home.social

#scapy — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #scapy, aggregated by home.social.

fetched live
  1. T-CTF 2025. Разбор задачи «Капибегущая строка»

    Разберём задачу «Капибегущая строка» с соревнований T-CTF 2025, где хакеры взломали освещение жилого дома и использовали его как бегущую строку для того, чтобы сообщить свои требований.

    habr.com/ru/articles/996766/

    #TCTF #Капибегущая_строка #scapy #python #writeup #wireshark

  2. [Перевод] Практическое руководство по атакам на IPv6 в локальной сети

    Отключение IPv6 на шлюзе давно перестало быть надежной защитой. Протокол по умолчанию активен на большинстве клиентских машин, которые периодически отправляют в сеть служебные запросы вроде Router Solicitation. Именно эта «скрытая» активность открывает двери для целого класса атак, позволяющих перехватить трафик, подменить DNS или провести NTLM-Relay. В этой статье мы подробно, с примерами кода на Python/Scapy и командами для настройки, рассмотрим самые распространенные векторы атак на IPv6 в локальном сегменте: RA Spoofing: Как навязать себя в качестве шлюза по умолчанию. RDNSS Spoofing: Как стать DNS-сервером для современных ОС без DHCPv6. DHCPv6-атаки: Механика работы mitm6 и ее ручная реализация. Пассивный сбор данных: Как составить карту сети, просто слушая эфир. Материал будет полезен пентестерам, сетевым инженерам и системным администраторам, которые хотят понять реальные риски IPv6 и научиться им противостоять.

    habr.com/ru/articles/930526/

    #ipv6 #пентест #RA_Spoofing #RDNSS #DHCPv6 #Scapy #MITM #Kali_Linux #информационная_безопасность #infosec

  3. Latest #Wireshark nightlies have a heuristic HSFZ dissector that come enabled by default. I hope it does not cause too much trouble so that it can remain enabled. May be useful for you people into #carhacking and for BMW petrolheads ;)

    gitlab.com/wireshark/wireshark

    #scapy is also in the works, and more to come... :D

    github.com/secdev/scapy/pull/4
    github.com/secdev/scapy/pull/4
    github.com/secdev/scapy/pull/4

  4. Автоматизируем пентест с помощью Python

    Тестирование на проникновение всегда ограничено во времени. Если черные хакеры (или просто хакеры) могут потратить недели и месяцы на проведение APT атаки, то белые хакеры не могут позволить себе такую роскошь. Есть договор на проведение пентеста и в этом договоре четко указаны сроки. Для того, чтобы пентест был максимально эффективным, используются различные инструменты автоматизации, однако очень часто бывает так, что удобнее всего использовать собственные скрипты, так как часто возникает необходимость в некоторой кастомизации, когда нужно немного изменить код скрипта и конечно лучше менять то в чем хорошо разбираешься.

    habr.com/ru/companies/otus/art

    #pentest #python #scapy #пентест #тестирование_на_проникнование

  5. OpenAI launches ‘deep research’ tool that it says can match research analyst - why not have a few of these running all the time - the real time constant data feeds really get left out of the ai equation but i think it will start to catch up more for smb #free for commercial use #scan your data and use that as a framework for much more data #apa #citations #footnotes #McGyver ai #scapy

  6. Hello everyone.

    I shared a repo on github called Scapy Network Security Tools due to many requests,

    I wish everyone good work, you can star the repo for your support, I am also waiting for your pull requests to update it

    github.com/HalilDeniz/Scapy-Ne

    #scapy #networksecurity #ethicalhacking #scapytutorial #arpsniffing #pentesting #pythonhacking

  7. Hello everyone.

    We have updated our book that I published a short time ago in the most perfect way. It consists of 120 pages and 50 sections in total.

    buymeacoffee.com/halildeniz/e/

    #python #programming #scapy #networksecurity #pythonhacking #ethicalhacking #tool

  8. Today I learned that 3 years ago in my project someone wrote string/bytes/int/hex-based class for generating UDP frames in Python.

    It's all about manipulation of bytes and hexadecimal values. Totally unreadable.

    Why wasn't #ScaPy used right from the start? I don't know but now this spaghetti (with no docstrings, of course) seems unmaintainable.

    Even names of attributes do not match any protocol known to me.

    I hoped this task to be a simple refactor. Now it seems like rewriting from scratch.

  9. Come learn #IPv6 Network Security with #Scapy this February with Guillaume Valadon! Get a full understanding of IPv6 attacks and defenses. No prior IPv6 knowledge is required. the course uses cloud-based VMs so you don't have to worry about configuring your own systems for IPv6. Simply the best way to learn IPv6 from someone who's been teaching it since 2009 ringzer0.training/trainings/ip

  10. Come learn #IPv6 Network Security with #Scapy this February with Guillaume Valadon! Get a full understanding of IPv6 attacks and defenses. No prior IPv6 knowledge is required. the course uses cloud-based VMs so you don't have to worry about configuring your own systems for IPv6. Simply the best way to learn IPv6 from someone who's been teaching it since 2009 ringzer0.training/trainings/ip

  11. Two new @greynoise goodies for y’all from the Labs team:

    — a new blog post on how to extract HTTP payloads from the PCAPs generated by our Early Access Program sensors: greynoise.io/blog/quickly-tria using #python's #scapy in #RStats via the {reticulate} package (you can just use the python code tho if you're "one of those" 🐍 ppl)

    — a new @observablehqobservablehq.com/@greynoise/to — that shows summary stats from high-level GNQL queries like “vpn”, “classification”, etc.

  12. 🌐 Want to learn how to master Scapy and build your own IPv6 attacks? Then sign up for Guillaume Valadon's (@guedou) #cybersecurity training on #IPv6 Network Security with #Scapy!

    🎟️ ringzer0.training/trainings/ip

  13. 🌐 Want to learn how to master Scapy and build your own IPv6 attacks? Then sign up for Guillaume Valadon's (@guedou) training on #IPv6 Network Security with #Scapy!

    🎟️ ringzer0.training/trainings/ip

  14. ↩️ ICYMI - our #RETURN2WORKSHOPS videos are now available online! This weekend, expand your knowledge on #Scapy, #ARM64, and #Cryptography. Watch #free #infosec #workshops by our awesome instructors Guillaume Valadon (@guedou), Saumil Shah (@therealsaumil), and JP Aumasson (@veorq)!

    🎥 youtube.com/playlist?list=PLVd

  15. As a way to ring in the new year, we’re releasing the videos of the #RETURN2WORKSHOPS event of last December! First up is Guillaume Valadon (@guedou), who will tell you all about #Scapy, and how to use it to manipulate packets. Watch “SCAPY, from S to Y!” for #free!

    🎥 youtu.be/mzTZRf8Fw3Y

    Are you interested in learning more about Scapy? Then sign up for Guillaume’s #training in February: “#IPv6 Network Security with Scapy”. Go to our website for more details and to sign up!

    🎟️ ringzer0.training/trainings/ip

  16. 🎄‘T is the season of giving! And what better gift than knowledge? Join us for our FREE annual December Workshop #Advent Calendar with three awesome #workshops about #SCAPY, #ARM64, and #Cryptography!

    Which will you attend? Sign up for free now!

    🎁 ringzer0.training/workshops.ht