UFONet - is a tool designed to launch DDoS attacks against a target,
using 'Open Redirect' vectors on third party web applications, like botnet.
See this links for more info:
- CWE-601:Open Redirect:
http://cwe.mitre.org/data/definitions/601.html
- OWASP:URL Redirector Abuse:
https://www.owasp.org/index.php/OWASP_Periodic_Table_of_Vulnerabilities_-_URL_Redirector_Abuse
-------
Web:
http://ufonet.sf.net
-------
Main features:
+ Auto-update
+ Clean code (only needs python-pycurl)
+ Documentation with examples
+ Web/GUI Interface
+ Proxy to connect to 'zombies' (ex: tor)
+ Change HTTP Headers (User-Agent, Referer, Host...)
+ Configure requests (Timeout, Retries, Delay...)
+ Search for 'zombies' on google results (using a pattern or a list of
dorks)
+ Test 'Open Redirect' vulnerabilities on 'zombies'
+ Download/Upload 'zombies' from Community
+ Inspect a target (HTML objects sizes)
+ Set a place to 'bit' on a target (ex: big file)
+ Control number of rounds to attack
+ Apply cache evasion techniques
+ [...]
--------
Video:
-
http://ufonet.sf.net/ufonet/UFONet-v0.4b.webm
Source:
$ git clone
https://github.com/epsylon/ufonet
Package (.zip):
-
http://sf.net/projects/ufonet/files/ufonet-v0.4b.zip
RT:
-
https://twitter.com/psytzsche/status/544787094179414016
Forum:
-
https://forum.unsystem.net/t/ufonet-v0-4b-infection-released/414
-------
"This tool is NOT for educational purposes"