0-Day Exploits and Tutorials « http://www.datastronghold.com | | Datastroghold. com unveils how exploits and other hacking techniques are performed , in a clear and concise method. frequently updated and always interesting. |
Canvas Exploit Platform « http://www.immunitysec.com/index.shtml | | A commercial exploit platform similar to metasploit. has built in memory resident shells that are cleared when the machine is rebooted. perfect for cleaning up after a penetration test. |
Ethical Hacking Course « http://www.infosecinstitute.com/courses/ethical_hacking_training.html | | Commercial hacker training course on how to write and use exploits. |
Exploiting Caller ID « http://www.artofhacking.com/orange.htm | | The software orange box is a free proof-of-concept tool which can spoof most forms of north american caller id. |
FrSIRT Exploits Archive « http://www.frsirt.com/exploits/ | | Archive of current 0day exploits from european and asian sources. french and english language content provided. |
Fyodor's Exploit World « http://insecure.org/sploits.html | | A large and descriptive exploit archive organized by affected operating systems. |
Hack A Day « http://www.hackaday.com/ | | A hardware hack every day. |
Ill Mob « http://www.illmob.org/ | | Home of a number of 0-day exploit authors. many creative trojan droppers and methods are released here. |
malware. com « http://www.malware.com/ | | A group that develops as well as discloses software exploits on many of the security mailing lists. mainly specializing with microsoft office and internet explorer vulnerabilitys. |
Metasploit Project « http://metasploit.org | | The metasploit project is an open source computer security project which provides information about security vulnerabilities and aids in penetration testing and ids signature development. its most well-known sub-project is the metasploit framework , a tool |
milw0rm. com « http://www.milw0rm.com | | Exploit database separated by exploit type (local , remote , dos , etc. ) |
PacketStorm Security « http://www.packetstormsecurity.org/ | | Packet storm is a non-profit organization comprising computer security professionals that are dedicated to providing the information necessary to secure the networks world-wide. it publishes new security information on a global network of websites. the or |
Phenoelit « http://phenoelit.de/fr/tools.html | | Custom built network tools designed to take advantage of the exploits within many network hardware systems. also the home of the k0ld ldap brute force utility. a must have for many professional penetration testers. |
PullThePlug WarGames « http://www.pulltheplug.org/ | | Place for programmers and hackers to hone their technical skills by completing challenging wargames and programming challenges. including network programming , defeating pax , buffer/heap overflows , format strings etc. |
Rosiello Security « http://www.rosiello.org | | Advisories , exploits , shellcodes , whitepapers , free software. |