Penetration Testing mailing list archives
Re: List of "clickable" on-line pen-test tools
From: Alvin Oga <alvin.sec () Mail Linux-Consulting com>
Date: Wed, 25 Jan 2006 01:15:10 -0800 (PST)
hi ya On Tue, 24 Jan 2006, Ivan . wrote:
A good online traceroute http://networking.ringofsaturn.com/Tools/traceroute.php
how does traceroute help you with pen-test?? other than it telling you on the inside, how you got to the outside
Here is my personal favorite list of on-line pen test tools: http://www.xs4all.nl/~kazil/testfiles/index.htm The idea is that you can sit at a customer's terminal and by just "clicking around" you can perform a quick assessment of the perimeter security and content scanning.
do an "online update" and see how long ago since they'd maintained their boxes with "FREE" updates
You don't need to install or run anything. Everyting runs from external (public) websites.
always a good way to do things
Do you have some of your own favorites to add to this list?
too many to list, but to list in one line: http://Linux-Sec.net - find your favorite sites with: - these online scanners/tests are from outside public sites and intended to see how secure your client box is that you're sitting on and clicking away - online port scanners - online nessus scanners - online dns scanners - online apache scanners - online firewall testers - online open relay tests - online virus scanners of incoming virus ... on-n-on ... c ya alvin ------------------------------------------------------------------------------ Audit your website security with Acunetix Web Vulnerability Scanner: Hackers are concentrating their efforts on attacking applications on your website. Up to 75% of cyber attacks are launched on shopping carts, forms, login pages, dynamic content etc. Firewalls, SSL and locked-down servers are futile against web application hacking. Check your website for vulnerabilities to SQL injection, Cross site scripting and other web attacks before hackers do! Download Trial at: http://www.securityfocus.com/sponsor/pen-test_050831 -------------------------------------------------------------------------------
Current thread:
- Secure Password Policy? Sulaiman, Wilmar (Jan 19)
- Re: Secure Password Policy? Mike Dieroff (Jan 19)
- RE: Secure Password Policy? Lyal Collins (Jan 21)
- RE: Secure Password Policy? Petr . Kazil (Jan 23)
- Re: Secure Password Policy? List Spam (Jan 22)
- Re: Secure Password Policy? Neil (Jan 22)
- List of "clickable" on-line pen-test tools Petr . Kazil (Jan 23)
- Re: List of "clickable" on-line pen-test tools Ivan . (Jan 24)
- Re: List of "clickable" on-line pen-test tools Alvin Oga (Jan 25)
- Re: List of "clickable" on-line pen-test tools thomas springer (Jan 25)
- Message not available
- Re: List of "clickable" on-line pen-test tools FocusHacks (Jan 30)
- RE: Secure Password Policy? Lyal Collins (Jan 21)
- Re: Secure Password Policy? Mike Dieroff (Jan 19)
- Re: List of "clickable" on-line pen-test tools thomas springer (Jan 24)
- Re: Secure Password Policy? Tim (Jan 21)
- Re: Secure Password Policy? Tim (Jan 21)
- "Ping scan" through Google Petr . Kazil (Jan 22)
- Re: "Ping scan" through Google -- Perl version for *NIX Peter Hille (Jan 22)
- Re: "Ping scan" through Google Robert Wesley McGrew (Jan 22)