Showing posts with label Suite Pentesting. Show all posts
Showing posts with label Suite Pentesting. Show all posts

Wednesday, April 10, 2013

[Viproy] VoIP Penetration Testing Kit



Viproy Voip Pen-Test Kit is developed to improve quality of SIP Penetration Tests. It provides authentication feature that helps to create simple tests. It includes 7 different modules with authentication support: options tester, brute forcer, enumerator, invite tester, trust analyzer, proxy and registration tester. All attacks could perform before and after authentication to fuzz SIP services and value added services.

SIP Pen-test guide will be published soon. Basic Usage of Modules are presented below, it can be used before guide. All modules have DEBUG and VERBOSE supports.

Wednesday, March 13, 2013

[Kali Linux v1.0] La más avanzada, robusta y estable Distribución para Pentesting

Hace ya algún tiempo se anunciaba en el blog oficial de  Offensive Security (creadores de Backtrack) que saldría una nueva Distribución GNU/linux de Pentesting que se llamaría Kali, esta es descrita por sus mismo creadores como la más avanzada, robusta y estable distribución para Pentesting a la fecha.

Kali Linux ya está disponible para su descarga y trae consigo más de 300 herramientas de pentesting, han cambiado el entorno de Bactrack basado en Ubuntu 10.04 LTS por un sistema Debian y ahora trae soporte para ARM.

Descarga Kali Linux v1.0

Página oficial: http://www.kali.org/
Documentaciòn en Español: http://es.docs.kali.org/introduction-es
Repositorios Git: http://git.kali.org/gitweb/


[Fuente]

Wednesday, January 30, 2013

[Revenssis] Mobile Penetration Testing Suite

Fully featured network, wireless and web app pentesting suite for Smartphones

Nicknamed as the "Smartphone Version of Backtrack", Revenssis Penetration Suite is a set of all the useful types of tools used in Computer and Web Application security. Tools available in it include: Web App scanners, Encode/Decode & Hashing tools, Vulnerability Research Lab, Forensics Lab, plus the must-have utilities (Shell, SSH, DNS/WHOIS Lookup, Traceroute, Port Scanner, Spam DB Lookup, Netstat... etc). All these fitting in an application approx. 10MB (post installation). 


Features:
  • All Web Vulnerability Scanners including:
  • SQL injection scanner
  • XSS scanner
  • DDOS scanner
  • CSRF scanner
  • SSL misconfiguration scanner
  • Remote and Local File Inclusion (RFI/LFI) scanners
  • Useful utilities such as:
  • WHOIS lookup, IP finder, Shell, SSH, Blacklist lookup tool, Ping tool,
  • Forensic tools (in imlementation) such as malware analyzers, hash crackers, network sniffer, ZIP/RAR password finder, social engineering toolset, reverse engineering tool
  • Vulnerability research lab (sources include: Shodan vulnerability search engine, ExploitSearch, Exploit DB, OSVDB and NVD NIST
  • Self scan and Defence tools for your Android phone against vulnerabilities
  • Connectivity Security Tools for Bluetooth, Wifi and Internet. (NFC, Wifi Direct and USB in implementation)  
Download: http://www.revenssis.com     http://sourceforge.net/projects/revenssis/

Monday, January 28, 2013

[PentBox] Suite de Pentesting



Pentbox es una Suite que contiene herramientas para pentesting, entre sus herramientas podemos destacar las siguientes:

1.- Herramientas de Criptográfia.
2.- Herramientas de Redes.
3.- Herramientas Extra.

Esta suite de seguridad informática esta disponible tanto para plataforma Windows, Freebsd, Linux, Osx, entre otros.

Contiene herramientas de las cuales se puede aprovechar mucho, una de las herramientas que mas me llamó la atención fue la herramienta de “Implementacion de un Honeypot” donde podemos simular un puerto abierto y esperar que el atacante se ponga a escanear o atacar dicho puerto, entonces la herramienta nos dará el aviso de una posible intrusión por parte de un atacante sin que este lo note.

Capturas de la herramienta corriendo en diferentes plataformas:

Pentbox en Windows:


Pentbox en Gnu/Linux:






Pentbox en Android




Bien como pueden ver esta magnifica herramienta puede correr en muchas plataformas, asi que no esta demás de darle una probada para ver que tal funciona para nuestras pruebas de penetración.


Pueden visitar el proyecto en su pagina oficial: Pentbox

[Fuente]