[ad] The newest version of Technitium MAC Address Changer was released a while back, v4.7. There are some minor changes and it’s looking to be pretty polished for a free tool. Of course some might say “It’s just a registry entry? What’s the big deal?” Well this just makes it easier, especially when you are […]
network-security
Wi-Fi Jacking Extremely Common (45% of People Do!)
[ad] It seems Wi-Fi is actually extremely common, in fact in a recent poll up to 45% do it! I guess most people here have, I admit I do even with my phone when I’m out and about I’ll use any WiFi point that works. We can blame it on the manufacturers for having lax […]
Apple Fixes ‘Misleading’ Leopard Firewall Settings
[ad] Apple has admitted that is has at LEAST three serious design weaknesses in it’s new application based firewall being rolled out with Mac OS X ‘Leopard’. It comes (somewhat oddly) only 24 hours after a Mac OS X security update that fixed 41 OS X and Safari security vulnerabilities. Previously independent researchers proved that […]
IPAudit – Network Activity Monitor with Web Interface
[ad] IPAudit monitors network activity on a network by host, protocol and port. It listens to a network device in promiscuous mode, and records every connection between two ip addresses. A unique connection is determined by the ip addresses of the two machines, the protocol used between them, and the port numbers (if they are […]
The Homeland Security Department Suffered More Than 800 Successful Hack Attacks
[ad] Not just attempts, but 844 successful intrusions over the past two years, quite a scary statistic no? They are actually having a subcommittee hearing entitled “Hacking the Homeland”. This includes all kinds of intrusions including web site hacks, viruses, worms and other kinds of intrusion. DHS and its constituent agencies have suffered more than […]
FTester – Firewall Tester and IDS Testing tool
[ad] The Firewall Tester (FTester) is a tool designed for testing firewalls filtering policies and Intrusion Detection System (IDS) capabilities. The tool consists of two perl scripts, a packet injector (ftest) and the listening sniffer (ftestd). The first script injects custom packets, defined in ftest.conf, with a signature in the data part while the sniffer […]
Proxmon – Proxy Log Monitoring Tool
[ad] ProxMon is an extensible Python based framework that reduces testing effort, improves consistency and reduces errors. Its use requires limited additional effort as it processes the proxy logs that you’re already generating and reports discovered issues. In addition to penetration testing, ProxMon is useful in QA, developer testing and regression testing scenarios. Formerly announced […]
tcpxtract – Extract Files from Network Traffic AKA Carving
tcpxtract is a tool for extracting files from network traffic based on file signatures. Extracting files based on file type headers and footers (sometimes called “carving”) is an age old data recovery technique. Tools like Foremost employ this technique to recover files from arbitrary data streams. tcpxtract uses this technique specifically for the application of […]
ProxyFuzz – MITM Network Fuzzer in Python
[ad] ProxyFuzz is a man-in-the-middle non-deterministic network fuzzer written in Python. ProxyFuzz randomly changes (fuzzes) contents on the network traffic. It supports TCP and UDP protocols and can also be configured to fuzz only one side of the communication. ProxyFuzz is protocol agnostic so it can randomly fuzz any network communication. ProxyFuzz is a good […]
Sguil – Intuitive GUI for Network Security Monitoring with Snort
Sguil (pronounced sgweel) is probably best described as an aggregation system for network security monitoring tools. It ties your IDS alerts into a database of TCP/IP sessions, full content packet logs and other information. When you’ve identified an alert that needs more investigation, the sguil client provides you with seamless access to the data you […]

