cSploit / android

cSploit - The most complete and advanced IT security professional toolkit on Android.
http://www.csploit.org/
GNU General Public License v3.0
3.34k stars 1.1k forks source link

Social engineering #313

Open ETeissonniere opened 9 years ago

ETeissonniere commented 9 years ago

Hey, maybe we can add se-toolkit

tux-mind commented 9 years ago

some features:

feel free to add others to this issue.

maddog9696 commented 9 years ago

Man o man I love you guys. You keep reading my mind. I have a suggestion or comment, someone always beats me to it! I come back next day, BAM someone added the feature or fixed a bug. Unbelievable, you guys are seriously the BOMB!!! :D

Rubenoo commented 9 years ago

happy-oh-stop-it-you

<3

maddog9696 commented 9 years ago

The se toolkit would make just about every tool more usefull. Example: clone a page for DNS spoof. There is a app called wi.cap with a similar tool for text message spoofing and many other features similar to csploit. However, the app lacks an intutive ui and it can be very confusing to use!

guibais commented 9 years ago

@tux-mind spoofing pages, sms bomber.

Rubenoo commented 9 years ago

Call spoofer maybe?

Systemad commented 9 years ago

SMS bomber and Call spoofer does not belong to cSploit in my opinion.

tajnymag commented 9 years ago

I would say it does, but that's also just my opinion :)

Systemad commented 9 years ago

As this is an penetration suite I would imagine it's for networking, and by looking at it's current features it would be weird to see "SMS Bomber", " Call Spoofer" . Sending spoofed SMS can be used for various things so maybe. But not call spoofer. I might not have explained it very well and of course it's up to the cSploit developers.

guibais commented 9 years ago

@Systemad its for security spoofing calls or sms are all social engineering, giving less security to the users, and i think that is the objective of csploit being an app for pentest, for showing vulnerabilities.

Systemad commented 9 years ago

And how is spoofed calls related to pentesting? I mean, how can it show less security? Vulnerabilities? (I'm not trying to be rude, you might have more knowledge than me here ) :)

ETeissonniere commented 9 years ago

@Systemad, social engineering of course ! Le 2 oct. 2015 07:32, "Systemad" notifications@github.com a écrit :

And how is spoofed calls related to pentesting? I mean, how can it show less security? Vulnerabilities? (I'm not trying to be rude, you might have more knowledge than me here ) :)

— Reply to this email directly or view it on GitHub https://github.com/cSploit/android/issues/313#issuecomment-144928301.

evertking commented 9 years ago

https://m.youtube.com/watch?v=W41rY73Phss Here is a quick video using two apps, pagekite and the S.E.T app to make a quick and easy phishing page. 100% working and VERY easy to set up!

guibais commented 9 years ago

@Systemad social engineering is a pentesting, it's a penetration testing, you are testing ways to penetrate in the mind of some peoples to get some acess, they need to be aware and protected with this, spread your mind.

maddog9696 commented 9 years ago

I have tried looking everywhere for the set app. Can you please share were you obtained the set app from!?

xaitax commented 9 years ago

https://github.com/trustedsec/social-engineer-toolkit

Untamedwolf commented 6 years ago

a little help here!! I’m not able to change or add my public ip in credential harvesting. It comes with my internal ip as default and does not allow me to make any changes there. Tried everything I can to change it nothing seems to be working. :( Yes! I’m on virtual box