[Silica] SILICA v7.12

Alex Iliadis alex at immunityinc.com
Fri Sep 14 11:50:57 EDT 2012


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Immunity is proud to announce the release of SILICA v7.12!


- - STALKER support (https://stalker.immunityinc.com)

  + Option to automatically upload captured SILICA data from:
    . Passive session hijacking
    . Fake Access Point and Ad-Hoc mode
    . Traffic Rewrite modes
  + Ability to upload Pcap's from SILICA GUI:
    . Ethernet wired Pcap's
    . Wireless with or without radiotap header
  + STALKER mode to force redirection and collecting more data


- - Fake Access Point and Ad-Hoc supports radius like credential
capturing for attacking WPA1,2 and WEP enterprise configured networks
(PEAP, LEAP)


- - Fake Access point and Ad-Hoc mode with phishing attack capabilities:

  + Capture HTTP usernames and passwords for:
    . Facebook and Facebook Mobile
    . Twitter
    . Gmail (does not work against Google-Chrome)
  + Capture IMAP credentials
  + Capture any SMTP emails the user tries to send
  + Answer all DNS queries
  + Capture POP3 credentials
  + Easter-egg for Pandora mobile Apps (iphone and android maybe more!)

- - New VMware image with an improved wireless driver. Please note the
old VMware image will still be supported but updates for it will be
discontinued as of the next SILICA release. Contact
admin at immunityinc.com to receive an updated version.

- - Intelligent difficulty factor of attacking a network in the form of
a color next to the network name

- - New clientd exploit for Java forName/getField Method Invocation
Sandbox Bypass (CVE-2012-4681)

- - New option to allow wireshark sniffing on a particular channel

- - Update WPA cracking C module with more statistics about progress and ETA



Please note this update may take longer than usual to complete when
executing the post actions.



Videos can be found at:

Password stealing -
http://partners.immunityinc.com/movies/Silica-BrowserAutoFill-Take2.mov
AP less WEP cracking -
http://silica.immunityinc.com/AP_less_WEP_cracking.mov
Access point impersonation -
http://partners.immunityinc.com/movies/Access_point_impersonation.mp4
Custom traffic injection -
http://partners.immunityinc.com/movies/Traffic_injection.mp4
General overview -
http://www.immunityinc.com/movies/SILICA_7.5_New_Features.mov
Wireless Window  -
http://www.immunityinc.com/movies/SILICA_Wireless_Window.mp4
Key retrieval (WEP, LEAP, WPA1,2) -
http://partners.immunityinc.com/movies/Lightning_Demo_SilicaU02.mp4
Passive session hijacking (facebook, twitter, gmail etc) -
http://partners.immunityinc.com/movies/Lightning_Demo_SilicaU_01.mp4

If you have any further questions on updating please check our online
manual at: http://www.immunityinc.com/downloads/silica.pdf

SILICA Team
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.11 (GNU/Linux)
Comment: Using GnuPG with Mozilla - http://www.enigmail.net/

iEYEARECAAYFAlBTUmEACgkQ1j41DNEdEggh9QCeLxjJ9kS6mTLYzFfNK/kCydVw
WagAnA8jxRZleMdljpuTfFF1wKEXxFBO
=2zl3
-----END PGP SIGNATURE-----



More information about the Silica mailing list