Exploiting Easy RM to MP3 Converter on Windows 7 (Replica)

Around five years back, I had the privilege to learn buffer overflow from one of my dear mentor. Nevertheless, due to changes in the nature of my work, I didn’t get proper time to explore more.
Many of my colleague had shared me their challenges to understanding the concept, despite they were comfortable in programming; I had the other way round experience. I enjoyed the subject back then and perhaps I could say that I was the sole individual who had wrote an exploit for a Vulnerable Application (which we had downloaded from exploit-db.com; it was war-FTP).

However, I must confess here that I forgot almost everything apart from esp, eip, ebp..

Required Software:

Download the vulnerable app from here.

Download the Window 7 32 bit from here.  (By the way, don’t forget to take a snapshot, as after 30 days you might not access the Virtual Machine. I choose IE11 and VirtualBox).

Download Immunity Debugger from here. (If you are concerned with providing real email id, you can put some fake ID).

Download Mona from here. (I must confess, I have never used mona before)

I will not mention from where you will get,  Kali Linux, Virtualbox and Virtualbox extension etc..

Continue reading “Exploiting Easy RM to MP3 Converter on Windows 7 (Replica)”

rooting fristi

Due to global warming, even the places I stay becoming quite hot. Yeah, I am living in Dharamsala, just beneath the Himalayan mountainous region. I feel sorry for all the people who stays in extremely hot regions or cold regions because of the global warming, therefore, I promise I will use the trash-bin well …

Ok, lets drive in..

Step 01:

nmap -sC -sV -p- -A -T4 -oN nmap.log 192.168.56.101

Continue reading “rooting fristi”

Start Burpsuite using command line

If you don't want to start your burpsuite, which consumes all your available resources (RAM), then I think the following way will safe you. By the way, I have only 8GB RAM and my Kali Machine consumes 3GB, therefore, I need to be very careful when it comes to resource management, to enjoy a stable performance :-) 

java -jar -Xmx2G burpsuite_community_v1.7.36.jar & 

Want to know more? Read here. 

A beautiful Saturday with ‘Toppo’ machine

Tashi Delek everyone!

Today is a beautiful Saturday and I have a very good news to share with you that I have raised enough money to fund myself to pursue OSCP course for 90 days, however, I think I will raise little more so that I could apply a better internet connection also.

Oh yeah, today I rooted a machine which I rooted actually quite sometime back and can’t recall how I did it, so I think it is a good mild challenge to resume my preparation.

Continue reading “A beautiful Saturday with ‘Toppo’ machine”

“How to talk to anyone anytime anywhere” – A book I read in June

Hello there!

Although I didn’t mention much about the books I read in the blog, I write quite often about it on the Facebook.  And it appears to me that not many people appreciate the frequent posts of foods, places, selfies, activities etc.; and label it as a form of narcissist.  However, I disagree with such form of prejudice.

If you feel not comfortable to see the posts, you can either unfriend, unfollow or even block the person from your list of friends.

In many occasion, I find much of your happiness or unhappiness depends on your own choice.

Anyhow, like I mentioned in other posts that I am going to read at least one book monthly. And “How to talk to anyone anytime anywhere” by Larry King was my chosen book for June.

Continue reading ““How to talk to anyone anytime anywhere” – A book I read in June”