Penetration Testing mailing list archives

Re: Bootable CD Attack disk


From: Lucien Fransman <lucien.fransman () irc2 nl>
Date: Wed, 22 Feb 2006 09:25:51 +0100

On Tuesday 21 February 2006 22:49, Levenglick, Jeff wrote:
snipsnipnip

Auditor and backtrack are among the best live "attack" distros.
Phlak seems to be thebest known in certain "circles".
pentoo and nubuntu are upcoming distros that show a lot of promise 

What I've been  wondering about lately is that, when you install these to 
disk, updating the whole distribution (if it is possible) seems to break most 
of the functionality. 

Updating the toolchain isn't much of a problem, but updating the OS seems to 
be nearly impossible for most of these (mind you, i haven't tested pentoo 
yet.)

There seems to be a lot of focus on running the kit as root (which is horrible 
if you want to create a "attacking host" somewhere in your network), which is 
understandable from the live distro point of view.

One of the positive things about aditor, iwhax and backtrack is that they 
contain the "proper" menustructure, where the menu follows the general 
structure of a pentest (discovery, enumeration .....)

On my personal wishlist would be a "near ready" distro containing all the 
proper tools that is harddisk installable and easily (or automagically) 
updated. 

Of course I can do this myself, but it would be nice if it all came bundled 
within one single distro :)

Kind regards
Enchanter_tim


------------------------------------------------------------------------------
Audit your website security with Acunetix Web Vulnerability Scanner: 

Hackers are concentrating their efforts on attacking applications on your 
website. Up to 75% of cyber attacks are launched on shopping carts, forms, 
login pages, dynamic content etc. Firewalls, SSL and locked-down servers are 
futile against web application hacking. Check your website for vulnerabilities 
to SQL injection, Cross site scripting and other web attacks before hackers do! 
Download Trial at:

http://www.securityfocus.com/sponsor/pen-test_050831
-------------------------------------------------------------------------------


Current thread: