We are happy to announce some changes we made on security-database website.
The registration to view complete vulnerability information has been removed. In fact, many users asked us to remove this annoying restriction. So, it’s done.
We are also proud to start a new Partners/Affliates program (Partners Menu). This will allow us to promote new software, technology or security conferences. And our first partners are VoIPScanner.com, the First VoIP Assessment As A Service, released by (...)
Home > Security Tools
Security Tools
-
Security-Database Website improvements
29 July 2009, by Tools Tracker Team -
The famous l0pht.com is up and running ...
29 July 2009, by Tools Tracker TeamThe l0pht Heavy Industries website along with their famous tagline "Making the theoretical Practical" is up again and running. Sure, the design has changed a bit from what we knew in the early of 90’s. But all members are there. Now, hope that MoD - Masters of Deception - will be back too :)
See their website here http://www.l0pht.com/ -
GFI launches GFI MAX Tools for IT support
28 July 2009, by Tools Tracker TeamGFI MAX delivers an easy, affordable solution for IT support providers, Value Added Resellers (VARs) and Managed Service Providers (MSPs) who are looking to take better care of their clients at less cost
Since this morning on Twitter, i’ve tracked the countdown on GFI website during 2 hours to discover the new service : GFI MAX (aka HoundDog)
Rather than just monitor their server, GFI MAX takes a more rounded approach to IT support. With our system, you’ll be able to monitor your clients’ (...) -
New version of OSWA-Assistant out at DEFCON2009
28 July 2009, by Tools Tracker TeamThe OSWAâ„¢-Assistant is a self-contained, freely downloadable, wireless-auditing toolkit for both IT-security professionals and End-users alike
The version no. is 0.9.0.6g and it has many updates/new WiFi,
Bluetooth and RFID tools added to what was there before.
The general public can download the 0.9.0.6g release at http://oswa-
assistant.securitystartshere.org starting from 2359hrs on 5 Aug 2009.
(as we’re giving WoS a 72hr exclusive lead)
Some examples of new stuff added into what was (...) -
SQLmap version 0.7 in the wild
28 July 2009, by Tools Tracker TeamSQLmap is an automatic SQL injection tool entirely developed in Python. It is capable to perform an extensive database management system back-end fingerprint, retrieve remote DBMS databases, usernames, tables, columns, enumerate entire DBMS, read system files and much more taking advantage of web application programming security flaws that lead to SQL injection vulnerabilities.
Changelog for this release : Adapted Metasploit wrapping functions to work with latest 3.3
development version (...) -
Hyena v7.7 available
22 July 2009, by Tools Tracker TeamUsing the built-in Windows administration tools to manage a medium to large Windows NT or Windows 2000/2003 network can be a challenge
Hyena uses an Explorer-style interface for all operations, including right mouse click pop-up context menus for all objects. Management of users, groups (both local and global), shares, domains, computers, services, devices, events, files, printers and print jobs, sessions, open files, disk space, user rights, messaging, exporting, job scheduling, (...) -
pwntooth The Bluetooth Pentesting mastermind v0.2 available
22 July 2009, by Tools Tracker Teampwntooth (pown-tooth) is designed to automate Bluetooth Pen-Testing. It scans for devices, then runs the tools specified in the pwntooth.conf; included blueper, bluesnarfer, Bluetooth Stack Smasher (BSS), carwhisperer, psm_scan, rfcomm_scan, and vcardblaster.
Included utilities in the toolset blueper bluesnarfer Bluetooth Stack Smasher (BSS) carwhisperer psm_scan rfcomm_scan vcardblaster
Changes for v0.2 changed install method. installed pwntooth.conf into /etc/bluetooth directory. (...) -
QueryParam Scanner v0.71
22 July 2009, by Tools Tracker TeamqpScanner is a simple tool that scans your codebase looking for queries. For every query it finds, it will check if there are any CFML variables in that query that are not contained within a cfqueryparam tag.
Once complete, it will display a list of files with queries to be checked, listing the line numbers and showing the contents of the query
Features : Finds all variables in cfquery without a surrounding cfqueryparam. Displays filenames, line number and query contents for all potential (...) -
VoIPScanner.com the First VoIP Assessment As A Service
20 July 2009, by Tools Tracker TeamVOIPSCANNER.COM makes scanning your public facing IP PBX for security holes easier than ever. No need for desktop applications or any software installation, just enter the IP address of your IP PBX and you will receive a report of what attackers out there might find about your IP PBX.
How does it work / What will it do? The scanner will first check if the given IP address has a SIP-based IP PBX listening. Proceed with extension enumeration For each extension found, it will try to crack (...) -
RedWolf Security Threat Generator version 149
20 July 2009, by Tools Tracker TeamRedWolf is a security threat simulator that tests security
system effectiveness. Its threat generation capabilities include email,
IM, malware, P2P, social networking, VoIP, DDoS, and many more. RedWolf’s guiding philosophy is that by generating realistic scenarios in a wide variety of categories, an auditor or organization can assess the
effectiveness of network defenses.
The scenario suite allows one to verify compliance with PCI-DSS, Sarbanes-Oxley, or HIPAA controls.
RedWolf helps (...)