weedlog is a packet logger designed to help in debugging network connections on non-router systems. It currently supports the ICMP, IGMP, TCP, and UDP protocols. weedlog supports sending output to stdout, a file, or to syslog.
fe774ec44cee497b1a0f7af6899533ecc38a56afc3f040f9cda58512843cdae5
Watchfile will display a list of specified files on the screen, and continually update their stats. The stats displayed (i.e. file size, modified time, owner, etc.) can be configured on the command-line along with the update frequency.
ba0fd45f64df9c7832434769f98fae5f6cc552866915de5efc17504ab8d8b22c
webdecoy.tgz is a small script that can find, remove and replace vulnerable CGI scripts on the local webserver with "decoy" CGIs, which log exploit attempts.
853f3f8326f0656b1f9c046c35b006d4d37ff9fd19357e3909da8eb0e31eb4f8
Nsat is a fast bulk security scanner designed for long-range scans written in C++ which scans and audits about 60 different services and 170 cgis with different scan intensity.
3ab2a97528f2860fe8da6c53e97c0b30414f7de6150a4d2fb4dfed024c39a521
Kmap is a QT/KDE front-end to nmap, a popular and powerful console portscanner. Kmap allows quick and easy access to all of nmap's features, with much less hassle. Kmap also sorts the output from nmap into usable sections, so you easily extract the information you want.
d52a9015b9ab1bf91671fd7274fa9ee1a3e10f39f2b0b5b7183ce1c8e4cab5a5
Macintosh - MacPork new Developed by Team2600 MacPork is a auditing tool like many seen for unix platforms, this is a small program that allow you to scan a server for tracking holes and exploiting them. MacPork scan over 130 vulnerabilities and retrieve a passwd file in 45 differents manners. It's the best scanner/retriever ever made on both macintosh and unix.
d7495fce7255a9e66fa5180935216c57032fe1c5cd128d9e91f5e16c27ca3616
Macintosh - MagicKey III Created by SystemCowboy of Digital-Rebels The program will atempt to crack a users account on an appletalk network. OS8 Ready.
b747406d8e1a99ec68bff235fca00d5b94a5025fdac001bc919a993836ae20d9
Simple port checker that either takes command-line input or file input and checks each host if a given port is open.
c6196cb0030306034df4e5f018b488e74133893235f29df326bb4ff2de6299ec
PlusMail CGI remote exploit - This posts the form to the victim, reads the data, binds to a port on the local machine, then you open up a browser and go to https://localhost:4040.
65735cef498dd42d12cd9b4a11b9ed5eb2ec95a330443001f62c15aa73e980df
Getwksinfo is a little program coded for Windows 95/98/NT/2000 that gets the parameters of a remote Windows NT server, parameters include NetBIOS name, NetBIOS domain/workgroup, amount of users currently logged in, and remote operating system version.
2e05d6ca2a325c70bf4d891313dede50016ea3ec3834a29b7f44982e18cac92d
Intact Open Use is a host integrity checking system for Windows NT available free for non-commercial use. Intact can detect change in the NT filesystem and NT registry. Other versions of Intact include Intact Intelligence and Intact Enterprise. Unlike Intact Open Use, these can monitor a system for change and build an optimal configuration file containing objects and object characteristics which do not normally change. To clarify, this is a lightweight free version.
3d0d7cfe5fed2cfb449d8b784b7ea4c0a4c27460bd673ff6953b27415e43f933
Simple perl scripts for generating a catalog of MD5 hashes of executable files under NT, and later comparing the catalog to new snapshots. Compares based on missing or additional files, differing MD5 hashes, modification dates, and file attributes.
6bab0ab22e817f7d4d6cbb0081fc29758f51d25453c01f6a99be598279b2c685
Dsniff contains several powerful new network tools, written for use in penetration testing. Arpredirect is a very effective way of sniffing traffic on a switch by forging arp replies. Findgw determines the local gateway of an unknown network via passive sniffing, which can be used in conjunction with arpredirect to intercept all outgoing traffic on a switch. Macof floods the network with random MAC addresses, causing some switches to fail in open repeating mode, facilitating sniffing. Dsniff is a simple password sniffer which parses passwords from many protocols, only saving the "interesting" bits. Mailsnarf is a fast and easy way to violate the Electronic Communications Privacy Act of 1986. Urlsnarf outputs all requested URL's from HTTP traffic. Webspy sends URLs sniffed from a client to your local Netscape browser for display, updated in real-time (as the target surfs, your browser surfs along with them, automagically).
3e2ba48592e238432309cc390cea45781fbf3bfd215112c6d81acde38ca6916c
Secure FTP (sftp) implements a file transfer protocol using ssh/rsh as the transport mechanism. When the client is invoked, a remote shell is spawned and the server is run. sftp is mainly useful over a secure ssh session since passwords are not exposed. It also has the advantage that no root access is required, since the server runs as a user process.
e35aa9a46e14873628d8e21da671ac82c48cc18c978ae56c9d03a24f67f33534
This is a simple script written in tcl which parses the output of the nmap program to determine whether required services are in fact running on a machine. Output is written as an html formatted log file.
e7ffd4cb2568288bd041ca938ab43c887d064dbb920e4b2b0ab6c7a913cd439d
SAINT, based upon SATAN, is a network security scanner which runs on Unix platforms. This version includes fixes for the y2k and timeout problems in http checks, and features the ability to scan multiple hosts, subnets, or IP address ranges. There are also new configuration options and two new severity categories, and a new check for the stacheldraht distributed denial-of-service tool.
641a040138f951d893ed2c6db68a343f94d8be62e71a7fb9cc826eb8fe5cbe33