THE

SPRAWL

  •  
  •  
  •  
  • sprawlsimilar

    dnschef

    Download dnschef-0.3.zip
    Size 2.5 MB
    DateNovember 6th, 2014
    Version0.3

    DNSChef is a highly configurable DNS Proxy for Penetration Testers and Malware Analysts. It is capable of fine configuration of which DNS replies to modify or to simply proxy with real responses.

    Version 0.3 introduces support for more DNS record types, DNSSEC, logging, more configurable remote nameservers, support for the updated dnslib library and several bug fixes.

    Version 0.2 introduces IPv6 support, large number of new DNS record types, custom ports and other frequently requested features. Read more.

    packet filtering

    Packet filtering is an important skill when capturing and managing large network dumps. In this article you will learn several tools and techniques used to simplify searching and extraction of useful data from captured data. Read more.

    decrypting tls/ssl traffic with wireshark

    Wireshark is capable of decrypting TLS/SSL traffic. This article will discuss the required conditions necessary for the decryption and walk you through the exact steps. Read more.

    12 dec
    2013
    isec open forum bay area

    It feels like the infosec community in the Bay Area is just getting warmed up toward the end of the year with another quarterly iSec Open Forum. As a small and local security event, it usually hosts novel security topics from local security professionals that may not appear in more mainstream events. After getting to the talks area at the end of a long hall with folks from Dropbox zooming by on their skateboards and razorblades, I found an infosec crowd of about a hundred or so people ready to learn and connect.

    Below are my notes from the event: Read more.

    sslmap

    Download sslmap-0.2.0.py
    Size 58.8 KB
    DateJanuary 27th, 2010
    Version0.2

    SSLMap is a lightweight TLS/SSL cipher suite scanner.

    • Uses custom TLS/SSL query engine for increased reliability/speed (No need for third-party libraries such as OpenSSL)
    • Tests for 200+ known cipher suites.
    • Capable of discovering undocumented cipher suites.
    • Advises on cipher suite security based on Protocol, Key Exchange, Authentication, Encryption algorithm, and other parameters.
    • Configurable handshake versions (e.g. TLSv1.1, SSLv2.0) Read more.

    stunnel

    Stunnel allows a user to tunnel any TCP based application protocol through a connection secured by TLS/SSL. Read more.

    openssl

    OpenSSL is an open-source TLS/SSL toolkit implemented for a variety of platforms. In this article you will learn several openssl client and server commands useful in working with TLS/SSL protocol. Read more.

    host discovery

    In this article you will learn several active and stealth techniques used to discover even highly cloaked hosts. Read more.

    tls/ssl protocol

    Transport Layer Security (TLS) and Secure Sockets Layer (SSL) are two closely related protocols designed to protect confidentiality and integrity of data in transit between two hosts. Read more.

    tls and ssl cipher suites

    TLS/SSL protocols support a large number of cipher suites. A cipher suite is a collection of symmetric and asymmetric encryption algorithms used by hosts to establish a secure communication. Supported cipher suites can be classified based on encryption algorithm strength, key length, key exchange and authentication mechanisms. Some cipher suites offer better level of security than others (e.g. Several weak cipher suites were developed for export to comply with US export law). There are more than 200 known cipher suites. Read more.



    π
    ///\oo/\\\