Latest Post
Showing posts with label Penetration Testing Distribution. Show all posts
Showing posts with label Penetration Testing Distribution. Show all posts

Kali Linux : An advanced Penetration Testing and Security Auditing Linux distribution

Written By Unknown on Wednesday, 13 March 2013 | 23:30


Kali Linux is an advanced Penetration Testing and Security Auditing Linux distribution.
Kali Linux is the new generation of the industry-leading BackTrack Linux penetration testing and security auditing Linux distribution.
Kali Linux is a complete re-build of BackTrack from the ground up, adhering completely to Debian development standards.


Kali Linux Features :-
Kali is a complete re-build of BackTrack Linux, adhering completely to Debian development standards. All-new infrastructure has been put in place, all tools were reviewed and packaged, and we use Git for our VCS.
  • More than 300 penetration testing tools: After reviewing every tool that was included in BackTrack, we eliminated a great number of tools that either did not work or had other tools available that provided similar functionality.
  • Free and always will be: Kali Linux, like its predecessor, is completely free and always will be. You will never, ever have to pay for Kali Linux.
  • Open source Git tree: We are huge proponents of open source software and ourdevelopment tree is available for all to see and all sources are available for those who wish to tweak and rebuild packages.
  • FHS compliant: Kali has been developed to adhere to the Filesystem Hierarchy Standard, allowing all Linux users to easily locate binaries, support files, libraries, etc.
  • Vast wireless device support: We have built Kali Linux to support as many wireless devices as we possibly can, allowing it to run properly on a wide variety of hardware and making it compatible with numerous USB and other wireless devices.
  • Custom kernel patched for injection: As penetration testers, the development team often needs to do wireless assessments so our kernel has the latest injection patches included.
  • Secure development environment: The Kali Linux team is made up of a small group of trusted individuals who can only commit packages and interact with the repositories while using multiple secure protocols.
  • GPG signed packages and repos: All Kali packages are signed by each individual developer when they are built and committed and the repositories subsequently sign the packages as well.
  • Multi-language: Although pentesting tools tend to be written in English, we have ensured that Kali has true multilingual support, allowing more users to operate in their native language and locate the tools they need for the job.
  • Completely customizable: We completely understand that not everyone will agree with our design decisions so we have made it as easy as possible for our more adventurous users to customize Kali Linux to their liking, all the way down to the kernel.
  • ARMEL and ARMHF support: Since ARM-based systems are becoming more and more prevalent and inexpensive, we knew that Kali’s ARM support would need to be as robust as we could manage, resulting in working installations for both ARMEL and ARMHF systems. Kali Linux has ARM repositories integrated with the mainline distribution so tools for ARM will be updated in conjunction with the rest of the distribution. Kali is currently available for the following ARM devices:
Kali is specifically tailored to penetration testing and therefore, all documentation on this site assumes prior knowledge of the Linux operating system.
Download KaliLinux 1.0 
Default root password is same “toor“, you can download Kali Linux here.

For more information pls visit -
http://www.kali.org/news/kali-linux-whats-new/
http://docs.kali.org/category/introduction

Source-
http://www.kali.org/



Codename: Backtrack 6 - Pentoo 2013.0 RC1.1 Release

Written By Unknown on Sunday, 10 March 2013 | 05:41

PENTOO 2013.0 RC1.1 RELEASE : CODENAME: BACKTRACK 6.
Pentoo is a security-focused livecd based on Gentoo
It’s basically a gentoo install with lots of customized tools, customized kernel, and much more. Here is a non-exhaustive list of the features currently included :
  • Hardened Kernel with aufs patches
  • Backported Wifi stack from latest stable kernel release
  • Module loading support ala slax
  • Changes saving on usb stick
  • XFCE4 wm
  • Cuda/OPENCL cracking support with development tools
  • System updates if you got it finally installed
It features the following :
  1. Changes saving
  2. CUDA/OpenCL Enhanced cracking software
  3. - John the ripper
  4. - Hashcat Suite of tools
  5. Kernel 3.7.5 and all needed patches for injection
  6. XFCE 4.10
  7. All the latest tools and a responsive development team!
DISCLAIMER :
THIS IS EXPERIMENTAL SOFTWARE. USE AT YOUR OWN RISK. PENTOO.CH CAN NOT BE HELD LIABLE UNDER ANY CIRCUMSTANCES FOR DAMAGE TO HARDWARE OR SOFTWARE, LOST DATA, OR OTHER DIRECT OR INDIRECT DAMAGE RESULTING FROM THE USE OF THIS SOFTWARE. IN SOME COUNTRIES THE CRYPTOGRAPHIC SOFTWARE AND OTHER COMPONENTS ON THE ISO ARE GOVERNED BY EXPORT REGULATIONS AND THUS MAY NOT BE FREELY COPIED AS IS OTHERWISE NORMAL FOR SOFTWARE UNDER THE GPL LICENSE. IF YOU DO NOT AGREE TO THESE CONDITIONS, YOU ARE NOT PERMITTED TO USE OR FURTHER DISTRIBUTE THIS SOFTWARE. IF YOU PLAN TO COMMERCIALLY USE OR DISTRIBUTE (AND SELL) THE SOFTWARE, YOU HAVE TO ACQUIRE THE NECESSARY LICENSES AND PERMISSIONS FROM ALL SOFTWARE COPYRIGHT HOLDERS OF NON-FREE SOFTWARE COMPONENTS, OR REMOVE THESE COMPONENTS BEFORE DISTRIBUTING THE SOFTWAR
DOWNLOADS
By downloading the iso, you fully agree with the above disclaimer.
Torrents are available on every mirror.
Download from Pentoo.ch
Download from Switch via HTTP (EMEA)
Download from Switch via FTP (EMEA)


http://mirror.switch.ch/ftp/mirror/pentoo/
ftp://mirror.switch.ch/mirror/pentoo/


Sources : -
http://pentoo.blogspot.in/2013/03/codename-backtrack-6-pentoo-20130-rc11.html

BackBox Linux 3.01 released!

Written By Unknown on Wednesday, 6 February 2013 | 00:48

TUE, 01/22/2013 - 19:13
The BackBox Team is pleased to announce the updated release of BackBox Linux, the version 3.01. This release include features such as Linux Kernel 3.2 and Xfce 4.8.
The ISO images (32bit & 64bit) can be downloaded from the following location:
http://www.backbox.org/downloads

What's new
System improvements
Upstream components
Bug corrections
Performance boost
Improved auditing menu
Improved Wi-Fi dirvers (compat-wireless aircrack patched)
New and updated hacking tools (ex. backfuzz, beef, bluediving, cvechecker, htexploit, metasploit, set, sqlmap, websploit, weevely, wpscan, zaproxy, etc.)

System requirements
32-bit or 64-bit processor
512 MB of system memory (RAM)
4.4 GB of disk space for installation
Graphics card capable of 800×600 resolution
DVD-ROM drive or USB port


Source-

ESSPEE - (ESSPEE-R3 x86) Penetration Testing & Forensics

Written By Unknown on Monday, 28 January 2013 | 01:23

ESSPEE is a derivetive of Back | Track 5, based on Ubuntu 12.04. Designed for users who wish to use only free software. It is packed with featured security tools with stable configurations. This version consolidates the Unity desktop interface; a brand new way to find and manage your applications.

Features

  • A Perfect Forensics Mode - Read-Only Mount
  • A Perfect Stealth Mode - Networking Disabled
  • Latest kernel with aufs support (Kernel 3.7.4)
  • Metasploit Framework v4.6.0-dev [core:4.6 api:1.0]
  • OSSEC - Open Source Host-based Intrusion Detection System
  • Gnome-fallback Desktop Environment.
  • Gnome-Pie - All your favourite applications at single click
  • Suricata - Open Source Next Generation IDS/ IPS.
  • Snorby - Suricata IDS/IPS Monitoring Web Interface.
  • Meld - A visual diff and merge tool for compare files and directories.
  • MySQL Workbench - A visual MySQL database designing tool.
  • ESSPEE Personal Firewall - Realtime Pop-up Notification. (Thanks to Leopard Flower)
  • Net Activity Viewer - A graphical network connections viewer.
  • LOIQ - Open source network stress testing application.
  • Guymager - Forensics imaging tool (GUI)
  • Ostinato - Open-source network packet crafter/traffic generator.
  • FSlint - Find and clean various unwanted extraneous files.
  • Ruby 1.9.3p327 (2012-11-10 revision 37606)
  • Fern Wi-Fi Cracker
  • Virtualbox - Create your own virtual lab
  • Nemiver - A standalone graphical C and C++ debugger
  • Open Audit - Network inventory, audit and management tool
  • Mobile Phone Forensics tools
  • Anonymity - Tor network and many more .......
ESSPEE_R3_Live_DVD released on 26/01/2013

Download - https://docs.google.com/uc?export=download&confirm=no_antivirus&id=0B9Qo6IGWg3_qVzUzTmk1eG95QzQ MD5 - 61aa7c877568d8c109fb407b0540f0f4 Size - 3.35 GB Type - ISO (DVD) OS - Linux (Based on Ubuntu 12.04 - Precise Pangolin) Category - Network Security, Penetration testing, Forensics, Data Recovery.


Source-
http://sourceforge.net/projects/esspee/

NetSecL OS

Written By Unknown on Sunday, 9 December 2012 | 07:09

NetSecL is a hardened,live and installable OS based on OpenSuse suitable for Desktop/Server and Penetration testing. Once installed you can fully enjoy the features of GrSecurity hardened kernel and penetration tools OR use the penetration tools directly from your live DVD. GrSecurity is a great security enhancement that you can enjoy with NetSecL and have a normally functional OS together with the NetSecL Firewall and Penetration tools you are always ready and know at what level your security is.


NetSecL Linux is by default with hardened configuration leaving the distribution at a security level where it is still usable and providing the tools needed to test your security. GrSecurity and it's firewall are features that makes the distribution unique along with specially compiled packages:
  • runnable on 64 bit machines
You'll find top tools like
  • Amap
  • Ettercap
  • Hydra
  • Kismet
  • Nmap
  • Metasploit
  • PADS
... and many others
NetSecL OS 4.0 Released! ON 07/08/2012


NetSecL OS 4.0 comes with LXDE. GrSecurity kernel is updated to 3.2.21 please
check installation instructions if you wish to use GrSecurity. And here is the work we
have done:
- Preloaded installation DVD
- Name change NetSecL to NetSecL OS
- Ported the whole system to 64 bit
- Updated Exploit-db repository
- Metasploit with Gui
- Firefox
- 0install integrated
- Mixer, Libre Office, GIMP, Dia, Inkscape, Evolution, Brasero and others
included to provide the necessary tools for your office needs.
- Putty, Remmina, FileZilla, Pidgin and others for remote access and
management.
- Obsolete/old penetrations tools are removed – please see the new tool-list
from here: 
http://rsync.netsecl.com/tools_netsecl.pdf
We recently also got part of LinuxQuestions:http://www.linuxquestions.org/questions/netsecl-100/
Installation Instructions and Sound Settings:
http://rsync.netsecl.com/netsecl_install.pdf
NetSecL OS 4.0 comes with LXDE. GrSecurity kernel is updated to 3.2.21. Here is the work we have done: http://www.forum.netsecl.com/topic/69/netsecl-os-40-released/



You can download NetSecL from our Bulgarian mirror (s)
Also availible at Suse Gallery

Source-

Sectoo Linux - Network Security-related Linux distribution

Written By Unknown on Saturday, 8 December 2012 | 03:50


Sectoo Linux is a Linux distribution aimed to help all sort of people with tasks related to network security. Under the form of a LiveCD based on Gentoo Linux, you will be able to achieve tasks such as port scanning, packet sniffing, OS fingerprinting, intrusion detection, etc. We hope that you will enjoy using Sectoo Linux, whoever you are : Network Admin, Pentester, White Hat or Black Hat Hacker, etc.
Sectoo Linux attempts to provide an up-to-date and easy-to-use set of security tools. Here are some common uses of Sectoo Linux :
Vulnerability Scanning : Sectoo Linux provides you base services such as port scanning using Nmap. You can then gather banner informations, looking for versions of services installed, and discover some exploits using Nessus. You can also use this to test what your IDS can pick up and what it can’t.
Network Analysis : Using a standard sniffer like TCPDump or Ethereal/Wireshark, you can see what’s going through a network in terms of protocols and content. And by using tools like p0f, you can achieve passive OS fingerprinting like never !
Security Research : Want to learn how to achieve this or that type of attack ? How to conduct other types of spoofing attacks ? Using Sectoo and reading the manpages for the tools (you’ll certainly have to search what tool & what manpage !), you’ll learn how. But be warned : Use of these tools in production environments is highly discouraged and could get you fired, or arrested in some countries.
Secure Connectivity : Sectoo Linux is including OpenSSH, for securely administrating remote systems.
Source-
http://www.sectoo.org/

PenTester - automatic security vulnerability network scanner with GUI


PenTester is an automatic security vulnerability network scanner. It is available as LiveCD (bootable operating system), so you can run it directly from your PC, without instaliing anything. Core of the application works on specially modified Debian GNU/Linux distribution. Graphical user interface is based on Django framework (web application), vulntest engine based on Metasploit. For the backend project uses PostgreSQl database.
Features
  • scanning network for hosts (interface or network based)
  • customized list of services that should be tested for security
  • audit log collection

Source-

dSploit v1.0.31b - An Android network penetration suite

Written By Unknown on Tuesday, 20 November 2012 | 02:11

Dsploit A Penetration Testing ToolKit For Android

dSploit is an Android network analysis and penetration suite which aims to offer to IT security experts/geeks the most complete and advanced professional toolkit to perform network security assessments on a mobile device. Once dSploit is started, you will be able to easily map your network, fingerprint alive hosts operating systems and running services, search for known vulnerabilities, crack logon procedures of many tcp protocols, perform man in the middle attacks such as password sniffing ( with common protocols dissection ), real time traffic manipulation, etc, etc . This application is still in beta stage, a stable release will be available as soon as possible, but expect some crash or strange behavior.

Features

  • RouterPWN  - Launch the http://routerpwn.com/ service to pwn your router.
  • Trace - Perform a traceroute on target.
  • Port Scanner - A syn port scanner to find quickly open ports on a single target.
  • Inspector - Performs target operating system and services deep detection, slower than syn port scanner but more accurate.
  • Vulnerability -  FinderSearch for known vulnerabilities for target running services upon National Vulnerability Database.
  • Login CrackerA -  very fast network logon cracker which supports many different services.
  • Packet ForgerCraft -  and send a custom TCP or UDP packet to the target.
  • MITM - A set of man-in-the-midtle tools to command&conquer the whole network.
  • Simple Sniff - Only redirects target's traffic through the device ( useful when using a network sniffer like 'Sharp' for Android ) and shows network stats.
  • Password Sniffer - Sniff passwords of many protocols such as http, ftp, imap, imaps, irc, msn, etc from the target.
  • Session Hijacker - Listen for cookies on the network and hijack sessions.
  • Kill Connections - Kill connections preventing the target to reach any website or server.
  • Redirect - Redirect all the http traffic to another adtress.
  • Replace Images - Replace all images on webpages with the specified one.
  • Replace Videos - Replace all youtube videos on webpages with the specified one.
  • Script Injection - Inject a javascript in every visited webpage.
  • Custom Filter - Replace custom text on webpages with the specified one.
Requirements
  • An Android device with at least the 2.3 ( Gingerbread ) version of the OS.
  • The device must be rooted
  • The device must have a BusyBox full install, this means with every utility installed ( not the partial installation).
Version 1.0.31b :

Implemented debug code profiler to have a clearer logcat when MITM modules slow down the network ( just for user reporting ).
Optimized binary stream search algorithm ( from ~80ms/call to ~13ms/call ).
Fixed #166 : couldn't arp for host x.x.x.x ( or at least the issue is handled ).
Minor code optimizations.
Fixed a bug which could cause javascript corruption during a MITM filtering.
Fixed #164 : "Replace youtube videos with custom ones" issue.
Big optimization of the transparent proxy data streaming performances.
Fixed #163 : Engaged ports when MITM modules are loaded. Fixed an issue occurring when the hijacker was stopped then restarting, causing new sessions not being shown.
Fixed #161 : Faulty nmap, no results returned in trace/portscan/inspector ( thanks to Gerben Meijer )
Switched from ACRA to BugSense bug reporting system ( tnx for BugSense guys for the free plus account!!! )
Fixed #159 : RejectedExecutionException when doing anything.
Fixed #155 : Add a Wake on Lan packets sending function ( to the packet forger module ).
Fixed #156 : Colored services in Login cracker.
Fixed a couple of null pointer exceptions caused by very particular circumstances.
Fixed a race condition when iterating dSploit targets.
Fixed a bug causing the application to crash when the login cracker has too many attempts to try.
Download dSploit

Source -
http://www.dsploit.net




ESSPEE-R2 x86- Penetration Testing & Forensics

Written By Unknown on Wednesday, 31 October 2012 | 03:59

ESSPEE is a derivetive of Back | Track 5, based on Ubuntu 12.04. Designed for users who wish to use only free software. It is packed with featured security tools with stable configurations. This version consolidates the Unity desktop interface; a brand new way to find and manage your applications.

Thanks to Back Track, Blackbuntu, CAINE and DEFT for inspiration.

Being a sole developer to this distro, I wish it could help Open Source community with a better interface for Penetration testing and Forensics. I really enjoyed my work for last six months.

Please let me know about bugs and if possible provide solution also.

So finally, "This is the season of roses and wine, this moment is yours....Just live it up !!!"


Features -
  • A Perfect Forensics Mode - Read-Only Mount
  • A Perfect Stealth Mode - Networking Disabled
  • Latest kernel with aufs support (Kernel 3.6.2)
  • Ruby 1.9.3 p194 - The Latest Available Ruby
  • OSSEC - Open Source Host-based Intrusion Detection System
  • Support all kind of Desktop Environments (Gnome, Unity, Gnome-Fallback)
  • Gnome-Pie - A glimpse of all your favourite applications at single click
  • Suricata - Open Source Next Generation Intrusion Detection and Prevention Engine.
  • Snorby - Ruby on Rails application for network security monitoring (Web Interface).
  • Meld - A visual diff and merge tool for compare files and directories
  • MySQL Workbench - A visual database design tool to manage MySQL database
  • OSSEC - Open Source Host-based Intrusion Detection System
  • Net Activity Viewer - A graphical network connections viewer for Linux
  • LOIQ - Open source network stress testing & denial-of-service attack application.
  • Guymager - Forensics imaging tool (GUI)
  • Ostinato - Open-source network packet crafter/traffic generator and analyzer
  • FSlint - Find and clean various unwanted extraneous files on a computer file system
  • Areca Backup - Open-source, easy to use and reliable backup solution for Linux
  • DocFetcher Text Search - Search Words within The Documents
  • Virtualbox - Create your own virtual lab
  • Nemiver - A standalone graphical C and C++ debugger
  • Anonymity - Tor network, i2p network etc.... and many more .......
Changelog  ESSPEE-R2 x86 updated on 25-10-2012

Software added:

1.   VirtualBox 4.2
2.   Ostinato - Network packet crafter/traffic generator and analyzer
3.   Suricata IDS/IPS
4.   Snorby - Web UI for Suricata log analysis
5.   Kernel 3.6.2 - Compiled especially for multi core CPUs
6.   BlackBerry Backup Analyzer
7.   iPhone Backup Analyzer
8.   Dhash GUI - Forensics Imaging Tool by DEFT
9.   FileInfo GUI - File analysis script with Right Click on a file (PDF analysis featured)
10.   Sqlite Database Browser - GUI
11.   I2P - Anonymous network
12.   BlueWho - Information & notification about new discovered bluetooth device
13.   KVirusTotal - Online suspecious file analysis API
14.   JNetMap port scanner based on java
15.   ASEF - Android Security Evaluation Framework
16.   Remotescript - Execute scripts on multiple remote hosts simultaneously via ssh
17.   Mobius Forensics Toolkit
18.   Scalpel & Foremost GUI - File carving tools
19.   QKismet - Kismet GUI
20.   Bannergrab

Software removed:

1.   VMware Player 4.0.4 with complete vmware tools
2. Webmin


Source -


BackBox Linux 3 released

Written By Unknown on Thursday, 25 October 2012 | 05:23


BackBox is an Ubuntu based Linux distribution penetration test and security assessment oriented providing a network and informatic systems analysis toolkit. BackBox desktop environment include a minimal yet complete set of tools required forethical hacking and security testing.
The BackBox team is pleased to announce the major release of BackBox Linux, the version 3.0. The major release include features such as the new Linux Kernel 3.2 flower and Xfce 4.8. Apart from the system major upgrade, all auditing tools are up to date as well.
The ISO images (32bit & 64bit) can be downloaded from the following location:
What's new
  • System upgrade
  • Bug corrections
  • Performance boost
  • Improved start menu
  • Improved Wi-Fi dirvers (compat-wireless aircrack patched)
  • New and updated hacking tools
System requirements
  • 32-bit or 64-bit processor
  • 512 MB of system memory (RAM)
  • 4.4 GB of disk space for installation
  • Graphics card capable of 800×600 resolution
  • DVD-ROM drive or USB port

BackBox Linux 3.0 - i386

ISO - Torrent 

Release: 24.10.2012
Name: backbox-3.0-i386.iso
Size: 1,1 GB
MD5: 4a99604b8311b34c2db3dbb8d510d075

Mirror #1 - Mirror #2 - Mirror #3

BackBox Linux 3.0 - amd64

ISO - Torrent 

Release: 24.10.2012
Name: backbox-3.0-amd64.iso
Size: 1,1 GB
MD5: 58de6f4d3609599023689fd763ed2aae

Mirror #1 - Mirror #2 - Mirror #3

Source -


 
Support : Creating Website | Johny Template | Mas Template
Copyright © 2011. Turorial Grapich Design and Blog Design - All Rights Reserved
Template Created by Creating Website Published by Mas Template
Proudly powered by Blogger