Most Popular
KrbGuess v0.21 released - Kerberos usernames enumeration
KrbGuess is a small and simple tool which can be used during security testing to guess valid usernames against a Kerberos environment. It allows you to do this by studying the response from a TGT request to the KDC server. The tool works against both Microsoft Active Directory, MIT and Heimdal Kerberos implementations. In addition it will detect if an account lacks pre-authentication.
Charles Web Debugging Proxy updated to v3.4
Charles is an HTTP proxy / HTTP monitor / Reverse Proxy that enables a developer to view all of the HTTP traffic between their machine and the Internet. This includes requests, responses and the HTTP headers (which contain the cookies and caching information).
IMA v0.2 Beta: Identity Management Auditor Project
IMA provides a simple way to audit Identity Management, is composed of several dedicated modules (MS Windows, Linux, HP-UX, IBM AIX, MS SQL Server, Oracle).
MAPDAV v1.0p5 - proving passwords combinations
MAPDAV (More Accurate Password Dictionary Attack Vector) is designed to use what is known about a user or users (ex, username, first name, middle name, last name, etc) on a unix/linux system from a /etc/passwd file and tries to come up with probable combinations that could be the user’s password.
MSSQLScan 0.8.4 released
A small multi-threaded tool that scans for Microsoft SQL Servers. The tool does it’s discovery by using UDP and returns a list of all detected instances with there respective protocols and ports
Spiceworks 4.1.40098 - Updated
Spiceworks is the complete network management & monitoring, helpdesk, PC inventory & software reporting solution to manage Everything IT in small and medium businesses.
Hyena v7.7 available
Using the built-in Windows administration tools to manage a medium to large Windows NT or Windows 2000/2003 network can be a challenge
Hyena uses an Explorer-style interface for all operations, including right mouse click pop-up context menus for all objects. Management of users, groups (both local and global), shares, domains, computers, services, devices, events, files, printers and print jobs, sessions, open files, disk space, user rights, messaging, exporting, job scheduling, processes, and printing are all supported. For an example of a typical enterprise-wide view in Hyen
Nmap & Zenmap v5.0 released
Nmap ("Network Mapper") is a free open source utility for network exploration or security auditing. It was designed to rapidly scan large networks, although it works fine against single hosts. Nmap uses raw IP packets in novel ways to determine what hosts are available on the network, what services (application name and version) those hosts are offering, what operating systems (and OS versions) they are running, what type of packet filters/firewalls are in use, and dozens of other characteristics. Nmap runs on most types of computers and both console and graphical versions are available. Nmap is free and open source (license).
Xprobe-NG announced for July 2009
xprobe: Remote OS identification using ICMP packets Xprobe allows you to determine what operating system is running on a remote host. It sends several packets to a host and analyses the returned ICMP packets. The tool automates a logic of OS fingerprinting methods called "X"
Spiceworks 4.0 is out
Designed, tested and used by 700,000 IT pros in 185 countries. Spiceworks has the everyday IT features:
- Inventory and report on your company’s hardware and software assets automatically.
- Monitor and troubleshoot the hardware and software on your network.
- Run an IT Help Desk for your company that’s easy to use.
Web Information Gathering online
Sucuri WIGS (Web information gathering) is a simple tool to collect public information from any web site. It is very lightweight, executing just a few normal requests to your site and processing the information internally.
AutoScan v1.42 extended to OpenSolaris and BackTrack
AutoScan-Network is a network discovering and managing application. No configuration is required to scan your network. The main goal is to print the list of connected equipments in your network
SpiceWorks 4.0 Alpha Build is now available (4.0.33731)
Designed, tested and used by 500,000 IT pros in 185 countries. Spiceworks has the everyday IT features:
- Inventory and report on your company’s hardware and software assets automatically.
- Monitor and troubleshoot the hardware and software on your network.
- Run an IT Help Desk for your company that’s easy to use.
SpiceWorks 4.0 on its way for alpha testing
Designed, tested and used by 500,000 IT pros in 185 countries. Spiceworks has the everyday IT features:
- Inventory and report on your company’s hardware and software assets automatically.
- Monitor and troubleshoot the hardware and software on your network.
- Run an IT Help Desk for your company that’s easy to use.
Autoscan v1.42 now supports OSX
AutoScan-Network is a network discovering and managing application. No configuration is required to scan your network. The main goal is to print the list of connected equipments in your network
VisualRoute v13.1a available
VisualRoute is a free IP tracer analyzes network connectivity, identifies IP address locations. It analyzes your Internet connection to determine precisely where and how data traffic is flowing, identifying where any bottlenecks occur. A trace report details the performance of each portion of the connection route, including any dropped data packets and network latency, along with the IP address, node name and network provider.
Charles Web Debugging Proxy 3.3.1 available
Charles is an HTTP proxy / HTTP monitor / Reverse Proxy that enables a developer to view all of the HTTP traffic between their machine and the Internet. This includes requests, responses and the HTTP headers (which contain the cookies and caching information).
Charles can act as a man-in-the-middle for HTTP/SSL communication, enabling you to debug the content of your HTTPS sessions.
Lansweeper v3.5 Freeware network inventory
Lansweeper is a powerful freeware solution without any embedded ads to make a complete software, hardware, asset inventory of your windows network.
theHarvester user name finder v1.4 available
theHarvester is a tool for gathering e-mail accounts and user names from different public sources. It’s a really simple tool, but very effective.
MetaGooFil updated to v1.4a
Metagoofil is an information gathering tool designed for extracting metadata of public documents (pdf,doc,xls,ppt,odp,ods) availables in the target/victim websites.