Top 75 Security Tools by insecure.org
Top 75 Security Tools by insecure.org
- Nessus: The premier Open Source
vulnerability assessment tool - Ethereal: Sniffing the glue that holds
the Internet together - Snort: A free intrusion detection
system (IDS) for the masses - Netcat:
The network swiss army knife - TCPDump /
WinDump: The classic sniffer for
network monitoring and data acquisition - Hping2: A network probing utility like
ping on steroids - DSniff: A suite
of powerful network auditing and penetration-testing tools - GFI LANguard: A commercial
network security scanner for Windows - Ettercap: In case you
still thought switched LANs provide much extra security - Whisker/Libwhisker:
Rain.Forest.Puppy’s CGI vulnerability scanner and library - John the Ripper: An
extraordinarily powerful, flexible, and fast multi-platform password
hash cracker - OpenSSH /
SSH: A secure way to access
remote computers - Sam Spade: Freeware Windows
network query tool -
ISS Internet Scanner: Application-level vulnerability assessment - Tripwire: The grand-daddy of file
integrity checkers - Nikto: A more
comprehensive web scanner - Kismet: A powerful wireless
sniffer -
SuperScan: Foundstone’s Windows TCP port scanner - L0phtCrack 4 (now
called “LC4"”) : Windows password auditing and recovery application - Retina:
Commertial vulnerability assessment scanner by eEye - Netfilter: The current Linux
kernel packet filter/firewall - traceroute/ping/telnet/whois: The basics
-
Fport: Foundstone’s enhanced netstat - SAINT: Security
Administrator’s Integrated Network Tool - Network Stumbler: Free Windows 802.11
Sniffer - SARA: Security Auditor’s Research
Assistant - N-Stealth: Web server
scanner - AirSnort: 802.11 WEP Encryption
Cracking Tool - NBTScan: Gathers
NetBIOS info from Windows networks - GnuPG /
PGP: Secure your files and communication w/advanced encryption - Firewalk:
Advanced traceroute - Cain & Abel: The poor man’s
L0phtcrack - XProbe2:
Active OS fingerprinting tool - SolarWinds Toolsets: A plethora
of network discovery/monitoring/attack tools - NGrep: Convenient
packet matching & display - Perl /
Python: Portable, general-purpose scripting languages - THC-Amap: An application
fingerprinting scanner - OpenSSL: The premier SSL/TLS
encryption library - NTop: A network traffic usage monitor
- Nemesis:
Packet injection simplified - LSOF: LiSt Open
Files - Hunt: An
advanced packet sniffing and connection intrusion tool for Linux - Honeyd: Your own
personal honeynet - Achilles: A Windows web
attack proxy - Brutus: A network brute-force
authentication cracker - Stunnel: A general-purpose SSL
cryptographic wrapper - Paketto Keiretsu: Extreme
TCP/IP - Fragroute: IDS
systems’ worst nightmare - SPIKE
Proxy: HTTP Hacking - THC-Hydra: Parallized
network authentication cracker - OpenBSD: The proactively secure
operating system. - TCP Wrappers:
A classic IP-based access control and logging mechanism - pwdump3: Allows for
retreiving Windows password hashes locally or across the network whether or not
syskey is enabled. - LibNet: A high-level
API (toolkit) allowing the application programmer to construct and inject
network packets - IpTraf: IP Network
Monitoring Software - Fping: A parallel ping scanning
program - Bastille: Security hardening
script for Linux, Mac OS X, and HP-UX - Winfingerprint: A
Win32 Host/Network Enumeration Scanner - TCPTraceroute: A
traceroute implementation using TCP packets - Shadow Security
Scanner: A commercial vulnerability assessment tool - pf: The innovative packet
filter in OpenBSD - LIDS: A Linux kernel intrusion
detection/defense system - hfnetchk: Microsoft tool for
checking the patch status of all the Windows machines on a network from a
central location - etherape: A graphical
network monitor for Unix modeled after etherman - dig: A handy DNS query tool
that comes free with Bind - Crack / Cracklib:
Alec Muffett’s classic local password cracker - cheops /
cheops-ng: Gives a simple
interface to many network utilities, maps local or remote networks and
identifies OS of machines - zone alarm: Windows Personal
firewall software. They offer a limited
free version, but much of the functionality is disabled. Some users
prefer Kerio Personal Firewall, which
also sports free and commercial versions. - Visual Route:
Obtains traceroute/whois data and plots it on a World map - The Coroner’s Toolkit (TCT): A
collection of tools that are either oriented towards gathering or analyzing
forensic data on a Unix system - tcpreplay: a tool to replay
saved tcpdump or
snoop files at arbitrary
speeds - snoop: A well-known
gangsta rapper (Snoop Dogg)! It is also a network sniffer that comes with
Solaris. - putty: An
excellent Windows SSH client - arpwatch: Keeps track of
ethernet/ip address pairings and can detect certain
monkey business - pstools:
A suite of free command-line tools for managing Windows systems (process
listings, command execution, etc)
Pingback: blog
nice security tool i need it thanks alot