Welcome to The Professional Security Testers Warehouse for the GPEN GSEC GCIH GREM CEH QISP Q/ISP OPST CPTS
Search
Nickname Password Security Code Security Code Type Security Code  
Penetration Testing the way it was meant to be
The best CEH V6 learning package

We recommend:

Top Instructors Top classes from the confort of your home

Video Library

Skimming for ID theft
5 / 2
Views: 149
Comments: 1
2008-11-01 00:18

Latest version of ATM skimmer hidden behind a speaker looking device
5 / 2
Views: 163
Comments: 0
2008-11-01 00:11

ATM Scam, do check your ATM machine before using it
5 / 1
Views: 159
Comments: 0
2008-10-31 23:59

Survey

Whic of the following certifications would you like to get?

GPEN
GCIH
CEH
QEH
GREM
GSEC
CISSP
Security+
Other (please leave a comment)



Results
Polls

Votes: 111
Comments: 0

Who's Online

There are currently, 81 guest(s) and 4 member(s) that are online.

You are Anonymous user. You can register for free by clicking here
The Professional Security Testers Warehouse for the GPEN GSEC GCIH GREM CEH QISP Q/ISP OPST CPTS: Linux Distro for testers

Search on This Topic:   
[ Go to Home | Select a New Topic ]

Katana V1.5 has been released -- A Linux multiboot DVD
Posted by cdupuis on Wednesday, 03 March 2010 @ 08:51:03 EST (322 reads)
Topic Linux Distro for testers

Katana v1.5 Release

   Updated: 03/02/2010

Katana



Katana v1.5 (Z@toichi) has been released! (Click here for Katana project page) After several months of work and some reconsiderations of the pre-packaged tools, this award winning project has a new release. This release has a couple of major changes to the disto list and the introduction of the Katana Tool Kit. The new version should be much more friendly for all the Windows users out there. The addition of the Katana Tool Kit should make using all the portable Windows apps much easier. Another key addition to Katana is a USB write blocker to prevent that pesky anti-virus from deleting some of the tools. Katana can be Downloaded directly or through it's Torrent.

What is Katana? For those who are not familiar with the project, Katana combines hundreds of security tools to run off a single USB thumb drive. Katana brings together many of the best security distributions (Backtrack, Ophcrack, UBCD, Trinity Rescue Kit, Derik's Boot and Nuke, etc.) along side hundreds of portable Windows applications (Wireshark, HiJackThis, OllyDBG, The Sleuth Kit, ClamAV, FindSSN, AngryIP , etc.) to form a Portable Multi-Boot Security Suite. Katana includes distributions and Windows applications which focus on Pen-Testing, Auditing, Forensics, System Recovery, Network Analysis, Malware Removal and more.

Katana is also highly customizable. One of the major goals in the project was to develop an environment where users could tailor Katana to their needs. Users can customize Katana by adding and removing Distros and Portable Applications with relative ease. The best resource for these sorts of modifications is the Hack From A Cave Forum.

- Distros Line-Up -


The line-up this time around is as follows: Backtrack 4 , the Ultimate Boot CD , Ultimate Boot CD for Windows , Ophcrack Live , Puppy Linux , Kaspersky Live , Trinity Rescue Kit , Clonezilla and , Derik's Boot and Nuke. Users can still customize Katana to add thier favorite distros using the instructions posted here.

There has been a major overhaul in the distros which come pre-loaded with Katana. A lot of this overhaul was due to interests on the forum. Thank you to all the requests and posts we've had. Fear not, instructions on installing all the distros from v1.0 can still be found on the Forum

   
Removed
Got Root? Slax Slax is not being included by default, but Katana users are encouraged to add a Slax based distro and modules to fill in some of the gaps in functionality in the included distrso.
OSWA Assistant Due to the overlap in functionality between this distro and other distros this project has been removed.
Damn Small Linux This project does not appear to be supported anymore.
Damn Vulnerable Linux While this distro is great for learning purposes, it is not as useful for field use.
   
Added
Kaspersky Live Added some anti-virues capabilities to the distro list.
Trinity Rescue Kit Some additional tools for recovery and repair operations on Windows machines
Clonezilla Clone and backup any system.
Puppy Puppy was added to replace DSL. Puppy seems to be better supported.
Derik's Boot and Nuke Quickly erase a disk.
   
Updated
Backtrack Moved from "Backtrack 4 pre" to "Backtrack 4".



- Katana Tool Kit -

 

The Katana Tool Kit (KTK) is a suite of Windows applications which can be run of a USB Flash Drive. Without the need for installation on the base system, users can bring a suite of uncompromised tools with them anywhere. Tools like Wireshark, HiJackThis, Firefox, PuTTY, Unstoppable Copier, OllyDBG, ProcessActivityView, SniffPass Password Sniffer, ClamAV, Undelete Plus, IECookiesView, MozillaCacheView, FreeOTFE, The PC Decrapifier, FindSSN, The Sleuth Kit, and OpenOffice. There are over 100 unique projects included in the KTK.

(See the full list of tools here)

The KTK facilitates fast access to all the Katana Windows applications. The applications are broken down into the following categories: Anti-Virus, Backup, Encryption, File System, Forensics, Media, Networking, Office, Recovery, Registry, System, Utilities. Each project provides unique functionality to the various categories listed above.

The KTK also facilitates the easy addition of other portable applications. By simply installing applications to a sub-folder of the "PortableApps" directory, your favorite applications will appear in the KTK the next time it is launched.
Katana Tool Kit



In Katana v.1.5, several new utilities have also been added to the Katana Tool Kit:

NEW Windows Applications for Katana v1.5
Application Description
GNUWin32 The GnuWin32 project provides Win32-versions of GNU tools, or tools with a similar open source license. The ports are native ports, that is they rely only on libraries provided with any standard 32-bits MS-Windows operating system.
Forensic Acquisition Utilities This is a collection of utilities and libraries By George M. Garner Jr. is intended for forensic or forensic-related investigative use in a modern Microsoft Windows environment. The components in this collection are intended to permit the investigator to sterilize media for forensic duplication, discover where logical volume information is located and to collect the evidence from a running computer system while at the same time ensuring data integrity (e.g. with a cryptographic checksums) and while minimizing distortive alterations to the subject system.
Angry IP Angry IP Scanner (or simply ipscan) is an open-source and cross-platform network scanner designed to be fast and simple to use. It scans IP addresses and ports as well as has many other features
The Sleuth Kit The Sleuth Kit (TSK) is a library and collection of command line tools that allow you to investigate volume and file system data.
SpyDLLRemover SpyDLLRemover is the standalone tool to effectively detect and delete spywares from the system. It comes with advanced spyware scanner which quickly discovers hidden Rootkit processes as well suspcious/injected DLLs within all running processes.
Eraser Eraser Portable is a secure data removal tool that runs directly from your iPod, USB thumbdrive, portable hard drive or any other portable media. You can plug it right into any Windows computer and use it just like you would on your own. It is a repackaged version of the popular Eraser utility designed with portability in mind, so it has all the same great features of Eraser, but there's nothing to install.
VLC VLC Media Player Portable is the popular VLC media player packaged as a portable app, so you can take your audio and video files along with everything you need to play them on the go.
InfraRecorder InfraRecorder Portable is the popular InfraRecorder CD/DVD burning program packaged as a portable app, so you can do your disk burning on the go. It has all the same great features of InfraRecorder including the creation of custom data, audio and mixed-mode projects and recording them to physical discs as well as disc images.
SiteShoter SiteShoter is a small utility that allows you to save a screenshot of any Web page into a file. It automatically creates hidden window of Internet Explorer, loads the desired Web page, and than save the entire content of the Web page into an image file (.png, .jpg, .tiff, .bmp or .gif). You can also use SiteShoter to convert .html file on your local drive into image file.
uTorrent uTorrent is the world's most popular BitTorrent client. Most of the features present in other BitTorrent clients are present in uTorrent, including bandwidth prioritization, scheduling, RSS auto-downloading and Mainline DHT (compatible with BitComet).
gVim gVim Portable is a feature-rich and not-too-hard-to-use text editor, and a very feature rich one at that. With gVim you can code, highlight syntax, and do everything else you would expect of a text editor worth its weight in megabytes.
Ophcrack Ophcrack is a free Windows password cracker based on rainbow tables. It is a very efficient implementation of rainbow tables done by the inventors of the method. It comes with a Graphical User Interface and runs on multiple platforms.



- USB Write Blocker -


A USB write blocker application has been added to help prevent malware installing on the USB Flash Drive and to prevent the anti-virus from deleting any of the totally awesome apps from the Katana Tool Kit. By running the MakeUSBReadOnly.bat on mount, unmounting and remounting the drive, going about you business, and running MakeUSBWritable.bat after you are done, you can prevent most interference by applications on the base OS.

- Misilanious Changes -


- Added drive logo.
- Changed directory for user data from "home" to "Documents".
- Modified boot menu to add scrolling.


(comments? | Score: 0)


PenTBox 1.3 Beta Released
Posted by cdupuis on Monday, 08 February 2010 @ 09:03:51 EST (489 reads)
Topic Linux Distro for testers

Anonymous writes "

PenTBox 1.3 Beta Released

By Alberto (Admin) February 2nd, 2010, under General

New version with new features, specially in Cryptography and Secure IM.

Version 1.3
———–
- Added Crypt Ruby and RubyRc4 libraries.
- Added GOST, ARC4 and Rijndael (aka AES) 256 bits ciphers to Secure IM.
- Improvements in error exceptions and connection on Secure IM.
- fileencr.rb included -> Files encryptor and decryptor that uses Rijndael 256 bits, GOST and ARC4 ciphers.
- Included srand(time.now.to_i) function in programs that use random numbers.
- Added “Packets per second” in TCP DoSer and TCP AutoDoSer.
- Minor changes in titles of programs.

You can download it from the Download area

WHAT IS PenTBox:

PenTBox is a Security Suite that packs a lot of security and stability testing oriented programs for networks and systems.  For example, the Suite has Honeypot, TCP Flood Denial of Service testing tools, Secure Instant Messaging, Port Scanner, Fuzzer, Secure passwords generator and more.

All programs are being developed by PenTBox Team and the contributors of the Free Software community to the project.  Programmed in Ruby, and oriented to GNU/Linux systems (but compatible with Windows, MacOS and more).

It is free, licensed under GNU/GPLv3.

Visit the main site at:  http://www.pentbox.net/

"

(comments? | Score: 0)


SliTaz -- A small Bootable Linux Distribution (30 MB)
Posted by cdupuis on Monday, 30 November 2009 @ 15:07:38 EST (648 reads)
Topic Linux Distro for testers

About SliTaz project

Introduction

SliTaz GNU/Linux is a free operating system working completely in memory from removeable media such as a cdrom or USB key. It is light, speedy and fully installable on a hard drive. SliTaz is distributed in the form of a LiveCD that you can easily burn to a cdrom and boot from. When the system is running you can eject the LiveCD and use your CD drive for other tasks. The Live system provides a fully-featured, working graphical distro and lets you keep your data and personal settings on persistent media. The system can be extended with the Tazpkg package manager and security updates are provided for the cooking and stable versions.

SliTaz project provides free technical support to users through the Mailing list (i18n list) and the English Forum. You can also contact us for more information, suggestions, or comments, using the list or directly by mail :

Overview

  • Root filesystem taking about 100 MB and ISO image less than 30 MB.
  • Ready to use Web server powered by LightTPD with CGI and PHP support.
  • Browse the Web with Mozilla Firefox or Retawq in text mode.
  • Sound support provided by Alsa mixer, audio player and CD ripper/encoder.
  • Chat, mail and FTP clients.
  • SSH client and server powered by Dropbear.
  • Database engine with SQLite.
  • Generate a LiveUSB device.
  • Tools to create, edit or burn CD or DVD images.
  • Elegent desktop with Openbox running on the top of Xvesa (X server).
  • Homemade graphical boxes to command line utilities.
  • 1400 packages easily installable from the mirror.
  • Active and friendly community.

See all details at:  http://www.slitaz.org/en/


(Read More... | 26 comments | Score: 0)


KATANA - A MultiBoot USB Based Linux Distro for Testers
Posted by cdupuis on Monday, 23 November 2009 @ 20:34:54 EST (875 reads)
Topic Linux Distro for testers

Anonymous writes " Katana v1.0 (Kyuzo)

Is a portable multi-boot security suite designed for all your computer security needs. The idea behind this tool is to bring together all of the best security distributions to run from one USB drive. Katana includes distributions which focus on Penetration Testing, Auditing, Password Cracking, Forensics and Honey Pots. 

Katana includes the following distributions:

- Backtrack 4 pre
- the Ultimate Boot CD
- Organizational Systems Wireless Auditor (OSWA) Assistiant
- the Ultimate Boot CD for Windows
- Got Root? Slax
- Ophcrack Live
- Damn Small Linux
- Damn Vulnerable Linux

And instructions on installing additional Distributions can be found here.

Katana also comes with over 100 portable Windows applications such as Wireshark, HiJackThis, Unstoppable Copier, and OllyDBG. For a full list of included applications click here DOWNLOAD Name: Katana v1.0 (Kyuzo)

File: katana-v1.rar
Size: ~ 5.4 GB
MD5: df6738eec7dce3cbaf4dfab7cc691969
DOWNLOAD:

Mirrors:
http://mirror.cc.vt.edu/pub/katana/ Virginia Tech Blacksburg, Virginia, USA
http://psifertex.cns.ufl.edu/~jsawyer/katana University of Florida Florida, USA
http://dc585.info/mirror/katana DefCon Group 585 Rochester, NY, USA
http://newfe.kracomp.com/katana
http://www.d3vrandom.net/hfc/katana
http://gextrade.thegoodhacker.com/katana/katana-v1.rar

Installation
1. Requires USB flash drive of size 8GB or larger with 6GB free space.
(NOTE: You can install Katana on smaller drives by uninstalling some distributions. See step 4.)

2. Download katana-v1.rar to local disk. Full install requires 6 GB of free disk space on local downloading system.
(NOTE: FAT16/FAT32 partitions cannot accommodate a 6GB file.)

3. Flash drive must be formatted FAT32.
(OPTIONAL: Create "katana" directory on local disk.)

4. (Turn off your virus scanner before install) Extract katana-v1.rar to the "katana" directory and move to USB flash drive OR extract directly to the root of the flash drive. Now you can run the uninstall_tools.bat or uninstall_tools.sh script in "boot/uninstall/" directory if you wish to remove any distributions. This can also be done after installation.

5. Change directory to the freshly copied /boot directory on the USB device. Make sure you're in the "boot" directory on the USB device!

6. For Linux/OSX run ./boostinst.sh, for Windows run ./boostinst.bat

7. Make sure computer BIOS allows USB boot. Boot from flash drive.

All Done!

Visit the main web site at:  http://www.hackfromacave.com/katana.html

"

(Read More... | 9 comments | Score: 0)


BackTrack FRHACK Version - Another Linux Bootable PenTest Distro based on Backtr
Posted by cdupuis on Thursday, 03 September 2009 @ 11:54:35 EDT (1818 reads)
Topic Linux Distro for testers

Hi list,

We're looking for betatesters for FRHACK LINUX DISTRO based on the famous BackTrack distro.  

"yes another pentesting live dvd"

== Overview ==

The FRHACK version of BackTrack is an updated/modified version of the latest BackTrack 4 iso available for download at:

( http://www.remote-exploit.org/backtrack.html )

We have updated and added tons of tools.

== Quick view ==

flex
gcc-4.2
libgtk2.0-dev
libexpect-perl
libqt4-opengl-dev
# Java5 -> Java6
sun-java6-jre sun-java6-plugin

       spoonwep-wpa-rc3.deb
       fakeap-0.3.2
       svn airgraph-ng
       svn airoscript
       wget "http://sid.rstack.org/code/wifitap.tgz"
       WEPCrack-0.1.0
       # Charon
       wifi-radar-2.0.s05
       gpsdrive
       ssidsniff-0.53
       zulu-0.1
       aphopper-0.3
       wispy-tools-2007-svn
       airsnort-0.2.7e.tar.gz
       mdk3-v5.tar.bz2
       wepbuster-1.0_beta_0.6

       fierce
       jbrofuzz-jar-15
       wfuzz-1.4

       bluemaho_v090417
       bluescan_1.0.6
       bluesnarfer
       ghettotooth.pl
       bt_audit-0.1.1

       fatback-1.3.tar.gz
       pasco_20040505_1
       unhide_20080519-2
       memdump-1.01
       allin1-0.4.tar.gz

       tor-0.2.1.19
       privoxy-3.0.8-stable-src

       ophcrack-3.3.1
       vncrack_src-1.21
       TFTP-bruteforce
       DNSBruteforce
       svn kalgecin

       fuzzgrind_090622

       origami-1.0.0-beta0

       MetaScan.rb
       complemento-0.7

       middler-1.0
...

A new version (coming with bug fixes, included rainbow tables, wordlists, extras (babes excluded), etc.) will be available for FRHACK 01, so you'll be able to use it for the FRHACK Wargame.


http://www.frhack.org

== Download ==


https://www.securinfos.info/frhack/frhack-os.iso

1.4 Gb
MD5     56c3b8ca9aa470cdf85e9589723b0a0b
SHA1    5bc07858c31e667fa82877fe72d1f61f67b37e3f


Enjoy, and thanks for feedbacks (off-list)

/JA

Greetings fly to Regis Senet (JA-PSI.fr)

(Read More... | 4 comments | Score: 0)


RUSSIX Linix Distro -- It brings memory back from the good old Auditor Distro
Posted by boss on Wednesday, 19 December 2007 @ 19:31:56 EST (4485 reads)
Topic Linux Distro for testers

cdupuis writes "NOTE FROM CLEMENT:
Today I would like to introduce you to a small and unique Distro of Linux that has been developed specifically for WarDriving and WLAN assessment. It remind me of the best tools we had in Auditors.

The goals and the reason for this distro are great, considering the changes taking place all the time in the WarDriving world it is hard to keep up. Even thou I love BackTrack and all of it's great tools, I believe there is space for a smaller distro focused on WarDriving that would be updated more often.

Right now it is focused on the Etheros chipset but hopefully more chipsets and support will be added as it is being developed.

Here is the announcement:

Hi all,

After some pressure from friends and collegues I have decided to release RUSSIX. Its a Live Linux distribution based on SLAX with a focus towards Wireless Penetration Testing.

It comprises a number of tools including aircrack-ng, cowpatty, asleap, nmap, wireshark, hydra, as well as scripted attacks to aid cracking WEP and WPA networks.

Currently, it only supports Atheros based chipsets and those of you lucky enough to own 2 atheros cards will be able to use the scripted Evil Twin attack.

Interested in hearing any feedback you may have or improvements you can make.

You can download it at http://www.russix.com/

Hope you enjoy it!

Russ"

(Read More... | 630 comments | Score: 0)


KCPentrix 2.0 has been released
Posted by boss on Wednesday, 04 April 2007 @ 21:32:26 EDT (4459 reads)
Topic Linux Distro for testers

Anonymous writes "The Kcpentrix Project was founded in May 2005 , KCPentrix 1.0 was liveCD designed to be a standalone Penetration testing toolkit for pentesters, security analysts and System administrators

What's New in KcPentrix 2.0:

Now release 2.0 is a liveDVD, It features a lot of new or up to date tools for auditing and testing a network, from scanning and discovering to exploiting vulnerabilities

Kcpentrix is based on SLAX 5, a Slackware live Dvd

The Powerful modularity which Kcpentrix uses, allow us to easily customize our version, and include whichever modules we need.

KCPENTRIX 2.0 is the most inovative and promising KCPENTRIX ever.
It switched to 2.6 kernel line. Zisofs compression was replaced by SquashFS, which provides better compression ratio and higher read speed.

Thanks to all beta testers and supporters, special thanks to the friends from Security-database.com and SecurityDistro.com

You can Download the iso at the following sites:
Kcpentrix.com, knowledgecave.com , and Securitydistro.com .

Best regards,

Fred aka HC

NOTE: Click on Read More... below to see the list of tools included on this distro.

"

(Read More... | 5949 bytes more | 585 comments | Score: 0)


BackTrack v.2.0 Final is out
Posted by boss on Wednesday, 07 March 2007 @ 08:24:40 EST (976 reads)
Topic Linux Distro for testers

Anonymous writes "It's taken us almost 5 months to pull ourselves out of the beta stage. Every time we thought we were done, a new idea or improvement would surface, and we just *had* to implement it. Many features were added, and many of the old (yet persistent) bugs were fixed.

We honestly believe that BackTrack v 2.0 Final is the leanest, meanest and sexiest version to come out and hope that you enjoy using it as much as we did making it.

Get yours at http://www.remote-exploit.org

=== Wireless Attacks @ their best ===
* We included a bunch of new drivers into the latest release and where able to make the desired packet injection functionalities to a wider audience.
* By supporting the new ALFA USB hi-power devices there is now a great USB wireless dongle available which allows us to connect an external antenna and use BackTrack to attack even on Intel Macbook or VMware.
* Broadcom 43xx based cards should be able to inject - a bit sloppy but should work.
* The following drivers are now on our CD:
* madwifi-ng (Patched for Injection)
* hostap (Patched for Injection)
* prism54 (Patched for Injection)
* bcm43xx (Patched for Injection)
* rtl8180 (Patched for Injection)
* rtl8187 (Patched for Injection)
* ipw2200 (Patched for Injection)
* rt2570 (ASPj's Drivers)
* rt2500
* rt61
* rt73
* ipw2100
* ipw3945
* acx100
* zd1211rw

=== Faster @ Work ===
* Most of our Main-menu entries have a grouping "All" menu, which allows the experienced user to quickly find a tool.
* Less experienced users are guided through the new menu structure to find the right tools for the right tasks.

=== Alignment to Open Standards and Frameworks ===
* Being superior while staying easy to use is key to a good security live cd. We took things a step further and aligned BackTrack to Penetration Testing Methodologies and Assessment Frameworks (ISSAF and OSSTMM). This will help our professional users during their daily reporting nightmares.
* The most obvious alignment can be seen in the menu structure and framework documentation that has been included into BackTrack.
* We suggest that you take your time to read the Frameworks, especially the ISSAF methodology guide.
* Unfortunately we were not able to include a newer OSSTMM paper because they did not release it to the public.

=== Cutting Edge Exploitation Framework & Information ===
* We put extra effort in integrating Metasploit Framework3 as well as the Stable Metasploit Framework2. Features such as db_autopwn, Wifi driver exploits etc are all functional.
* Default password lists and online resources have been added and updated.

=== Latest Tech ===
* Packages are now based on the Slax 6 LZM format, which allowed use to get more space and work in a more stable environment
* We are running on a tweaked Kernel 2.6.20
* Apple patches are applied
* Broad Wireless Card Support
* Lorcon Wifi / Metasploit integration
* Wireshark Wifi Frame Injection patch
* Japanese Input support
* Over 300 updated security tools
* New section related to VoIP

=== Disappointments ===
As usual, Nessus is not included into BackTrack as Tenable forbid redistribution.

=== Community ===
* The public wiki project is available at http://backtrack.offensive-security.com. Please help us by providing entries in HCL (Hardware compatibility list)
* Meet us at irc.freenode.org #remote-exploit

=== Thank You ===
* We would like to thank every developer, tester and our users. Without you, BackTrack would simply not be what it is today, But most of all we like to thank our wives and families who supported us with this creative endeavor.

Signing out,

Muts, Max and Mjm

http://www.remote exploit.org
http://www.offensive-security.com "

(Read More... | 2 comments | Score: 0)


Bactrack Introduction tutorial by Offensive-Security.Com
Posted by boss on Wednesday, 22 November 2006 @ 10:33:17 EST (911 reads)
Topic Linux Distro for testers

cdupuis writes "Here is a short tutorial on some of the features of Backtrack. Offensive Security is currently working on building more modules and their intent is to have a full blown course that will be available online. In the longer term they will have their own OSCP (Offensive Security Certified Professional) Certification.

Take a look! It's free...

http://www.offensive-security.com/movies/01-Intro.avi
"

(Read More... | 2 comments | Score: 0)


Backtrack V 1.0 has been released
Posted by boss on Friday, 26 May 2006 @ 14:35:18 EDT (3890 reads)
Topic Linux Distro for testers

cdupuis writes "NOTE FROM CLEMENT:
Finally, the final version of BackTrack has been released. This is a very exciting version that I am looking forward to. I have been using the Beta for a while and I do like it very much. See the annoncement below, try to download a copy if the mirrors are not saturated.

-----Original Message-----
From: muts@remote-exploit.org [mailto:muts@remote-exploit.org]
Sent: Friday, May 26, 2006 12:51 PM
To: cdupuis@cccure.org
Subject: BackTrack v.1.0 Final

The Remote-Exploit BackTrack Dev team is proud to announce the final release - BackTrack v.1.0.

Please check the BackTrack Download area to get your copy.

Cheers,

BackTrack Dev Team

Get your copy at: http://www.remote-exploit.org/index.php/BackTrack_Downloads
"

(Read More... | 618 comments | Score: 0)


BackTrack Linux Distro has been released
Posted by boss on Saturday, 04 February 2006 @ 21:10:00 EST (4356 reads)
Topic Linux Distro for testers

cdupuis writes "BackTrack is the result of the merging of two Innovative Penetration Testing live Linux distributions combined together, it it a merge of Whax and Auditor

Combining the best features from both distributions, and paying special attention to small details, this is probably the best version of either distributions to ever come out.

Based on SLAX (Slackware), BackTrack provides user modularity. This means the distribution can be easily customised by the user to include personal scripts, additional tools, customised kernels, etc.

BackTrack is released in two flavours - Developer Edition and User Edition. These two CD's contain the same data, however have the following differences:

Developer Edition:
Built from the individual modules which create BackTrack.
Boot time is slow, due to large number of modules
Modulatiry is high, so user customisation is easier

User Edition:
Individual modules consolidated.
Boot time is faster, due to few modules
Modulatiry is low, so user customisation is harder

PLEASE NOTE - THE CURRENT RELEASE IS BETA!

Visit the following URL to download from one of the mirrors:
http://www.remote-exploit.org/index.php/BackTrack"

(Read More... | 2 comments | Score: 0)


Release of version 2006.0 of Pentoo
Posted by boss on Thursday, 02 February 2006 @ 14:31:05 EST (878 reads)
Topic Linux Distro for testers

cdupuis writes "Pentoo is a penetration testing LiveCD distribution based on Gentoo. It features a lot of tools for auditing and testing a network, from scanning and discovering to exploiting vulnerabilities. You can view the list of all available tools here . You can view the development blog for latests adds/changes. We currently have many differences between Pentoo and Mpentoo. It is normally noted in parenthesis when a feature is available only in one version. For now, The main differences are that mpentoo uses unionfs and use Enlightenment as a window manager. # Features
---------------------------------------------

Below are the main features of this distribution :
  • Nessus, Metasploit and Fingerprints db upgradable ! You can put them in RAM or on a usb stick.
  • You can save stuff on a usb pen-drive or a harddisk like : /etc, /root, Nessus plugins, SecurityForest's Exploit Tree and all fingerprints (the last only in pentoo)
  • It's modular (mpentoo), you can customize it by adding modules just like in slax (only in mpentoo for now).
  • It is faster : based on the Gentoo distribution, all the code as been optimized. I choosed to optimize the code for pentium3 cpu as I think that intel based cpu are more used than AMD's ones. Of course, this will not break the compatibility with AMD proc, it will just run faster on pentium-3 or 4 CPUs.
Get it at: http://www.pentoo.ch/-PENTOO-.html
"

(Read More... | 2 comments | Score: 0)


Arudius Live Linux CD distribution for Information Assurance
Posted by boss on Tuesday, 03 January 2006 @ 19:20:09 EST (1602 reads)
Topic Linux Distro for testers

cdupuis writes "Visit the main website at: http://arudius.sourceforge.net/

Arudius is a Linux live CD with tools for information assurance (penetration testing, vulnerability analysis, etc). It is based on Slackware (Zenwalk) for i386 systems and targets the information security audience. It is released under the GNU GPL and contains only open-source software. Arudius uses Fluxbox as its default window manager but most of the tools included in the distributions are command-line. The distribution was developed from scratch using vanilla Minislack install and Linux Live scripts by the creator of SLAX. The base Minislack installation has been trimmed down to remove items like man pages and unnecessary binaries/libraries. On top of that base distro a large collection of network and software vulnerability software has been installed - including tools listed on SANS Top 100 list plus many other tools listed on Freshmeat.net Sf.net and other sites around the world. It will also include in the near future tools developed by the creator of the distro, mainly network sniffers for IM and P2P applications. There are several differences between Arudius and other security distros. One of them is the collection of tools installed. Arudius contains all tools installed on distros like Pentoo and Local Area Secuirity Linux plus tools not covered by these distros. Another difference is that Arudius is developed by people employed in the computer security industry and has been made a part of their daily tasks, which ensures timely updates and releases. Most other security distros are developed using spare time and are not actively maintained/updated, thus, new releases are rare at best. In fact, from the 10 Linux live CD security distros listed on Distrowatch.com a year ago, only 2 are still active and only 1 has had a new release in the last year.

Arudius with Fluxbox


Arudius should run on most i386 systems capable of booting from a CD-ROM. Please make sure that the BIOS settings of the machine specify the proper boot order (i.e. attempt to boot from CD-ROM before HDD).

Visit the main website at: http://arudius.sourceforge.net/

Click on Read More... below to see the list of tools included on the distro
"

(Read More... | 10468 bytes more | 1 comment | Score: 0)


KNOPPIX Version 3.9 has been released
Posted by boss on Sunday, 05 June 2005 @ 08:45:24 EDT (925 reads)
Topic Linux Distro for testers

KNOPPIX Version 3.9 is now available on the mirrors and via BitTorrent from http://torrent.unix-ag.uni-kl.de/. Changes vs. 3.8:

  • OpenOffice 2.0 BETA (german and english)
  • KDE 3.4
  • Kernel 2.6.11 update
  • dist-upgrade (all software packages from current Debian/sid)
This will be probably be the last "single CD" version of KNOPPIX. Starting from Version 4.0 (coming soon), the project will be split into a "Light" CD version, and a "Maxi" DVD release. Stay tuned for more news at a later time on the KNOPPIX page.

(Read More... | 1 comment | Score: 0)


My excuses for undermining the Paycheck and survival of SecurityFocus
Posted by boss on Wednesday, 11 May 2005 @ 21:48:35 EDT (4685 reads)
Topic Linux Distro for testers

Good day to all,

I had to take down the Article on live linux distribution that I had reposted from SecurityFocus with a clearly visible source link at the top and the bottom of the article clearly indicating where the source was and also demonstrating that there was no bad intention on my part other than giving them free coverage which they would have realize if they would have taken one second to look at their web referral over the past year. According to their editor in chief Kelly Martin, I am killing his paycheck and SecurityFocus chances of survival, this was definitively NOT my intention and I did not realize that a small security tester website could have such an impact. In compliance with Kelly's email, I have taken down the article. Here is the specific quote directly from his message: "In short, by copying our work, you undermine our survival and my paycheck... ".

The message from Mr. Kelly was accompanied with a warning of "Taking the next step" and the mention of their owner Symantec Corporation. At this point I was really amazed and I quickly loaded the page into my browser and remove the article as I did not want some bad karma to fall on me for my good intentions.

I really do not understand such an approach. A simple non threatening email would have suffice and a phone call would have solved this in less than a minute. I have referred hundreds of people to the security focus web site through public speaking, online articles, mention within courseware, mentioning them in my classes, posting their link on my portals, and many other ways.

I have also as a Security Consultant for many large corporation supported and recommended the Symantec line of product in the past. Something I will not do in the future considering the way they have dealth with this case, which to me was totally unprofessional and uncalled for. If this is an indication of their CRM abilities, it did not pass the test.

Anyway, if you wish to see information about live Linux Distribution, refer to the URL below. Live Linux Distribution have been covered on this site multiple times in the past without the need to get source material from SecurityFocus. The articles below talks about some of the great Linux Distro and as you will notice none of them were invented by a large commercial company.

For links related to live Linux distribution, look at the following URL:
http://www.professionalsecuritytesters.org/modules.php?name=Web_Links&l_op=viewlink&cid=50

For a whole series of articles on Live Linux Distributions, see the following URL:
http://www.professionalsecuritytesters.org/modules.php?name=News&new_topic=21

Best regards to all

Clement


(Read More... | 596 comments | Score: 4)


Login

Nickname

Password

Security Code:
Security Code
Type Security Code

Don't have an account yet? You can create one. As a registered user you have some advantages like theme manager, comments configuration and post comments with your name.

Our Sponsors

Reverse Engineering

Big Story of Today


You can syndicate our news using the file backend.php or ultramode.txt


All logos and trademarks in this site are property of their respective owner. The comments are property of their posters, all the rest © 2003-2008 by Clement Dupuis and Nathalie Lambert (Site Maintainers).

 


 

 


Page Generation: 0.63 Seconds