|
 |
dijous, 24 / agost / 2006 |
[eWeek] 'Pen' testing in the palm of your hand. A l'octubre està previst que comenci la comercialització d'una PDA especialitzada en la realització de proves de penetració i valoracions de seguretat informàtica. Portarà incorporats un gran nombre d'eines i exploits i podrà executar proves de forma automàtica. Està pensada per ser utilitzada en xarxes amb fils i sense fils.
Immunity SILICA is a hand-held penetration testing product that leverages Immunity CANVAS to provide a unique testing tool for networks. Currently it supports 802.11 (Wi-Fi) and Bluetooth wireless connections or optionally Ethernet via USB. Its slim, PDA-like profile allows the penetration tester to perform testing while appearing to perform an innocuous behavior.
Example Use Cases:
Tell SILICA to scan every machine on every wireless network for file shares and download anything of interest to the SILICA device. Then just put it in your suit pocket and walk through your target's office space.
Tell SILICA to actively penetrate any machines it can target (with any of Immunity CANVAS's exploits) and have all successfully penetrated machines connect via HTTP/DNS to an external listening post running Immunity CANVAS Professional.
Mail SILICA to your target's CEO, then let it turn on and hack anything it can as it's sitting on their desk.
Have SILICA conduct MITM attacks against people on a wireless network.
Use SILICA as you would CANVAS on your desktop - just smaller.
Because every penetration test is different, Immunity SILICA is highly customizable. Based on the Open Source Linux operating system and the pure Python Immunity CANVAS attack framework, if one of SILICA's built in attack profiles does not fit your needs, you can easily craft one that does.
|
16:21 (# Enllaç permanent) | Comentaris: | Trackback:
|
|
We now have available for your listening enjoyment all of the HOPE Number Six talks and panels. To listen, simply go to http://www.hopenumbersix.net/speakers.html.
We want to thank everyone who helped to make HOPE Number Six the most successful HOPE conference yet, judging from the comments we've been getting. If you'd like us to include your comments, experiences, and feedback concerning this year's HOPE in our post-HOPE section, send an email to feedback@2600.com. If you have pictures or videos, send them along as well. We'd also like to hear your suggestions on how we can make things even better in 2008.
|
10:39 (# Enllaç permanent) | Comentaris: | Trackback:
|
|
[Google Blogoscoped] The Search for Secret Google Services. Tony Ruscoe sovint és la primera persona de fora de Google que parla sobre els nous serveis, molt abans que siguin anunciats. En aquest post explica com ho fa per descobrir-ho... i aquestes tècniques també serveixen per identificar material accessible a Internet però que no és "públic".
|
09:57 (# Enllaç permanent) | Comentaris: | Trackback:
|
|
El trenta-set és un nombre força bonic i especial:
Com veieu, és un gran nombre... però per a mi, la importància del nombre trenta-set rau en el fet que és el nombre d'anys que han transcorregut des del meu naixement.
És a dir, que avui és el meu aniversari i faig trenta-set anys ;)
Resteu convidats a visitar la meva llista de regals a Amazon.
|
00:19 (# Enllaç permanent) | Comentaris: | Trackback:
|
|
© Copyright 2003-2006 Xavier Caballe. . Si no s'indica expressament el contrari, el material publicat en aquest weblog es distribueix d'acord amb la llicència Creative Commons. El contingut és responsabilitat única i exclusivament del seu autor i no té cap relació amb les seves activitats professionals.
|
 |
 |
 |
 |
Contingut actualitzat
Categories
Darrers comentaris
Arxiu
Contingut antic
(ja no s'actualitza)
Versions anteriors
d'aquesta pàgina
|
 |
 |
 |
 |
|