"Never let school get in the way of learning."
-- Mark Twain

[BL4CK] - Tools

Publicly available tools published by blacksec members. 

We are not responsible for your actions, this information has been published with the understanding that the viewer will use it responsibly and only for public security proof of concepts.  Exploiting vulnerable hosts may lead to jail time.

Tools

MSSQL 0wnage - MSSQL Brute Forcer



This tool has been released as a simple proof of concept.  This proof of concept is a glimpse at some of the more advanced Graphical tools we are preparing and packaging for the future.  This tool along with many others will help assist with both internal and external penetration tests.


$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$
$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$
$$$$$'`$$$$$$$$$$$$$'`$$$ MSSQL OWNAGE
$$$$$$  $$$$$$$$$$$  $$$$
$$$$$$$  '$/ `/ `$' .$$$$ Created By: Bigeazer
$$$$$$$$. i  i  /! .$$$$$
$$$$$$$$$.--'--'   $$$$$$ bigeazer@blacksecurity.org
$$^^$$$$$'        J$$$$$$
$$$   ~""   `.   .$$$$$$$ IF THERE IS A WILL THERE IS
$$$$$e,      ;  .$$$$$$$$ A WAY
$$$$$$$$$$$.'   $$$$$$$$$
$$$$$$$$$$$$.    $$$$$$$$
$$$$$$$$$$$$$     $$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$
$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$$


This was written so I can automate some portions of pentesting.  Now don't get me wrong this is not a ./autohack and done tool.  It will find the sql servers that have a default sa password and will try and bruteforce the sa password if it isn't set on default.