webdecoy.tgz is a small script that can find, remove and replace vulnerable CGI scripts on the local webserver with "decoy" CGIs, which log exploit attempts.
ca3d03cfdf0b4bb6a4e62f9d3b76bd8eEchelon for Dummies is a distributed sniffer which tries to show how the "echelon" network could be designed. It uses sniffer servers that can be installed and run on remote hosts, and will dig through local network traffic, useing custom pattern/keyword matching to find packets with interesting content, which are then forwarded to a central loghost on which the logging daemon is run that gathers and logs the data. For stealth purposes, Sniffers and the logger communicate via random protocols and encryption, and are compatible to many Unix systems and NT.
2835fc64211ae733e2c45f6cb98b23c7spidernet uses a network of host-based IDS and a logging monitor that allows to watch a large amount of remote systems for file changes of a defined list of files and for promisc network interfaces. Sessions are strongly encrypted with cast, and checksums are generated using the reliable md5 algorithm.
9311defcab11fa8616c55df11f9272afFAQ and Guide to Cracking.
5cddbfc9b0d850f0e05115a8974c29f1Password protected remote shell daemon that integrates a syn flooder, bouncer/gateway, port scanner, and remote root exploits. Courtesy of Mixter
acc988f4827b44f90a720f896c2eb244Scans for the default logins on IRIX boxes. Courtesy of Mixter
6f7a1194760d964576634c4670e12676Multithreaded high speed scanner that scans for 6 different daemons, and records the version of every daemon for analysis. Courtesy of Mixter
bdfb06a9f4ab1da6c89476fb9ee726e6Unix internet worm; for a description see Mixter
736e2fe2d8c80fa9ca5d234f93dc5199Performance/speed optimized bind scanner that finds dns servers vulnerable to the iquery exploit scanning from a list of IPS. Courtesy of Mixter
7e419c99e834a599ef0e660c96c1df8bA unix virus (ELF infector). Courtesy of Mixter
fe05c556ed0eba60e85845882c1d88a7Linux promiscous ethernet sniffer that sends sniffer traffic to a remote logging daemon. this sniffer comes with optional strong (96byte 3way) encryption. Courtesy of Mixter
a6d5701ffae09b789a0b79652af11d01Ping observation tool is a highspeed tool to sweep for smurf broadcast amplifiers, it compiles a broadcast amplifier list of the complete IPv4 address range in about 5 days (with enough bandwidth). Courtesy of Mixter
6a524da038def8dfade4c34ff04749afRemote DoS against 11 different IP stack holes on various OS's, supports attacking a c-class ip range. Courtesy of Mixter
2d1149cfee1e83a2c94d5adee766ab8cDistributed flood network client/server that can be installed on a large number of hosts and used to hit a target with high bandwidth simultaneously. communicates over icmp and supports udp, syn, icmp/8, smurf flood and more. Courtesy of Mixter
4286277c823ee297b84142ebb50be118