Increased Visibility

Ramblings of an Information Security Analyst

Archives for the ‘Tools’ Category

Demonstrating XSS with BeEF

By Jason • Jun 14th, 2010 • Category: SBN, Tools

The Browser Exploitation Framework is used to capture the login credentials of a site’s users as they authenticate to the site.



Using Wireshark and John to Crack LEAP

By Jason • Sep 1st, 2009 • Category: SBN, Tools

Cisco’s wireless authentication protocol, LEAP, can be cracked using Wireshark and John the Ripper.



Host Integrity Monitoring – Osiris (part 1)

By Jason • Feb 18th, 2009 • Category: SBN, Tools

Right now, I am reading your email. Doubt me? If you’re not monitoring your hosts, how do you know?



NetStumbler: Finding Wireless Access Points

By Jason • Aug 14th, 2008 • Category: Tools

NetStumbler is a solid wireless network discovery tool. Download it today, and go do a little wardriving.



Scrawlr – SQL Injection Vulnerability Scan Tool

By Jason • Jun 25th, 2008 • Category: Tools

HP created a trimmed down version of WebInspect that can crawl your website and find SQL injection vulnerabilities.



Backtrack 3 Final Released

By Jason • Jun 21st, 2008 • Category: Tools

Arguable the best linux live penetration testing tool available, Remote-Exploit.org has just released a new version of BackTrack.  I’ve used version 2 on the job, and have played around with beta versions of 3.  I’d recommend picking it up and taking a look.  With over 300 tools, including MetaSploit, Wireshark, Airsnort, and plenty of scripts, [...]