• XSS.stack #1 – первый литературный журнал от юзеров форума

В этой теме можно использовать автоматический гарант!

Статус
Закрыто для дальнейших ответов.

b1ack

CODER
Пользователь
Регистрация
28.06.2023
Сообщения
344
Реакции
42
Гарант сделки
1
Депозит
0.1
b1ack Sniffer/сниффер

Description:
SNIFFER malware is a commonly used name for malicious software designed to target ecommerce websites and steal sensitive payment information from online shoppers.

Technical information
  • PHP & Javascript Sniffer - With multiple varieties of injection methods
  • Ability to save the sniffed data in the local storage of the victim and later retrieve it , Or sends the data to our server
  • Bypass CORS protection - Cross Origin Resource Sharing
  • Ability to block neighbor sniffers
  • The code is undetectable by any anti-virus scan
  • The sniffer can hide from anti-virus scan,google bots,crawlers,scrapers,spiders & third party bots
  • Anti-Debugging - We hide the code as well the panel URL with double layer of encryption and use of junk code , So even If someone decides to debug , The browser will crash . Sniffer will stop working when devtools are opened on the browser
  • Supports Native Forms, Iframes & Redirects
  • Custom Redirects plus Unique Admin panel for each user - When someone browses the domain without the proper endpoint , you can redirect them to any website , The endpoint of the admin panel can be customized according to the user's wish
  • Easy to use panel with manuals and tutorials and guidance from me
  • Postgres Server
  • Auto-Installation Script - Setups your fresh server with everything and server hardening against attacks
  • Periodic Auto-Backup\
  • CORS origin - Control who can access our sniffer , example if you input your target site - the target site can request the sniffer but if someone else uses the injection code - and they are not in our allowed list - SNiffer will not work
Features:
Home Page:

  • View statistical Data of the sniffed cards by Today,Yesterday,Weekly,Monthly,Total Cards
  • Line Charts to compare the data with date,cards & sites
  • Doughnut Chart - See the below images to understand
Tools:
  • Injector - You can generate the injection code here
  • There are 2 methods - One by specifying the endpoint of the url so the sniffer will work only on that page - Second - Sniffer will work on the whole site ( lots of data)
  • Option to use PHP sniffer and Javascript Sniffer
  • JavaScript Cloak - Cloaks the injection code with google tag manager,stripe,website,anti-virus and other real looking code
  • Fake Forms - I have created fake-forms which can be used for iframe targets - I have created forms for famous gateways - Stripe,Paypal,Authorize so just copy the code and inject your sniffer into it and you can start sniffing from iframes as well.
  • Use the fake-forms , detect the original code from the site , and paste the code - It will block the real iframe , and show our fake form and when users complete filling our fake form , it will vanish and original form will take it's place
View Cards:
  • Check all the cards received - Sort by site & date
  • Check all the raw data received - Sort by site & date
Misc :
  • ON site Manual
  • Frequently Asked Questions
  • Security Log - View Detailed Information of the User's Actions

View Detailed History of cards received by sites
On Site Parser - Paste the data and parse them in any format you want - Useful feature for sellers
Extract the cards - You can select the fields and content you need and your required format
On Site Checker - We use luhn algorithm to check the cards , You can also use other card checkers - by adding your api keys (make sure you have balance on your account)
Manage Bases - You can manage bases , by daily .by name .by country,by sites
When you extract cards or bases , bases are saved and you can view them later in the panel
Ability to block neighbor Sniffer - Provide their injection code and sniffer will block neighbors
URL of the server , cannot be decoded or detected in most of the cases \
Panel Security Features - Session Time is fixed - If we face attacks - Automatically the panel goes in lockdown mode , but we can still receive data from sites
Immune to SQL attacks and other attacks
Best Anti-Hacking security by hacker
Ability to ignore duplicate cards while extracting


Price:
3500 $

Upgrade Fees:
Specified on each update

Services :
I can create iframes and redirect forms

My Other Services:
https://xss.pro/threads/92250/
https://xss.pro/threads/92278/

Other Board:

Partnership:
I accept partnership , I take shops from 30 cards per day , with 20-30 % my cut

Terms & Conditions:

License agreement:

● I am not responsible for the buyer's actions

● Resale of the goods is prohibited , and you will be banned instantly as all the variants are unique.

● You agree not to leak the tool

● If anyone of the agreed conditions are broken , you will be banned.

● I oblige to fix detections , bugs & vulnerabilities , if I fail , Buyer get's full refund

● All disputes are resolved by the forum arbiter in accordance with the rules, regulations and common sense

● When making a transaction, both parties accept this agreement

Contacts :

Message me on private for my jabber

Always verify me , via Forum Private Message
I am also present on exploit - https://forum.exploit.in/profile/149857-b1ack/

b1ack sniffer.jpg



b1ack Sniffer/сниффер V2.0

Most-Advanced Sniffer ever written

● Automatic recognition of CC type: Visa, Mastercard, Maestro, etc. in card page
● Fixed the auto-installation Script , So now just follow the manual
● Updated the UI of the card page and added option to view beautified card in card page
● Added select all options in the view cards and raw data and added option to view number of data in a page
● If multiple different or same cards from the same ip is allowed now
● Added unique admin panel url during setup
● Fixed tag name changer
● Changed Time Format to 24 HOURS
● In sites page - total amount of cards and total amount of extracted cards is shown now
● Added FAQ
● Added daily statistics of each site - Amount of daily cards sniffed from particular site
● Added Sniffer-Status - Automatically pings the panel for sniffer and if sniffer is offline - notification on the panel - So now easy to manage multiple websites
● Flexible CORS
● Now you can save the endpoint of the sites - in sniffer status page
● Fixed Next page and previous page buttons
● Added Many type of injections and cloakers
● Removed atob from the code
● Added option to use either on-change sniffer and on-submit sniffer
● Added option to enable or disable luhn checker in settings
● custom codes file names are now random and unique for all the users
● Numerous bug fixes and code improvements
● Updated the Manual

Upgrade price for old buyers : $ 1000
Price for new buyers : $ 3500
 
Последнее редактирование:
● We added proxy , this will act as the middleman between the panel and shop so the panel url will be cloaked and hidden
●We added auto redirect
●Updated the automatic installer script
●UI changes
●Added Manual
●Added support for googletags
● Improved Allowed Host config
 
I would like to clear an confusion



Quote
Nginx & Apache based exploit sniffers also available
This is not included with basic sniffer and you will need to purchase this separately

Code cleaning done , Sniffer is undetected and 0 AV scan results
 
why you dont answer in jabber anymore ? i gave you 6 shops and after that you dont anwer anymore
This topic is not relevant but still we had discussion that I take only from 5 orders daily and everything is okay now , and we have completed our discussion , Please confirm it here
 
b1ack Sniffer/сниффер V2.0

Most-Advanced Sniffer ever written

● Automatic recognition of CC type: Visa, Mastercard, Maestro, etc. in card page
● Fixed the auto-installation Script , So now just follow the manual
● Updated the UI of the card page and added option to view beautified card in card page
● Added select all options in the view cards and raw data and added option to view number of data in a page
● If multiple different or same cards from the same ip is allowed now
● Added unique admin panel url during setup
● Fixed tag name changer
● Changed Time Format to 24 HOURS
● In sites page - total amount of cards and total amount of extracted cards is shown now
● Added FAQ
● Added daily statistics of each site - Amount of daily cards sniffed from particular site
● Added Sniffer-Status - Automatically pings the panel for sniffer and if sniffer is offline - notification on the panel - So now easy to manage multiple websites
● Flexible CORS
● Now you can save the endpoint of the sites - in sniffer status page
● Fixed Next page and previous page buttons
● Added Many type of injections and cloakers
● Removed atob from the code
● Added option to use either on-change sniffer and on-submit sniffer
● Added option to enable or disable luhn checker in settings
● custom codes file names are now random and unique for all the users
● Numerous bug fixes and code improvements
● Updated the Manual

Upgrade price for old buyers : $ 1000
Price for new buyers : $ 3500
 
Статус
Закрыто для дальнейших ответов.
Верх