SecurEyes Techno Services Pvt. Ltd., Bangalore
Details of the Audit Tools
Freeware :
- Nessus : Vulnerability scanner used for penetration
testing
- Nmap : Port Scanner
- Metasploit framework : Vulnerability scanner
- Hping2 : OS finger printing tool, also used for fire
walking
- Ring : Passive OS finger printing tool
- Nmap-cronos : Passive OS finger printing tool
- P0f : Passive OS finger printing tool
- Smtpscan : Mail server profiling tool
- Sprint : OS detection tool
- Xprobe : OS detection tool
- Fire and Water : Web Server discovery tool
- Ethereal : Sniffer used for capturing and analysing
traffic in a penetration test
- AirSnort : Wireless network penetration testing
tools.
- Kismet : Wireless network penetration testing tools.
- NetStumbler : Wireless network penetration testing
tools.
- WEPCrack : Wireless network penetration testing
tools.
- Achillies : Web application penetration testing tool
- Spike Proxy : Automatic Vulnerability scanner for web
applications.
- Odysseus : Web application audit tool
- Paros : Web application proxy, web application security
vulnerability scanner.
- WinHex : Physical Memory editor used for penetration
testing of applications
- Netcat : Network penetration testing tool.
Proprietary :
- Windows-VA script : In house developed script used
for vulnerability assessment of Windows operating system
- Linux-VA script : In house developed script used for
vulnerability assessment Linux operating system.
- Solaris-VA script : In house developed script used
for vulnerability assessment of Solaris operating system.
- AIX-VA script : In house developed script used for vulneability
assessment of AIX operating system.
- Router-VA script : In house developed script used for
vulnerability assessment of Routers
- Switch-VA script : In house developed script used for
vulnerability assessment of Switch.
- WSDigger : Web Services profiling and attack tool.
- Cookie Digger : Web application audit tool which
helps in calculating the strength of cookies and session ID's
- Code Scoping tool : Code security audit tool
- Validator. NET : Web application audit tool for
applications built using.net techology
- HACME Bank : Web Application audit trainer
application