Thursday 31 December 2009 - 13811 read

The year 2009 was very intense of emotions, sadness, sorrows, and conflicts. The world as we knew or at least our parents did is changing so fast and unfortunately not in the right way.
The very bad economic situation, the stinky religions conflicts, the riots and wars, the increase of radical extremists and the policy of fear that the governments feed us are urging this earth to an excruciating end.
But instead of talking about politicians and their immature and childish job they are doing as spreading fear, making the wrong choices (as usual), wasting taxpayers money and time, dumping people into poverty, we’d prefer focusing into enumerating the great software and tools we’ve seen this year.
So, we are happy that 2009 is finally over and we expect the best for 2010.
— Security-Database Team
Open Source & Free Utilities
Penetration Tests and Ethical Hacking
| - | Winner | Excellent | Recommended (Promising) |
|---|---|---|---|
| Information Gathering | Maltego | Binging | |
| Network Scanners and Discovery | Nmap v5 | Ex æquo:
| Angry IP Scanner |
| Vulnerability Scanners | Ex æquo:
| OpenVAS | |
| Application Scanners | W3AF | Samurai WTF | Nikto |
| Wireless Hacking | OSWA | AirCrack suite | AiroScript-NG |
| Live CDs | BackTrack 4 | Katana | Matriux |
| Exploitation Frameworks | Metasploit v3 | DB Exploit Website |
Security Assessment
| - | Winner | Excellent | Recommended (Promising) |
|---|---|---|---|
| Windows Auditing | OVAL interpreter | Nessus Local Plug-ins | Sysinternals tools |
| Unix Auditing | Lynis | CIS Scoring | OpenSCAP |
| Firewall & Filtering Devices | None | None | None |
| Application Assessment | BurpSuite | WebSecurify | CAT The manual web application |
| Wireless Auditing | OSWA | Ex æquo:
| Inssider |
| Forensics | CAINE | Ex æquo:
| Netwitness Free Edition |
| Datamining / logs management | Splunk community release | Dradis | |
| IT Management | SpiceWorks | Paglo IT | |
| Code analysis | Rats | Graudit | MS CAT.net |
| Password analysis | Ex æquo:
| John the ripper | |
| VoIP & Telephony auditing | VAST Viper | WarVox | |
| Database auditing | Db Audit Free edition | Ex æquo:
| Wapiti |
ATTACHED DOCUMENTS
-
Security-Database_Best IT Tools for 2009 (PDF - 1.4 Mb)
Security Dashboard












