sqlmap is an open source command-line automatic SQL injection tool developed in Python. Its goal is to detect and take advantage of SQL injection vulnerabilities on web applications. Once it detects one or more SQL injections on the target host, the user can choose among a variety of options to perform an extensive back-end database management system fingerprint, retrieve DBMS session user and database, enumerate users, password hashes, privileges, databases, dump entire or user’s specific (...)
Home > Security Tools
Security Tools
-
SQLMap 0.6.4 released
6 February 2009, by Tools Tracker Team -
HoneyPoint Personal Edition 2.00 released
6 February 2009, by Tools Tracker TeamHPPE intercepts attacker activity in the targeting stage and gives Admins the capability to quickly shut them down before they can do serious damage. HPPE simply turns attacker targets into security sensors!
Features: Easy To Use: Windows Interface Includes Status Indicators and Complete Logging Capability Runs in the Task Tray and Features Very Low Footprint Ultra-Configurable: Emulates Thousands of System Services Both TCP and UDP HoneyPoints Captures Attackers as They Target Systems (...) -
Fusil the fuzzer v1.2 released
4 February 2009, by Tools Tracker TeamFusil the fuzzer is a Python library used to write fuzzing programs. It helps to start process with a prepared environment (limit memory, environment variables, redirect stdout, etc.), start network client or server, and create mangled files. Fusil has many probes to detect program crash: watch process exit code, watch process stdout and syslog for text patterns (eg. "segmentation fault"), watch session duration, watch cpu usage (process and system load), etc.
User visible changes: Fusil (...) -
Metascanner utility v1.1 released
4 February 2009, by Tools Tracker TeamMetaScanner is a script in ruby to scan a host for exploits than are
already in metasploit framework.
Metascanner is an utility to be used with nmap. This examines the output of nmap, and uses a metasploit vulnerability database created by scan_meta.rb to identify possible vulnerabilities on hosts. Please note that this scanner produses a lot of false possitives and is currently under (...) -
BackTrack 4 will be soon available
3 February 2009, by Tools Tracker TeamBackTrack is the result of the merging of two Innovative Penetration Testing live Linux distributions - Whax and Auditor. BackTrack has been dubbed as the best Security Live CD today, and has been rated 1st in its category, and 32nd overall in Insecure.org. Based on SLAX (Slackware), BackTrack provides user modularity. This means the distribution can be easily customised by the user to include personal scripts, additional tools, customised kernels, etc
Now based on Debian core packages and (...) -
Slitaz Aircrack-ng Distribution released
1 February 2009, by Tools Tracker TeamThe “Slitaz Aircrack-ng Distribution†is the base Slitaz cooking version plus the latest Aircrack-ng SVN version, wireless drivers patched for injection and other related tools. The custom distribution is especially tuned for the Acer Aspire One netbooks but will work well on virtually all desktops, notebooks and netbooks. It is extremely small (75meg), requires minimal memory and includes a rich set of programs.
Summary of what is Included: Aircrack-ng 1.0 rc2 r1373 including sqlite (...) -
Nmap development v4.85beta2 released
31 January 2009, by Tools Tracker TeamNmap ("Network Mapper") is a free open source utility for network exploration or security auditing. It was designed to rapidly scan large networks, although it works fine against single hosts. Nmap uses raw IP packets in novel ways to determine what hosts are available on the network, what services (application name and version) those hosts are offering, what operating systems (and OS versions) they are running, what type of packet filters/firewalls are in use, and dozens of other (...)
-
Hyenae 0.26-1 released
30 January 2009, by Tools Tracker TeamHyenae is a highly flexible and platform independent network
packet generator. It allows you to reproduce low level ethernet attack
scenarios (such as MITM, DoS and DDoS) to reveal the potential security
vulnerabilities of your network. Besides smart wildcard-based address
randomization and a highly customizable packet generation control, Hyenae comes with a clusterable remote daemon for setting up distributed attack networks
Current Features Platform independence Customizable ARP-Reply (...) -
eParapher Nightly builds released : Sign your files digitally
29 January 2009, by Tools Tracker TeameParapher is a end user security software that digitally sign files and manage keystores content’s.
3 standards of digital signature are supported : PDF, PDF/A, CMS and XML. It aims to be easy for the end user : secure by default and "one click" oriented. Advanced users can use wizards for advanced signature and cryptography settings.
eParapher supports : convertion and signature on the fly of your plain text, image and office files with iText API or OpenOffice runtime (v2.4 and later); (...) -
Saint security scanner 6.9.8 available
24 January 2009, by Tools Tracker TeamSAINT is the Security Administrator’s Integrated Network Tool. It is used to non-intrusively detect security vulnerabilities on any remote target, including servers, workstations, networking devices, and other types of nodes. It will also gather information such as operating system types and open ports. The SAINT graphical user interface provides access to SAINT’s data management, scan configuration, scan scheduling, and data analysis capabilities through a web browser. Different aspects of (...)