Penetration Testing mailing list archives

Re: Pentest IRC Network


From: redb0ne () hush com
Date: Tue, 30 Sep 2008 14:07:20 -0400

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1


On Wed, 24 Sep 2008 07:30:30 -0400 max () technobee org wrote:
Hello,
I need some input for pentesting IRC Bots.
Are there any tools for this purpose ?

Care to expand upon that some?

Most IRC bots and clients are full of vulnerabilities, I was
browsing through the Eggdrop sources and found at least 10 in under
an hour before I quit caring.

It all depends on the nature of the bot though, I could easily see
SQL injections and command executions being in a lot of IRC
scripts.


Thanks for your replies.

Yours sincerely
M. Weidele
-----BEGIN PGP SIGNATURE-----
Charset: UTF8
Note: This signature can be verified at https://www.hushtools.com/verify
Version: Hush 3.0

wpwEAQMCAAYFAkjiatkACgkQGwcl4JwqQeCd/wP7BuVIkkP5Gr4oQlQI0pHwvY02311S
W8TnHzafdwCzx3yzjvv6Elt8vo7CRvahkrPInGDLn4ygZNX78f/7KnQuU0b21ZUxnqgf
P3jjHe5BgSymO0LvAiYn/u9HrVSRugJAW0251PdkAqhJ9I8GlQin6MHeXWMpze2YYLEe
KROWUZQ=
=5jIh
-----END PGP SIGNATURE-----


------------------------------------------------------------------------
This list is sponsored by: Cenzic

Top 5 Common Mistakes in 
Securing Web Applications
Get 45 Min Video and PPT Slides

www.cenzic.com/landing/securityfocus/hackinar
------------------------------------------------------------------------


Current thread: