Hydra v4

From: vh (vh_at_reptile.rug.ac.be)
Date: 02/26/04

  • Next message: Blurred Vision: "Format String vuln in Inktomi Search4.0"
    Date: Thu, 26 Feb 2004 20:20:31 +0100 (CET)
    To: pen-test@securityfocus.com
    
    

    Hi folks!

    A complete rewrite of hydra is currently going on.
    Most work on the engine as been completed and tested so far,
    however some items are still open where help from the pentest
    community is required.

    What is hydra?
    --------------
    Hydra is a password cracker for many, many network protocols.
    The first release was in August 2000, where now in February 2004
      the tool is still not only fully supported but also being expanded.
    Current supported protocols:
      telnet ftp pop3 imap smb smbnt http https http-proxy cisco
      cisco-enable ldap mysql nntp vnc rexec socks5 icq pcnfs
    Many people have submitted attack modules and code, including
      Renaud Deraison/Nessus, FX/Phenolite, Plasmoid/THC, J.Marx/Secunet,
      ocsic, mcbethh, m0j0.j0j0, bigbud and more!
    Hydra is included in Nessus, and voted into the Top-50 security tool list.

    How can you help?
    -----------------
    Betatesters:
     * test the cracking modules, that they work even against rare versions
       or newest releases (e.g. VNC, LDAP, socks5 and icq)
     * stress testing the new engine - many servers in parallel, high amount
       of tasks, SSL stuff, etc.
    Code Contributors: (especially welcomed!)
     * A GTK interface would be great
     * Submit new modules. Interesting would be: SAP R/3, MS-SQL, Oracle
       SQL*Net, PC-Anywhere, SSHv1, SSHv2, BGPv4, HTTP-NTLM
       or anything else you might be able to do (and is not there yet).

    If you would like to contribute, please email to vh@thc.org with a short
    information what/how you would like to contribute and you will
    be added to the internal mailing list.

    What will be new in v4?
    -----------------------
     * Even more attack modules
     * Faster, up to 20% speed increase
     * GUI for the masses :-)
     * PalmOS version
     * Zaurus version
     * Highly reliable code
     * Intelligent target load balancing and detection of maximum connects possible
     * Session restore functionality if process is terminated
     * ... and more

    Thanks a lot!

    Ciao...
                    van Hauser / THC - [The Hacker's Choice]

    Visit our web page at http://www.thc.org

    Type Bits/KeyID Date User ID
    pub 2048/CDD6A571 1998/04/27 van Hauser / THC <vh@reptile.rug.ac.be>

    -----BEGIN PGP PUBLIC KEY BLOCK-----
    Version: 2.6.3i

    mQENAzVE0A4AAAEIAOzKPhKBDFDyeTvMKQ1xx6781tEdIYgrkrsUEL6VoJ8H8CIU
    SeXDuCVu3JlMKITD6nPMFJ/DT0iKHgnHUZGdCQEk/b1YHUYOcig1DPGsg3WeTX7L
    XL1M4DwqDvPz5QUQ+U+VHuNOUzgxfcjhHsjJj2qorVZ/T5x4k3U960CMJ11eOVNC
    meD/+c6a2FfLZJG0sJ/kIZ9HUkY/dvXDInOJaalQc1mYjkvfcPsSzas4ddiXiDyc
    QcKX+HAXIdmT7bjq5+JS6yspnBvIZC55tB7ci2axTjwpkdzJBZIkCoBlWsDXNwyq
    s70Lo3H9dcaNt4ubz5OMVIvJHFMCEtIGS83WpXEABRG0J3ZhbiBIYXVzZXIgLyBU
    SEMgPHZoQHJlcHRpbGUucnVnLmFjLmJlPokAlQMFEDVE0D7Kb9wCOxiMfQEBvpAD
    /3UCDgJs1CNg/zpLhRuUBlYsZ1kimb9cbB/ufL1I4lYM5WMyw+YfGN0p02oY4pVn
    CQN6ca5OsqeXHWfn7LxBT3lXEPCckd+vb9LPPCzuDPS/zYnOkUXgUQdPo69B04dl
    C9C1YXcZjplYso2q3NYnuc0lu7WVD0qT52snNUDkd19ciQEVAwUQNUTQDhLSBkvN
    1qVxAQGRTwgA05OmurXHVByFcvDaBRMhX6pKbTiVKh8HdJa8IdvuqHOcYFZ2L+xZ
    PAQy2WCqeakvss9Xn9I28/PQZ+6TmqWUmG0qgxe5MwkaXWxszKwRsQ8hH+bcppsZ
    2/Q3BxSfPege4PPwFWsajnymsnmhdVvvrt69grzJDm+iMK0WR33+RvtgjUj+i22X
    lpt5hLHufDatQzukMu4R84M1tbGnUCNF0wICrU4U503yCA4DT/1eMoDXI0BQXmM/
    Ygk9bO2Icy+lw1WPodrWmg4TJhdIgxuYlNLIu6TyqDYxjA/c525cBbdqwoE+YvUI
    o7CN/bJN0bKg1Y/BMTHEK3mpRLLWxVMRYw==
    =MdzX
    -----END PGP PUBLIC KEY BLOCK-----

    ---------------------------------------------------------------------------
    ----------------------------------------------------------------------------


  • Next message: Blurred Vision: "Format String vuln in Inktomi Search4.0"

    Relevant Pages

    • Re: Hydra v.8 UCI
      ... But " Hydra v.8 UCI" ... -plays very impressive chess: e.g. beats Fritz9 ... -does not support/use Nalimov EGTB's (as all the other important ... -it itroduces itself in the Arena engine window as "Hydra v.8 by Dr. C. ...
      (rec.games.chess.computer)
    • Re: HYDRA - news?
      ... and will never be a software version of Hydra. ... Although it is being marketed as a chess "engine", ... commercial demonstraion of the application of field programmable gate ...
      (rec.games.chess.computer)