[TOOL] Travesty - Network Hardware Addresses Manager

From: SecuriTeam (support_at_securiteam.com)
Date: 02/01/05

  • Next message: SecuriTeam: "[EXPL] TinyWeb Server DoS Exploit"
    To: list@securiteam.com
    Date: 1 Feb 2005 13:39:50 +0200
    
    

    The following security advisory is sent to the securiteam mailing list, and can be found at the SecuriTeam web site: http://www.securiteam.com
    - - promotion

    The SecuriTeam alerts list - Free, Accurate, Independent.

    Get your security news from a reliable source.
    http://www.securiteam.com/mailinglist.html

    - - - - - - - - -

      Travesty - Network Hardware Addresses Manager
    ------------------------------------------------------------------------

    SUMMARY

    DETAILS

     <http://cse.msstate.edu/~rwm8/travesty/> Travesty is an interactive
    program for managing the hardware addresses (MAC) of Ethernet devices on
    your computer. It supports manually changing the MAC, generating random
    addresses, and applying different vendor prefixes to the current address.
    It also allows the user to import their own lists of hardware addresses
    and descriptions that can be navigated from within the Travesty interface.
    Travesty is written in Python, and is very simple to add functionality to,
    or modify.

    Travesty was developed to scratch an itch for penetration testers who wish
    to make modifications to the network settings interactively when starting
    up the machine they wish to test/attack from. Placed in the startup
    scripts before rc.network (or equivalent), Travesty allows for the
    hardware address to be changed easily to appear as any specific brand of
    card, or even, in a limited way, spoof the hardware and IP addresses of a
    system that is currently down on a DHCP network.

    Travesty uses the 'manuf' list of vendor prefixes from the Ethereal
    project.

    Things that are made easier with Travesty:
     * A degree of anonymity on larger networks by presenting a false MAC
     * Impersonating other computers by taking on their MAC
     * Not sticking out like a sore thumb on a homogenous network of a
    specific vendor's ethernet cards by applying a similar prefix
     * Setting up quick replacements for servers on a network that expects the
    downed server at a particular MAC and IP.
     * Managing different profiles of network settings by custom scripts using
    the add-on interface

    ADDITIONAL INFORMATION

    The information has been provided by <mailto:wesleymcgrew@gmail.com>
    Robert Wesley McGrew.
    To keep updated with the tool visit the project's homepage at:
    <http://cse.msstate.edu/~rwm8/travesty/>
    http://cse.msstate.edu/~rwm8/travesty/

    ========================================

    This bulletin is sent to members of the SecuriTeam mailing list.
    To unsubscribe from the list, send mail with an empty subject line and body to: list-unsubscribe@securiteam.com
    In order to subscribe to the mailing list, simply forward this email to: list-subscribe@securiteam.com

    ====================
    ====================

    DISCLAIMER:
    The information in this bulletin is provided "AS IS" without warranty of any kind.
    In no event shall we be liable for any damages whatsoever including direct, indirect, incidental, consequential, loss of business profits or special damages.


  • Next message: SecuriTeam: "[EXPL] TinyWeb Server DoS Exploit"

    Relevant Pages

    • [NEWS] DataRescue Interactive Disassembler Pro Buffer Overflow Vulnerability
      ... The following security advisory is sent to the securiteam mailing list, and can be found at the SecuriTeam web site: http://www.securiteam.com ... Exploitation of a buffer overflow vulnerability in DataRescue Inc.'s ... Interactive Disassembler Pro (IDA Pro) allows attackers to execute ... The import directory lists all the ...
      (Securiteam)
    • [fw-wiz] Re: Best Practices
      ... No matter how you slice the Internet connected network space up (financial, ... any security setup or general 'rules of thumb' so to speak. ... Now let's publish and promote those lists (or the process to create the ... the context of infrastructure and worm/virus attacks because people are up ...
      (Firewall-Wizards)
    • Re: cant see WinME on XP
      ... C> You view Network Places, based upon the browser subsystem. ... NET VIEW from the WinME pc only lists the local machine. ... C> and re install numerous components. ...
      (microsoft.public.windowsxp.network_web)
    • RE: UDP Port 137 Question
      ... The Computer Browser system service maintains an up-to-date list of ... computers on your network and supplies the list to programs that request it. ... maintain browse lists that contain all shared resources that are used on the ... We provide Ethical Hacking, Advanced Ethical Hacking, Intrusion Prevention, ...
      (Security-Basics)
    • [UNIX] Mpg123 Remote Client-Side Heap Corruption (Exploit, readstring())
      ... The following security advisory is sent to the securiteam mailing list, and can be found at the SecuriTeam web site: http://www.securiteam.com ... unsigned int p_requestaddr; ... void printe; ... lists the platforms in a loop. ...
      (Securiteam)