RE: [in] Re: Research on penetration testing?

From: Curt Purdy (purdy_at_tecman.com)
Date: 12/19/04

  • Next message: Andrew Bagrin: "Wireless SSID discovery"
    To: "'SecurIT Informatique Inc.'" <securit@iquebec.com>, "'leonardo'" <billtorvalds1@yahoo.it>, "'Ole Martin Dahl'" <ole.dahl@hig.no>
    Date: Sun, 19 Dec 2004 15:48:56 -0600
    
    

    SecurIT Informatique Inc. wrote:
    > Maybe you could try to make an automated
    > tools that will perform all these steps automatically (the
    > tools does the info gathering, checks in a database for
    > exploits in this info, then applies the exploit), but I don't
    > know if these kind of software already exists.
    <snip>

    Core Impact - an almost totally automatic system, even better than H.D.
    Moore's metasploit that is also very amazing and totally free. From what I
    hear, Mr. Moore is something of a genius. With metasploit an example of his
    work, I would tend to agree.

    Curt Purdy CISSP, GSEC, CNE, MCSE+I, CCDA
    Information Security Engineer
    DP Solutions

    -----------------------------

    If you spend more on coffee than on IT security, you will be hacked.
    What's more, you deserve to be hacked.
    -- former White House cybersecurity czar Richard Clarke


  • Next message: Andrew Bagrin: "Wireless SSID discovery"

    Relevant Pages

    • RE: Solaris/UNIX Network Performance & Security
      ... As for the core impact nessus, Metasploit are the prime ones. ... Solaris/UNIX Network Performance & Security ... Up to 75% of cyber attacks are launched on shopping carts, forms, ...
      (Security-Basics)
    • Re: Metasploit Bind_shell
      ... I will assume from your last sentence that we are speaking about two different machines (i.e., the MS-SQL is not running on the same box as Metasploit). ... Try other ports, or try a reverse shell to either port 80 or a high port on your end. ... Vice-President of IT Security Research, ... You have an option to go with a managed service or an enterprise software. ...
      (Pen-Test)