Penetration Testing mailing list archives

Gleg Ltd - Metasploit add-ons ceased due to Security Reasons


From: toggmeister () vulnerabilityassessment co uk
Date: 15 Nov 2006 08:54:44 -0000

Hi,
   I noted on the Metasploit framework forums that Gleg Ltd, a Russian Supplier for Immunity Canvas were offering to 
sell Metasploit exploits and also offered a few free sploits mostly based on Fedora Core 4 (LDAP) and Win 2K SP4 
issues.  It was available from:    

http://www.gleg.net/vulndisco_meta.shtml

It seems now that this has stoppped: "Due to security reasons, we currently stopped to provide this product both free 
and commercial versions. All information intended for this product is moved to VulnDisco Pack Professional, which is 
available for valid Immunity CANVAS users." 

Anyone aware of the reasons? 

There original page contained the following:

VulnDisco Pack for Metasploit
Introduction: 

VulnDisco Pack for Metasploit contains information about completely new vulnerabilities in well-known software products 
and Operating Systems. 

All of the exploits in VulnDisco Pack are original and were developed by GLEG Ltd's company. 

VulnDisco Pack for Metasploit is specially designed to be used with Metasploit Framework 2.7  

Version 1.0 of VulnDisco Pack for Metasploit includes the following exploits: 
vd_kms4.pm - [0day] Kerio MailServer DoS 
vd_ldapinfo.pm - [0day] Query interesting info from LDAP server 
vd_novell3.pm - [0day] Novell eDirectory 8.8 DoS 
vd_novell.pm - [0day] Novell eDirectory remote exploit 
vd_openldap.pm - [0day] OpenLDAP DoS 
vd_proftpd.pm - [0day] ProFTPD remote exploit 
vd_xlink.pm - [0day] Omni-NFS Enterprise remote exploit 
vd_xlink2.pm - [0day] Omni-NFS Enterprise remote exploit 

VulnDisco Pack for Metasploit features: 
1 month of updates and support are provided with the initial purchase 
updated on a monthly basis 
the current version of the pack contains 8 0day exploits 
each month several new exploits are made available in the form of updates 
ability to download and install updates from our server 

It includes the following exploits: 
vd_ldapinfo.pm - [0day] Query interesting info from LDAP server 
vd_xlink.pm - [0day] Omni-NFS Enterprise remote exploit 
vd_openldap.pm - [0day] OpenLDAP DoS 

VulnDisco Pack for Metasploit prices:
5 users/installations - $149 (USD) for the current version of the pack with 1 month of updates and support 
5 users/installations - $59 (USD) for each additional month of updates and support 
special offer: $759 (USD) for "5 users/installations" license with 12 months of updates and support 
unlimited number of users/installations - $369 (USD) for the current version of the pack with 1 month of updates and 
support 
unlimited number of users/installations - $99 (USD) for each additional month of updates and support 
special offer: $1359 (USD) for "unlimited number of users/installations license" with 12 months of updates and support 

Toggmeister

http://www.vulnerabilityassessment.co.uk - Home of the Pen Test Framework

------------------------------------------------------------------------
This List Sponsored by: Cenzic

Need to secure your web apps?
Cenzic Hailstorm finds vulnerabilities fast.
Click the link to buy it, try it or download Hailstorm for FREE.
http://www.cenzic.com/products_services/download_hailstorm.php?camp=701600000008bOW
------------------------------------------------------------------------


Current thread: