<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Recognize-Security &#187; Tools</title>
	<atom:link href="http://www.rec-sec.com/category/tools/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.rec-sec.com</link>
	<description>a non-profit information security web site authored by Moshe Ben Abu (Trancer), focusing on vulnerability research, exploit development (mainly for the Metasploit Framework), web application security, information security and hacking news from around the world.</description>
	<lastBuildDate>Sun, 14 Mar 2010 17:44:35 +0000</lastBuildDate>
	<generator>http://www.rec-sec.com</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<cloud domain='www.rec-sec.com' port='80' path='/?rsscloud=notify' registerProcedure='' protocol='http-post' />
<atom:link rel="hub" href="http://pubsubhubbub.appspot.com" />
	<atom:link rel="hub" href="http://superfeedr.com/hubbub" />
			<item>
		<title>Nmap 5.20 released</title>
		<link>http://www.rec-sec.com/2010/01/21/nmap-5-20-released/</link>
		<comments>http://www.rec-sec.com/2010/01/21/nmap-5-20-released/#comments</comments>
		<pubDate>Thu, 21 Jan 2010 03:45:11 +0000</pubDate>
		<dc:creator>Trancer</dc:creator>
				<category><![CDATA[Tools]]></category>

		<guid isPermaLink="false">http://www.rec-sec.com/?p=938</guid>
		<description><![CDATA[A new version of Nmap Security Scanner released today which is the first stable release since 5.00 &#8211; Nmap 5.20.
This version got tons of improvements such as improved UDP scanning, new Nmap Scripting Engine scripts, updated OS and version detection and more.
Check out the Change log and announcement of Nmap 5.20.
Download Nmap 5.20.
]]></description>
			<content:encoded><![CDATA[<p><img alt="Nmap" width="121" height="82" class="right" src="images/nmap-logo.png" />A new version of Nmap Security Scanner released today which is the first stable release since 5.00 &#8211; Nmap 5.20.<br />
This version got tons of improvements such as improved <abbr title="User Datagram Protocol">UDP</abbr> scanning, new Nmap Scripting Engine scripts, updated <abbr title="Operating System">OS</abbr> and version detection and more.<br />
Check out the <a href="http://seclists.org/nmap-hackers/2010/0" title="Nmap Hackers: Nmap 5.20 Released">Change log and announcement of Nmap 5.20</a>.<br />
<a href="http://nmap.org/download.html" title="Download the Free Nmap Security Scanner for Linux/MAC/UNIX or Windows">Download Nmap 5.20</a>.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.rec-sec.com/2010/01/21/nmap-5-20-released/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>BackTrack Linux 4 released</title>
		<link>http://www.rec-sec.com/2010/01/21/backtrack-linux-4-released/</link>
		<comments>http://www.rec-sec.com/2010/01/21/backtrack-linux-4-released/#comments</comments>
		<pubDate>Thu, 21 Jan 2010 03:31:08 +0000</pubDate>
		<dc:creator>Trancer</dc:creator>
				<category><![CDATA[Tools]]></category>

		<guid isPermaLink="false">http://www.rec-sec.com/?p=929</guid>
		<description><![CDATA[A new version for the penetration testers and security experts favorite Linux distrobution released &#8211; BackTrack Linux 4.
This version offers new tools, new kernel and tons of bug fixes. And, BackTrack Linux is no longer a part of remote-exploit.org, it got a new home at backtrack-linux.org.
I used the new version for the last couple of [...]]]></description>
			<content:encoded><![CDATA[<p><img alt="BackTrack Linux 4" width="483" height="207" class="right" src="images/backtrack-linux-4.png" />A new version for the penetration testers and security experts favorite Linux distrobution released &#8211; BackTrack Linux 4.</p>
<p>This version offers new tools, new kernel and tons of bug fixes. And, BackTrack Linux is no longer a part of <a href="http://www.remote-exploit.org/" title="Remote-Exploit">remote-exploit.org</a>, it got a new home at <a href="http://www.backtrack-linux.org/" title="BackTrack Linux">backtrack-linux.org</a>.</p>
<p>I used the new version for the last couple of days and find it to be very useful and cool, recommended!<br />
<a href="http://www.backtrack-linux.org/downloads/" title="BackTrack Linux - Downloads">Download BackTrack Linux 4</a>.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.rec-sec.com/2010/01/21/backtrack-linux-4-released/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Metasploit Framework 3.3 released</title>
		<link>http://www.rec-sec.com/2009/11/18/metasploit-framework-3-3/</link>
		<comments>http://www.rec-sec.com/2009/11/18/metasploit-framework-3-3/#comments</comments>
		<pubDate>Wed, 18 Nov 2009 17:26:59 +0000</pubDate>
		<dc:creator>Trancer</dc:creator>
				<category><![CDATA[Metasploit]]></category>
		<category><![CDATA[Tools]]></category>

		<guid isPermaLink="false">http://www.rec-sec.com/?p=873</guid>
		<description><![CDATA[The guys at Rapid7 and the Metasploit team announced the release of version 3.3 of the framework. The new version ships with tons of improvments, bug fixes, new featues, exploits and auxilary modules. I really recommend it. For the complete list of changes read the announcment post by HD Moore &#8211; Metasploit Framework 3.3 released!
You [...]]]></description>
			<content:encoded><![CDATA[<p><img alt="the Metasploit Framework" width="217" height="261" class="right" src="images/metasploit.png" />The guys at Rapid7 and the Metasploit team announced the release of version 3.3 of the framework. The new version ships with tons of improvments, bug fixes, new featues, exploits and auxilary modules. I really recommend it. For the complete list of changes read the announcment post by HD Moore &#8211; <a href="http://blog.metasploit.com/2009/11/metasploit-framework-33-released.html" title="Metasploit: Metasploit Framework 3.3  Released!">Metasploit Framework 3.3 released!</a><br />
You can download the new version on <a href="http://www.metasploit.com/" title="The Metasploit Project">Metasploit website</a>.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.rec-sec.com/2009/11/18/metasploit-framework-3-3/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Nmap 5.00 released</title>
		<link>http://www.rec-sec.com/2009/07/16/nmap-5-released/</link>
		<comments>http://www.rec-sec.com/2009/07/16/nmap-5-released/#comments</comments>
		<pubDate>Thu, 16 Jul 2009 16:57:04 +0000</pubDate>
		<dc:creator>Trancer</dc:creator>
				<category><![CDATA[Tools]]></category>

		<guid isPermaLink="false">http://www.rec-sec.com/?p=729</guid>
		<description><![CDATA[Fyodor of Insecure.org have announced today of a new version of Nmap Security Scanner &#8211; Nmap 5.00.
The new version offers a lot of new features and performance improvements and the guys from Insecure.org consider this the most important Nmap release since 1997.
You can read the announcement on Nmap web site and grab a copy in [...]]]></description>
			<content:encoded><![CDATA[<p><img alt="Nmap" width="121" height="82" class="left" src="images/nmap-logo.png" />Fyodor of Insecure.org have announced today of a new version of Nmap Security Scanner &#8211; Nmap 5.00.<br />
The new version offers a lot of new features and performance improvements and the guys from Insecure.org consider this the most important Nmap release since 1997.</p>
<p>You can read the announcement on <a href="http://nmap.org/5/" title="Nmap 5.00 Release Notes">Nmap web site</a> and grab a copy in the <a href="http://nmap.org/download.html" title="Download the Free Nmap Security Scanner for Linux/MAC/UNIX or Windows">download page</a>.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.rec-sec.com/2009/07/16/nmap-5-released/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>WarVOX 1.0.0 released</title>
		<link>http://www.rec-sec.com/2009/03/06/warvox-100-released/</link>
		<comments>http://www.rec-sec.com/2009/03/06/warvox-100-released/#comments</comments>
		<pubDate>Fri, 06 Mar 2009 13:00:18 +0000</pubDate>
		<dc:creator>Trancer</dc:creator>
				<category><![CDATA[Tools]]></category>

		<guid isPermaLink="false">http://www.rec-sec.com/?p=191</guid>
		<description><![CDATA[Thought Wardialing is dead? Think again. H D Moore released today a very cool new tool for telephone systems security assessments, WarVOX 1.0.0. I haven&#8217;t wardial for about 6 years or so&#8230; Mostly because it is time consuming and the software for such things is pretty old.
I can&#8217;t wait testing it in large organizations, should [...]]]></description>
			<content:encoded><![CDATA[<p><img alt="WarVOX" width="200" height="69" class="right" src="images/warvox.png" />Thought Wardialing is dead? Think again. H D Moore released today a very cool new tool for telephone systems security assessments, WarVOX 1.0.0. I haven&#8217;t wardial for about 6 years or so&#8230; Mostly because it is time consuming and the software for such things is pretty old.<br />
I can&#8217;t wait testing it in large organizations, should be a lot of fun!</p>
<p>The announcement:</p>
<blockquote><p>
WarVOX is a suite of tools for exploring, classifying, and auditing<br />
telephone systems. Unlike normal wardialing tools, WarVOX works with the<br />
actual audio from each call and does not use a modem directly. This<br />
model allows WarVOX to find and classify a wide range of interesting<br />
lines, including modems, faxes, voice mail boxes, <abbr title="Private Branch Exchange">PBX</abbr>s, loops, dial<br />
tones, <abbr title="Interactive Voice Response">IVR</abbr>s, and forwarders. WarVOX provides the unique ability to<br />
classify all telephone lines in a given range, not just those connected<br />
to modems, allowing for a comprehensive audit of a telephone system.</p>
<p>WarVOX requires no telephony hardware and is massively scalable by<br />
leveraging Internet-based <abbr title="Voice over Internet Protocol">VoIP</abbr> providers. A single instance of WarVOX on<br />
a residential broadband connection, with a typical <abbr title="Voice over Internet Protocol">VoIP</abbr> account, can<br />
scan over 1,000 numbers per hour. The speed of WarVOX is limited only by<br />
downstream bandwidth and the limitations of the <abbr title="Voice over Internet Protocol">VoIP</abbr> service. Using two<br />
providers with over 40 concurrent lines we have been able to scan entire<br />
10,000 number prefixes within 3 hours.</p>
<p>The resulting call audio can be used to extract a list of modems that<br />
can be fed into a standard modem-based wardialing application for<br />
fingerprinting and banner collection. One of the great things about the<br />
WarVOX model is that once the data has been gathered, it is archived and<br />
available for re-analysis as new signatures, plugins, and tools are<br />
developed. The current release of WarVOX (1.0.0) is able to<br />
automatically detect modems, faxes, silence, voice mail boxes, dial<br />
tones, and voices.</p>
<p>Presentation: <a href="http://warvox.org/media/warvox-1.0.0.pdf" title="WarVOX 1.0.0 Presentation">http://warvox.org/media/warvox-1.0.0.pdf</a><br />
Gallery: <a href="http://warvox.org/gallery.html" title="WarVOX Gallery">http://warvox.org/gallery.html</a><br />
Code: <a href="http://warvox.org/install.html" title="WarVOX Code">http://warvox.org/install.html</a>
</p></blockquote>
<p><a href="http://warvox.org/" title="WarVOX">WarVOX</a><br />
Have a fun time wardialing!</p>
]]></content:encoded>
			<wfw:commentRss>http://www.rec-sec.com/2009/03/06/warvox-100-released/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Burp Suite 1.2 released</title>
		<link>http://www.rec-sec.com/2008/12/15/burp-suite-12-released/</link>
		<comments>http://www.rec-sec.com/2008/12/15/burp-suite-12-released/#comments</comments>
		<pubDate>Mon, 15 Dec 2008 13:15:37 +0000</pubDate>
		<dc:creator>Trancer</dc:creator>
				<category><![CDATA[Tools]]></category>

		<guid isPermaLink="false">http://www.rec-sec.com/?p=137</guid>
		<description><![CDATA[A new version of this great local proxy tool, a penetration-testing must have weapon against web application.
From PortSwigger blog:

Burp Suite v1.2 is now available to download. This is a major upgrade with a host of new features, including:

Site map showing information accumulated about target applications in tree and table form
Suite-level target scope configuration, driving numerous [...]]]></description>
			<content:encoded><![CDATA[<p>A new version of this great local proxy tool, a penetration-testing must have weapon against web application.</p>
<p>From <a href="http://blog.portswigger.net/2008/12/burp-suite-v12-released.html" title="PortSwigger.net - web application security: Burp Suite v1.2 released">PortSwigger blog</a>:</p>
<blockquote><p>
Burp Suite v1.2 is now available to download. This is a major upgrade with a host of new features, including:</p>
<ul>
<li>Site map showing information accumulated about target applications in tree and table form</li>
<li>Suite-level target scope configuration, driving numerous individual tool actions</li>
<li>Display filters on site map and Proxy request history</li>
<li>Suite-wide search function</li>
<li>Support for invisible proxying</li>
<li>Fully fledged web vulnerability scanner [Pro version only]</li>
<li>Ability to save and restore state [Pro version only]</li>
</ul>
<p>The series of posts below this one describe the new features in more detail.</p>
<p>Many thanks to everyone who helped with the beta testing and gave me their feedback &#8211; this was much appreciated.</p>
<p>Have fun!
</p></blockquote>
<p>In case you missed it, PortSwigger dedicated a month of blog posts reviewing most of the new Burp Suite features &#8211; <a href="http://blog.portswigger.net/search/label/MoBP" title="PortSwigger.net - web application security: MoBP">The Month of Burp Pr0n</a>.</p>
<p>Get <a href="http://portswigger.net/suite/download.html" title="PortSwigger.net - Download Burp Suite">Burp Suite</a>.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.rec-sec.com/2008/12/15/burp-suite-12-released/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Metasploit 3.2 released</title>
		<link>http://www.rec-sec.com/2008/11/20/metasploit-32-released/</link>
		<comments>http://www.rec-sec.com/2008/11/20/metasploit-32-released/#comments</comments>
		<pubDate>Thu, 20 Nov 2008 08:48:31 +0000</pubDate>
		<dc:creator>Trancer</dc:creator>
				<category><![CDATA[Metasploit]]></category>
		<category><![CDATA[Tools]]></category>

		<guid isPermaLink="false">http://www.rec-sec.com/?p=44</guid>
		<description><![CDATA[
Metasploit 3.2 is out!
From the news:

the Metasploit Project announced today the free, world-wide availability of version 3.2 of their exploit development and attack framework. The latest version is provided under a true open source software license (BSD) and is backed by a community-based development team. Metasploit runs on all modern operating systems, including Linux, Windows, [...]]]></description>
			<content:encoded><![CDATA[<p><img alt="Metasploit Framework" width="260" height="318" class="right" src="images/icbm2.png" /><br />
Metasploit 3.2 is out!</p>
<p>From the news:</p>
<blockquote><p>
the Metasploit Project announced today the free, world-wide availability of version 3.2 of their exploit development and attack framework. The latest version is provided under a true open source software license (<abbr title="Berkeley Software Distribution">BSD</abbr>) and is backed by a community-based development team. Metasploit runs on all modern operating systems, including Linux, Windows, Mac <abbr title="Operating System">OS</abbr> X, and most flavors of <abbr title="Berkeley Software Distribution">BSD</abbr>. Metasploit has been used on a wide range of hardware platforms, from massive Unix mainframes to the iPhone. Users can access Metasploit using the tab-completing console interface, the <abbr title="The GIMP Toolkit">Gtk</abbr> <abbr title="Graphical User Interface">GUI</abbr>, the command line scripting interface, or the <abbr title="Asynchronous JavaScript and XML">AJAX</abbr>-enabled web interface. The Windows version of Metasploit includes all software dependencies and a selection of useful networking tools.</p>
<p>Version 3.2 includes exploit modules for recent Microsoft flaws, such as MS08-041, MS08-053, MS08-059, MS08-067, MS08-068, and many more.</p>
<p>The module format has been changed in version 3.2. The new format removes the previous naming and location restrictions and paved the way to an improved module loading and caching backend. For users, this means being able to copy a module into nearly any subdirectory and be able to immediately use it without edits.</p>
<p>The Byakugan WinDBG extension developed by Pusscat has been integrated with this release, enabling exploit developers to quickly exploit new vulnerabilities using the best Win32 debugger available today.</p>
<p>The Context-Map payload encoding system development by I)ruid is now enabled in this release, allowing for any chunk of known process memory to be used as an encoding key for Windows payloads.</p>
<p>The Incognito token manipulation toolkit, written by Luke Jennings, has been integrated as a Meterpreter module. This allows an attacker to gain new privleges through token hopping. The most common use is to hijack domain admin credentials once remote system access is obtained.</p>
<p>The PcapRub, Scruby, and Packetfu libraries have all been linked into the Metasploit source tree, allowing easy packet injection and capture.</p>
<p>The METASM pure-Ruby assembler, written by Yoann Guillot and Julien Tinnes, has gone through a series of updates. The latest version has been integrated with Metasploit and now supports <abbr title="Microprocessor without Interlocked Pipeline Stages">MIPS</abbr> assembly and the ability to compile C code.</p>
<p>The Windows payload stagers have been updated to support targets with <abbr title="No eXecute">NX</abbr> <abbr title="Central Processing Unit">CPU</abbr> support. These stagers now allocate a read/write/exec segment of memory for all payload downloads and execution.</p>
<p>Executables which have been generated by msfpayload or msfencode now support <abbr title="No eXecute">NX</abbr> <abbr title="Central Processing Unit">CPU</abbr>s. The generated executable is now smaller and more reliable, opening the door to a wider range of uses. The psexec and smb_relay modules now use an executable template thats acts like a real Windows service, improving the reliability and cleanup requirements of these modules.</p>
<p>The Reflective <abbr title="Dynamic Link Library">DLL</abbr> Injection technique pioneered by Stephen Fewer of Harmony Security has been integrated into the framework. The new payloads use the &#8220;reflectivedllinjection&#8221; stager prefix and share the same binaries as the older <abbr title="Dynamic Link Library">DLL</abbr> injection method.</p>
<p>Client-side browser exploits now benefit from a set of new javascript obfuscation techniques developed by Egypt. This improvement leads to a greater degree of anti-virus bypass for client-side exploits.</p>
<p>Metasploit contains dozens of exploit modules for web browsers and third-party plugins. The new browser_autopwn module ties many of these together with advanced fingerprinting techniques to deliver more shells than most pen-testers know what to do with.</p>
<p>This release includes a set of man-in-the-middle, authentication relay, and authentication capture modules. These modules can be integrated with a fake proxy (<abbr title="Web Proxy Autodiscovery Protocol">WPAD</abbr>), a malicious access point (Karmetasploit), or basic network traffic interception to gain access to client machines. These modules tie together browser_autopwn, <abbr title="Server Message Block">SMB</abbr> relaying, and <abbr title="Hypertext Transfer Protocol">HTTP</abbr> credential and form capturing to pillage data from client systems.</p>
<p>Nearly all Metasploit modules now support IPv6 transports. IPv6 stagers exist for the Windows and Linux platforms, opening the door for penetration testing of pure IPv6 networks. The VNCInject and Meterpreter payloads have been extensively tested over IPv6 sockets.</p>
<p>Efrain Torres&#8217;s WMAP project has been merged into Metasploit. WMAP is general purpose web application scanning framework that can be automated through integration with an attack proxy (ratproxy) or be accessed as individual auxiliary modules.</p>
<p>Egypt&#8217;s new <abbr title="PHP Hypertext Preprocessor">PHP</abbr> payloads provide complete bind, reverse, and findsock support for <abbr title="PHP Hypertext Preprocessor">PHP</abbr> web application exploits. If you are sick of C99 and R57 and looking to gain a &#8220;real&#8221; shell from one of the hundreds of <abbr title="Remote File Inclusion">RFI</abbr> flaws listed on milw0rm, the new <abbr title="PHP Hypertext Preprocessor">PHP</abbr> payloads work great against multiple operating systems.</p>
<p>The db_autopwn command has been revamped to support port-based limits, regex-based module matching, and limits on the number of spawned jobs. The end result is a way to quickly launch specific modules against a specific set of target machines. These changes were suggested and implemented by Marcell &#8220;SkyOut&#8221; Dietl (Helith).
</p></blockquote>
<p><a href="http://www.metasploit.com/documents/RELEASE-3.2.txt" title="Metasploit 3.2 Announcemen">Announcement</a>.<br />
Some of the new features are presented in <a href="http://www.metasploit.com/data/confs/sector2008/metasploit_prime.pdf" title="Metasploit Prime">Metasploit Prime</a>.<br />
Grab a copy from the <a href="http://www.metasploit.com/" title="The Metasploit Project">Metasploit web site</a>.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.rec-sec.com/2008/11/20/metasploit-32-released/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Nmap 4.76 released</title>
		<link>http://www.rec-sec.com/2008/09/15/nmap-476-released/</link>
		<comments>http://www.rec-sec.com/2008/09/15/nmap-476-released/#comments</comments>
		<pubDate>Mon, 15 Sep 2008 00:20:54 +0000</pubDate>
		<dc:creator>Trancer</dc:creator>
				<category><![CDATA[Presentations]]></category>
		<category><![CDATA[Tools]]></category>

		<guid isPermaLink="false">http://www.rec-sec.com/?p=39</guid>
		<description><![CDATA[Fyodor released a new version of the world best network mapper \ port scanner &#8211;  Nmap 4.76.
Some of the new version cool features was presented by Fyodor at the latest DefCon.

Or watch it on his site &#8211; insecure.org.
]]></description>
			<content:encoded><![CDATA[<p><img alt="Nmap" width="121" height="82" class="left" src="images/nmap-logo.png" />Fyodor released a new version of the world best network mapper \ port scanner &#8211;  <a href="http://nmap.org/" title="Nmap - Free Security Scanner For Network Exploration &#038; Security Audits.">Nmap 4.76</a>.</p>
<p>Some of the new version cool features was presented by Fyodor at the latest DefCon.<br />
<object width="600" height="300" type="application/x-shockwave-flash" data="http://vimeo.com/moogaloop.swf?clip_id=1701091&amp;server=vimeo.com&amp;show_title=0&amp;show_byline=0&amp;show_portrait=0&amp;color=00ADEF&amp;fullscreen=1"><param name="allowfullscreen" value="true" /><param name="allowscriptaccess" value="always" /><param name="movie" value="http://vimeo.com/moogaloop.swf?clip_id=1701091&amp;server=vimeo.com&amp;show_title=0&amp;show_byline=0&amp;show_portrait=0&amp;color=00ADEF&amp;fullscreen=1" /></object></p>
<p>Or watch it on his site &#8211; <a href="http://insecure.org/presentations/BHDC08/" title="Fyodor's Nmap Presentation Video, Audio, and Slides for Black Hat and Defcon 2008">insecure.org</a>.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.rec-sec.com/2008/09/15/nmap-476-released/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Metasploit 3.1 released</title>
		<link>http://www.rec-sec.com/2008/01/29/metasploit-31-released/</link>
		<comments>http://www.rec-sec.com/2008/01/29/metasploit-31-released/#comments</comments>
		<pubDate>Tue, 29 Jan 2008 08:47:48 +0000</pubDate>
		<dc:creator>Trancer</dc:creator>
				<category><![CDATA[Metasploit]]></category>
		<category><![CDATA[Tools]]></category>

		<guid isPermaLink="false">http://www.rec-sec.com/?p=77</guid>
		<description><![CDATA[
Version 3.1 of this great project is out.
Offering tons of cool new features. From the news:

Austin, Texas, January 28th, 2008 &#8212; The Metasploit Project announced today the free, world-wide availability of version 3.1 of their exploit development and attack framework. The latest version features a graphical user interface, full support for the Windows platform, and [...]]]></description>
			<content:encoded><![CDATA[<p><img alt="Metasploit Framework" width="324" height="213" class="right" src="images/metasploit-logo.png" /><br />
Version 3.1 of this great project is out.<br />
Offering tons of cool new features. From the news:</p>
<blockquote><p>
Austin, Texas, January 28th, 2008 &#8212; The Metasploit Project announced today the free, world-wide availability of version 3.1 of their exploit development and attack framework. The latest version features a graphical user interface, full support for the Windows platform, and over 450 modules, including 265 remote exploits. &#8220;Metasploit 3.1 consolidates a year of research and development, integrating ideas and code from some of the sharpest and most innovative folks in the security research community&#8221; said H D Moore, project manager. Moore is referring the numerous research projects that have lent code to the framework.</p>
<p>These projects include the METASM pure-ruby assembler developed by Yoann Guillot and Julien Tinnes, the &#8220;Hacking the iPhone&#8221; effort outlined in the Metasploit Blog, the Windows kernel-land payload staging system developed by Matt Miller, the heapLib browser exploitation library written by Alexander Sotirov, the Lorcon 802.11 raw transmit library created by Joshua Wright and Mike Kershaw, Scruby, the Ruby port of Philippe Biondi&#8217;s Scapy project, developed by Sylvain Sarmejeanne, and a contextual encoding system for Metasploit payloads. &#8220;Contextual encoding breaks most forms of shellcode analysis by encoding a payload with a target-specific key&#8221; said I)ruid, author of the Uninformed Journal (volume 9) article and developer of the contextual encoding system included with Metasploit 3.1.</p>
<p>The graphical user interface is a major step forward for Metasploit users on the Windows platform. Development of this interface was driven by Fabrice Mourron and provides a wizard-based exploitation system, a graphical file and process browser for the Meterpreter payloads, and a multi-tab console interface. &#8220;The Metasploit GUI puts Windows users on the same footing as those running Unix by giving them access to a console interface to the framework&#8221; said H D Moore, who worked with Fabrice on the GUI project.</p>
<p>The latest incarnation of the framework includes a bristling arsenal of exploit modules that are sure to put a smile on the face of every information warrior. Notable exploits in the 3.1 release include a remote, unpatched kernel-land exploit for Novell Netware, written by toto, a series of 802.11 fuzzing modules that can spray the local airspace with malformed frames, taking out a wide swath of wireless-enabled devices, and a battery of exploits targeted at Borland&#8217;s InterBase product line. &#8220;I found so many holes that I just gave up releasing all of them&#8221;, said Ramon de Carvalho, founder of RISE Security, and Metasploit contributor.</p>
<p>&#8220;Metasploit continues to be an indispensable and reliable penetration testing framework for our modern era&#8221;, says C. Wilson, a security engineer who uses Metasploit in his daily work. Metasploit is used by network security professionals to perform penetration tests, system administrators to verify patch installations, product vendors to perform regression testing, and security researchers world-wide. The framework is written in the Ruby programming language and includes components written in C and assembler.</p>
<p>Metasploit runs on all modern operating systems, including Linux, Windows, Mac OS X, and most flavors of BSD. Metasploit has been used on a wide range of hardware platforms, from massive Unix mainframes to the tiny Nokia n800 handheld. Users can access Metasploit using the tab-completing console interface, the Gtk GUI, the command line scripting interface, or the AJAX-enabled web interface. The Windows version of Metasploit includes all software dependencies and a selection of useful networking tools.</p>
<p>The latest version of the Metasploit Framework, as well as screen shots, video demonstrations, documentation and installation instructions for many platforms, can be found online at http://metasploit3.com/
</p></blockquote>
<p><a href="http://www.metasploit.com/documents/RELEASE-3.1.txt" title="Metasploit 3.1 Announcemen">Announcement</a>.<br />
Grab a copy from the <a href="http://www.metasploit.com/" title="The Metasploit Project">Metasplot web site</a>.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.rec-sec.com/2008/01/29/metasploit-31-released/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Metasploit 3.0 is out</title>
		<link>http://www.rec-sec.com/2007/03/27/metasploit-30-is-out/</link>
		<comments>http://www.rec-sec.com/2007/03/27/metasploit-30-is-out/#comments</comments>
		<pubDate>Tue, 27 Mar 2007 11:17:30 +0000</pubDate>
		<dc:creator>Trancer</dc:creator>
				<category><![CDATA[Metasploit]]></category>
		<category><![CDATA[Tools]]></category>

		<guid isPermaLink="false">http://rec-sec.com/index.php/2007/03/27/metasploit-30-is-out/</guid>
		<description><![CDATA[Oh yeah, H D Moore&#8217;s Metasploit Framework v3.0 has been released.
The Metasploit Framework (&#8220;Metasploit&#8221;) is a development platform for creating security tools and exploits. Version 3.0 contains 177 exploits 104 payloads 17 encoders and 3 nop modules. Additionally 30 auxiliary modules are included that perform a wide range of tasks including host discovery protocol fuzzing [...]]]></description>
			<content:encoded><![CDATA[<p><img alt="the Metasploit Framework" width="217" height="261" class="right" src="images/metasploit.png" />Oh yeah, H D Moore&#8217;s Metasploit Framework v3.0 has been released.</p>
<blockquote><p>The Metasploit Framework (&#8220;Metasploit&#8221;) is a development platform for creating security tools and exploits. Version 3.0 contains 177 exploits 104 payloads 17 encoders and 3 nop modules. Additionally 30 auxiliary modules are included that perform a wide range of tasks including host discovery protocol fuzzing and denial of service testing.</p></blockquote>
<p><a href="http://framework.metasploit.com/" title="the Metasploit Framework web site">Metasploit Framework</a><br />
<a href="http://blog.metasploit.com/2007/03/metasploit-framework-30-released.html" title="Metasploit Framework blog post - MSF 3.0 Release announcement">Release announcement on MSF blog</a></p>
<p>Happy exploiting ;-)</p>
]]></content:encoded>
			<wfw:commentRss>http://www.rec-sec.com/2007/03/27/metasploit-30-is-out/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
