Section: .. / DoS /
|
Denial of Service tools are for use when testing your own machines only - If you use them against other people you are very lame. Also be aware that many windows binaries in this section are flagged by AV software because they have "offensive" capabilities. Only run these programs on test machines against test machines. Use of these tools on a test network is essential to stress testing a stable environment.
|
| /// File Name: |
yl-cfDoS.c |
Description:
|
Cold Fusion 4.5.1 remote dos attack - sends a very long password, crashing the server.
| | Author: | Ytcracker | | File Size: | 2577 | | Last Modified: | Jun 13 16:32:49 2000 |
| MD5 Checksum: | c874ae7e28967ded6ba2e85b90b942a6 |
|
| /// File Name: |
oasis2.c |
Description:
|
oasis2.c sends spoofed ICMP_SOURCE_QUENCH packets, telling the victim host to slow down data transmission.
| | Author: | Oasis | | File Size: | 4601 | | Last Modified: | Jun 12 15:18:16 2000 |
| MD5 Checksum: | 627d7e353fdb6f6672ee32093c2a49ff |
|
| /// File Name: |
tidcmp.c |
Description:
|
tidcmp.c is an ICMP Source Quench attack. Sends spoofed ICMP type 4 packets to the victims router. Includes references to the relevant RFC's.
| | Author: | Sil | | Homepage: | http://www.antioffline.com | | File Size: | 4783 | | Last Modified: | Jun 9 16:45:00 2000 |
| MD5 Checksum: | 86b88cb4b163265d95ea9be76b2ff841 |
|
| /// File Name: |
ouch.c |
Description:
|
ouch.c is a local linux denial of service attack which runs ls -w with a large parameter, causing ls to take up all the available memory. Obfuscated source.
| | Author: | DJ Lizard | | File Size: | 3667 | | Last Modified: | Jun 5 17:07:00 2000 |
| MD5 Checksum: | 35a49eb485512e0c6153614e3e5613e2 |
|
| /// File Name: |
xterm-dos.c |
Description:
|
xterm denial of service attack -
| | Author: | sending the VT control characters to resize a window it is possible to cause an xterm to crash and in some cases consume all available memory. This is a problem because remote users can inject these control characters into your xterm in many different ways. This sample exploit injects these control characters into a web get request. If an admin were to cat this log file, or happened to be doing a "tail -f access_log" at the time of attack they would find their xterm crashed. Tested against rxvt v2.6.1 and xterm (XFree86 3.3.3.1b(88b). ;Homepage: http://www.rootshell.com. | | File Size: | 2474 | | Last Modified: | Jun 2 15:43:41 2000 |
| MD5 Checksum: | 1838fb69154f57d65a857301402b927f |
|
| /// File Name: |
hammer2k.c |
Description:
|
hammer2k.c v0.8 is a simple denial of service tool which makes multiple open connections to a destination host/port.
| | Author: | Threx | | Homepage: | http://inferno.tusculum.edu/~threx | | File Size: | 5244 | | Last Modified: | Jun 1 02:58:00 2000 |
| MD5 Checksum: | 7e5e8357e538c41b9000c0d7681fdfc4 |
|
| /// File Name: |
conflictd.tar.gz |
Description:
|
conflict-DoS.c and conflictd.c are tools which spoof arp packets to make an annoying popup message appear on the target windows machine. It is faster to close all the boxes than reboot. Tested on FreeBSD 4.0. Uses libnet.
| | Author: | noah | | Homepage: | http://ccitt5.net/archive/ | | File Size: | 2207 | | Last Modified: | May 30 16:11:00 2000 |
| MD5 Checksum: | d1f4f4f2fc174b686f2d6c042f7ca444 |
|
| /// File Name: |
jolt2.c |
Description:
|
jolt2.c exploits the recent "IP Fragment Reassembly" Windows remote denial of service vulnerability described in ms00-029. Tested against Win98, WinNT4/SP5,6, Win2K from linux. Allows the user to specify UDP or ICMP and send a spoofed source address. Linux and Windows binaries available here.
| | Author: | Phoenix | | File Size: | 4187 | | Last Modified: | May 28 03:27:57 2000 |
| MD5 Checksum: | 35361fd98d8a12a07ef2299c9caf95f4 |
|
| /// File Name: |
arpgen.tar.gz |
Description:
|
Arpgen is a denial of service tool which demonstrates that a flood of arp requests from a spoofed ethernet and IP addresses would be a a practical attack on a local network. Includes a standalone version and a client-server version which can be instructed to dos its local network via udp.
| | Author: | JavaMan | | File Size: | 2978 | | Last Modified: | May 25 07:32:42 2000 |
| MD5 Checksum: | bfaad58ae6260e6fcb1009ea54784d37 |
|
| /// File Name: |
Xsh0k.c |
Description:
|
Xwindows remote dos attack - creates a sequence of socket connections to tcp port 6000. Xwindows slows to a crawl and sometimes does not respond to user input.
| | Author: | Norby | | Homepage: | http://www.ncl.cjb.net | | File Size: | 4435 | | Last Modified: | May 25 06:32:41 2000 |
| MD5 Checksum: | 5cd40b7fae081f4f50c85fa0c81495f2 |
|
| /// File Name: |
ciscowebdos.pl |
Description:
|
Cisco IOS Router DOS attack via a specially formatted web get request.
| | Author: | hypoclear of lUSt. | | File Size: | 1932 | | Last Modified: | May 24 15:49:30 2000 |
| MD5 Checksum: | 109cfbba4b4488a41ee544171aa0cfc5 |
|
| /// File Name: |
ascend.c |
Description:
|
Ascend remote denial of service - Upon receiving a packet with non zero length tcp offsets ascend terminal servers will crash. Linux based exploit included.
| | Author: | The Posse. | | Homepage: | http://www.hack.co.za | | File Size: | 9820 | | Last Modified: | May 23 13:30:05 2000 |
| MD5 Checksum: | e1cad44cafc8680bbf75732764f15e6a |
|
| /// File Name: |
smtpkill.pl |
Description:
|
Many windows based SMTP servers have problems handling with "mail from: 4k_junk" or just "4k_of_junk". Servers that tested vulnerable include Lotus Domino ESMTP Services running Version 5.0.3, the CMail Server version 2.4.6, and the Argosoft Mail Server version 1.2.1.0. Perl demonstration code included.
| | Author: | Smiler | | File Size: | 3194 | | Last Modified: | May 23 11:40:26 2000 |
| MD5 Checksum: | bdac1279ab2dab65667bd5717765ff3a |
|
| /// File Name: |
DoS-CProxyv3.3 |
Description:
|
Remote Denial of Service for CProxy v3.3 - Service Pack 2. This program xploits an overflow vulnerability in CProxy 3.3 SP2 HTTP Service (8080), causing server shutdown.
| | Author: | tdp. | | File Size: | 2423 | | Last Modified: | May 17 18:37:27 2000 |
| MD5 Checksum: | f49a2c47ec6a0437c9ee7590a95682b9 |
|
| /// File Name: |
DoS.cayman |
Description:
|
Simple DOS attack against Cayman 3220-H DSL Router. Large username or password strings sent to the Cayman HTTP admin interface restart the router. Router log will show "restart not in response to admin command".
| | Author: | Cassius. | | File Size: | 1089 | | Last Modified: | May 17 14:37:31 2000 |
| MD5 Checksum: | 194c4a27201837171c673ec3a3e699f0 |
|
| /// File Name: |
DoS.knfsd |
Description:
|
A DoS condition exists in the Linux kernel knfsd server. Remote, unauthenticated users (i.e. those with neither a directory mounted nor permission to mount one) can OOPS the host kernel. The OOPS does not bring down the target host, but it is possible to render the NFS service inoperable until a reboot.
| | Author: | Chris Evans. | | File Size: | 5950 | | Last Modified: | May 17 12:59:03 2000 |
| MD5 Checksum: | 44a8e293d5fe62f2d80a2512396da07c |
|
| /// File Name: |
datapool3.3.tar.gz |
Description:
|
Datapool v3.3 combines 106 dos attacks into one script. This version actually learns by keeping a database of which attacks are successful against each host, so the next time it uses the most successful attack first. Features logging, port rance specification, continous attack option, multiple IP addresses, and looping attack of multiple IPs. Includes sources of almost all attacks used, many of which are edited for speed and greater effect.
| | Author: | Spender | | Changes: | A icmp/udp/syn flooder scripted by the author, many new options, documentation updates. Simultaneous attacks were added, along with several line speed options. | | File Size: | 433399 | | Last Modified: | May 12 23:16:40 2000 |
| MD5 Checksum: | 12006213a1cade11a1a9bb56c03a1501 |
|
| /// File Name: |
defbomb.pl |
Description:
|
Deffybomb 0.7.5 Demonstration of a perl mailbomber, including, randon name, e-mail address, subject, x-mailer, based on specific relationship variables, for *nix systems. Updated to fix a major host bug.
| | Author: | DrPhil | | File Size: | 10545 | | Last Modified: | May 8 16:46:20 2000 |
| MD5 Checksum: | 539892bfaf4e3b1671a6cdd56fdd2d45 |
|
| /// File Name: |
routedsex.c |
Description:
|
routedsex.c is a DoS attack against the routed daemon. Fills up drive space on remote system by causing routed to print unique messages to syslog. Tested against Slackware 7.0.
| | Author: | Xt | | Homepage: | http://xorteam.cjb.net | | File Size: | 4866 | | Last Modified: | May 7 21:20:55 2000 |
| MD5 Checksum: | dd10a5fee39298031b0577beeb4c798b |
|
| /// File Name: |
syslogd-DoS.c |
Description:
|
This source code, once compiled, can be used to toy with a system's syslogd. Note: syslogd must be running with the -r option on Linux, or -u on BSD.
| | Author: | lore | | File Size: | 4618 | | Last Modified: | May 1 17:06:45 2000 |
| MD5 Checksum: | 08795eae0968780b5ef96c916eea02ce |
|
| /// File Name: |
ircii-dcc.tgz |
Description:
|
irii-dcc is a set of perl scripts which exploits a dos vulnerability in ircii-4.4 when sending and receiving a dcc chat request from/to a vulnerable client.
| | Author: | S | | File Size: | 1588 | | Last Modified: | Apr 25 21:08:52 2000 |
| MD5 Checksum: | b11fbb80d3cbaec8a08fbbb7ffdc043e |
|
| /// File Name: |
spoink.c |
Description:
|
Spoink.c is a local linux DoS - just executes the program about a million times per second and sends a box to its knees in a minute or so. Tested on Linux 2.3.14.
| | Author: | Gridmark | | File Size: | 1643 | | Last Modified: | Apr 18 16:04:00 2000 |
| MD5 Checksum: | 96828a452f91ea15071dd6a5f2b36a45 |
|
| /// File Name: |
d0s.pl |
Description:
|
DoS.pl uses Net::RawIP to launch a syn flood attack.
| | Author: | Ragnarox | | Homepage: | http://www.r00tabega.com/ | | File Size: | 768 | | Last Modified: | Apr 12 14:03:00 2000 |
| MD5 Checksum: | b4de8beddacbdd8ec02d83537f092aa0 |
|
| /// File Name: |
datapool2.1.tar.gz |
Description:
|
Datapool v2.1 combines 82 dos attacks into one script. Features logging, port rance specification, continous attack option, miltiple IP addresses, and looping attack of multiple IPs. Includes sources of almost all attacks used.
| | Author: | Spender | | Changes: | Added portless attacks, updated old school ascii, bug fixes. | | File Size: | 313465 | | Last Modified: | Apr 11 16:04:00 2000 |
| MD5 Checksum: | 4283ba60df4f5feffc4106bc6039ebd9 |
|
|
|
|
|