cqure.net

Archive for the 'tools' Category

15 new nmap scripts

Sunday, August 8th, 2010

I just posted 15 new nmap scripts to the nmap-dev mailing list. For anyone curios to check them out have a look over here. I’ve been working on these new scripts for a while and they add yet more database support to nmap allowing users to perform password guessing against both Oracle and Informix servers. [...]

Share

Detecting Apple Mac OS X AFP vulnerability CVE-2010-0533 with Nmap

Monday, March 29th, 2010

During the development of my AFP library for Nmap I came a cross a critical vulnerability in Apple’s implementation of AFP on Snow Leopard. The vulnerability occurs due to improper input validation and allows an attacker to access (list, read, and/or write) files in the parent directory of any AFP sharepoint.

Share

Nmap-scripts cleanup

Wednesday, February 17th, 2010

I’ve cleaned up the Nmap scripts page a bit to better reflect reality. Most of the scripts published on that page have been commited to the Nmap development release. I’m actively working on getting the remainder commited to. Once the scripts have been commited, they’re no longer maintained here. So, in order to try them [...]

Share

5 new SNMP scripts in Nmap SVN

Wednesday, February 17th, 2010

As of yesterday there are now 5 new SNMP scripts in the development release of Nmap. I commited a new ASN.1 library a re-worked SNMP library and 5 new scripts. The new scripts are: snmp-netstat shows listening and connected sockets snmp-processes shows process information including name, pid, path and parameters snmp-win32-services shows the names of [...]

Share

nfs-showmount total re-write

Monday, January 25th, 2010

I received a bug report for my Nmap nfs-showmount script a few days ago. I ended up re-writing the whole thing as it was my first script, which is short for “ugly as hell”. I moved all NFS and RPC stuff into a new library called rpc.lua and added some more functionality as well. I’ve [...]

Share

Get Adobe Flash player