Nmap Development mailing list archives

Claudiu's GSOC status report #3 of 13


From: Claudiu Perta <claudiu.perta () gmail com>
Date: Mon, 9 Jun 2014 21:39:18 +0100

Hi everybody,

This is my GSOC weekly report.

* More work on brute.lua integration in bruteforce scripts
      * afp-brute.lua (tested on OS X Mavericks)
      * ldap-brute.lua (tested on OpenLDAP/Ubuntu 12.04)
      * pgsql-brute.lue (to be tested)

* Implemented NSE script detecting the "CCS Injection" vulnerability in
OpenSSL
      * The script is based on the C code available at http://goo.gl/S4DJIm.
I did
         various tests + some debugging on Ubuntu's openssl s_server. The
check
         seems to be working fine, just some minor issues still to be
addressed
         (thanks Daniel for the feedback)

* Investigated some IPv6-related issues to be implemented
      * Router Header Type 0 (RH0)
      * Hop-by-Hop option header
      * Invalid extension headers

Cheers,
Claudiu
_______________________________________________
Sent through the dev mailing list
http://nmap.org/mailman/listinfo/dev
Archived at http://seclists.org/nmap-dev/


Current thread: