Every culture has its beginning somewhere, Computer hacking is no exception. The History of Hacking video series is a 5 part documentary which runs down memory lane and presents important figures, facts and personalities of the Hacking culture. In History of Hacking Part 1, we will look at Phone Phreaking and John Draper a.k.a Captain Crunch and try and understand the string of events which molded the Phone Phreaking culture.
Those of you who have not heard of John, he is the guy who (...)
Home > Security Tools
Security Tools
-
History of Hacking - Part 1
28 November 2009, by Tools Tracker Team -
Security Acts Magazine Issue 1 released
27 November 2009, by Tools Tracker TeamSecurity Acts is the challenge of producing a high-quality magazine for profes- sionals in IT Security, which is made by and issued for the people involved in IT Security. This online magazine is free of charge and will finance itself through adverts.
In this 1st issue
AJAX makes applications more difficult to secure by Manu Cohen
AJAX is the new hot technology concerning web applications. It allows the client to do much more than before and have a much better user experience.
An (...) -
vmap v0.7 released - identifying remotely daemons
26 November 2009, by Tools Tracker Teamvmap lets you remotely ident the version of a daemon. It currently works for ftp, smtp, pop3, imap and http.
Version 0.7 Code cleanup Fixed lots of bugs Added support for nmap and amap logs Added a "make install" (public dir is /usr/local/share/vmap) Got rid of that damn \r\n-stuff, now every line ends just with \n
How does it work?
Every daemon has it’s own reply on commands. For example, the HELP command sends different replies on different FTP daemons.
This can be used to (...) -
Slitaz Aircrack-ng Distribution v20091117 released
26 November 2009, by Tools Tracker TeamThe “Slitaz Aircrack-ng Distribution†is the base Slitaz cooking version plus the latest Aircrack-ng SVN version, wireless drivers patched for injection and other related tools. The custom distribution is especially tuned for the Acer Aspire One netbooks but will work well on virtually all desktops, notebooks and netbooks.
Version November 17/2009 Updated aircrack-ng suite to 1.0 final including sqlite airolib-ng support Updated all Slitaz packages as of November 16/2009. This is Slitaz (...) -
log2timeline v0.40 released
26 November 2009, by Tools Tracker Teamlog2timeline is a framework for artifact timeline creation and analysis. The main purpose is to provide a single tool to parse various log files and artifacts found on suspect systems (and supporting systems, such as network equipment) and produce a body file that can be used to create a timeline, using tools such as mactime from TSK, for forensic investigators.
Version 0.40 [CFTL output] Fixed few bugs in the cftl.pm output module, didn’t work in the current CFTL version without these (...) -
Websecurify v0.4 released
26 November 2009, by Tools Tracker TeamWebsecurify Security Testing Framework identifies web security vulnerabilities by using advanced browser automation, discovery and fuzzing technologies. The framework is written in JavaScript and successfully executes in numerous platforms including modern browsers with support for HTML5, xulrunner, xpcshell, Java, V8 and others.
What’s New in Websecurify better, more responsive UI support for Workspaces nicer looking tasks netter reporting with ability to export to various formats (...) -
SAINT v7.2.1 released
26 November 2009, by Tools Tracker TeamSAINT is the Security Administrator’s Integrated Network Tool. It is used to non-intrusively detect security vulnerabilities on any remote target, including servers, workstations, networking devices, and other types of nodes. It will also gather information such as operating system types and open ports. The SAINT graphical user interface provides access to SAINT’s data management, scan configuration, scan scheduling, and data analysis capabilities through a web browser. Different aspects of (...)
-
Graudit v1.4 released
25 November 2009, by Tools Tracker TeamGraudit is a simple script and signature sets that allows you to find potential security flaws in source code using the GNU utility grep. It’s comparable to other static analysis applications like RATS, SWAAT and flaw-finder while keeping the technical requirements to a minimum and being very flexible.
Version 1.4 New and improved signatures Graceful detection of grep version < 2.5.3 Preparing for version 1.5
USAGE
Graudit supports several options and tries to follow good shell (...) -
(updated) SHODAN - Computer Search Engine released
25 November 2009, by Tools Tracker TeamSHODAN lets you find servers/ routers/ etc. by using the simple search bar up above. Most of the data in the index covers web servers at the moment, but there is some data on FTP, Telnet and SSH services as well.
I’ve just looked upon the new search engine. My first impression was : Holy s.., it could find a lot of buggy servers, websites, devices and so on.
But when playing again with google dorks (GHDB), it happens to look (hope i’m not mistaken), that Shodan is a kind of GUI for google (...) -
Acunetix WVS v6.5 build 20091124 released
24 November 2009, by Tools Tracker TeamAcunetix Web Vulnerability Scanner (WVS) is an automated web application security testing tool that audits your web applications by checking for exploitable hacking vulnerabilities. Automated scans may be supplemented and cross-checked with the variety of manual tools to allow for comprehensive web site and web application penetration testing
An updated build for Acunetix WVS Version 6.5 has been released with a number of improvements, bug fixes, and most important of all, a good number of (...)