DNSKiller - Demonstrates a bug in Microsoft DNS server.
9548ccfae869d74f2c33e0f6c9837afdf43d4c5dbdca426b2320812f86650285
Sample Windoze NT RAS PPTP exploit - I discovered that NT 4.0 w/SP3 and RAS PPTP is vulnerable to a DOS causing core dump.
ad9c01a16645eeb27660169f4af9e9eaaf73657ae1960e49bfb8be1a5b6f36f9
x-dumper.sh remote xwin exploit - Will attempt to dump a screen via xwd.
96d0729bcca71837b7dee733fc336e26e563a24160bf80dc4c8267c52eb3df1a
TESO Security Advisory - A vulnerability within the wmcdplay CD playing application for the WindowMaker desktop has been discovered. It allows local root compromise through arbitrary code execution.Any system which has wmcdplay installed as setuid root is vulnerable.
8d5071c1366d929bea61249f0900db3205b2b45ad04b4e9179fa21f235aaefe6
TESO Security Advisory - The atsar application contains an exploitable vulnerability. The Halloween 4 Linux distribution, which is based on RedHat 6.1 is shipped with this suid-root program. It might be used to gain superuser privileges. Any system that has atsar-linux-1.4.2 package installed is vulnerable.
506159ce20ba014e7a4a853444879fe6306bfc6bad43dc564b8b124ccdf79f23
dsniff is a suite of utilities that are useful for penetration testing. It consists of the following programs: arpredirect intercepts packets from a target host on the LAN intended for another host on the LAN by forging ARP replies. findgw determines the local gateway of an unknown network via passive sniffing. macof floods the local network with random MAC addresses. tcpkill kills specified in-progress TCP connections. dsniff is a simple password sniffer which handles many protocols. mailsnarf outputs all messages sniffed from SMTP traffic in Berkeley mbox format. webspy sends URLs sniffed from a client to your local Netscape browser for display, updated in real-time.
dc0cbf5de5dcd7b2cd3f8f5fc63b1f88894d28623fddcc4131a33f704890dbc5
syslog-ng as the name shows is a syslogd replacement, but with new functionality for the new generation. The original syslogd allows messages only to be sorted based on priority/facility pair, syslog-ng adds the possibility to filter based on message contents using regular expressions. The new configuration scheme is intuitive and powerful.
191449d90ff0184f40268f30143099a9a8df3f02ec2d252bab62726e6f5880c6
gShield is an aggressive, modular, ipchains-based firewall script. Features include: easy configuration through a BSD-style configuration file, optional IPmasq support, TCP-wrapper-like funtionality for service access, and extremely restrictive defaults. It hopes to make administrating a comprehensive firewall easier, as well as offering robust protection while being easy to setup/maintain.
5d4d808f0ef5cac8c9579ce9b1b842222cd9999786e88aea26247088404d1885
oftpd is designed to be as secure as an anonymous FTP server can possibly be. It runs as non-root for most of the time, and uses the Unix chroot() command to hide most of the systems directories from external users--they cannot change into them even if the server is totally compromised. It also contains its own directory-change and directory-listing code (most FTP servers execute the system "ls" command to list files).
e2466e6ded7fc37fff4afb7f071f201ae35601fa60d7312ce04a05da58c0c00a
Narrow Security Scanner 2000 searches for 365 remote vulnerabilities. Written in perl, tested on Redhat, FreeBSD, and OpenBSD, Slackware, and SuSE.
429f3e6251158f3a67d06809f6a73bd586df173c7d1127a49753b5cabfc6dc5c
BsdScan is a light-weight port-scanner designed for the BSD operating system. It currently supports scanning single hosts, subnets, logging results, scanning ports in a random order, specifying a port range, and a speed option to only scan commonly used ports.
8f091f9575c7f5f4c662e058703abec9de8b999c4e81ba597f92cbf609c8a636
Security Auditor's Research Assistant (SARA) is a security analysis tool based on the SATAN model. It is updated frequently to address the latest threats. Checks for common old holes, backdoors, trust relationships, default cgi, common logins.
fc986312f5e6c0bd77ad5e86bf4720d9be62f158e125bd2e7f5409a06ece49bf
pgp4pine is a script that automatically encrypts and decrypts mail under Pine using PGP. The user is not separated from things that PGP does. The program is compatible with PGP versions 2.6.3, 5.0, 6.5.1 and GNUPG 1.0, has support for an aliases file and signature-rotating programs, and can remember your passphrase for a session if you need.
6fe1044d1fd0c0418056cc32fc3845be84406c135fef8519d9b4a00015a8ffbc
Wingatelnet automatically routes your connection through a list of wingate servers, dramatically increasing your anonimity.
6776e02e76e4ca81467bdd2461449ce984c32024fd287d63bd0b107f5f035ae8