Know such a web's server tool?

From: MARTIN M. Bénoni (benoni_martin_at_hotmail.com)
Date: 07/17/03

  • Next message: Paul Vet: "RE: Know such a web's server tool?"
    To: pen-test@securityfocus.com
    Date: Thu, 17 Jul 2003 11:40:17 +0000
    
    

    Hi list!

    I am currently writing an application which will allow to find out all (well
    the maximum of them! :) ) the servers on a network. Here is how it works:
    1- I feed it with a list of targets (command-line or file): CIDR subnets,
    hostnames, IP address(es),..
    2- I specify a type of scan: looking for FTP, HTTP, POP, ... servers /
    intrusive scan or not / ....
    3- It tries to find them out.
    4- Gets its OS and vulnerabilities. And if desired, it will try to breack
    down the systems using the found vulnerabilities.
    5- Creates a simple HTML page with the results.

    I have been wandering around Internet, and I could not find any tool like
    that (well doing all these features). So, if you know such a tool, could you
    tell me about it? If you have any idea/clue/help, feel free to mail me!

    Cheers!

    Bénoni-

    _________________________________________________________________
    STOP MORE SPAM with the new MSN 8 and get 2 months FREE*
    http://join.msn.com/?page=features/junkmail

    ---------------------------------------------------------------------------
    Your network Firewall and IDS products do not prevent Web application
    exploits - the most common form of online attack - resulting in Web
    defacement, data theft, sabotage and fraud.

    KaVaDo is the first and only company that provides a complete and an
    integrated suite of Web application security products, allowing you to
    assess your entire environment, automatically set positive security
    policies and maintain it without compromising business performance.

    For more information on KaVaDo and to download a FREE white paper on Web
    applications - security policy automation, please visit:
    http://www.kavado.com/ad.htm
    ----------------------------------------------------------------------------


  • Next message: Paul Vet: "RE: Know such a web's server tool?"

    Relevant Pages

    • IT Security Administrator in Bend, OR
      ... workstations as well as physical security for I/T systems. ... manages network security software and hardware. ... Extensive experience with Windows 2000/2003 servers and Exchange ... Two years experience configuring, installing and implementing VMWare ...
      (comp.arch)
    • Re: How to access I/O port directly in VC6.0?
      ... As soon as you have standalone machines, ... Their "security" as far as servers was a joke; ... discovered the internal wireless network was completely unencrypted. ...
      (microsoft.public.vc.mfc)
    • Re: Pen testing Fiber Channel
      ... If direct access to the network is available, ... Subject: Re: Pen testing Fiber Channel ... > server to another on a different higher security network. ... SAN servers are usually on isolated ...
      (Pen-Test)
    • RE: [fw-wiz] Security Audit and Priorities
      ... Learn your network. ... - Linux Security Cookbook ... Building Secure Servers with Linux ... It's one thing to be a firewall admin and write ...
      (Firewall-Wizards)
    • Re: Cisco VPN AIM: is really needed for me?
      ... IOS 12.4ADV SECURITY ... public /29 range for my servers ... I would like to establish the tunnel from the site A (using network link ...
      (comp.dcom.sys.cisco)