[TOOL] AFICK (Another File Integrity CHecker)

From: SecuriTeam (support_at_securiteam.com)
Date: 07/06/05

  • Next message: SecuriTeam: "[NT] Blank Administrator Password on OEM Windows XP Installation"
    To: list@securiteam.com
    Date: 6 Jul 2005 14:57:27 +0200
    
    

    The following security advisory is sent to the securiteam mailing list, and can be found at the SecuriTeam web site: http://www.securiteam.com
    - - promotion

    The SecuriTeam alerts list - Free, Accurate, Independent.

    Get your security news from a reliable source.
    http://www.securiteam.com/mailinglist.html

    - - - - - - - - -

      AFICK (Another File Integrity CHecker)
    ------------------------------------------------------------------------

    SUMMARY

    DETAILS

    Afick is a security tool, very close from the well known tripwire. It
    allows to monitor the changes on your files systems, and so can detect
    intrusions.

    Features:
     * Portable without any change to all common operating systems (windows,
    unix ...)
     * Easy install : no need to compile or to install many others tools
     * Fast
     * Display new/deleted/modified files
     * Display dangling links
     * May be used by any user
     * Any number of base and configuration
     * Configuration file with exceptions and jokers
     * Configuration file syntaxe close from aide's one
     * Command line is perfect on UNIX, but windows users prefer graphical
    interfaces, so I add a Tk interface

    AFICK designed to be quick and portable. For now, it has been tested on:
     * Windows XP, 2000 with ActiveState's ActivePerl
     * Linux RedHat (7.1, 7.3)
     * Linux Fedora core 1
     * linux mandrake (8.2, 9.1, 9.2)
     * linux suse Enterprise server 8.0
     * Linux Debian (Woody, sarge, Knoopix)
     * Linux Slackware (9.1)
     * HP Tru64 Unix 5.1B
     * AIX 5.2.0

    But it should work on any computer with Perl and it's standard modules.
    Afick is now composed of 3 different components (packages) :
     * afick : the base, command-line tool. This package include afickonfig
    too : a tool to help in afick config
     * afick-gui : a graphical interface (in Perl/tk)
     * afick-webmin : a webmin module, to allow a remote administration, throw
    a web browser

    ADDITIONAL INFORMATION

    The information has been provided by
    <mailto:gerbier@users.sourceforge.net> Eric Gerbier.
    To keep updated with the tool visit the project's homepage at:
    <http://afick.sourceforge.net/> http://afick.sourceforge.net/

    ========================================

    This bulletin is sent to members of the SecuriTeam mailing list.
    To unsubscribe from the list, send mail with an empty subject line and body to: list-unsubscribe@securiteam.com
    In order to subscribe to the mailing list, simply forward this email to: list-subscribe@securiteam.com

    ====================
    ====================

    DISCLAIMER:
    The information in this bulletin is provided "AS IS" without warranty of any kind.
    In no event shall we be liable for any damages whatsoever including direct, indirect, incidental, consequential, loss of business profits or special damages.


  • Next message: SecuriTeam: "[NT] Blank Administrator Password on OEM Windows XP Installation"

    Relevant Pages

    • [UNIX] Linux Kernel i386 SMP Page Fault Handler Privilege Escalation
      ... The following security advisory is sent to the securiteam mailing list, and can be found at the SecuriTeam web site: http://www.securiteam.com ... Locally exploitable flaw has been found in the Linux page fault handler ... an operating system kernel is handling of virtual memory. ... stack expansion if the access goes just below application's actual stack ...
      (Securiteam)
    • [UNIX] Computer Associates BrightStor ARCserve Backup UniversalAgent Backdoor Vulnerability
      ... The following security advisory is sent to the securiteam mailing list, and can be found at the SecuriTeam web site: http://www.securiteam.com ... protection for all classes of Windows, NetWare, Linux and UNIX servers, as ... * BAB 9.0 Linux Japanese ... * BEB 10.0 HPUX ...
      (Securiteam)
    • [UNIX] Linux Kernel Socket Buffer Memory Exhaustion DoS
      ... The following security advisory is sent to the securiteam mailing list, and can be found at the SecuriTeam web site: http://www.securiteam.com ... Local exploitation of a memory exhaustion vulnerability in Linux Kernel ... system memory resources can be ...
      (Securiteam)
    • [UNIX] Linux ISO9660 Handling Flaws
      ... The following security advisory is sent to the securiteam mailing list, and can be found at the SecuriTeam web site: http://www.securiteam.com ... A number of kernel-level checking flaws were discovered in the Linux ... ISO9660 filesystem handler in Linux ...
      (Securiteam)
    • [EXPL] Linux Kernel do_mremap VMA Limit Local Privilege Escalation PoC
      ... The following security advisory is sent to the securiteam mailing list, and can be found at the SecuriTeam web site: http://www.securiteam.com ... This bug is completely unrelated to the ... This PoC exploit can be used to check if a Linux ... * GNU General Public License for more details. ...
      (Securiteam)