{"id":13539378,"url":"https://github.com/fozavci/viproy-voipkit","last_synced_at":"2025-04-02T06:30:49.992Z","repository":{"id":7847914,"uuid":"9219720","full_name":"fozavci/viproy-voipkit","owner":"fozavci","description":"VIPROY - VoIP Pen-Test Kit for Metasploit Framework","archived":false,"fork":false,"pushed_at":"2022-02-04T01:15:04.000Z","size":264,"stargazers_count":403,"open_issues_count":19,"forks_count":106,"subscribers_count":50,"default_branch":"master","last_synced_at":"2024-11-03T04:32:35.307Z","etag":null,"topics":[],"latest_commit_sha":null,"homepage":null,"language":"Ruby","has_issues":true,"has_wiki":null,"has_pages":null,"mirror_url":null,"source_name":null,"license":"other","status":null,"scm":"git","pull_requests_enabled":true,"icon_url":"https://github.com/fozavci.png","metadata":{"files":{"readme":"README.md","changelog":null,"contributing":null,"funding":null,"license":"LICENSE","code_of_conduct":null,"threat_model":null,"audit":null,"citation":null,"codeowners":null,"security":null,"support":null}},"created_at":"2013-04-04T14:15:12.000Z","updated_at":"2024-11-03T02:24:02.000Z","dependencies_parsed_at":"2022-08-08T08:00:02.663Z","dependency_job_id":null,"html_url":"https://github.com/fozavci/viproy-voipkit","commit_stats":null,"previous_names":[],"tags_count":0,"template":false,"template_full_name":null,"repository_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/fozavci%2Fviproy-voipkit","tags_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/fozavci%2Fviproy-voipkit/tags","releases_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/fozavci%2Fviproy-voipkit/releases","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/fozavci%2Fviproy-voipkit/manifests","owner_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners/fozavci","download_url":"https://codeload.github.com/fozavci/viproy-voipkit/tar.gz/refs/heads/master","host":{"name":"GitHub","url":"https://github.com","kind":"github","repositories_count":246767654,"owners_count":20830528,"icon_url":"https://github.com/github.png","version":null,"created_at":"2022-05-30T11:31:42.601Z","updated_at":"2022-07-04T15:15:14.044Z","host_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub","repositories_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories","repository_names_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repository_names","owners_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners"}},"keywords":[],"created_at":"2024-08-01T09:01:24.681Z","updated_at":"2025-04-02T06:30:49.549Z","avatar_url":"https://github.com/fozavci.png","language":"Ruby","funding_links":[],"categories":["Open-source tools","\u003ca id=\"5dd93fbc2f2ebc8d98672b2d95782af3\"\u003e\u003c/a\u003e工具","\u003ca id=\"1233584261c0cd5224b6e90a98cc9a94\"\u003e\u003c/a\u003e渗透\u0026\u0026offensive\u0026\u0026渗透框架\u0026\u0026后渗透框架"],"sub_categories":["\u003ca id=\"8e7a6a74ff322cbf2bad59092598de77\"\u003e\u003c/a\u003eMetasploit"],"readme":"# Discontinued\r\nViproy was a PoC VoIP security assessment tool which had several modules and exploits to maintain. However, it was developed as a modules set to Metasploit Framework. As Metasploit Framework had significant updates, Viproy's current modules won't be able to work unless you use legacy Kali Linux and Metasploit Framework versions. I discontinued the project a long time ago as I stopped working on the VoIP and UC project for last 5 years. \u003cbr\u003e\r\n\r\nIf you still need these modules, \"infosecconsultant\" has prepared a note on the Issues section (https://github.com/fozavci/viproy-voipkit/issues/22). I suggest you to take a look at it, if it works for you, please also express your appreciation to them. I'm not planning to improve any code base or documentation, but please feel free to fork this repository and make your own.    \r\n\r\n# Viproy - VoIP Penetration Testing Kit\r\nViproy Voip Pen-Test Kit provides penetration testing modules for VoIP networks. It supports signalling analysis for SIP and Skinny protocols, IP phone services and network infrastructure. Viproy 2.0 is released at Blackhat Arsenal USA 2014 with TCP/TLS support for SIP, vendor extentions support, Cisco CDP spoofer/sniffer, Cisco Skinny protocol analysers, VOSS exploits and network analysis modules. Furthermore, Viproy provides SIP and Skinny development libraries for custom fuzzing and analyse modules. Viproy VoIP Kit was used for VoIP exploit demonstrations in VoIP Wars presentation series, Departed Communications presentationm series and live VoIP Wars trainings in Black Hat, DEF CON, HITB, AusCERT and Troopers. \r\n\r\nViproxy MITM Proxy and Testing Tools is developed using Metasploit Framework environment located in the Viproy modules. It is a standalone Metasploit module which enables users to intercept the TCP/TLS traffic and to execute some attacks against thick client applications, mobile applications and VoIP clients. Viproxy can be used to attack the Microsoft Lync and Skype for Business environments as demonstrated during the VoIP Wars: The Phreakers Awaken in Black Hat USA 2016 and VoIP Wars: Destroying Jar Jar Lync presentation at Black Hat Europe 2015, GSEC Hack In The Box Singapore 2015 and Ruxcon 2015 events. Viproxy has magic words to perform inline attacks. It also has an online rule console to manage the attacks including INVITE subject update, MESSAGE content update and sending invalid content for fuzzing.\r\n\r\n## Author\r\nFatih Ozavci\u003cbr\u003e\r\nLinkedIn: https://au.linkedin.com/in/fozavci\u003cbr\u003e\r\nSlide Share: https://www.slideshare.net/fozavci\u003cbr\u003e\r\nGithub: https://www.github.com/fozavci\u003cbr\u003e\r\n\r\n## Current Version and Updates\r\nCurrent version: 4.1 (Requires ruby 2.1.X and Metasploit Framework Github Repo) \u003cbr\u003e\r\nPre-installed repo: https://github.com/fozavci/metasploit-framework-with-viproy\r\n\r\n## Documentation\r\n\r\n### Installation\r\nCopy \"lib\" and \"modules\" folders' content to Metasploit root directory.\u003cbr\u003e\r\nMixins.rb File (lib/msf/core/auxiliary/mixins.rb) should contains the following lines\u003cbr\u003e\r\nrequire 'msf/core/auxiliary/sip'\u003cbr\u003e\r\nrequire 'msf/core/auxiliary/skinny'\u003cbr\u003e\r\nrequire 'msf/core/auxiliary/msrp'\u003cbr\u003e\r\n\r\n### Usage of SIP Modules\r\nhttps://github.com/fozavci/viproy-voipkit/blob/master/SIPUSAGE.md\r\n\r\n### Usage of Skinny Modules\r\nhttps://github.com/fozavci/viproy-voipkit/blob/master/SKINNYUSAGE.md\r\n\r\n### Usage of Auxiliary Viproy Modules\r\nhttps://github.com/fozavci/viproy-voipkit/blob/master/OTHERSUSAGE.md\r\n\r\n## Talks \u0026 Videos\r\n\r\n### BSides Canberra, Australia 2017 - Departed Communications: Learn the ways to smash them \r\nhttps://www.slideshare.net/fozavci/departed-communications-learn-the-ways-to-smash-them\r\n\r\n### Black Hat USA 2016 - VoIP Wars: The Phreakers Awaken\r\nhttps://www.slideshare.net/fozavci/voip-wars-the-phreakers-awaken\u003cbr\u003e\r\nhttps://www.youtube.com/watch?v=rl_kp5UZKlw\r\n\r\n### DEF CON 24 - VoIP Wars: The Live Workshop\r\nNo video.\r\n\r\n### Black Hat Europe 2015 - VoIP Wars: Destroying Jar Jar Lync\r\nhttp://www.slideshare.net/fozavci/voip-wars-destroying-jar-jar-lync-unfiltered-version\u003cbr\u003e\r\nhttps://youtu.be/TMdiXYzY8qY\r\n\r\n### DEF CON 23 - The Art of VoIP Hacking Workshop Slide Deck\r\nhttp://www.slideshare.net/fozavci/the-art-of-voip-hacking-defcon-23-workshop\u003cbr\u003e\r\nhttps://youtu.be/hwDD7K9oXeI\r\n\r\n### Black Hat USA 2014 / DEF CON 22 - VoIP Wars: Attack of the Cisco Phones\r\nhttps://www.youtube.com/watch?v=hqL25srtoEY\r\n\r\n### DEF CON 21 - VoIP Wars: Return of the SIP\r\nhttps://www.youtube.com/watch?v=d6cGlTB6qKw\r\n\r\n### Attacking SIP/VoIP Servers Using Viproy\r\nhttps://www.youtube.com/watch?v=AbXh_L0-Y5A\r\n","project_url":"https://awesome.ecosyste.ms/api/v1/projects/github.com%2Ffozavci%2Fviproy-voipkit","html_url":"https://awesome.ecosyste.ms/projects/github.com%2Ffozavci%2Fviproy-voipkit","lists_url":"https://awesome.ecosyste.ms/api/v1/projects/github.com%2Ffozavci%2Fviproy-voipkit/lists"}