Update Packetfence v-4.0.6
changelog v-4.0.6: Update NEWS file ; NEWS.asciidoc Clear an object internally when retreiving directly from chi Removed the localization of lib/pf/authentication.pm in first filter Fixed issues with...
View ArticleUpdate Snort v-2.9.5.5 : A network intrusion prevention and detection system
changelog Snort v-2.9.5.5: [*] Improvements * Address issue with SMTP preprocessor and the ignore_tls_data configuration to correctly stop inspection after an SMTP session is encrypted. (Thanks Bram!)...
View ArticleUpdate SmoothSec v-3.4 : IDS/IPS Linux distribution.
24-09-2013 SmoothSec 3.4 released [*] Improvements and fixes New available deployments: Standard (IDS mode – All in one mode [Snorby + Sensor] Console (IDS mode – Distributed [Only Snorby web...
View ArticleOwasp Droid Fusion Beta Released : all in one mobile security research.
Droid Fusion is a platform for android mobile or any other mobile for doing Malware Analysis, Development, Application Pentesting,forensics. You can use it in any mobile security research, and if you...
View ArticleUpdate Packetfence v-4.1.0
changelog PacketFence – 4.1.0 : ====================================== - 0001752: [scanning] Fresh Snort install fails to start after rules update script is run (francis) – resolved. - 0001749: [web...
View ArticleXplico v-1.1.0 released : Network Forensic Analysis Tool (NFAT).
Xplico is installed in the major distributions of digital forensics and penetration testing: Kali Linix, BackTrack, DEFT, Security Onion, Matriux, BackBox, CERT Forensics Tools and Pentoo. The goal of...
View ArticleUpdates Tools : a Collection security and hacking tools; likes exploits,...
Change and Update 14.03.2015 updates vulnerability scanner: ## Blackbox vulnerability scanne for the concrete5 CMS ## Detects concrete5 CMS, version and associated vulnerabilities ## Detects full path...
View ArticleRATDecoders : Python Decoders for Common Remote Access Trojans.
Ratdecoders : a collection of Python Scripts that will extract and decode the configuration settings from common rats. see the allocated address of the memory in the EAX register: 0x40B61B Change and...
View ArticleSmudge is a simple Windows forensics tool.
Smudge is a Windows forensics tool with a simple premise, attackers are lazy when installing persistence mechanisms. Persistence usually involves installing some mechanism on a compromised machine to...
View ArticleUpdates FatNetMon – high performance DoS/DDoS analyzer with sflow/mirror...
Latest changes, bug fixes and tool added : – Add update GeoIP files – Rename .cpp cod to .c for packet parser – Add help to project remark – Add script for geoip bases update – Move common code to...
View ArticleAndrotools is a Android malware static & dynamic analysis and automated action.
androtools is Android malware static & dynamic analysis tool optimized for automated analysis. This work was motivated observing real-world needs for Police Officer and Malware Analysts who want to...
View ArticleDnsforwarder is a designed for anti-spoofing tool.
Dnsforwarder is a designed for anti-spoofing tool. Latest version 5.0.11: – Bug Fixing Compiling on win x86 and win x64 A dnsforwarder designed for anti-spoofing configure parameters:...
View ArticleMaldrolyzer – Simple framework to extract “actionable” data from Android...
Maldrolyzer is a Simple framework to extract “actionable” data from Android malware (C&Cs, phone numbers etc.) Changelog 30.03.2015 : + Templates.py ; Modules + maldrolyzer.py ; Reorganization +...
View Articlehandle_monitor – Identifying and Disrupting Crypto-Ransomware (and...
Detects abnormal number of handle creations in an attempt to identify crypto ransomware encryption, or destructive malware in action handle_monitor – Identifying and Disrupting Crypto-Ransomware (and...
View ArticleUpdates RATDecoders : Python Decoders for Common Remote Access Trojans.
Change and updates 04.03.2015 jRat Rat Config Extractor : +__description__ = ‘jRat Rat Config Extractor’ +__author__ = ‘Kevin Breen http://techanarchy.net http://malwareconfig.com’ +__version__ = ‘0.3’...
View ArticleVolDiff – Malware Memory Footprint Analysis.
VolDiff is a bash script that runs Volatility plugins against memory images captured before and after malware execution. It creates a report that highlights system changes. VolDiff is a simple yet...
View ArticleMalscan is a powerful malware scanner and leveraging.
Malscan : Robust ClamAV-based malware scanner for web servers. Version 1.4.3 Released: May 5, 2015 : + Bugfix: Corrected a logging path issue. All log files will now be correctly generated in the ‘log’...
View ArticleUpdates VolDiff – Malware Memory Footprint Analysis.
Latest Version v-1.2: + Added checks to search for executables/DLLs loaded from TEMP folders + Added checks to search for keylogger artifacts + Added a check to dump and analyse the hosts file + Added...
View ArticleUpdates RIPS v-0.5.5 – A static source code analyser for vulnerabilities in...
CHANGELOG RIPS 0.55: ———————————- – updated configuration (sources, sinks, sanitization) – added session fixation detection – seperated reflection injection from code injection – changed defaults...
View ArticleUpdates Lynis v-2.1.0 : is a system and security auditing tool for Unix/Linux.
Changelog v-2.1.0: General: ——— Screen output has been improved to provide additional information. OS support: ———— CUPS detection on Mac OS has been improved. AIX systems will now use csum utility to...
View Article