Week 14 in Review – 2010

Events Related:

Resources:

Tools:

  • MoonSols Windows Memory Toolkit – moonsols.com
    MoonSols Windows Memory Toolkit is the most advanced toolkit for Windows physical memory snapshot management.
  • Netsparker Community Edition – mavitunasecurity.com
    Netsparker Community Edition is False Positive Free and can detect both SQL Injection and Cross-site Scripting issues better than many other scanners.
  • SFX-SQLi V1.1.3.2 – kachakil.com
    SFX-SQLi (Select For XML SQL injection) allows you to extract the whole information of a Microsoft SQL Server 2005/2008 database in an extremely fast and efficient way.
  • TCPDump v4.1.1 –  tcpdump.org
    Tcpdump is a common computer network debugging tool that runs under the command line.
  • Libpcap v1.1.1 – tcpdump.org
    Changes include a fix build on RHEL5 and shared library fix build on AIX, among others.
  • Malware Check Tool v1.0 – mertsarica.com
    It calculates the md5 hash of a specified file and searches it in its current hash set (offline) or on virustotal site (online) and show the result.
  • FreeSentral IP PBX LiveCD v1.0 – freesentral.com
    FreeSentral is a full IP PBX consisting of a Linux Distribution, an IP PBX and a Web Graphical User Interface for easy configuration.
  • PyLoris v3.0 – sourceforge.net/projects/pyloris
    PyLoris is a tool for testing a web server’s vulnerability to a particular class of Denial of Service (DoS) attacks.
  • Introducing mitmproxy: an interactive man-in-the-middle proxy – corte.si
    It’s aimed at software developers and penetration testers, who need to intensively tamper with and monitor HTTP traffic.
  • Scapy – freshmeat.net
    Scapy is a powerful interactive packet manipulation tool, packet generator, network scanner, network discovery tool, and packet sniffer.
  • StreamArmor – Discover & Remove Alternate Data Streams (ADS) – darknet.org.uk
    StreamArmor is a tool for discovering hidden alternate data streams (ADS) and can also clean them completely from the system.
  • Peach Fuzzer Framework v2.3.4 – peachfuzzer.com
    Peach is a SmartFuzzer that is capable of performing both generation and mutation based fuzzing.
  • PVEFindAddr v1.30 – corelan.be
    PVEFindAddr is a PyCommand (plugin) for Immunity Debugger.
Techniques:

Vulnerabilities:

Vendor/Software Patches:

Other News:

Leave A Comment