Nmap Development mailing list archives

Re: [NSE] SASL library - was: New script imap-brute


From: Djalal Harouni <tixxdz () opendz org>
Date: Sat, 16 Jul 2011 03:14:05 +0100

On Fri, Jul 15, 2011 at 11:10:40AM +0200, Patrik Karlsson wrote:
Hi all,

I've implemented a new script to perform password guessing against IMAP servers (imap-brute).
The script currently supports plain-text authentication and CRAM-MD5.
While adding supporting code for this in the imap.lua library I took the opportunity to rewrite it into OO. (it was 
really only a single function)
I'm attaching the script and patches against imap.lua.

Ideas, suggestions and comments?
Hi Patrik,

As promised I've attached a draft version of the Simple Authentication
and Security Layer (SASL) library, currently it does not support real
network authentication. I just want to know your opinion about its
design and if it fits with the current NSE bruteforce engine ?

You can just check the Helper class and see, let me know if I should
change the design, thanks Patrik.

Now I must catch with my other GSoC tasks :p, I'll comme back to it
later.

-- 
tixxdz
http://opendz.org

Attachment: sasl.lua
Description:

_______________________________________________
Sent through the nmap-dev mailing list
http://cgi.insecure.org/mailman/listinfo/nmap-dev
Archived at http://seclists.org/nmap-dev/

Current thread: