Penetration Testing mailing list archives

Re: pen testing flash games.


From: <atrysk () hushmail com>
Date: Wed, 27 Jun 2007 07:20:53 -0500

Greetings!  

You might also try Ave.  It's a "pay-to-play" application, but well 
worth the $.

====
"IMPERATOR °FLA v4.0 generates FLA files with Flash 6 (MX), Flash 7 
(MX 2004), Flash 8 or Flash 9 (CS3) library from the selected input 
SWF (compiled with Adobe's or Macromedia's Flash) and thereby makes 
it possible to alter the content of a SWF even when the 
corresponding FLA got lost. Furthermore it gives you the 
opportunity to extract all classes (*.as files) and included media 
files (pictures, sounds and videos) to separate files on your 
system."
====

       http://www.ave-imperator.com/

T






On Tue, 26 Jun 2007 17:59:47 -0500 bugtraq () cgisecurity net wrote:

Someone mentioned decompiling, but didn't provide a link to a 
useful  
tool.
I use this myself.

Flare
http://www.nowrap.de/flare.html

"Flare processes an SWF and extracts all scripts from it. The 
output  
is written to a single text file. Only ActionScript is extracted, 
no  
text or images. Flare is freeware. Windows, Mac OS X and Linux  
versions are available."

This site has some other cool tools as well.

Regards,
- Robert
http://www.cgisecurity.com/ Application Security news and more
http://www.webappsec.org/
http://www.qasec.com/



-------------------------------------------------------------------
-----
This List Sponsored by: Cenzic

Are you using SPI, Watchfire or WhiteHat?
Consider getting clear vision with Cenzic
See HOW Now with our 20/20 program!

http://www.cenzic.com/c/2020
-------------------------------------------------------------------
-----

--
Click to get a free credit repair consultation, raise your FICO score
http://tagline.hushmail.com/fc/Ioyw6h4d7lzJDAnpmMJ5a8si8M0bCsfRkJkV0yq4skmySbIaTyWPvf/


------------------------------------------------------------------------
This List Sponsored by: Cenzic

Are you using SPI, Watchfire or WhiteHat?
Consider getting clear vision with Cenzic
See HOW Now with our 20/20 program!

http://www.cenzic.com/c/2020
------------------------------------------------------------------------


Current thread: