponsored by: Cenzic

Need to secure your web apps NOW?
Cenzic finds more, "real" vulnerabilities fast.
Click to try it, buy it or download a solution FREE today!

http://www.cenzic.com/downloads
------------------------------------------------------------------------

Current thread: