Section: .. / UNIX / audit /
| /// File Name: |
sqlmap-0.8.tar.gz |
Description:
|
sqlmap is an open source command-line automatic SQL injection tool. Its goal is to detect and take advantage of SQL injection vulnerabilities in web applications. Once it detects one or more SQL injections on the target host, the user can choose among a variety of options to perform an extensive back-end database management system fingerprint, retrieve DBMS session user and database, enumerate users, password hashes, privileges, databases, dump entire or user's specified DBMS tables/columns, run his own SQL statement, read or write either text or binary files on the file system, execute arbitrary commands on the operating system, establish an out-of-band stateful connection between the attacker box and the database server via Metasploit payload stager, database stored procedure buffer overflow exploitation or SMB relay attack and more.
| | Author: | Bernardo Damele | | Homepage: | http://sqlmap.sourceforge.net | | Changes: | Support to enumerate and dump all database tables. Support to parse -C when fetching columns of a table. Support for takeover features on PostgreSQL 8.4. Various other improvements and tweaks. | | File Size: | 3811238 | | Last Modified: | Mar 15 23:12:07 2010 |
| MD5 Checksum: | 1005e55af73b4368c4f70de54bea4d24 |
|
| /// Directory: |
/ nessus / |
Description:
|
The "Nessus" Project aims to provide to the internet community a free, powerful, up-to-date and easy to use and remote security scanner. A security scanner is a program which will audit remotely a given network and determine whether bad guys (aka 'crackers') may break into it, or misuse it in some way.
| | Total Files: | 86 | | Last Modified: | Mar 8 17:19:10 2010 |
|
| /// File Name: |
rkhunter-1.3.6.tar.gz |
Description:
|
Rootkit Hunter scans files and systems for known and unknown rootkits, backdoors, and sniffers. The package contains one shell script, a few text-based databases, and optional Perl modules. It should run on almost every Unix variety except Solaris and NetBSD.
| | Author: | Michael Boelen | | Homepage: | http://www.rootkit.nl/ | | Changes: | This release offers more ease of use and improved checks. The changelog lists 29 additions including 9 configuration options and details for 12 rootkits, 29 changes including improvements for 15 rootkit checks, and 22 bugfixes. | | File Size: | 217691 | | Last Modified: | Nov 30 17:01:27 2009 |
| MD5 Checksum: | 41bd92b1ea0803401c4a45215c8293a2 |
|
| /// File Name: |
chkrootkit-0.49.tar.gz |
Description:
|
Chkrootkit checks locally for signs of a rootkit. Chkrootkit includes ifpromisc.c to check and see if the interface is in promisc mode, chklastlog.c to check lastlog for deletions, and chkwtmp.c to check wtmp for deletions, strings.c for quick and dirty strings replacement, check_wtmpx.c to check for wtmpx deletions and the files chkproc.c and chkdirs.c to check for LKM trojans. Tested on Linux 2.0.x, 2.2.x and 2.4.x, FreeBSD 2.2.x, 3.x, 4.x, and 5.x, BSDI, OpenBSD 2.6, 2.7, 2.8, 2.9, 3.0 and 3.1, NetBSD 1.5.2 and Solaris 2.5.1, 2.6 and 8.0, and HP-UX 11.
| | Author: | Nelson Murilo | | Homepage: | http://www.chkrootkit.org | | Changes: | New and enhanced tests, minor bug fixes. | | File Size: | 39421 | | Last Modified: | Jul 30 12:01:02 2009 |
| MD5 Checksum: | 304d840d52840689e0ab0af56d6d3a18 |
|
| /// File Name: |
sqlmap-0.7.tar.gz |
Description:
|
sqlmap is an open source command-line automatic SQL injection tool. Its goal is to detect and take advantage of SQL injection vulnerabilities in web applications. Once it detects one or more SQL injections on the target host, the user can choose among a variety of options to perform an extensive back-end database management system fingerprint, retrieve DBMS session user and database, enumerate users, password hashes, privileges, databases, dump entire or user's specified DBMS tables/columns, run his own SQL statement, read or write either text or binary files on the file system, execute arbitrary commands on the operating system, establish an out-of-band stateful connection between the attacker box and the database server via Metasploit payload stager, database stored procedure buffer overflow exploitation or SMB relay attack and more.
| | Author: | Bernardo Damele | | Homepage: | http://sqlmap.sourceforge.net | | Changes: | Adapted Metasploit wrapping functions to work with latest 3.3 development version too. Adjusted code to make sqlmap 0.7 to work again on Mac OSX too. Various other tweaks and improvements. | | File Size: | 1887120 | | Last Modified: | Jul 27 21:10:34 2009 |
| MD5 Checksum: | edb1a625fb18b0b8aae2fc15a66a055e |
|
| /// Directory: |
/ firewalk / |
Description:
|
Firewalk (whitepaper & source code) - Firewalking is a technqiue developed by MDS and DHG that employs traceroute-like techniques to analyize IP packet responses to determine gateway ACL filters. The techinque is useful in network audits to determine the filter rules in place on a packet forwarding device. Whitepaper and source code available here in a variety of formats.
| | Author: | Enterprise Security Services | | Total Files: | 16 | | Last Modified: | Jul 22 15:25:06 2009 |
|
| /// File Name: |
curuncula.tgz |
Description:
|
Curuncula is a tool shipped as a loadable kernel module that aims to detect rootkits based on the Intel debugging support facilities. Rootkits that set the GD access flag are also detected. It makes use of the "last branch recording" mechanism provided by the Intel architecture. Support both the 2.4 and 2.6 Linux kernels.
| | Author: | Giuseppe Cocomazzi | | File Size: | 3510 | | Last Modified: | Apr 23 16:14:43 2009 |
| MD5 Checksum: | 45435a5c2788ef4e37926b909a998c12 |
|
| /// File Name: |
sqlmap-0.7rc1.tar.gz |
Description:
|
sqlmap is an open source command-line automatic SQL injection tool. Its goal is to detect and take advantage of SQL injection vulnerabilities in web applications. Once it detects one or more SQL injections on the target host, the user can choose among a variety of options to perform an extensive back-end database management system fingerprint, retrieve DBMS session user and database, enumerate users, password hashes, privileges, databases, dump entire or user's specified DBMS tables/columns, run his own SQL statement, read or write either text or binary files on the file system, execute arbitrary commands on the operating system, establish an out-of-band stateful connection between the attacker box and the database server via Metasploit payload stager, database stored procedure buffer overflow exploitation or SMB relay attack and more.
| | Author: | Bernardo Damele | | Homepage: | http://sqlmap.sourceforge.net | | Changes: | New features as described at the presentation given at Black Hat Europe. | | File Size: | 1248177 | | Last Modified: | Apr 22 17:28:56 2009 |
| MD5 Checksum: | e29f0ce962ca55cf04fb2f730ab39d56 |
|
| /// File Name: |
sqlmap-0.6.4.tar.gz |
Description:
|
sqlmap is an open source command-line automatic SQL injection tool developed in Python. Its goal is to detect and take advantage of SQL injection vulnerabilities on web applications. Once it detects one or more SQL injections on the target host, the user can choose among a variety of options to perform an extensive back-end database management system fingerprint, retrieve DBMS session user and database, enumerate users, password hashes, privileges, databases, dump entire or user's specific DBMS tables/columns, run his own SQL statement, read specific files on the file system and more.
| | Author: | Bernardo Damele,Daniele Bellucci | | Homepage: | http://sqlmap.sourceforge.net | | Changes: | Major enhancement to make the comparison algorithm work properly. Major speed increase in DBMS basic fingerprint. Added internal support to forge CASE statements. Various other additions and improvements. | | File Size: | 391275 | | Last Modified: | Feb 4 14:05:48 2009 |
| MD5 Checksum: | 39bd2ada1279314c9d908301683b4c9f |
|
| /// File Name: |
rkhunter-1.3.4.tar.gz |
Description:
|
Rootkit Hunter scans files and systems for known and unknown rootkits, backdoors, and sniffers. The package contains one shell script, a few text-based databases, and optional Perl modules. It should run on almost every Unix variety except Solaris and NetBSD.
| | Author: | Michael Boelen | | Homepage: | http://www.rootkit.nl/ | | Changes: | The changelog for this release is packed listing 4 new additions, 8 changes, and 9 bug fixes. | | File Size: | 275653 | | Last Modified: | Dec 31 15:24:50 2008 |
| MD5 Checksum: | 31eaacc4d01ad138d1a4283f105088e6 |
|
| /// File Name: |
sqlmap-0.6.3.tar.gz |
Description:
|
sqlmap is an automatic SQL injection tool developed in Python. Its goal is to detect and take advantage of SQL injection vulnerabilities on web applications. Once it detects one or more SQL injections on the target host, the user can choose among a variety of options to perform an extensive back-end database management system fingerprint, retrieve DBMS session user and database, enumerate users, password hashes, privileges, databases, dump entire or user's specific DBMS tables/columns, run his own SQL SELECT statement, read specific files on the file system and much more.
| | Author: | Bernardo Damele,Daniele Bellucci | | Homepage: | http://sqlmap.sourceforge.net | | Changes: | Multiple major bug fixes and a handful of minor fixes. | | File Size: | 347528 | | Last Modified: | Dec 21 19:32:02 2008 |
| MD5 Checksum: | 3528f77794e8d2081900f4c9c124ea1a |
|
| /// File Name: |
sqlmap-0.6.2.tar.gz |
Description:
|
sqlmap is an automatic SQL injection tool developed in Python. Its goal is to detect and take advantage of SQL injection vulnerabilities on web applications. Once it detects one or more SQL injections on the target host, the user can choose among a variety of options to perform an extensive back-end database management system fingerprint, retrieve DBMS session user and database, enumerate users, password hashes, privileges, databases, dump entire or user's specific DBMS tables/columns, run his own SQL SELECT statement, read specific files on the file system and much more.
| | Author: | Bernardo Damele, Daniele Bellucci | | Homepage: | http://sqlmap.sourceforge.net | | Changes: | Multiple major bug fixes and a handful of minor fixes. | | File Size: | 298983 | | Last Modified: | Nov 5 01:31:33 2008 |
| MD5 Checksum: | 7876a218016633ec964bccc1450f1f3d |
|
| /// File Name: |
sqlmap-0.6.1.tar.gz |
Description:
|
sqlmap is an automatic SQL injection tool developed in Python. Its goal is to detect and take advantage of SQL injection vulnerabilities on web applications. Once it detects one or more SQL injections on the target host, the user can choose among a variety of options to perform an extensive back-end database management system fingerprint, retrieve DBMS session user and database, enumerate users, password hashes, privileges, databases, dump entire or user's specific DBMS tables/columns, run his own SQL SELECT statement, read specific files on the file system and much more.
| | Author: | Bernardo Damele,Daniele Bellucci | | Homepage: | http://sqlmap.sourceforge.net | | Changes: | Major bug fix to blind SQL injection bisection algorithm to handle an exception. Added a Metasploit Framework 3 auxiliary module to run sqlmap. Other additions and bug fixes. | | File Size: | 322337 | | Last Modified: | Oct 20 20:21:48 2008 |
| MD5 Checksum: | e48ced32ed7aef1926b7b5cb706977a4 |
|
| /// File Name: |
sqlmap-0.6.tar.gz |
Description:
|
sqlmap is an automatic SQL injection tool developed in Python. Its goal is to detect and take advantage of SQL injection vulnerabilities on web applications. Once it detects one or more SQL injections on the target host, the user can choose among a variety of options to perform an extensive back-end database management system fingerprint, retrieve DBMS session user and database, enumerate users, password hashes, privileges, databases, dump entire or user's specific DBMS tables/columns, run his own SQL SELECT statement, read specific files on the file system and much more.
| | Author: | Bernardo Damele,Daniele Bellucci | | Homepage: | http://sqlmap.sourceforge.net | | File Size: | 314869 | | Last Modified: | Sep 3 11:54:30 2008 |
| MD5 Checksum: | 9bfa100d13de408c21fc43bb0aba7149 |
|
| /// Directory: |
/ sara / |
Description:
|
The Security Auditor's Research Assistant (SARA)
| | Total Files: | 52 | | Last Modified: | Aug 29 01:12:41 2008 |
|
| /// File Name: |
unhide20080519.tgz |
Description:
|
Unhide is a forensic tool to find hidden processes and TCP/UDP ports that are hidden via rootkits, LKMs, or other techniques.
| | Author: | YJesus | | Homepage: | http://www.security-projects.com/?Unhide | | Changes: | Fixed a race condition and added man pages. | | File Size: | 17104 | | Last Modified: | Jun 28 10:55:29 2008 |
| MD5 Checksum: | 1194ec0f89c6f28e8eb64fb66836f70f |
|
| /// File Name: |
pan_v_1_0.tar.bz2 |
Description:
|
pan is a c program that generates random passwords to a file called passwords.txt.
| | Author: | ad | | Homepage: | http://www.rootshell.be/~ad/ | | File Size: | 23742 | | Last Modified: | Jan 14 22:00:28 2008 |
| MD5 Checksum: | 93ccbf7e73f6877e2569d6f0d722a7c8 |
|
| /// File Name: |
chkrootkit-0.48.tar.gz |
Description:
|
Chkrootkit checks locally for signs of a rootkit. Chkrootkit includes ifpromisc.c to check and see if the interface is in promisc mode, chklastlog.c to check lastlog for deletions, and chkwtmp.c to check wtmp for deletions, strings.c for quick and dirty strings replacement, check_wtmpx.c to check for wtmpx deletions and the files chkproc.c and chkdirs.c to check for LKM trojans. Tested on Linux 2.0.x, 2.2.x and 2.4.x, FreeBSD 2.2.x, 3.x, 4.x, and 5.x, BSDI, OpenBSD 2.6, 2.7, 2.8, 2.9, 3.0 and 3.1, NetBSD 1.5.2 and Solaris 2.5.1, 2.6 and 8.0, and HP-UX 11.
| | Author: | Nelson Murilo | | Homepage: | http://www.chkrootkit.org | | Changes: | New and enhanced tests, minor bug fixes. | | File Size: | 38323 | | Last Modified: | Jan 3 17:58:17 2008 |
| MD5 Checksum: | de8b8b5013e7faa2b66c0e33c59677e8 |
|
| /// Directory: |
/ titan / |
Description:
|
Titan 3.0 FCS - Titan is a Unix/Solaris host level security toolkit. Modular and Policy based so it can be used in configuring Firewalls, Servers, or Desktops. 90% bourne shell; 10% C, full source available. Titan is a collection of programs, each of which either fixes or tightens one or more potential security problems with a particular aspect in the setup or configuration of a Unix system. Titan web site
| | Total Files: | 8 | | Last Modified: | Jan 2 20:13:42 2008 |
|
| /// Directory: |
/ tiger / |
Description:
|
Similar to COPS.
| | Total Files: | 6 | | Last Modified: | Jan 2 20:09:21 2008 |
|
| /// Directory: |
/ saint / |
Description:
|
SAINT (Security Administrator's Integrated Network Tool) is a frequently updated security assesment tool based on SATAN.
| | Total Files: | 51 | | Last Modified: | Jan 2 20:05:57 2008 |
|
| /// Directory: |
/ satan / |
Description:
|
Security Administrator's Tool for Analyzing Networks
| | Total Files: | 7 | | Last Modified: | Jan 2 20:00:24 2008 |
|
| /// File Name: |
sqlmap-0.5.tar.gz |
Description:
|
sqlmap is an automatic blind SQL injection tool, developed in python, capable to perform an active database management system fingerprint, enumerate entire remote databases and much more. The aim of this project is to implement a fully functional database management system tool which takes advantages of web application programming security flaws which lead to SQL injection vulnerabilities.
| | Author: | Bernardo Damele,Daniele Bellucci | | Homepage: | http://sqlmap.sourceforge.net | | Changes: | Added support for Oracle database management system. Extended inband SQL injection functionality. Added some support and a fuzzer. Many other changes, see the changelog. | | File Size: | 463059 | | Last Modified: | Nov 5 11:45:26 2007 |
| MD5 Checksum: | 74ceaecd24f830b9b23ec27c90e25f5b |
|
| /// File Name: |
rkhunter-1.3.0.tar.gz |
Description:
|
Rootkit Hunter scans files and systems for known and unknown rootkits, backdoors, and sniffers. The package contains one shell script, a few text-based databases, and optional Perl modules. It should run on almost every Unix variety except Solaris and NetBSD.
| | Author: | Michael Boelen | | Homepage: | http://www.rootkit.nl/ | | Changes: | The changelog for this release is packed listing over 30 new features, 47 changes and 16 bugfixes. | | File Size: | 252011 | | Last Modified: | Sep 24 22:51:53 2007 |
| MD5 Checksum: | 89a4628c6378fdf3331d5a43b975d967 |
|
| /// Directory: |
/ cops / |
Description:
|
Computer Oracle and Password System. UNIX Security Auditing Tool.
| | Total Files: | 5 | | Last Modified: | Sep 5 21:21:21 2007 |
|
|
|
|
|