Successfully reported this slideshow.
We use your LinkedIn profile and activity data to personalize ads and to show you more relevant ads. You can change your ad preferences anytime.

SecLists @ BlackHat Arsenal 2015

3,248 views

Published on

Our BlackHat Arsenal talk on the SecLists project.

Published in: Technology
  • Dating for everyone is here: ❤❤❤ http://bit.ly/2F4cEJi ❤❤❤
       Reply 
    Are you sure you want to  Yes  No
    Your message goes here
  • Dating direct: ❤❤❤ http://bit.ly/2F4cEJi ❤❤❤
       Reply 
    Are you sure you want to  Yes  No
    Your message goes here

SecLists @ BlackHat Arsenal 2015

  1. 1. SecLists The pentester’s companion
  2. 2. Why SecLists
  3. 3. Integrations ✓ Burp ✓ Kali ✓ Other distros ✓ Other tools
  4. 4. Contribution ✓ Submit via GitHub ✓ Submit via pull request ✓ Submit lists ✓ Submit recommendations ✓ Flame
  5. 5. Attribution
  6. 6. ✓ Kali ✓ Burp, ZAP ✓ Expanding Polyglots ✓ Expanding magic strings ✓ Expanding DOM XSS lists ✓ Dangerous functions ✓ SSRF file handlers ✓ Killer scripts ✓ NetSec lists / syntax / etc ✓ net use, nmap, tcpdump,
 psexec, metasploit, sqlmap, 
 hydra, medusa, ncrack, netstat,
 ncat, , project++
  7. 7. SecLists The pentester’s companion
  8. 8. SecLists The pentester’s companion ✓ https://github.com/danielmiessler ✓ @danielmiessler ✓ daniel@danielmiessler.com ✓ https://github.com/jhaddix ✓ @jhaddix ✓ j.haddix56@gmail.com https://github.com/danielmiessler/SecLists

×