10 Best Security Live CD Distros (Pen-Test, Forensics & Recovery)
Darknet spilled these bits on March 14th 2006 @ 9:17 am

1. BackTrack

The newest contender on the block of course is BackTrack, which we have spoken about previously. An innovative merge between WHax and Auditor (WHax formely WHoppix).

BackTrack is the result of the merging of two Innovative Penetration Testing live Linux distributions Whax and Auditor, combining the best features from both distributions, and paying special attention to small details, this is probably the best version of either distributions to ever come out.

Based on SLAX (Slackware), BackTrack provides user modularity. This means the distribution can be easily customised by the user to include personal scripts, additional tools, customised kernels, etc.

Get BackTrack Here.

2. Operator

Operator is a very fully featured LiveCD totally oriented around network security (with open source tools of course).

Operator is a complete Linux (Debian) distribution that runs from a single bootable CD and runs entirely in RAM. The Operator contains an extensive set of Open Source network security tools that can be used for monitoring and discovering networks. This virtually can turn any PC into a network security pen-testing device without having to install any software. Operator also contains a set of computer forensic and data recovery tools that can be used to assist you in data retrieval on the local system.

Get Operator Here

3. PHLAK

PHLAK or [P]rofessional [H]acker’s [L]inux [A]ssault [K]it is a modular live security Linux distribution (a.k.a LiveCD). PHLAK comes with two light gui’s (fluxbox and XFCE4), many security tools, and a spiral notebook full of security documentation. PHLAK is a derivative of Morphix, created by Alex de Landgraaf.

Mainly based around Penetration Testing, PHLAK is a must have for any pro hacker/pen-tester.

Get PHLAK Here (You can find a PHLAK Mirror Here as the page often seems be down).

4. Auditor

Auditor although now underway merging with WHax is still an excellent choice.

The Auditor security collection is a Live-System based on KNOPPIX. With no installation whatsoever, the analysis platform is started directly from the CD-Rom and is fully accessible within minutes. Independent of the hardware in use, the Auditor security collection offers a standardised working environment, so that the build-up of know-how and remote support is made easier.

Get Auditor Here

5. L.A.S Linux

L.A.S Linux or Local Area Security has been around quite some time aswell, although development has been a bit slow lately it’s still a useful CD to have. It has always aimed to fit on a MiniCD (180MB).

Local Area Security Linux is a ‘Live CD’ distribution with a strong emphasis on security tools and small footprint. We currently have 2 different versions of L.A.S. to fit two specific needs - MAIN and SECSERV. This project is released under the terms of GPL.

Get L.A.S Linux Here

6. Knoppix-STD

Horrible name I know! But it’s not a sexually trasmitted disease, trust me.

STD is a Linux-based Security Tool. Actually, it is a collection of hundreds if not thousands of open source security tools. It’s a Live Linux Distro, which means it runs from a bootable CD in memory without changing the native operating system of the host computer. Its sole purpose in life is to put as many security tools at your disposal with as slick an interface as it can.

Get Knoppix-STD Here

7. Helix

Helix is more on the forensics and incident response side than the networking or pen-testing side. Still a very useful tool to carry.

Helix is a customized distribution of the Knoppix Live Linux CD. Helix is more than just a bootable live CD. You can still boot into a customized Linux environment that includes customized linux kernels, excellent hardware detection and many applications dedicated to Incident Response and Forensics.

Get Helix Here

8. F.I.R.E

A little out of date, but still considered the strongest bootable forensics solution (of the open-source kind). Also has a few pen-testing tools on it.

FIRE is a portable bootable cdrom based distribution with the goal of providing an immediate environment to perform forensic analysis, incident response, data recovery, virus scanning and vulnerability assessment.

Get F.I.R.E Here

9. nUbuntu

nUbuntu or Network Ubuntu is fairly much a newcomer in the LiveCD arena as Ubuntu, on which it is based, is pretty new itself.

The main goal of nUbuntu is to create a distribution which is derived from the Ubuntu distribution, and add packages related to security testing, and remove unneeded packages, such as Gnome, Openoffice.org, and Evolution. nUbuntu is the result of an idea two people had to create a new distribution for the learning experience.

Get nUbuntu Here

10. INSERT Rescue Security Toolkit

A strong all around contender with no particular focus on any area (has network analysis, disaster recovery, antivirus, forensics and so-on).

INSERT is a complete, bootable linux system. It comes with a graphical user interface running the fluxbox window manager while still being sufficiently small to fit on a credit card-sized CD-ROM.

The current version is based on Linux kernel 2.6.12.5 and Knoppix 4.0.2

Get INSERT Here

Extra - Knoppix

Remember this is the innovator and pretty much the basis of all these other distros, so check it out and keep a copy on you at all times!

Not strictly a security distro, but definately the most streamlined and smooth LiveCD distribution. The new version (soon to be released - Knoppix 5) has seamless NTFS writing enabled with libntfs+fuse.

KNOPPIX is a bootable CD or DVD with a collection of GNU/Linux software, automatic hardware detection, and support for many graphics cards, sound cards, SCSI and USB devices and other peripherals. KNOPPIX can be used as a productive Linux desktop, educational CD, rescue system, or adapted and used as a platform for commercial software product demos. It is not necessary to install anything on a hard disk.

Get Knoppix Here

Other Useful Resources:

SecurityDistros
FrozenTech LiveCD List
DistroWatch

Others to consider (Out of date or very new):

SlackPen
ThePacketMaster
Trinux
WarLinux
Network Security Toolkit
BrutalWare
KCPentrix
Plan-B
PENToo

New ones added from authors e-mail/slashdotters and diggers:

Arudius
The Gentoo Forensic Toolkit
Anonym-OS

Digg This Article

Tags:  ,  ,  ,  ,  ,  ,  ,  ,  ,  ,  ,  ,  

rss Subscribe to Darknet RSS Feed rss

| 393,771 views |

rss 103 comments
  1. trackback

    10 Best Security Live CD Distros (Pen-Test, Forensics & Recovery)…

    A summary of the 10 best LiveCD distributions dealing with security (pen testing, forensics & recovery). With links to download ……

  2. pingback

    [...] Darknet.org summarizes ten different security based LiveCDs and rates them. A good article for figuring out which security LiveCD to add to your toolbox.   [link] [...]

  3. pingback

    [...] read more | digg story [...]

  4. pingback

    [...] read more | digg story   [...]

  5. pingback

    [...] 10 Best Security Live CD Distros (Pen-Test, Forensics & Recovery) � [...]

  6. pingback

    [...] 10 Best Security Live CD Distros (Pen-Test, Forensics & Recovery) [...]

  7. Janel
    March 14th, 2006 | 11:21 pm

    INSERT also installs on USB thumb drives, though not very easily. I ordered one pre-installed from http://linuxusb.nfshost.com/ and it works great (though not on some of the older computers I’ve tried). Great for quickly bypassing security on computers. -Janel

  8. trackback

    10 Best Security Live CD Distros…

        Looks like I have a few other security distros to check out other than BackTrack.http://www.darknet.org.uk/2006/03/10-best-security-live-cd-distros-pen-test-forensics-recovery……

  9. AF-Geek
    March 15th, 2006 | 1:18 am

    I also like “Auditor” at http://www.remote-exploit.org/index.php/Auditor

    Thanks for the great listing. Time to use up some downloading bandwidth!

    Dugg!

  10. March 15th, 2006 | 2:44 am

    Janel: Thanks I might edit that in, haven’t tried it on USB.

    AF-Geek: Auditor is there at number 4 :) Even though it’s merged with WHax they are still both great on their own.

  11. trackback

    Linux Live CDs…

    I don’t know about you but I keep live cds in my tool kit. They are a useful tool to explore drives,……

  12. pingback

    [...] A summary of the 10 best LiveCD distributions dealing with security (pen testing, forensics & recovery). With links to download and a little information about each one.read more | digg story [...]

  13. pingback

    [...] read more | digg story [...]

  14. pingback

    [...] read more | digg story [...]

  15. JB
    March 15th, 2006 | 6:13 am

    I have used both Auditor and Helix, with great results from both. I will have to check out the rest of these recommendations, especially BackTrack.

  16. March 15th, 2006 | 8:01 am

    Wow… Thanks for this :)

  17. pingback

    [...] Yesterday, an article on 10 Best Security Live CD Distros (Pen-Test, Forensics & Recovery) was posted on Darknet. [...]

  18. pingback

    [...] 10 Best Security Live CD Distros (Pen-Test, Forensics & Recovery) [...]

  19. TP
    March 15th, 2006 | 9:45 am

    Where is OpenBSD???

  20. freak
    March 15th, 2006 | 9:55 am

    my e-penis is bigger/better than yours!! thats all this article is. its like comparing vi to emacs, or slackware to redhat. there is no ‘better’ they all have/lack something that the others do not. just list the pros/cons and let the end user decide which best suites his/her needs. then there is less likely a chance of a flame way.

  21. March 15th, 2006 | 9:57 am

    why not just roll your own. the scripts are everywhere, and you can be sure there isnt a hidden rootkit in the installer, or apps, plus you can make sure it has the tools you know how to use, and will need, instead of having to deal with pico, if you are a emacs person, or vi, and what not.

  22. Fred
    March 15th, 2006 | 11:10 am

    OpenBSD live cd =

    OliveBSD

  23. Joe
    March 15th, 2006 | 11:24 am

    Great synopsis of these tools. Thanks for gathering it all together.

  24. trackback

    Security Live CD Distros…

    Sie sind wie das Leatherman-Tool im Serverraum: Eine Menge praktischer Werkzeuge handlich zum einstecken. Darknet berichtet unter dem Titel “10 Best Security Live CD Distros” über verschiedene aktuelle “Geschmacksrichtungen”.
    Der Artikel liefert e…

  25. John Doe
    March 15th, 2006 | 11:39 am

    Most certainly not the top 10, but here’s one which should have been added…

    http://g.paderni.free.fr/olivebsd/

  26. John Smith
    March 15th, 2006 | 12:40 pm

    OpenBSD

  27. JD
    March 15th, 2006 | 12:45 pm

    To all the people asking why the OpenBSD Live CD isn’t included :

    Does using OpenBSD damage your eyes or something? Look at the big bold letters at the top of this page - this is about Live CDs used for security testing and not about how secure the Live CDs are. I checked out OliveBSD and I didn’t see a single security auditing package included.

    Thank you wasting my time - keep up the excellent advocacy work.

  28. pingback

    [...] Best Security Live CD Distros (Pen-Test, Forensics &Recovery)   #     [...]

  29. March 15th, 2006 | 3:36 pm

    lol

  30. March 15th, 2006 | 4:30 pm

    Not for pentesting, but good for investigations:

    Anonym.OS BSD Live CD

  31. pingback
  32. antifreak
    March 15th, 2006 | 5:26 pm

    Yeah, freak(s)…just shut it. Darknet put this all together for people who appreciate it. If you don’t…then ‘roll your own’ e-penis. Many of us don’t have time to track down all the scripts, compare versions, and put it all together.

    Thanks, Dark, mucho appreciated from this side…

  33. pingback

    [...] Via el tag de forensic de del.icio.us (per l’usuari bombox) hem vaig trobar la plana de Darknet a on llistaba els 10 millors Live CD de seguretat. [...]

  34. Hackbird
    March 16th, 2006 | 7:18 am

    I tested BackTrack in and out. The basic idea and concept is really great. Since it’s just a beta version it’s not too stable. But anyway, a terrific toolset one couldn’t avoid!

  35. pingback

    [...] Eine Liste der Besten Security Live CD Distributionen für Pen-Test-, Forensics- und Recovery-Zwecke. [...]

  36. pingback

    [...] HERE you’ll find the list of the 10 best security live cd distros. [...]

  37. pingback

    [...] For some time I have been using PHLAK for testing the security of my home network. I love this distro, very useful. Recently I read this post on Darknet aouth the 10 best security live distros. It’s a good read. I think I’m gouing to try Backtrack (#1). PHLAK was rated #3. [...]

  38. Rubén
    March 16th, 2006 | 4:25 pm

    OpenBSD is not GNU/Linux.

    So, the term ‘distro’ is usually used to GNU/Linux.

  39. pingback

    [...] 10 Best Security Live CD Distros (Pen-Test, Forensics & Recovery) » [...]

  40. pingback

    [...] Darknet has compiled a list of the 10-best livecd security tools.  Some of them are intended more for forensics, but most are for penetration testing.  Nice list! [...]

  41. pingback

    [...] 10 Best Security Live CD Distros (Pen-Test, Forensics & Recovery) » Interesting choices for live Linux security CDs. Some I knew about, others I didn’t, with links to get them all. (tags: CD linux live) [...]

  42. pingback

    [...] Links: * Nasa Goes OpenSource * US Hospital Goes OpenSource * 10 Best Security Live CD Distros (Pen-Test, Forensics & Recovery) [...]

  43. pingback

    [...] 10 Best Security Live CD Distros (Pen-Test, Forensics & Recovery) » [...]

  44. trackback

    Las 10 mejores distros LiveCD de seguridad…

    "10 Best Security Live CD Distros" es una relación de las que se consideran como las mejores distribuciones de Linux directamente ejecutables desde el CD-ROM y que tratan de diversos aspectos de seguridad, como realización de auditorías, p…

  45. pingback

    [...] 10 Best Security Live CD Distros (Pen-Test, Forensics & Recovery) [...]

  46. pingback

    [...] Read more at darknet.org.uk [...]

  47. March 19th, 2006 | 10:27 am

    You may also want to check out lnx4n6 (Linux Forensics) created by the Belgian Federal Computer Crime Unit.

  48. pingback
  49. pingback

    [...] 10 Best Security Live CD Distros (Pen-Test, Forensics & Recovery) [...]

  50. pingback

    [...] El listado original acompaña algunas descripciones y enlaces alternativos. [...]

  51. March 27th, 2006 | 4:54 am

    BackTrack Rocks, altough there is some wireless bug’s… but all else is A-ok… Knoppix STD is out of date, and PHLAK has old packages…

  52. pingback

    [...] 10 Best Security Live CD Distros (Pen-Test, Forensics & Recovery) http://www.darknet.org.uk/2006/03/10-best-security-live-cd-distros-pen-test- forensics-recovery/ [...]

  53. pingback

    [...] 10 Best Security Live CD Distros (Pen-Test, Forensics & Recovery) » (tags: security sysadmin livecd linux) [...]

  54. pingback

    [...] Stored in: Hacking Tools, Security Software | 145 Views | no comments trackback this article comment on thisarticle [...]

  55. pingback

    [...] Darknet’s Guide to the 10 best Security LiveCDs. [...]

  56. pingback

    [...] Plus the Security and Hacking LiveCD’s have quite a lot of compiled & working exploits inside too. [...]

  57. trackback

    10 Best Security Live CD Distros (Pen-Test, Forensics & Recovery) »…

    Someone at Smarking has bookmarked your post….

  58. pingback

    [...] SecureDVD is a DVD with the 10 Best Security related Live CD’s. [...]

  59. Paul
    May 15th, 2006 | 11:53 am

    All 10 distros are available on one DVD:
    http://www.securedvd.org/ sdfsdfasd

  60. pingback

    [...] 10 Best live cd's. [...]

  61. pingback

    [...] 10 Best Security Live CD Distros (Pen-Test, Forensics & Recovery) » [...]

  62. pingback

    [...] “SecureDVD is a live DVD collection*) featuring the 10 Best Security Live CD Distros (Pen-Test, Forensics & Recovery) as per Darknet (see article here) on one single DVD.” [...]

  63. pingback

    [...] Para entender qué es SecureDVD, qué mejor que acudir a la propia explicación de sus creadores. SecureDVD es una aglutinación de distribuciones live, concretamente incluye las diez distros de seguridad que Darknet recomendó no hará mucho. [...]

  64. jac0b
    July 6th, 2006 | 6:02 pm

    just bump into your site. its a good article. a well compiled reference.

  65. pingback

    [...] Repasando las noticias publicadas en Kriptopolis encuentro este pequeño listado de los 10 mejores LiveCD de seguridad. [...]

  66. trackback

    SecureDVD…

    SecureDVD
    is a live DVD collection
    featuring the 10 Best
    Security Live CD Distros (Pen-Test, Forensics & Recovery) as
    per Darknet (see article here……

  67. Joe
    July 22nd, 2006 | 8:08 pm

    Becareful. Backtrak is great, but on some laptops it does not control the fans well and will burn them up. Compaq/HP NW and NC series especially.

  68. trackback

    Succint Article on Encypting File System (EFS)…

    Encrypting File System, or EFS, first debuted in Windows 2000 and gave
    users to encrypt files without……

  69. pingback

    [...] 10 Best Security Live CD Distros [...]

  70. pingback

    [...] Darknet.org.uk has a pretty good list of Linux distributions that are geared to security tasks like pentesting, forensics and nsm. The good thing about this list is that these are Live CD’s. This means you can drop them into your CD a boot into a working Linux distro without affecting the currently installed operating system. Most do have to option for a complete hard drive install should you wish. [...]

  71. pingback

    [...] Las 10 mejores distribuciones Linux para pen testing y análisis forense [...]

  72. trackback

    10 Best Security Live CD Distros…

    From darknet a pretty good list of Linux distributions that are geared to security tasks like penetration testing, forensics and network security.10 Best Security Live CD Distros (Pen-Test, Forensics & Recovery)…

  73. pingback

    [...] ***[fuente: Darknet.org.uk] [...]

  74. pingback

    [...] 10 Best Security Live CD Distros (Pen-Test, Forensics & Recovery) (Darknet, anglès) [...]

  75. pingback

    [...] Avete capito bene è stata redatta una lista con le 10 migliori distribuzioni Live per il recupero dei dati e l’analisi dei sistemi; buona lettura e download. forensics live cd pentest security [...]

  76. ozgur
    January 12th, 2007 | 4:41 am

    I tried SecureDVD. It is great…but…
    4th and 8th distros don’t work!

  77. pingback
  78. pingback

    [...] BuszujÄ…c po internecie znalazÅ‚em ten artykuÅ‚… ŹródÅ‚o [...]

  79. pingback

    [...] I think having these three Linux is good enough for us.  If you plan to know more. Click here. [...]

  80. March 5th, 2007 | 8:38 pm

    Great write up. I really like BackTrack myself. You’ll have to update this in a year when other distros have been created!

    _Steve

  81. March 7th, 2007 | 8:38 pm

    Heh, it’s actually been just about a year since this was posted ;-)

  82. March 11th, 2007 | 1:55 pm

    Great write up. I really like BackTrack myself. You’ll have to update this in a year when other distros have been created!

  83. pingback

    [...] Gosto muito das LiveDistros para recuperação e reparação de sistemas. G4U é muito útil, assim como a UBCD. Quem tiver um tempito para gastar, recomendo a leitura das 10 melhores LiveDistros de segurança. [...]

  84. pingback

    [...] BackTrack ranked number one in Darknet’s well regarded list 10 Best Security Live CD Distros (Pen-Test, Forensics & Recovery). [...]

  85. pingback

    [...] ***[fuente: Darknet.org.uk] [...]

  86. pingback

    [...] Posted on April 17th, 2007. 10 Best Security Live CD Distros (Pen-Test, Forensics & Recovery) » [...]

  87. pingback

    [...] Security live cd 10 best security live cds[...]

  88. pingback

    [...] SecureDVD is a live DVD collection*) featuring the 10 Best Security Live CD Distros (Pen-Test, Forensics & Recovery) as per Darknet (see article here) on one single DVD. [...]

  89. pingback

    [...] Ottima questa recensione multipla riguardante le 10 piu’ belle e pratiche ditribuzioni Linux su Live CD per quanto concerne l’ambito sicurezza/hacking/pen-test. [...]

  90. pingback

    [...] contiene todas las distribuciones mencionadas en ésta entrada. Pueden descargarlo vía torrent. Darknet [...]

  91. July 13th, 2007 | 8:47 pm

    Good document.thanks

  92. trackback

    Geekdom Link Dump…

    Some more random links for the geeks (and even for the non geeks) out there:Replacing Task Manager with Process Explorer in Vista (this is a much easier process in XP)Speed……

  93. trackback

    Some more random links for…

    Some more random links for the geeks (and even for the non geeks) out there:Replacing Task Manager with Process Explorer in Vista (this is a much easier process in XP)Speed……

  94. pingback

    [...] guys of darknet.org.uk have posted a new article that lists the 10 best security live cd distros. Each distribution is [...]

  95. pingback

    [...] Lebih lengkapnya, temen2 bisa ke situs DARKNET [...]

  96. tek se7en
    December 12th, 2007 | 9:58 am

    pen-test live cd’s + crappy old laptop = easily disposable evidence…

  97. December 15th, 2007 | 6:22 pm

    I would be interested to see your updated list for this year. After the bumps in the road for the guys developing nUbuntu, I would wonder where it would end up on your list now.

  98. January 29th, 2008 | 6:09 pm

    Very usefull article.Wait for new things!!!

  99. March 31st, 2008 | 3:02 am

    May be you might see my forensic distro Stagos FSE (Forensics Suite Edition) on my site.

    See you, there!

  100. James C
    March 31st, 2008 | 7:38 pm

    @ Mada R Perdhana
    Your site seem’s down?

  101. Pantagruel
    March 31st, 2008 | 9:02 pm

    @James C

    The site was up this afternoon, perhaps he’s doing some updates, slashdotted seems unlikely.

  102. April 3rd, 2008 | 3:37 am

    @James C

    I’m sorry for the inconvenience, the hosting server looks like have a trouble with their server.

    if you like you could download Stagos FSE from http://www.forensicfocus.com or
    download directly from my campus server
    http://lab.akakom.org/~mada/stagos

    best regards,
    Mada R Perdhana

  103. Allan
    May 6th, 2008 | 10:16 pm

    I’ve become a big big big fan of grml (http://grml.org/). Based on Debian, it has the hardware detection capability of Knoppix without the extra weight of OpenOffice, KDE, etc. It’s “for sysadmins / texttool-users / geeks” but X is included (and runs great).

comment on this article

Sitemap - ShaolinTiger - DigiSniper - Digital Photography
Shutter Asia Photography Forum - We Ate This