20 December 2009 0 Comments

Ubuntu for Security Professionals

Linux_Swat Protech One is a new security and pen testing linux distribution based off Ubuntu/Debian. Recently I have downloaded the Protech One .iso from their home site http://techm4sters.org/ to take a peek into the distribution. Well I don’t dislike it, booting from the live CD was easy and seems like it is pretty lightweight. The desktop GUI is Fluxbox, which to be completely honest I don’t really like using, I prefer KDE or GNOME. Looking over some of the pre-installed applications, it seems to have a decent included set.

I think this distro has a very good chance at being more than what it is. If your a Linux user you know that customizing an installation of Linux to your liking is the best way to go, however using lightweight pre-made versions are awesome when it comes to mobility, security, and lightweight usage. When I try out a security suite like this I always have the urge to compare it with Backtrack. I try not to, but I’ve grown so used to using it and being very happy with it. Run Protech One with GNOME though, and you just might win my heart…that is if I’m not in the mood for terminal.

So far so good though techm4sters, keep up the good work!

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16

Software

Window Manager: Fluxbox

Browsers: Opera® (with tor and privoxy)and w3m (console browser)

File manager: Thunar

Search software: Catfish

Text editors: Mousepad; Vim; Nano

Multimedia: Audacious; Mplayer; Gnomebaker

Network: XAMPP; Hamachi; Ndiswrapper (GUI); AutoScan; Hybrid-Share; Wicd (Network Manager); Network Tools; Gftp; Pidgin; telnet; Remote Desktop; Samba (pyNeighbourhood); OpenVNC; VNCviewer

Programming: Python2.5; Emacs22 (gtk2) ; Anjuta

Tools: ParolaPass; Calculator; GPSdrive; Xpdf; Xarchiver

System: Printer / Scanner manager; Htop; Iftop; Startup Manager (SUM); Ntfs-Config; Gparted; Synaptic; Screenlocker (alock); Fluxbox Menu Editor

Security Tools

Aquiring Tools: DCFLDD; DD; DD_Rescue

Cisco: Yersinia: Asleap; Cisco Exploiter

Database: Blind SQL Injection; Hackerstorm; HTTP SQL Bruteforce; Metacoretex; SQL Inject

Enumeration:
DNS: Dig; DNS Enum; DNSWalk; Host
Google: Finger Google; Google Mail Enum; Google Search; GooScan
Misc: p0f
Samba: NBTScan; Samba Enum
SMTP: Relay Scanner; SMTP Vrfy
SNMP: SNMP Enum: SNMPget; SNMPset; SNMPwalk
WWW: ISR Forms; List URLs; Paros Proxy

Exploits: Exploit Tree; Metasploit Framework 3; Milw0rm

Forensics:
Analisys: Autospy
File Carving: Foremost

Fuzzers: Bed; Clfuzz; Pirana

Honeypot: Labrea; Honeyd; Tinyhoneypot

Oracle: Metacoretex; OAT

Password Attacks:
Offline: Rainbow Crack; Hash Colision; John; Ophcrack; Samdump2
Online: Hydra; Medusa; THC PPTP

Rootkit: rkhunter; chkrootkit

Sandbox: Plash

Scanners:
Port Scanners: Amap; Nmap; Onesistyone
VPN Scanners: IKE Scan; PSK Crack
Vulnerability Scanners: Nikto (Nessus is not allowed, requires manual install)

Sniffers: Ettercap; Driftnet; Dsniff; Filesnarf; SSHMITM; Msgsnarf; Mailsnarf; SShow; URLsnarf; Wireshark

Spoofing: Ettercap; Yersinia; ARSpoof; DNSSpoof; Etherwake; Fragrouter; Fragroute; Icmpush

System Hardening: Bastille

Tunelling: Cryptcat; OpenVPN

Wireless:
Analysis: Kismet / Gkismet
AP Fakers: FakeAP; Hotspotter
Cracking: Aircrack; Cowpatty; Aircrack-ptw; Airsnort
Packet Forge: Aireplay