public inbox for gentoo-hardened@lists.gentoo.org
 help / color / mirror / Atom feed
* [gentoo-hardened] PenTest LiveCD
@ 2003-08-08 18:18 John Davis
  2003-08-08 19:02 ` Ned Ludd
  2003-08-11 15:50 ` Phil West
  0 siblings, 2 replies; 3+ messages in thread
From: John Davis @ 2003-08-08 18:18 UTC (permalink / raw
  To: gentoo-hardened

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Greets all:
I am currently working on putting together a Gentoo LiveCD that can be used 
for Penetration Testing on hybrid networks. Basically, the CD will contain 
many well known security scanners, possibly some exploits, documentation, 
etc. 

What I need is some feedback on what security packages to include. This is 
what I have so far:

Nessus
xfree (using openbox for the wm)
hping
nmap
netcat
whois
iptraf
ettercap
(ethereal included with the above)
johntheripper
samba
traceroute
(ipv6 tools would be nice also.. )

for exploits:
windows dcom exploit 
( I need more here )

Documentation:
??

I will also protect the livecd with Project Firewall, and at some point in 
time, propolice, etc.

Please comment on any of the above, as I am always open to suggestions.

Regards,
//zhen

- -- 
John Davis
Gentoo Linux Developer
<http://www.gentoo.org/~zhen>

- ----
Knowledge can be more terrible than ignorance if you're powerless to change 
your world.
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.2 (GNU/Linux)

iD8DBQE/M+lxZlASNRlGLUcRAqbjAJ94ghuGpiAXLJOdKsZBM3czfgctQQCgmVmA
1T09OC25sgXfULpB/IElhl8=
=fAUT
-----END PGP SIGNATURE-----


--
gentoo-hardened@gentoo.org mailing list


^ permalink raw reply	[flat|nested] 3+ messages in thread

* Re: [gentoo-hardened] PenTest LiveCD
  2003-08-08 18:18 [gentoo-hardened] PenTest LiveCD John Davis
@ 2003-08-08 19:02 ` Ned Ludd
  2003-08-11 15:50 ` Phil West
  1 sibling, 0 replies; 3+ messages in thread
From: Ned Ludd @ 2003-08-08 19:02 UTC (permalink / raw
  To: zhen; +Cc: gentoo-hardened

On Fri, 2003-08-08 at 14:18, John Davis wrote:
> -----BEGIN PGP SIGNED MESSAGE-----
> Hash: SHA1
> 
> Greets all:
> I am currently working on putting together a Gentoo LiveCD that can be used 
> for Penetration Testing on hybrid networks. Basically, the CD will contain 
> many well known security scanners, possibly some exploits, documentation, 
> etc. 
> 
> What I need is some feedback on what security packages to include. This is 
> what I have so far:
> 
> Nessus
> xfree (using openbox for the wm)
> hping
> nmap
> netcat
> whois
> iptraf
> ettercap
> (ethereal included with the above)
> johntheripper
> samba
> traceroute
> (ipv6 tools would be nice also.. )
Please include 

* lsof
* fenris
* exaiminer
* strace
* ltrace
* gdb
* valgrind
* elfkickers
* paxtest
* tcpdump
* ngrep
* dnsiff
* netstat-nat

== not in portage yet but worth looking at ==
 * revirt (http://www.eecs.umich.edu/CoVirt/)
 * amap

pretty much every thing on http://www.thc.org/releases.php is something
I want to get into portage sooner or later.


> 
> for exploits:
> windows dcom exploit 
> ( I need more here )
> 
> Documentation:
> ??
> 
> I will also protect the livecd with Project Firewall, and at some point in 
> time, propolice, etc.
> 
> Please comment on any of the above, as I am always open to suggestions.
> 
> Regards,
> //zhen
> 
> - -- 
> John Davis
> Gentoo Linux Developer
> <http://www.gentoo.org/~zhen>
> 
> - ----
> Knowledge can be more terrible than ignorance if you're powerless to change 
> your world.
> -----BEGIN PGP SIGNATURE-----
> Version: GnuPG v1.2.2 (GNU/Linux)
> 
> iD8DBQE/M+lxZlASNRlGLUcRAqbjAJ94ghuGpiAXLJOdKsZBM3czfgctQQCgmVmA
> 1T09OC25sgXfULpB/IElhl8=
> =fAUT
> -----END PGP SIGNATURE-----
> 
> 
> --
> gentoo-hardened@gentoo.org mailing list
-- 
Ned Ludd <solar@gentoo.org>
Gentoo Linux Developer (Hardened)


--
gentoo-hardened@gentoo.org mailing list


^ permalink raw reply	[flat|nested] 3+ messages in thread

* Re: [gentoo-hardened] PenTest LiveCD
  2003-08-08 18:18 [gentoo-hardened] PenTest LiveCD John Davis
  2003-08-08 19:02 ` Ned Ludd
@ 2003-08-11 15:50 ` Phil West
  1 sibling, 0 replies; 3+ messages in thread
From: Phil West @ 2003-08-11 15:50 UTC (permalink / raw
  To: gentoo-hardened

It might be fun to toss in net-analyzer/paketto, though I don't know 
how widely used it is, I find it to be an interesting tool.

-Phil

On Friday, August 8, 2003, at 02:18 PM, John Davis wrote:

> -----BEGIN PGP SIGNED MESSAGE-----
> Hash: SHA1
>
> Greets all:
> I am currently working on putting together a Gentoo LiveCD that can be 
> used
> for Penetration Testing on hybrid networks. Basically, the CD will 
> contain
> many well known security scanners, possibly some exploits, 
> documentation,
> etc.
>
> What I need is some feedback on what security packages to include. 
> This is
> what I have so far:
>
> Nessus
> xfree (using openbox for the wm)
> hping
> nmap
> netcat
> whois
> iptraf
> ettercap
> (ethereal included with the above)
> johntheripper
> samba
> traceroute
> (ipv6 tools would be nice also.. )
>
> for exploits:
> windows dcom exploit
> ( I need more here )
>
> Documentation:
> ??
>
> I will also protect the livecd with Project Firewall, and at some 
> point in
> time, propolice, etc.
>
> Please comment on any of the above, as I am always open to suggestions.
>
> Regards,
> //zhen
>
> - --
> John Davis
> Gentoo Linux Developer
> <http://www.gentoo.org/~zhen>
>
> - ----
> Knowledge can be more terrible than ignorance if you're powerless to 
> change
> your world.
> -----BEGIN PGP SIGNATURE-----
> Version: GnuPG v1.2.2 (GNU/Linux)
>
> iD8DBQE/M+lxZlASNRlGLUcRAqbjAJ94ghuGpiAXLJOdKsZBM3czfgctQQCgmVmA
> 1T09OC25sgXfULpB/IElhl8=
> =fAUT
> -----END PGP SIGNATURE-----
>
>
> --
> gentoo-hardened@gentoo.org mailing list
>


--
gentoo-hardened@gentoo.org mailing list


^ permalink raw reply	[flat|nested] 3+ messages in thread

end of thread, other threads:[~2003-08-11 15:50 UTC | newest]

Thread overview: 3+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2003-08-08 18:18 [gentoo-hardened] PenTest LiveCD John Davis
2003-08-08 19:02 ` Ned Ludd
2003-08-11 15:50 ` Phil West

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox