Wednesday, April 13, 2011

Streams: A TCP Data Mining Tool!

streams is a tool for browsing, mining and processing TCP streams in .pcap files. It is somewhat like another tool that we wrote about way back in 2009 – TcpXtract. It provides a command line prompt for filtering, selecting and dumping reassembled session data. It can further invoke external tools to pipe stream data through.

rrently works on *nix systems, needs lot of customizations and changes, which we hope will be reduced and GUI will be added for better management.

download software to : http://www.pentestit.com

CVEchecker: Tool to Report About Possible Vulnerabilities on Your System!

The goal of cvechecker is to report about possible vulnerabilities on your system, by scanning the installed software and matching the results with the CVE database. Indeed, this is not a bullet-proof method and you will most likely have many false positives (vulnerability is fixed with a revision-release, but the tool isn’t able to detect the revision itself), yet it is still better than nothing, especially if you are running a distribution with little security coverage.

CVEchecker is very useful for for small organization system auditors. You can quickly scan and gather information and present it to the higher ops! Still, the tool remains useful. With the proper reporting in place, you are immediately warned when a new CVE has been released that might match your system. You can then take the appropriate steps (acknowledge report, verify incident, fix package or mark as false positive).

The tool however needs your help as well. The most work is to tell cvechecker how to detect which software is installed and what version.

The cvechecker tool requires the following packages to be installed-

libxslt – needed for the XSLT transformations (the online CVE database exists of XML files and we need to convert those to CSV so that we can easily import it into our own, local database)
libconfig – a C library that offers a simple way for applications to read and handle configuration files
sqlite3 – a local, embedded yet powerful database (for the time being, cvechecker only supports sqlite3, but in the future additional databases will be supported)
wget – a command-line tool to fetch online resources

download tools in : http://www.pentestit.com/

Tuesday, April 5, 2011

List of FREE VPN Providers!

1. JAP / AN.ON – Anonymity.Online / JonDo:
This is something that we have used for quiet some time now. Give it a try. I’m sure you will Love it!
“JAP (called JonDo in the scope of the commercial JonDonym anonymous proxy servers – AN.ON remains free of charge) makes it possible to surf the internet anonymously and unobserved“.
It is multi-platform and JAVA based.

2. AnchorFree Hotspot Shield:
This is not a VPN service per-se, but can sure help you stay invisible online. It has ad’s just like we do for support. That should not bother you guys now. Right?
“Ensure you are private, secure, and anonymous online! Secure your web session, data, online shopping, and personal information online with HTTPS encryption. Protect yourself from identity theft online. Hide your IP address for your privacy online. Access all content privately without censorship; bypass firewalls. Protect yourself from snoopers at Wi-Fi hotspots, hotels, airports, corporate offices. Works on wireless and wired connections alike. Provides Unlimited Bandwidth. Works on the PC and the MAC, including new operating systems (Windows 7 and Snow Leopard)”

3. UltraVPN:
This, in our opinion is also one of the good VPN service providers. We say that from constant use! It is cross platform and a very small download!
“UltraVPN is a client/server SSL VPN solution based on OpenVPN. It encrypts and anonymizes your network connection. UltraVPN is a simple user interface to connect or disconnect to our VPN servers.”
It is based on the OpenVPN service.

4. OpenVPN
One more of our favourites. This is what drives UltraVPN!
“OpenVPN is a full-featured open source SSL VPN solution that accommodates a wide range of configurations, including remote access, site-to-site VPNs, Wi-Fi security, and enterprise-scale remote access solutions with load balancing, failover, and fine-grained access-controls. Starting with the fundamental premise that complexity is the enemy of security, OpenVPN offers a cost-effective, lightweight alternative to other VPN technologies that is well-targeted for the SME and enterprise markets.”
You can probably use this and create your own VPN setup if you want as it is open source and multi-platform!

5. Loki Network Project:
“This is the first exclusively Windows and closed source VPN application.
Loki Network Project is free VPN service and SSL based free VPN server. It is an opportunity to protect your private data (IP address, e-mail/FTP/HTTP passwords, web-sites visited, uploaded/downloaded files and etc…) and bypass certain Internet access limitations you may have at your location. ”
We have not used this one. But, you try it and give us your feedback!

“This is the first exclusively Windows and closed source VPN application.
Loki Network Project is free VPN service and SSL based free VPN server. It is an opportunity to protect your private data (IP address, e-mail/FTP/HTTP passwords, web-sites visited, uploaded/downloaded files and etc…) and bypass certain Internet access limitations you may have at your location. ”
We have not used this one. But, you try it and give us your feedback!

6. HideIP VPN:
We don’t know about other clients (because we never tried using P2P!), but this one specifically mentions that they DO NOT allow P2P traffic!
“HideIPVPN offers FREE VPN accounts on our servers located in United States and United Kingdom. Make your traffic appear to originate from a United States or United Kingdom. Access sites like Pandora, ABC, NBC, BBC, ITV, etc.”
This service is not easy to sign up as they give away only a limited number of users per week! So, probably might be worth giving it a try due to its exclusivity? You connect using the Point-to-Point Tunneling Protocol (PPTP) protocol.

7. VPN TOOL:
These guys provide free and PAID services as well. They offer two kinds of services: Virtual Private Network with Layer 2 Tunnel Connection (L2TP VPN) and IPSEC VPN that offers encrypted and Secured Virtual Private Network with 3 Layer Secure Tunnel Connection. Provides strong encryption and security (DES.3DES, AES).
“We provide professional VPN and anonymity services at competitive prices, using the best open source software available, software that has been rigorously tested by thousands of users. Our service will anonymize and at the same time secure your Internet connection, creating an encrypted tunnel between you and our servers. This will assign a new ip address to your computer, thus, anonymizing your entire Internet usage. Is your P2P traffic throttled by your ISP? Our service will solve your problem by encrypting the P2P traffic and making it very hard for your ISP to distinguish packets from one another.”

8. Its Hidden:
The only catch being that the FREE connection is terminated every 20 minutes. Other than that, this service is perfectly fine!
“ItsHidden.com is the ultimate FREE surfing privacy service on the Internet with huge capacity and no complicated software to install, you already have everything you need on your computer right now! We are now also proud to launch our new paid service for more demanding uses!”
They also, like some of the above offer paid services too.

Sunday, April 3, 2011

Nak Disable FUngsi Recent Documents In Ubuntu

We must edit the .gtkrc-2.0 file:

sudo gedit ~/.gtkrc-2.0


And add the following line:

gtk-recent-file-max-age=0


This will disable your Recent Documents in Gnome:

recent files gnome

Friday, April 1, 2011

Cara nak munculkan folder atau fail dari di hidden oleh Virus

attrib -s -h -r *.* = kalau nak munculkan file yg kene hidden oleh virus
attrib h:*.* /d /s -h -r -s = kalau nak munculkan folder dan file sekali