Archive für August 2010

Link: Fun with Audits

Hello,

Some links that can help with doing audits:

http://download.101com.com/pub/itci/Files/ITCi_ITACL-InfoSec_0612_finalweb.pdf

http://www.revision-online.info/index.php/Hauptseite

http://www.sans.org/score/checklists/ISO_17799_checklist.pdf

http://www.auditnet.org/docs/ITAuditCL.pdf

and

http://www.t2pa.com/

Have fun.

Cheers,

Matti

Hacking: Passwords again

A lot of the testing nowadays goes back to do some account hacking.
The hope of a password being in a dictionary is long gone.
Too many security policies hindering people to chose weak passwords.

But users still have to be able to remember passwords.
So we do mutations and other things:

http://www.randomstorm.com/rsmangler-security-tool.php

http://www.remote-exploit.org/Wyd/

http://awlg.org/index.gen

So if you want to check your own password:

http://www.passwordmeter.com/

Hacking: All in one DVD

http://www.hackfromacave.com/katana.html

During Blackhat there has been an update to version two

Fun to have everything along….

Cheers,

Matti

|