Author: techfox9
Hakin9 Jan 2005 ..
Tuesday, January 4th, 2005 @ 12:52 am
- Expose an Email Sender
- Safe Storage of Confidential Data under GNU/Linux
- Cisco IOS from an Attacker’s POV
- Internal Penetration Tests
- Analysis of Suspicious Programs
- Reverse Engineering ELF Executables in Forensic Analysis
- Port Scanning – an Admin’s POV
- Tools
- h9.DiskShredder – lite version on Hakin9 Live CD
- netwox and netwag (GUI to netwox) – See Hakin9 Live CD
- sniffit
- iptraf
- Web resources
Email header analysis
Encrypting with gpg: files, directories, file systems
Vulnerabilities via web admin, tftp, snmp, denial of service
Tools: Cain and Abel, Hydra, Cisco Crack, Brutus, hping2
tcpdump, nmap, nessus
Program info tools: PEiD, FileInfo.
Disassemblers: IDA (commercial – http://www.datarescue.com/)
ELF = Executable and Linking Format
Tools: binutils: ar, nm, objdump, strings, ht, file
Tools: telnet, sendip, nmap, pkdump, lestat, portsentry, PSAD
Note: secure file remove: srm
Network diagnostics: TCP, ping, sniff, tcpdump, IRC client.
Simple packet sniffer – intercept APOP, POP3, CRAM-MD4 (clear text), traffic.
Traffic analyzer, sort by transfer sizes, filters.
http://en.securitylab.ru/ – security advisories, info
http://www.skyfree.org/ – linux tools, info
http://www.honeynet.org/ – attacks