모의해킹157 728x90 xSQLScanner 활용한 SQL 보안 진단, 침해 사전 대응 및 취약점 분석법 xSQLScanner는 Microsoft SQL Server와 MySQL 서버를 대상으로 보안 취약점 점검 및 계정 감사(audit) 기능을 제공하는 전문 보안 도구입니다. Rodrigo Matuck이 개발한 이 도구는 데이터베이스 서버의 보안 상태를 체계적으로 점검하고 잠재적인 취약점을 식별하는 데 특화되어 있습니다.크로스 플랫폼 지원: Windows와 Linux(특히 BackTrack 5 GNOME 기반) 환경 모두 지원다중 데이터베이스 지원: MS-SQL과 MySQL/MariaDB 서버 동시 지원통합 보안 감사: 패스워드 강도, 계정 설정, 네트워크 노출 등 종합 점검주요 기능 상세 분석1. 취약점 점검 기능 (6가지 보안 감사 옵션)1.1 기본 취약점 감사데이터베이스 기본 보안 설정 점검권한 설정.. 2011. 10. 24. MSFConsole Prompt Fiddling In @carnal0wnage and my presentation at DerbyCon 2011 we talked about using SCREENand SCRIPT to keep connections live / use them across SSH sessions, and log everything that happens. What we didn't cover is the fact that there isn't a time stamp for those logs. Now, Metasploit has multiple ways of creating logs: cat ~/.msf4/logs/framework.log This log automatically logs all of the error data tha.. 2011. 10. 11. Metasploit: The Penetration Tester’s Guide It gives me great pleasure to review this book ‘Metasploit – The Penetration Tester’s Guide’, not only because it is written on most popular penetration testing framework but the way it is written doing complete justice to the title!Here is the core information about the book,Title: Metasploit: The Penetration Tester’s GuideAuthor: David Kennedy, Jim O’Gorman, Devon Kearns, Mati AharoniPublisher.. 2011. 9. 28. MySql.Com Hacked with Blind SQL Injection by Jackh4xor The Mysql website offers database software, services and support for your business, including the Enterprise server, the Network monitoring and advisory services and the production support. The wide range of products include: Mysql clusters, embedded database, drivers for JDBC, ODBC and Net, visual database tools (query browser, migration toolkit) and last but not least the MaxDB- the open sourc.. 2011. 9. 27. wavsep: Web Application Vulnerability Scanner Evaluation Project A vulnerable web application designed to help assessing the features, quality and accuracy of web application vulnerability scanners. This evaluation platform contains a collection of unique vulnerable web pages that can be used to test the various properties of web application scanners. Additional information can be found in the developer's blog: http://sectooladdict.blogspot.com/ Project WAVSE.. 2011. 9. 20. 이전 1 ··· 11 12 13 14 15 16 17 ··· 32 다음 728x90 728x90