SomarSoft’s DumpSec is a security auditing program for Microsoft Windows® NT/XP/200x.
It dumps the permissions (DACLs) and audit settings (SACLs) for the file system, registry, printers and shares in a concise, readable format, so that holes in system security are readily apparent. DumpSec also dumps user, group and replication information.
Home > Security Tools
Security Tools
-
DumpACL v2.8.6 added to SD Security Tools Watch Process
12 January 2007, by Tools Tracker Team -
LFT v3.0 in beta
11 January 2007, by Tools Tracker TeamLFT, short for Layer Four Traceroute, is a sort of ’traceroute’ that often works much faster (than the commonly-used Van Jacobson method) and goes through many configurations of packet-filters (firewalls)
More importantly, LFT implements numerous other features including AS number lookups through several reliable sources, loose source routing, netblock name lookups, et al. What makes LFT unique? LFT is the all-in-one traceroute tool because it can launch a variety of different probes using (...) -
Saint Scanner updated to 6.3.5
11 January 2007, by Tools Tracker TeamWith SAINT® vulnerability assessment tool, you can: Detect and fix possible weaknesses in your network’s security before they can be exploited by intruders. Anticipate and prevent common system vulnerabilities. Demonstrate compliance with current government regulations such as FISMA, Sarbanes Oxley, GLBA, HIPAA, and COPPA.
The SAINT® scanning engine is the ideal cornerstone for your vulnerability assessment program. SAINT features a graphical user interface that is intuitive and easy to (...) -
Owasp Live CD Projet added to SD Security Tools Watch Process
10 January 2007, by Tools Tracker TeamThe OWASP Live CD (LabRat) is a bootable CD akin to knoppix but dedicated to Application Security. It shall serve as a vehicle and distrubition medium for OWASP tools and guides also.
The OWASP Live CD is linux based using morphix technology in the build process. It shall be freely available when complete.
The Goal of the CD project is to produce a bootable CD dedicated to application security. It shall be a "Pen test" suite in ones pocket and more. It shall contain the following (but (...) -
Hyena 7.0 released
10 January 2007, by Tools Tracker TeamUsing the built-in Windows administration tools to manage a medium to large Windows NT or Windows 2000/2003 network can be a challenge
Hyena uses an Explorer-style interface for all operations, including right mouse click pop-up context menus for all objects. Management of users, groups (both local and global), shares, domains, computers, services, devices, events, files, printers and print jobs, sessions, open files, disk space, user rights, messaging, exporting, job scheduling, (...) -
Rootkit Hunter v1.2.9 released
8 January 2007, by Tools Tracker TeamRootkit scanner is scanning tool to ensure you for about 99.9%* you’re clean of nasty tools. This tool scans for rootkits, backdoors and local exploits by running tests like: MD5 hash compare Look for default files used by rootkits Wrong file permissions for binaries Look for suspected strings in LKM and KLD modules Look for hidden files Optional scan within plaintext and binary files
Rootkit Hunter is released as GPL licensed project and free for everyone to use.
’Supported’ (...) -
Sprajax, the first Open Source Security Scanner for AJAX
7 January 2007, by Tools Tracker TeamSprajax is an open source black box security scanner used to assess the security of AJAX-enabled applications. By detecting the specific AJAX frameworks in use, Sprajax is able to better formulate test requests and identify potential vulnerabilities.
Denim Group developed this innovative tool that will revolutionize security assessments by providing a more thorough diagnosis of security vulnerabilities within the AJAX code that other web security scanners are not designed to read. The (...) -
Absinthe 1.4.1 available
7 January 2007, by Tools Tracker TeamAbsinthe is a gui-based tool that automates the process of downloading the schema & contents of a database that is vulnerable to Blind SQL Injection
Absinthe does not aid in the discovery of SQL Injection holes. This tool will only speed up the process of data recovery.
Features: Automated SQL Injection Supports MS SQL Server, MSDE, Oracle, Postgres Cookies / Additional HTTP Headers Query Termination Additional text appended to queries Supports Use of Proxies / Proxy Rotation (...) -
SiVus VoIP Security Scanner 1.09 available
4 January 2007, by Tools Tracker TeamSiVuS is the first publicly available vulnerability scanner for VoIP networks that use the SIP protocol
It provides powerful features to assess the security and robustness of VoIP implementations and it is used by VoIP product vendors, security consultants, network architects, researchers and students. We encourage our community to provide us with feedback so we can enhance the current implementation and support the efforts to strengthen the security of VoIP (...) -
SARA scanner release 7.0.4a
3 January 2007, by Tools Tracker TeamThe Security Auditor’s Research Assistant (SARA) is a third generation network security analysis tool that is: Operates under Unix, Linux, MAC OS/X or Windows (through coLinux) OS’. Integrates the National Vulnerability Database (NVD). Can adapt to many firewalled environments. Support remote self scan and API facilities. Used for CIS benchmark initiatives Plug-in facility for third party apps CVE standards support (20040901) Enterprise search module Standalone or daemon mode Free-use open (...)