Social-Engineer-Toolkit-SET  

From Aldeid
Jump to: navigation, search
Draft.png
DRAFT
THIS ARTICLE IS A DRAFT. IT MUST NOT BE CONSIDERED AS PUBLISHED YET.
Thank you for your comprehension.

1.  Spear-Phishing Attack Vectors
    1. Perform a Mass Email Attack
	1. Adobe CoolType SING Table 'uniqueName' Overflow (0day)
	2. Adobe Flash Player 'newfunction' Invalid Pointer Use
	3. Adobe Collab.collectEmailInfo Buffer Overflow
	4. Adobe Collab.getIcon Buffer Overflow
	5. Adobe JBIG2Decode Memory Corruption Exploit
	6. Adobe PDF Embedded EXE Social Engineering
	7. Adobe util.printf() Buffer Overflow
	8. Custom EXE to VBA (sent via RAR) (RAR required)  
	9. Adobe U3D CLODProgressiveMeshDeclaration Array Overrun
	10. Adobe PDF Embedded EXE Social Engineering (NOJS)
    2. Create a FileFormat Payload
    3. Create a Social-Engineering Template
    4. Return to Main Menu
2.  Website Attack Vectors
    1. The Java Applet Attack Method
    2. The Metasploit Browser Exploit Method
    3. Credential Harvester Attack Method
    4. Tabnabbing Attack Method
    5. Man Left in the Middle Attack Method
    6. Web Jacking Attack Method 
    7. Multi-Attack Web Method
    8. Return to the previous menu
3.  Infectious Media Generator 
    1. File-Format Exploits
    2. Standard Metasploit Executable
4.  Create a Payload and Listener
    1. Windows Shell Reverse_TCP               Spawn a command shell on victim and send back to attacker.
    2. Windows Reverse_TCP Meterpreter         Spawn a meterpreter shell on victim and send back to attacker.
    3. Windows Reverse_TCP VNC DLL             Spawn a VNC server on victim and send back to attacker.
    4. Windows Bind Shell                      Execute payload and create an accepting port on remote system.
    5. Windows Bind Shell X64                  Windows x64 Command Shell, Bind TCP Inline
    6. Windows Shell Reverse_TCP X64           Windows X64 Command Shell, Reverse TCP Inline
    7. Windows Meterpreter Reverse_TCP X64     Connect back to the attacker (Windows x64), Meterpreter
    8. Windows Meterpreter Egress Buster       Spawn a meterpreter shell and find a port home via multiple ports
    9. Windows Meterpreter Reverse HTTPS       Tunnel communication over HTTP using SSL and use Meterpreter
    10. Import your own executable              Specify a path for your own executable
5.  Mass Mailer Attack
    1. E-Mail Attack Single Email Address
    2. E-Mail Attack Mass Mailer
    3. Return to main menu.
6.  Teensy USB HID Attack Vector
    1. Powershell HTTP GET MSF Payload
    2. WSCRIPT HTTP GET MSF Payload
    3. Powershell based Reverse Shell Payload
    4. Internet Explorer/FireFox Beef Jack Payload
    5. Go to malicious java site and accept applet Payload
    6. Return to the main menu.
7   Update the Metasploit Framework
8.  Update the Social-Engineer Toolkit
9.  Help, Credits, and About
10. Exit the Social-Engineer Toolkit
Personal tools
Namespaces

Variants
Actions
Security
Menu
Misc
Toolbox