<?xml version="1.0" encoding="UTF-8"?>
<!-- generator="wordpress/2.1.2" -->
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	>

<channel>
	<title>SecTools</title>
	<link>http://secure2s.net/tools</link>
	<description>Secure2S Security Tool Sets Blog</description>
	<pubDate>Wed, 29 Aug 2007 14:11:25 +0000</pubDate>
	<generator>http://wordpress.org/?v=2.1.2</generator>
	<language>en</language>
			<item>
		<title>Paros Proxy</title>
		<link>http://secure2s.net/tools/2007/08/29/paros-proxy-2/</link>
		<comments>http://secure2s.net/tools/2007/08/29/paros-proxy-2/#comments</comments>
		<pubDate>Wed, 29 Aug 2007 14:11:25 +0000</pubDate>
		<dc:creator>Jalal Rohani</dc:creator>
		
		<category><![CDATA[Web Vulnerability Scanners]]></category>

		<category><![CDATA[BackTrack]]></category>

		<guid isPermaLink="false">http://secure2s.net/tools/2007/08/29/paros-proxy-2/</guid>
		<description><![CDATA[Web Proxy, written in Java. Supports http and https

Info: http://www.parosproxy.org/ ]]></description>
			<content:encoded><![CDATA[Web Proxy, written in Java. Supports http and https

Info: http://www.parosproxy.org/ ]]></content:encoded>
			<wfw:commentRss>http://secure2s.net/tools/2007/08/29/paros-proxy-2/feed/</wfw:commentRss>
		</item>
		<item>
		<title>OpenSSL-Scanner</title>
		<link>http://secure2s.net/tools/2007/08/29/openssl-scanner/</link>
		<comments>http://secure2s.net/tools/2007/08/29/openssl-scanner/#comments</comments>
		<pubDate>Wed, 29 Aug 2007 13:21:37 +0000</pubDate>
		<dc:creator>Jalal Rohani</dc:creator>
		
		<category><![CDATA[Information Gathering]]></category>

		<category><![CDATA[BackTrack]]></category>

		<guid isPermaLink="false">http://secure2s.net/tools/2007/08/29/openssl-scanner/</guid>
		<description><![CDATA[OpenSSL vulnerability scanner scans for a remote exploit for the KEY_ARG overflow in OpenSSL 0.9.6d and older. Tested against most major Linux distributions. Gives a remote nobody shell on Apache and remote root on other servers. Includes an OpenSSL vulnerability scanner and a detailed vulnerability analysis. Only Linux/x86 targets are supported.

Exploit Details (CVE-2002-0656): http://cve.mitre.org/cgi-bin/cvename.cgi?name=CAN-2002-0656

OpenSSL Exploit [...]]]></description>
			<content:encoded><![CDATA[OpenSSL vulnerability scanner scans for a remote exploit for the KEY_ARG overflow in OpenSSL 0.9.6d and older. Tested against most major Linux distributions. Gives a remote nobody shell on Apache and remote root on other servers. Includes an OpenSSL vulnerability scanner and a detailed vulnerability analysis. Only Linux/x86 targets are supported.

Exploit Details (CVE-2002-0656): <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CAN-2002-0656" class="external free" title="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CAN-2002-0656" rel="nofollow">http://cve.mitre.org/cgi-bin/cvename.cgi?name=CAN-2002-0656</a>

OpenSSL Exploit Homepage: <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CAN-2002-0656" class="external free" title="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CAN-2002-0656" rel="nofollow">http://cve.mitre.org/cgi-bin/cvename.cgi?name=CAN-2002-0656</a>]]></content:encoded>
			<wfw:commentRss>http://secure2s.net/tools/2007/08/29/openssl-scanner/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Onesixtyone</title>
		<link>http://secure2s.net/tools/2007/08/29/onesixtyone/</link>
		<comments>http://secure2s.net/tools/2007/08/29/onesixtyone/#comments</comments>
		<pubDate>Wed, 29 Aug 2007 13:21:16 +0000</pubDate>
		<dc:creator>Jalal Rohani</dc:creator>
		
		<category><![CDATA[Information Gathering]]></category>

		<category><![CDATA[BackTrack]]></category>

		<guid isPermaLink="false">http://secure2s.net/tools/2007/08/29/onesixtyone/</guid>
		<description><![CDATA[an efficient SNMP scanner

Info: http://www.phreedom.org/solar/onesixtyone/ ]]></description>
			<content:encoded><![CDATA[an efficient SNMP scanner

Info: http://www.phreedom.org/solar/onesixtyone/ ]]></content:encoded>
			<wfw:commentRss>http://secure2s.net/tools/2007/08/29/onesixtyone/feed/</wfw:commentRss>
		</item>
		<item>
		<title>OAT</title>
		<link>http://secure2s.net/tools/2007/08/29/oat/</link>
		<comments>http://secure2s.net/tools/2007/08/29/oat/#comments</comments>
		<pubDate>Wed, 29 Aug 2007 13:20:50 +0000</pubDate>
		<dc:creator>Jalal Rohani</dc:creator>
		
		<category><![CDATA[Vulnerability Scanners]]></category>

		<category><![CDATA[BackTrack]]></category>

		<guid isPermaLink="false">http://secure2s.net/tools/2007/08/29/oat/</guid>
		<description><![CDATA[OAT (Oracle Auditing Tools) - is a set of tools which can be used to audit Oracle databases running on the Microsoft Windows platform. The Tools are Java based and were tested on both Windows and Linux. They should hopefully also run on any other Java platform. http://www.cqure.net/wp/?page_id=2]]></description>
			<content:encoded><![CDATA[OAT (Oracle Auditing Tools) - is a set of tools which can be used to audit Oracle databases running on the Microsoft Windows platform. The Tools are Java based and were tested on both Windows and Linux. They should hopefully also run on any other Java platform. http://www.cqure.net/wp/?page_id=2]]></content:encoded>
			<wfw:commentRss>http://secure2s.net/tools/2007/08/29/oat/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Nikto</title>
		<link>http://secure2s.net/tools/2007/08/29/nikto-2/</link>
		<comments>http://secure2s.net/tools/2007/08/29/nikto-2/#comments</comments>
		<pubDate>Wed, 29 Aug 2007 13:20:09 +0000</pubDate>
		<dc:creator>Jalal Rohani</dc:creator>
		
		<category><![CDATA[Web Vulnerability Scanners]]></category>

		<category><![CDATA[BackTrack]]></category>

		<guid isPermaLink="false">http://secure2s.net/tools/2007/08/29/nikto-2/</guid>
		<description><![CDATA[Nikto is an Open Source (GPL) web server scanner which performs comprehensive tests against web servers for multiple items, including over 3300 potentially dangerous files/CGIs, versions on over 625 servers, and version specific problems on over 230 servers. Scan items and plugins are frequently updated and can be automatically updated (if desired).

Info: http://www.cirt.net/code/nikto.shtml]]></description>
			<content:encoded><![CDATA[Nikto is an Open Source (GPL) web server scanner which performs comprehensive tests against web servers for multiple items, including over 3300 potentially dangerous files/CGIs, versions on over 625 servers, and version specific problems on over 230 servers. Scan items and plugins are frequently updated and can be automatically updated (if desired).

Info: <a href="http://www.cirt.net/code/nikto.shtml" class="external free" title="http://www.cirt.net/code/nikto.shtml" rel="nofollow">http://www.cirt.net/code/nikto.shtml</a>]]></content:encoded>
			<wfw:commentRss>http://secure2s.net/tools/2007/08/29/nikto-2/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Mistress</title>
		<link>http://secure2s.net/tools/2007/08/29/mistress/</link>
		<comments>http://secure2s.net/tools/2007/08/29/mistress/#comments</comments>
		<pubDate>Wed, 29 Aug 2007 13:19:31 +0000</pubDate>
		<dc:creator>Jalal Rohani</dc:creator>
		
		<category><![CDATA[Vulnerability Scanners]]></category>

		<category><![CDATA[BackTrack]]></category>

		<guid isPermaLink="false">http://secure2s.net/tools/2007/08/29/mistress/</guid>
		<description><![CDATA[Mistress in an &#8216;Application Sadism Environment&#8217; and can also be called a fuzzer. It is written in Python and was created for probing file formats on the fly and protocols with malformed data, based on pre-defined patterns. It is recommended that the project site be visited for further documentation and use cases.]]></description>
			<content:encoded><![CDATA[Mistress in an &#8216;Application Sadism Environment&#8217; and can also be called a fuzzer. It is written in Python and was created for probing file formats on the fly and protocols with malformed data, based on pre-defined patterns. It is recommended that the project site be visited for further documentation and use cases.]]></content:encoded>
			<wfw:commentRss>http://secure2s.net/tools/2007/08/29/mistress/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Mibble MIB Browser</title>
		<link>http://secure2s.net/tools/2007/08/29/mibble-mib-browser/</link>
		<comments>http://secure2s.net/tools/2007/08/29/mibble-mib-browser/#comments</comments>
		<pubDate>Wed, 29 Aug 2007 13:18:50 +0000</pubDate>
		<dc:creator>Jalal Rohani</dc:creator>
		
		<category><![CDATA[Information Gathering]]></category>

		<category><![CDATA[BackTrack]]></category>

		<guid isPermaLink="false">http://secure2s.net/tools/2007/08/29/mibble-mib-browser/</guid>
		<description><![CDATA[Mibble is an open-source SNMP MIB parser (or SMI parser) written in Java. It can be used to read SNMP MIB files as well as simple ASN.1 files.

Info: http://www.mibble.org/ ]]></description>
			<content:encoded><![CDATA[Mibble is an open-source SNMP MIB parser (or SMI parser) written in Java. It can be used to read SNMP MIB files as well as simple ASN.1 files.

Info: http://www.mibble.org/ ]]></content:encoded>
			<wfw:commentRss>http://secure2s.net/tools/2007/08/29/mibble-mib-browser/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Mezcal HTTP/S</title>
		<link>http://secure2s.net/tools/2007/08/29/mezcal-https/</link>
		<comments>http://secure2s.net/tools/2007/08/29/mezcal-https/#comments</comments>
		<pubDate>Wed, 29 Aug 2007 13:18:30 +0000</pubDate>
		<dc:creator>Jalal Rohani</dc:creator>
		
		<category><![CDATA[Web Vulnerability Scanners]]></category>

		<category><![CDATA[BackTrack]]></category>

		<guid isPermaLink="false">http://secure2s.net/tools/2007/08/29/mezcal-https/</guid>
		<description><![CDATA[Mezcal is an HTTP/HTTPS bruteforcing tool allowing the crafting of requests and insertion of dynamic variables on-the-fly.

Info:http://0&#215;90.org/releases/mezcal/ ]]></description>
			<content:encoded><![CDATA[Mezcal is an HTTP/HTTPS bruteforcing tool allowing the crafting of requests and insertion of dynamic variables on-the-fly.

Info:http://0&#215;90.org/releases/mezcal/ ]]></content:encoded>
			<wfw:commentRss>http://secure2s.net/tools/2007/08/29/mezcal-https/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Metoscan</title>
		<link>http://secure2s.net/tools/2007/08/29/metoscan/</link>
		<comments>http://secure2s.net/tools/2007/08/29/metoscan/#comments</comments>
		<pubDate>Wed, 29 Aug 2007 13:14:11 +0000</pubDate>
		<dc:creator>Jalal Rohani</dc:creator>
		
		<category><![CDATA[Web Vulnerability Scanners]]></category>

		<category><![CDATA[BackTrack]]></category>

		<guid isPermaLink="false">http://secure2s.net/tools/2007/08/29/metoscan/</guid>
		<description><![CDATA[Metoscan is a tiny tool for scanning the HTTP methods supported by a web server. It works testing a URL and checking the responses for the different probes.

Info: http://www.securiteam.com/tools/5CP0O20IAK.html ]]></description>
			<content:encoded><![CDATA[Metoscan is a tiny tool for scanning the HTTP methods supported by a web server. It works testing a URL and checking the responses for the different probes.

Info: http://www.securiteam.com/tools/5CP0O20IAK.html ]]></content:encoded>
			<wfw:commentRss>http://secure2s.net/tools/2007/08/29/metoscan/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Metacoretex</title>
		<link>http://secure2s.net/tools/2007/08/29/metacoretex/</link>
		<comments>http://secure2s.net/tools/2007/08/29/metacoretex/#comments</comments>
		<pubDate>Wed, 29 Aug 2007 13:07:19 +0000</pubDate>
		<dc:creator>Jalal Rohani</dc:creator>
		
		<category><![CDATA[Vulnerability Scanners]]></category>

		<category><![CDATA[BackTrack]]></category>

		<guid isPermaLink="false">http://secure2s.net/tools/2007/08/29/metacoretex/</guid>
		<description><![CDATA[MetaCoretex security scanner is an extremely modular plugin based security scanner written entirely in JAVA to allow the use of JDBC Type IV drivers when scanning databases. Initially, most plugins will likely be for DBs.]]></description>
			<content:encoded><![CDATA[MetaCoretex security scanner is an extremely modular plugin based security scanner written entirely in JAVA to allow the use of JDBC Type IV drivers when scanning databases. Initially, most plugins will likely be for DBs.]]></content:encoded>
			<wfw:commentRss>http://secure2s.net/tools/2007/08/29/metacoretex/feed/</wfw:commentRss>
		</item>
	</channel>
</rss>
