LinuxÒÁµéÔ°ÂÛ̳'s Archiver

Roc.Ken ·¢±íÓÚ 2006-9-16 21:26

¡¾×ªÌû¡¿2006Äê100¿î×î¼Ñ°²È«¹¤¾ß

ÒëÕß:ÌìÌì°²È«Íø tulip

ÔÚ2000ºÍ2003Äê·Ç³£³É¹¦µÄÍÆ³öÁ˰²È«¹¤¾ßµ÷²éºó£¬Insecure.Org ·Ç³£¸ßÐËΪ´ó¼Ò´øÀ´2006Äê¶ÈµÄ°²È«¹¤¾ßµ÷²é¡£ÎÒ-Fyodor¶Ônmap-hackers ÓʼþÁбíÖеÄÓû§½øÐÐÁ˵÷²é£¬Èôó¼ÒÀ´·ÖÏíËûÃÇ×îϲ»¶ÓõŤ¾ß£¬½á¹ûÓÐ3243ÃûÓû§ÌṩÁË·´À¡ÐÅÏ¢¡£ÎÒ´Ó·´À¡ÐÅÏ¢ÖÐѡȡÁË´ó¼Ò×îϲ»¶µÄǰ100ÖÖ¹¤¾ß£¬²¢½«ËüÃǽøÐÐÁË·ÖÀà¡£½¨Ò鰲ȫ½çÈËÊ¿×ÐϸÔĶÁÕâ·ÝÁÐ±í£¬²¢¶Ô²»ÊìϤ»òδÌý˵¹ýµÄ¹¤¾ß½øÐÐÑо¿£¬ÏàÐÅ»áÓкܴó°ïÖú¡£ÎÒ×Ô¼º¾Í´ÓÖз¢ÏÖÁ˺ܶàÒÔǰûÓÐʹÓùýµ«·Ç³£ºÃÓõŤ¾ß¡£µ±ºÜ¶à²ËÄñÎÊÎÒ¡°ÎÒ²»ÖªµÀµ±Ò»¸öºÚ¿Í¸Ã´ÓºÎ¿ªÊ¼¡±Ê±£¬ÎÒ¾ÍÈÃËûÃÇÀ´¶Á¶ÁÕâÆªÎÄÕ¡£

ÊÜ·ÃÕß±»ÒªÇóÁгö¸÷ÖÖÆ½Ì¨ÉϵĿªÔ´ºÍÉÌÒµ¹¤¾ß¡£ÉÌÒµ¹¤¾ß»áÔÚÁбíÖнøÐбê×¢¡£Nmap Security Scanner ûÓвÎÓëͶƱ£¬ÒòΪµ÷²éÊÇÔÚNmapµÄÓʼþÁбíÖнøÐеġ£ÒòΪÊÜ·ÃÕß¶àΪºÚ¿ÍµÄÔ­Òò£¬ËùÒÔ´ËÁбíÖй¥»÷Ð͵Ť¾ßÆ«¶àһЩ£¬·ÀÊØÐ͵ÄÔòÉÙһЩ¡£

ÁбíÖÐÿ¸ö¹¤¾ß¶¼º¬ÓÐÒÔÏÂÒ»ÖÖ»ò¼¸ÖÖÊôÐÔ£º2003Äêµ÷²éÁбíÖÐδ³öÏֵŤ¾ß£»Ïà¶ÔÓÚ2003Äêµ÷²éÁбíÅÅÃûÉý»ò½µ£»ÐèÒª»¨Ç®¹ºÂò¡£µ«¿ÉÒÔÃâ·Ñ»ñµÃÏÞÖÆ¡¢ÑÝʾ¡¢ÊÔÓð汾Èí¼þ£»¿ÉÒÔ¹¤×÷ÓÚLinuxƽ̨֮ÉÏ£»¿ÉÒÔ¹¤×÷ÓÚOpenBSD¡¢FreeBSD¡¢Solaris »òÆäËüUNIXƽ̨֮ÉÏ£»¿ÉÒÔ¹¤×÷ÓÚÆ»¹ûMac OS Xƽ̨֮ÉÏ£»¿ÉÒÔ¹¤×÷ÓÚ΢ÈíWindowsƽ̨֮ÉÏ£»ÌṩÃüÁîÐвÙ×÷·½Ê½£»ÌṩͼÐλ¯Óû§½çÃæ£»ÔÚ»¥ÁªÍøÉÏ¿ÉÒÔÕÒµ½Ô´´úÂë¡£

Èç¹ûÄú·¢ÏÖÁбíÖеŤ¾ßÓиüлòÕßÓÐÆäËü½¨Òé--»òÕßÓиüºÃµÄ¹¤¾ßͼ±ê ¿ÉÒÔ·¢ËÍÓʼþ¸øÎÒ¡£Èç¹ûÄúµÄ¹¤¾ßÈëÑ¡´ËÁбíÁË£¬»òÕßÄúÈÏΪÄúÍøÕ¾µÄ·Ã¿ÍÒ²Ðí»á¶Ô´ËÁбí¸ÐÐËȤ£¬»¶Ó­Äúͨ¹ýlink banners°Ñ±¾ÎÄÁ´½Óµ½ÄúÍøÕ¾ÉÏ¡£ÒÔÏ¿ªÊ¼ÎªÕýʽÁÐ±í£¬°´ÊÜ»¶Ó­³Ì¶È½µÐòÅÅÁУº

#1 Nessus£º×îºÃµÄUNIX©¶´É¨Ã蹤¾ß
Nessus ÊÇ×îºÃµÄÃâ·ÑÍøÂç©¶´É¨ÃèÆ÷£¬Ëü¿ÉÒÔÔËÐÐÓÚ¼¸ºõËùÓеÄUNIXƽ̨֮ÉÏ¡£Ëü²»Ö¹ÓÀ¾ÃÉý¼¶£¬»¹Ãâ·ÑÌṩ¶à´ï11000ÖÖ²å¼þ£¨µ«ÐèҪע²á²¢½ÓÊÜEULA- acceptance--ÖÕ¶ËÓû§ÊÚȨЭÒ飩¡£ËüµÄÖ÷Òª¹¦ÄÜÊÇÔ¶³Ì»ò±¾µØ£¨ÒÑÊÚȨµÄ£©°²È«¼ì²é£¬¿Í»§¶Ë/·þÎñÆ÷¼Ü¹¹£¬GTK£¨LinuxϵÄÒ»ÖÖͼÐνçÃæ£©Í¼ÐνçÃæ£¬ÄÚÖýű¾ÓïÑÔ±àÒëÆ÷£¬¿ÉÒÔÓÃÆä±àд×Ô¶¨Òå²å¼þ£¬»òÓÃÀ´ÔĶÁ±ðÈËдµÄ²å¼þ¡£Nessus 3 ÒѾ­¿ª·¢Íê³É£¨now closed source£©£¬ÆäÏÖ½×¶ÎÈÔÈ»Ãâ·Ñ£¬³ý·ÇÄúÏë»ñµÃ×îеIJå¼þ¡£

--------------------------------------------------------------------------------

#2 Wireshark£ºÍøÂçÐá̽¹¤¾ß
Wireshark £¨2006ÄêÏÄÌì֮ǰ½Ð×ö Ethereal£©ÊÇÒ»¿î·Ç³£°ôµÄUnixºÍWindowsÉϵĿªÔ´ÍøÂçЭÒé·ÖÎöÆ÷¡£Ëü¿ÉÒÔʵʱ¼ì²âÍøÂçͨѶÊý¾Ý£¬Ò²¿ÉÒÔ¼ì²âÆäץȡµÄÍøÂçͨѶÊý¾Ý¿ìÕÕÎļþ¡£¿ÉÒÔͨ¹ýͼÐνçÃæä¯ÀÀÕâЩÊý¾Ý£¬¿ÉÒÔ²é¿´ÍøÂçͨѶÊý¾Ý°üÖÐÿһ²ãµÄÏêϸÄÚÈÝ¡£WiresharkÓµÓÐÐí¶àÇ¿´óµÄÌØÐÔ£º°üº¬ÓÐÇ¿ÏÔʾ¹ýÂËÆ÷ÓïÑÔ£¨rich display filter language£©ºÍ²é¿´TCP»á»°Öع¹Á÷µÄÄÜÁ¦£»Ëü¸üÖ§³ÖÉϰÙÖÖЭÒéºÍýÌåÀàÐÍ£»ÓµÓÐÒ»¸öÀàËÆtcpdump£¨Ò»¸öLinuxϵÄÍøÂçЭÒé·ÖÎö¹¤¾ß£©µÄÃûΪtetherealµÄµÄÃüÁîÐа汾¡£²»µÃ²»ËµÒ»¾ä£¬EtherealÒѾ­±¥ÊÜÐí¶à¿ÉÔ¶³ÌÀûÓõÄ©¶´ÕÛÄ¥£¬ËùÒÔÇë¾­³£¶ÔÆä½øÐÐÉý¼¶£¬²¢ÔÚ²»°²È«ÍøÂç»òµÐ·½ÍøÂ磨ÀýÈ簲ȫ»áÒéµÄÍøÂ磩Öн÷É÷ʹÓÃÖ®¡£

--------------------------------------------------------------------------------

#3 Snort£ºÒ»¿î¹ãÊÜ»¶Ó­µÄ¿ªÔ´IDS£¨Intrusion Detection System£©£¨ÈëÇÖ¼ì²âϵͳ£©¹¤¾ß
Õâ¿îСÐ͵ÄÈëÇÖ¼ì²âºÍÔ¤·ÀϵͳÉó¤ÓÚͨѶ·ÖÎöºÍIPÊý¾Ý°üµÇ¼£¨packet logging£©¡£Snort³ýÁËÄܹ»½øÐÐЭÒé·ÖÎö¡¢ÄÚÈÝËÑË÷ºÍ°üº¬ÆäËüÐí¶àÔ¤´¦Àí³ÌÐò£¬»¹¿ÉÒÔ¼ì²âÉÏǧÖÖÈ䳿²¡¶¾¡¢Â©¶´¡¢¶Ë¿ÚɨÃèÒÔ¼°ÆäËü¿ÉÒÉÐÐΪ¼ì²â¡£SnortʹÓÃÒ»ÖÖ¼òµ¥µÄ»ùÓÚ¹æÔòµÄÓïÑÔÀ´ÃèÊöÍøÂçͨѶ£¬ÒÔ¼°Åж϶ÔÓÚÍøÂçÊý¾ÝÊÇ·ÅÐл¹ÊÇÀ¹½Ø£¬Æä¼ì²âÒýÇæÊÇÄ£¿é»¯µÄ¡£ÓÃÓÚ·ÖÎöSnort¾¯±¨µÄÍøÒ³ÐÎʽµÄÒýÇæ Basic Analysis and Security Engine (BASE)¿ÉÃâ·Ñ»ñµÃ¡£
¿ªÔ´µÄSnortΪ¸öÈË¡¢Ð¡ÆóÒµ¡¢¼¯ÍÅÓû§ÌṩÁ¼ºÃµÄ·þÎñ¡£Æäĸ¹«Ë¾SourceFireÌṩ·á¸»µÄÆóÒµ¼¶ÌØÐԺͶ¨ÆÚÉý¼¶ÒԷḻÆä²úÆ·Ïß¡£Ìṩ£¨±ØÐë×¢²á£©5ÌìÃâ·ÑµÄ¹æÔòÊÔÓã¬ÄúÒ²¿ÉÒÔÔÚBleeding Edge SnortÕÒµ½ºÜ¶àÃâ·Ñ¹æÔò¡£

--------------------------------------------------------------------------------

#4 Netcat£ºÍøÂçÈðÊ¿¾üµ¶
Õâ¸ö¼òµ¥µÄС¹¤¾ß¿ÉÒÔ¶ÁºÍд¾­¹ýTCP»òUDPÍøÂçÁ¬½ÓµÄÊý¾Ý¡£Ëü±»Éè¼Æ³ÉÒ»¸ö¿É¿¿µÄ¿ÉÒÔ±»ÆäËü³ÌÐò»ò½Å±¾Ö±½ÓºÍ¼òµ¥Ê¹Óõĺǫ́¹¤¾ß¡£Í¬Ê±£¬ËüÒ²ÊÇÒ»¸ö¹¦ÄܶàÑùµÄÍøÂçµ÷ÊԺͼì²é¹¤¾ß£¬ÒòΪËü¿ÉÒÔÉú³É¼¸ºõËùÓÐÄúÏëÒªµÄÍøÂçÁ¬½Ó£¬°üÀ¨Í¨¹ý¶Ë¿Ú°ó¶¨À´½ÓÊÜÊäÈëÁ¬½Ó¡£Netcat×îÔçÓÉHobbitÔÚ1995Äê·¢²¼£¬µ«ÔÚÆä¹ãΪÁ÷´«µÄÇé¿öϲ¢Ã»Óеõ½ºÜºÃµÄά»¤¡£ÏÖÔÚnc110.tgzÒѾ­ºÜÄÑÕÒÁË¡£Õâ¸ö¼òµ¥Ò×ÓõŤ¾ß´ÙʹÁ˺ܶàÈËд³öÁ˺ܶàÆäËüNetcatÓ¦Óã¬ÆäÖÐÓкܶ๦Äܶ¼ÊÇÔ­°æ±¾Ã»Óеġ£ÆäÖÐ×îÓÐȤµÄÊÇSocat£¬Ëü½«NetcatÀ©Õ¹³É¿ÉÒÔÖ§³Ö¶àÖÖÆäËüsocketÀàÐÍ£¬SSL¼ÓÃÜ£¬SOCKS´úÀí£¬ÒÔ¼°ÆäËüÀ©Õ¹µÄ¸üÇ¿´óµÄ¹¤¾ß¡£ËüÒ²ÔÚ±¾ÁбíÖеõ½ÁË×Ô¼ºµÄλÖ㨵Ú71룩¡£»¹ÓÐChris Gibson's Ncat£¬Äܹ»Ìṩ¸ü¶à¶Ô±ãЯÉ豸µÄÖ§³Ö¡£ÆäËü»ùÓÚNetcatµÄ¹¤¾ß»¹ÓÐOpenBSD's nc£¬Cryptcat£¬Netcat6£¬PNetcat£¬SBD£¬ÓÖ½Ð×öGNU Netcat¡£

--------------------------------------------------------------------------------

#5 Metasploit Framework£ººÚµôÕû¸öÐÇÇò
2004ÄêMetasploitµÄ·¢²¼ÔÚ°²È«½çÒý·¢ÁËÇ¿ÁҵĵØÕð¡£Ã»ÓÐÒ»¿îй¤¾ßÄܹ»Ò»·¢²¼¾Í¼·½ø´ËÁбíµÄ15Ç¿£¨Ò²¾ÍÊÇ˵2000ÄêºÍ2003ÄêµÄµ÷²éûÓÐÕâÖÖÇé¿ö£©£¬¸üºÎ¿ö´Ë¹¤¾ß¸üÔÚ5ǿ֮ÁУ¬³¬¹ýÁ˺ܶà¹ãΪÁ÷´«µÄµ®ÉúÁ˼¸Ê®ÄêµÄÀÏÅÆ¹¤¾ß¡£ËüÊÇÒ»¸öÇ¿´óµÄ¿ªÔ´Æ½Ì¨£¬¹©¿ª·¢¡¢²âÊÔºÍʹÓöñÒâ´úÂë¡£ÕâÖÖ¿ÉÀ©Õ¹µÄÄ£Ðͽ«¸ºÔØ¿ØÖÆ¡¢±àÂëÆ÷¡¢ÎÞ²Ù×÷Éú³ÉÆ÷ºÍ©¶´ÕûºÏÔÚÒ»Æð£¬Ê¹µÃMetasploit Framework³ÉΪһÖÖÑо¿¸ßΣ©¶´µÄ;¾¶¡£Ëü×Ô´øÉϰÙÖÖ©¶´£¬»¹¿ÉÒÔÔÚonline exploit building demo£¨ÔÚÏß©¶´Éú³ÉÑÝʾ£©¿´µ½ÈçºÎÉú³É©¶´¡£ÕâʹµÃÄú×Ô¼º±àд©¶´±äµÃ¸ü¼òµ¥£¬ËüÊÆ±Ø½«ÌáÉý·Ç·¨shellcode´úÂëµÄˮƽ£¬À©´óÍøÂçÒõ°µÃæ¡£ÓëÆäÏàËÆµÄרҵ©¶´¹¤¾ß£¬ÀýÈçCore ImpactºÍCanvasÒѾ­±»Ðí¶àרҵÁìÓòÓû§Ê¹Óá£Metasploit½µµÍÁËÕâÖÖÄÜÁ¦µÄÃż÷£¬½«ÆäÍÆ¹ã¸ø´óÖÚ¡£

--------------------------------------------------------------------------------

#6 Hping2£ºÒ»ÖÖÍøÂç̽²â¹¤¾ß£¬ÊÇpingµÄ³¬¼¶±äÖÖ
Õâ¸öС¹¤¾ß¿ÉÒÔ·¢ËÍ×Ô¶¨ÒåµÄICMP£¬UDPºÍTCPÊý¾Ý°ü£¬²¢½ÓÊÕËùÓз´À¡ÐÅÏ¢¡£ËüµÄÁé¸ÐÀ´Ô´ÓÚpingÃüÁµ«Æä¹¦ÄÜÔ¶Ô¶³¬¹ýping¡£Ëü»¹°üº¬Ò»¸öСÐ͵Ä·Óɸú×ÙÄ£¿é£¬²¢Ö§³ÖIP·Ö¶Î¡£´Ë¹¤¾ß¿ÉÒÔÔÚ³£Óù¤¾ßÎÞ·¨¶ÔÓзÀ»ðǽ±£»¤µÄÖ÷»ú½øÐзÓɸú×Ù/ping/̽²âʱ´óÏÔÉíÊÖ¡£Ëü¾­³£¿ÉÒÔ°ïÖúÄúÕÒ³ö·À»ðǽµÄ¹æÔò¼¯£¬µ±È»»¹¿ÉÒÔͨ¹ýËüÀ´Ñ§Ï°TCP/IPЭÒ飬²¢×÷һЩIPЭÒéµÄʵÑé¡£

--------------------------------------------------------------------------------

#7 Kismet£ºÒ»¿î³¬Ç¿µÄÎÞÏßÐá̽Æ÷
KismetÊÇÒ»¿î»ùÓÚÃüÁîÐУ¨ncurses£©µÄ802.11 layer2ÎÞÏßÍøÂç̽²âÆ÷¡¢Ðá̽Æ÷¡¢ºÍÈëÇÖ¼ì²âϵͳ¡£Ëü¶ÔÍøÂç½øÐб»¶¯Ðá̽£¨Ïà¶ÔÓÚÐí¶àÖ÷¶¯¹¤¾ß£¬ÀýÈçNetStumbler£©£¬¿ÉÒÔ·¢ÏÖÒþÐÎÍøÂ磨·ÇÐű꣩¡£Ëü¿ÉÒÔͨ¹ýÐá̽TCP¡¢UDP¡¢ARPºÍDHCPÊý¾Ý°üÀ´×Ô¶¯¼ì²âÍøÂçIP¶Î£¬ÒÔWireshark/TCPDump¼æÈݸñʽ¼Ç¼ͨѶÈÕÖ¾£¬¸ü¼Ó¿ÉÒÔ½«±»¼ì²âµ½µÄÍøÂç·Ö¿é²¢°´ÕÕÏÂÔØµÄ·Ö²¼Í¼½øÐз¶Î§¹À¼Æ¡£ÈçÄúËùÏ룬Õâ¿î¹¤¾ßÒ»°ã±»wardrivingËùʹÓá£àÅ£¡»¹ÓÐwarwalking¡¢ warflyingºÍwarskating¡­¡­

--------------------------------------------------------------------------------

#8 Tcpdump£º×î¾­µäµÄÍøÂç¼à¿ØºÍÊý¾Ý²¶»ñÐá̽Æ÷
ÔÚEthereal£¨Wireshark£©³öÏÖ֮ǰ´ó¼Ò¶¼ÓÃTcpdump£¬¶øÇҺܶàÈËÏÖÔÚ»¹ÔÚһֱʹÓá£ËüÒ²ÐíûÓÐWiresharkÄÇô¶à»¨ÀïºúÉڵĶ«Î÷£¨±ÈÈçÆ¯ÁÁµÄͼÐνçÃæ£¬Òà»òÊýÒ԰ټƵÄÓ¦ÓÃЭÒéÂß¼­·ÖÎö£©£¬µ«ËüÄܳöÉ«µÄÍê³ÉºÜ¶àÈÎÎñ£¬²¢ÇÒ©¶´·Ç³£ÉÙ£¬ÏûºÄϵͳ×ÊÔ´Ò²·Ç³£ÉÙ¡£ËüºÜÉÙÌí¼ÓÐÂÌØÐÔÁË£¬µ«¾­³£ÐÞ¸´Ò»Ð©bugºÍά³Ö½ÏСµÄÌå»ý¡£ËüÄܺܺõĸú×ÙÍøÂçÎÊÌâÀ´Ô´£¬²¢ÄÜ¼à¿ØÍøÂç»î¶¯¡£ÆäWindowsϵİ汾½Ð×öWinDump¡£ Libpcap/WinPcapµÄ°ü²¶»ñ¿â¾ÍÊÇ»ùÓÚTCPDump£¬ËüÒ²ÓÃÔÚNmapµÈÆäËü¹¤¾ßÖС£

--------------------------------------------------------------------------------

#9 Cain and Abel£ºWindowsƽ̨ÉÏ×îºÃµÄÃÜÂë»Ö¸´¹¤¾ß
UNIXÓû§¾­³£Éù³ÆÕýÊÇÒòΪUnixƽ̨ÏÂÓкܶà·Ç³£ºÃµÄÃâ·Ñ°²È«¹¤¾ß£¬ËùÒÔUnix²Å»á³ÉΪ×îºÃµÄƽ̨£¬¶øWindowsƽ̨һ°ã²»ÔÚËûÃǵĿ¼ÂÇ·¶Î§Ö®ÄÚ¡£ËûÃÇÒ²ÐíÊǶԵ쬵«Cain & AbelȷʵÈÃÈËÑÛǰһÁÁ¡£ÕâÖÖÖ»ÔËÐÐÓÚWindowsƽ̨µÄÃÜÂë»Ö¸´¹¤¾ß¿ÉÒÔ×÷ºÜ¶àÊÂÇé¡£Ëü¿ÉÒÔͨ¹ýÐáÌ½ÍøÂçÀ´ÕÒµ½ÃÜÂë¡¢ÀûÓÃ×ֵ䯯½â¼ÓÃÜÃÜÂë¡¢±©Á¦ÆÆ½âÃÜÂëºÍÃÜÂë·ÖÎö¡¢¼Ç¼VoIP»á»°¡¢½âÂë·Ç³£¸´ÔÓµÄÃÜÂë¡¢ÐǺŲ鿴¡¢°þÀ뻺´æÃÜÂëÒÔ¼°·ÖÎö·ÓÉЭÒé¡£ÁíÍâÆäÎĵµÒ²ºÜÆëÈ«£¨well documented£©¡£

--------------------------------------------------------------------------------

#10 John the Ripper£ºÒ»¿îÇ¿´óµÄ¡¢¼òµ¥µÄÒÔ¼°Ö§³Ö¶àƽ̨µÄÃÜÂëÆÆ½âÆ÷
John the RipperÊÇ×î¿ìµÄÃÜÂëÆÆ½âÆ÷£¬µ±Ç°Ö§³Ö¶àÖÖÖ÷Á÷Unix £¨¹Ù·½Ö§³Ö11ÖÖ£¬Ã»ÓмÆË㲻ͬµÄ¼Ü¹¹£©¡¢DOS¡¢Win32¡¢BeOºÍOpenVMS¡£ËüµÄÖ÷Òª¹¦ÄܾÍÊǼì²âÈõUnixÃÜÂë¡£ËüÖ§³ÖÖ÷Á÷UnixϵĶàÖÖ£¨3ÖÖ£©ÃÜÂë¹þÏ£¼ÓÃÜÀàÐÍ£¬ËüÃÇÊÇKerberos¡¢AFSÒÔ¼°Windows NT/2000/XP LM¡£ÆäËü¹þÏ£ÀàÐÍ¿ÉÒÔͨ¹ý²¹¶¡°ü¼ÓÔØ¡£Èç¹ûÄúÏ£Íû´ÓһЩµ¥´Ê±í¿ªÊ¼µÄ»°£¬Äú¿ÉÒÔÔÚÕâÀï¡¢ÕâÀïºÍÕâÀïÕÒµ½¡£

--------------------------------------------------------------------------------

#11 Ettercap£ºÎª½»»»Ê½¾ÖÓòÍøÌṩ¸ü¶à±£»¤
EttercapÊÇÒ»¿î»ùÓÚÖն˵ÄÒÔÌ«ÍøÂç¾ÖÓòÍøÐá̽Æ÷/À¹½ØÆ÷/ÈÕÖ¾Æ÷¡£ËüÖ§³ÖÖ÷¶¯ºÍ±»¶¯µÄ¶àÖÖЭÒé½âÎö£¨ÉõÖÁÊÇsshºÍhttpsÕâÖÖ¼ÓÃܹýµÄ£©¡£»¹¿ÉÒÔ½øÐÐÒѽ¨Á¢Á¬½ÓµÄÊý¾Ý×¢ÈëºÍʵʱ¹ýÂË£¬±£³ÖÁ¬½Óͬ²½¡£´ó²¿·ÖÐá̽ģʽ¶¼ÊÇÇ¿´óÇÒÈ«ÃæµÄÐá̽×éºÏ¡£Ö§³Ö²å¼þ¡£Äܹ»Ê¶±ðÄúÊÇ·ñ³öÔÚ½»»»Ê½¾ÖÓòÍøÖУ¬Í¨¹ýʹÓòÙ×÷ÏµÍ³Ö¸ÎÆ£¨Ö÷¶¯»ò±»¶¯£©¼¼Êõ¿ÉÒԵóö¾ÖÓòÍø½á¹¹¡£

--------------------------------------------------------------------------------

#12 Nikto£º·Ç³£È«ÃæµÄÍøÒ³É¨ÃèÆ÷
NiktoÊÇÒ»¿î¿ªÔ´µÄ£¨GPL£©ÍøÒ³·þÎñÆ÷ɨÃèÆ÷£¬Ëü¿ÉÒÔ¶ÔÍøÒ³·þÎñÆ÷½øÐÐÈ«ÃæµÄ¶àÖÖɨÃ裬°üº¬³¬¹ý3200ÖÖÓÐDZÔÚΣÏÕµÄÎļþ/CGIs£»³¬¹ý625 ÖÖ·þÎñÆ÷°æ±¾£»³¬¹ý230ÖÖÌØ¶¨·þÎñÆ÷ÎÊÌ⡣ɨÃèÏîºÍ²å¼þ¿ÉÒÔ×Ô¶¯¸üУ¨Èç¹ûÐèÒª£©¡£»ùÓÚWhisker/libwhiskerÍê³ÉÆäµ×²ã¹¦ÄÜ¡£ÕâÊÇÒ»¿î·Ç³£°ôµÄ¹¤¾ß£¬µ«ÆäÈí¼þ±¾Éí²¢²»¾­³£¸üУ¬×îкÍ×îΣÏյĿÉÄܼì²â²»µ½¡£

--------------------------------------------------------------------------------

#13 Ping/telnet/dig/traceroute/whois/netstat£º»ù±¾ÃüÁî
ËäÈ»ÓкܶàÖØÐ͵ĸ߿Ƽ¼ÍøÂ簲ȫ¹¤¾ß£¬µ«ÊDz»ÒªÍü¼ÇÆä»ù´¡£¡ËùÓÐÍøÂ簲ȫÈËÊ¿¶¼Òª¶ÔÕâЩ»ù±¾ÃüÁî·Ç³£ÊìϤ£¬ÒòΪËüÃǶԴó¶àÊýƽ̨¶¼ÊÊÓã¨ÔÚWindows ƽ̨ÉÏwhoisΪtracert£©¡£ËüÃÇ¿ÉÒÔËæÊÖÄóÀ´£¬µ±È»Èç¹ûÐèҪʹÓÃһЩ¸ü¸ß¼¶µÄ¹¦ÄÜ¿ÉÒÔÑ¡ÔñHping2ºÍNetcat¡£

--------------------------------------------------------------------------------

#14 OpenSSH / PuTTY / SSH£º·ÃÎÊÔ¶³Ì¼ÆËã»úµÄ°²È«Í¾¾¶
SSH£¨Secure Shell£©ÏÖÔÚÆÕ±éÓ¦ÓÃÓڵǼԶ³Ì¼ÆËã»ú»òÔÚÆäÉÏÖ´ÐÐÃüÁî¡£ËüΪ²»°²È«ÍøÂçÉϵÄÁ½Ì¨²»»¥ÐżÆËã»ú¼äͨѶÌṩ°²È«¼ÓÃÜ£¬´úÌæ·Ç³£²»¿É¿¿µÄ telnet/rlogin/rsh½»»¥ÄÚÈÝ¡£´ó¶àUNIXʹÓÿªÔ´µÄOpenSSH·þÎñÆ÷ºÍ¿Í»§¶Ë³ÌÐò¡£WindowsÓû§¸üϲ»¶Ãâ·ÑµÄPuTTY¿Í»§¶Ë£¬ËüÒ²¿ÉÒÔÔËÐÐÔÚ¶àÖÖÒÆ¶¯É豸ÉÏ¡£»¹ÓÐһЩWindowsÓû§Ï²»¶Ê¹ÓûùÓÚÖն˵ÄOpenSSHÄ£Äâ³ÌÐòCygwin¡£»¹ÓÐÆäËüºÜ¶àÊշѺÍÃâ·ÑµÄ¿Í»§¶Ë¡£Äú¿ÉÒÔÔÚÕâÀïºÍÕâÀïÕÒµ½¡£

--------------------------------------------------------------------------------

#15 THC Hydra£ºÖ§³Ö¶àÖÖ·þÎñµÄ×î¿ìµÄÍøÂçÈÏÖ¤ÆÆ½âÆ÷
Èç¹ûÄúÐèÒª±©Á¦ÆÆ½âÒ»¸öÔ¶³ÌÈÏÖ¤·þÎñ£¬Hydra¾­³£»áÊÇÑ¡Ôñ¶ÔÏó¡£Ëü¿ÉÒÔͬʱ¶Ô30¸öÒÔÉϵĶ˿ڽøÐлùÓÚ×ÖµäµÄ¿ìËÙÆÆ½â£¬°üÀ¨telnet¡¢ftp¡¢http¡¢https¡¢smb¡¢¶àÖÖÊý¾Ý¿â¼°ÆäËü·þÎñ¡£ºÍTHC AmapÒ»Ñù£¬´ËHydra°æ±¾À´×ÔÓÚÃñ¼ä×éÖ¯THC¡£

--------------------------------------------------------------------------------

#16 Paros proxy£ºÍøÒ³³ÌÐò©¶´ÆÀ¹À´úÀí
»ùÓÚJavaµÄÍøÒ³³ÌÐò©¶´ÆÀ¹À´úÀí¡£Ö§³Öʵʱ±à¼­ºÍä¯ÀÀHTTP/HTTPSÐÅÏ¢£¬ÐÞ¸ÄÀýÈçCookieºÍ±í×Ö¶ÎÖеÄÄÚÈÝ¡£Ëü°üº¬ÓÐÍøÒ³Í¨Ñ¶¼Ç¼Æ÷¡¢ÍøÒ³Ð¡Íµ£¨web spider£©¡¢¹þÏ£¼ÆËãÆ÷ºÍÒ»¸ö³£ÓÃÍøÒ³³ÌÐò¹¥»÷ɨÃèÆ÷£¬ÀýÈçSQL×¢ÈëºÍ¿çÍøÕ¾½Å±¾µÈ¡£

--------------------------------------------------------------------------------

#17 Dsniff£ºÒ»¿î³¬Ç¿µÄÍøÂçÆÀ¹ÀºÍÉøÍ¸¼ì²â¹¤¾ßÌ××°
ÓÉDug Song¾«ÐÄÉè¼Æ²¢¹ãÊÜ»¶Ó­µÄÕâ¿îÌ××°°üº¬ºÜ¶à¹¤¾ß¡£Dsniff¡¢filesnarf¡¢mailsnarf¡¢msgsnarf¡¢urlsnarfºÍ webspyͨ¹ý±»¶¯¼àÊÓÍøÂçÒÔ»ñµÃÃô¸ÐÊý¾Ý£¨ÀýÈçÃÜÂë¡¢ÓʼþµØÖ·¡¢ÎļþµÈ£©¡£Arpspoof¡¢dnsspoofºÍmacofÄܹ»À¹½ØÒ»°ãºÜÄÑ»ñÈ¡µ½µÄÍøÂçͨѶÐÅÏ¢£¨ÀýÈçÓÉÓÚʹÓÃÁ˵ڶþ²ãת»»£¨layer-2 switching£©£©¡£SshmitmºÍwebmitmͨ¹ýad-hoc PKIÖÐÈõ°ó¶¨Â©¶´¶ÔsshºÍhttps»á»°½øÐÐÖØ¶¨Ïòʵʩ¶¯Ì¬monkey-in-the-middle£¨ÀûÓÃÖмäÈ˹¥»÷¼¼Êõ£¬¶Ô»á»°½øÐнٳ֣©¹¥»÷¡£ Windows°æ±¾¿ÉÒÔÔÚÕâÀï»ñÈ¡¡£×ÜÖ®£¬ÕâÊÇÒ»¸ö·Ç³£ÓÐÓõŤ¾ß¼¯¡£ËüÄÜÍê³É¼¸ºõËùÓÐÃÜÂëÐá̽ÐèÒª×÷µÄ¹¤×÷¡£

--------------------------------------------------------------------------------

#18 NetStumbler£ºÃâ·ÑµÄWindows 802.11Ðá̽Æ÷
NetstumblerÊǹãΪÈËÖªµÄѰÕÒ¿ª·ÅÎÞÏß·ÃÎʽÓÈëµãµÄWindows¹¤¾ß£¨"wardriving"£©¡£ÆäPDAÉϵÄWinCEϵͳ°æ±¾Ãû½Ð Ministumbler¡£´ËÈí¼þµ±Ç°Ãâ·Ñ£¬µ«Ö»Äܹ»ÔËÐÐÔÚWindowsƽ̨ÉÏ£¬ÇÒ´úÂë²»¹«¿ª¡£ËüʹÓúܶàÖ÷¶¯·½·¨Ñ°ÕÒWAP£¬¶øKismet»ò KisMACÔò¸ü¶àʹÓñ»¶¯Ðá̽¡£

--------------------------------------------------------------------------------

#19 THC Amap£ºÒ»¿îÓ¦ÓóÌÐòÖ¸ÎÆÉ¨ÃèÆ÷
AmapÊÇÒ»¿îºÜ°ôµÄ³ÌÐò£¬Ëü¿ÉÒÔ¼ì²â³öijһ¶Ë¿ÚÕýÔÚ±»Ê²Ã´³ÌÐò¼àÌý¡£ÒòΪÆä¶ÀÓеÄversion detectionÌØÐÔ£¬ËùÒÔÆäÊý¾Ý¿â²»»áÏóNmapÒ»Ñù±äµÃºÜ´ó£¬ÔÚNmap¼ì²âijһ·þÎñʧ°Ü»òÕ߯äËüÈí¼þ²»Æð×÷ÓÃʱ¿ÉÒÔ¿¼ÂÇʹÓÃÖ®¡£AmapµÄÁíÒ»ÌØÐÔÊÇÆäÄܹ»½âÎöNmapÊä³öÎļþ¡£ÕâÒ²ÊÇTHC¹±Ï×µÄÁíÒ»¿îºÜÓмÛÖµµÄ¹¤¾ß¡£

--------------------------------------------------------------------------------

#20 GFI LANguard£ºÒ»¿îWindowsƽ̨ÉϵÄÉÌÒµÍøÂ簲ȫɨÃèÆ÷
GFI LANguardͨ¹ý¶ÔIPÍøÂç½øÐÐɨÃèÀ´·¢ÏÖÔËÐÐÖеļÆËã»ú£¬È»ºó³¢ÊÔÊÕ¼¯Ö÷»úÉÏÔËÐеIJÙ×÷ϵͳ°æ±¾ºÍÕýÔÚÔËÐеÄÓ¦ÓóÌÐò¡£ÎÒÔø¾­³¢ÊÔÊÕ¼¯µ½ÁË WindowsÖ÷»úÉϵÄservice pack¼¶±ð¡¢È±Éٵݲȫ¸üС¢ÎÞÏß·ÃÎʽÓÈëµã¡¢USBÉ豸¡¢¿ª·ÅµÄ¹²Ïí¡¢¿ª·ÅµÄ¶Ë¿Ú¡¢ÕýÔÚÔËÐеķþÎñºÍÓ¦ÓóÌÐò¡¢Ö÷Ҫע²á±íÏî¡¢ÈõÃÜÂë¡¢Óû§ºÍ×é±ðÒÔ¼°ÆäËü¸ü¶àÐÅÏ¢¡£É¨Ãè½á¹û±£´æÔÚÒ»·Ý¿É×Ô¶¨Òå/¿É²éѯµÄHTML±¨¸æÎĵµÖС£Ëü»¹º¬ÓÐÒ»¸ö²¹¶¡¹ÜÀíÆ÷£¬¿ÉÒÔ¼ì²é²¢°²×°È±ÉٵIJ¹¶¡¡£ÊÔÓðæ¿ÉÒÔÃâ·Ñ»ñµÃ£¬µ«Ö»ÄÜʹÓÃ30Ìì¡£

--------------------------------------------------------------------------------

#21 Aircrack£º×î¿ìµÄWEP/WPAÆÆ½â¹¤¾ß
AircrackÊÇÒ»Ì×ÓÃÓÚÆÆ½â802.11a/b/g WEPºÍWPAµÄ¹¤¾ßÌ××°¡£Ò»µ©ÊÕ¼¯µ½×ã¹»µÄ¼ÓÃÜÊý¾Ý°üËü¿ÉÒÔÆÆ½â40µ½512λµÄWEPÃܳף¬ËüÒ²¿ÉÒÔͨ¹ý¸ß¼¶¼ÓÃÜ·½·¨»ò±©Á¦ÆÆ½âÀ´ÆÆ½âWPA 1»ò2ÍøÂç¡£Ì××°Öаüº¬airodump£¨802.11Êý¾Ý°ü²¶»ñ³ÌÐò£©¡¢aireplay £¨802.11Êý¾Ý°ü×¢Èë³ÌÐò£©¡¢aircrack£¨¾²Ì¬WEPºÍWPA-PSKÆÆ½â£©£¬ºÍairdecap£¨½âÃÜWEP/WPA²¶»ñÎļþ£©¡£

--------------------------------------------------------------------------------

#22 Superscan£ºÖ»ÔËÐÐÓÚWindowsƽ̨֮ÉϵĶ˿ÚɨÃèÆ÷¡¢ping¹¤¾ßºÍ½âÎöÆ÷
SuperScanÊÇÒ»¿îFoundstone¿ª·¢µÄÃâ·ÑµÄÖ»ÔËÐÐÓÚWindowsƽ̨֮ÉϵIJ»¿ªÔ´µÄTCP/UDP¶Ë¿ÚɨÃèÆ÷¡£ËüÆäÖл¹°üº¬Ðí¶àÆäËüÍøÂ繤¾ß£¬ÀýÈçping¡¢Â·Óɸú×Ù¡¢http headºÍwhois¡£

--------------------------------------------------------------------------------

#23 Netfilter£º×îеÄLinuxºËÐÄÊý¾Ý°ü¹ýÂËÆ÷/·À»ðǽ
NetfilterÊÇÒ»¿îÇ¿´óµÄÔËÐÐÓÚ±ê×¼LinuxºËÐÄÉϵİü¹ýÂËÆ÷¡£Ëü¼¯³ÉÁËÓû§¿Õ¼äIPÁÐ±í¹¤¾ß¡£µ±Ç°£¬ËüÖ§³Ö°ü¹ýÂË£¨ÎÞ״̬»òÓÐ״̬£©¡¢ËùÓÐÀàÐ͵ÄÍøÂçµØÖ·ºÍ¶Ë¿Úת»»£¨NAT/NAPT£©²¢Ö§³Ö¶àAPI²ãµÚÈý·½À©Õ¹¡£Ëü°üº¬¶àÖÖ²»Í¬Ä£¿éÓÃÀ´´¦Àí²»¹æÔòЭÒ飬ÀýÈçFTP¡£ÆäËüUNIXƽ̨Çë²Î¿¼ Openbsd PF£¨Ö»ÓÃÓÚOpenBSD£©»òÕßIP Filter¡£Ðí¶à¸öÈË·À»ðǽ£¨personal firewalls£©¶¼Ö§³ÖWindows £¨Tiny¡¢Zone Alarm¡¢Norton¡¢Kerio...£©£¬µ«¶¼²»ÌṩÉÏÊöIPÁÐ±í¡£Î¢ÈíÔÚWindows XP SP2Öм¯³ÉÁËÒ»¿î·Ç³£»ù´¡µÄ·À»ðǽ£¬Èç¹ûÄú²»°²×°Ëü£¬Ëü¾Í»á²»¶ÏµØÌáʾÄú°²×°¡£

--------------------------------------------------------------------------------

#24 Sysinternals£ºÒ»¿îÇ¿´óµÄ·Ç³£È«ÃæµÄWindows¹¤¾ßºÏ¼¯
SysinternalsΪWindowsµÍ¼¶ÈëÇÖÌṩºÜ¶à·Ç³£ÓÐÓõÄС¹¤¾ß¡£ÆäÖÐÒ»²¿·ÖÊÇÃâ·ÑµÄ£¬ÓÐЩ»¹¸½ÓÐÔ´´úÂ룬ÆäËüÊÇÐèÒª¸¶·ÑʹÓõġ£ÊÜ·ÃÕß×îϲ»¶´Ë¼¯ºÏÖеÄÒÔϹ¤¾ß£º

ProcessExplorer ¼àÊÓËùÓнø³Ì´ò¿ªµÄËùÓÐÎļþºÍĿ¼£¨ÀàËÆUnixÉϵÄLSoF£©¡£
PsTools ¹ÜÀí£¨Ö´ÐС¢¹ÒÆð¡¢É±ËÀ¡¢²é¿´£©±¾µØºÍÔ¶³Ì½ø³Ì¡£
Autoruns ·¢ÏÖϵͳÆô¶¯ºÍµÇ½ʱ¼ÓÔØÁËÄÄЩ¿ÉÖ´ÐгÌÐò¡£
RootkitRevealer ¼ì²â×¢²á±íºÍÎļþϵͳAPIÒì³££¬ÓÃÒÔ·¢ÏÖÓû§Ä£Ê½»òÄÚºËģʽµÄrootkit¹¤¾ß¡£
TCPView ä¯ÀÀÿ¸ö½ø³ÌµÄTCPºÍUDPͨѶÖյ㣨ÀàËÆUnixÉϵÄNetstat£©¡£
Éú²ú´ËÈí¼þµÄ¹«Ë¾Òѱ»Î¢ÈíÓÚ2005ÄêÊÕ¹º£¬ËùÒÔÆäδÀ´²úÆ·ÏßÌØÕ÷ÎÞ·¨Ô¤²â¡£

--------------------------------------------------------------------------------

#25 Retina£ºeEye³öÆ·µÄÉÌҵ©¶´ÆÀ¹ÀɨÃèÆ÷
ÏóNessusÒ»Ñù£¬RetinaµÄ¹¦ÄÜÊÇɨÃèÍøÂçÖÐËùÓеÄÖ÷»ú²¢±¨¸æ·¢ÏÖµÄËùÓЩ¶´¡£eEye³öÆ·£¬´Ë¹«Ë¾ÒÔÆäsecurity research¶øÎÅÃû¡£

--------------------------------------------------------------------------------

#26 Perl / Python / Ruby£º¼òµ¥µÄ¡¢¶àÓÃ;µÄ½Å±¾ÓïÑÔ
³£ÓõݲȫÎÊÌâ¶¼ÄÜÔÚÍøÉÏÕÒµ½¹¤¾ß½â¾ö£¬µ«Ê¹Óýű¾ÓïÑÔÄú¿ÉÒÔ±àдÄú×Ô¼ºµÄ£¨»ò±à¼­ÏÖÓе쩹¤¾ß£¬µ±ÄúÐèÒª½â¾öijÖÖÌØ¶¨ÎÊÌâµÄʱºò¡£¿ìËÙ¡¢¼òµ¥µÄ½Å±¾ÓïÑÔ¿ÉÒÔ²âÊÔ¡¢·¢ÏÖ©¶´ÉõÖÁÐÞ¸´ÏµÍ³Â©¶´¡£CPANÉϳäÂúÁËÀàËÆNet£º£ºRawIPºÍÖ´ÐÐЭÒéµÄ³ÌÐòÄ£¿é£¬¿ÉÒÔʹÄúµÄ¹¤×÷¸ü¼ÓÇáËÉ¡£

--------------------------------------------------------------------------------

#27 L0phtcrack£ºWindowsÃÜÂë²Â²âºÍ»Ö¸´³ÌÐò
L0phtCrackÒ²½Ð×÷LC5£¬ÓÃÀ´³¢ÊÔͨ¹ý¹þÏ££¨Í¨¹ýijÖÖ·ÃÎÊ·½Ê½»ñµÃµÄ£©·½·¨ÆÆ½âÖîÈçWindows NT/2000¹¤×÷Õ¾¡¢ÁªÍø·þÎñÆ÷¡¢Ö÷Óò¿ØÖÆÆ÷¡¢»ò»î¶¯Ä¿Â¼ÃÜÂ룬ÓÐʱËüÒ²¿ÉÒÔͨ¹ýÐá̽»ñµÃÃÜÂëµÄ¹þÏ£Öµ¡£Ëü»¹¿ÉÒÔͨ¹ý¶àÖÖÊÖ¶ÎÀ´²Â²âÃÜÂ루×ֵ䡢±©Á¦ÆÆ½âµÈµÈ£©¡£Symantec¹«Ë¾2006ÄêÒѾ­Í£Ö¹ÁËLC5µÄ¿ª·¢£¬µ«LC5 installerµÄ°²×°ÎļþËæ´¦¿ÉÒÔÕÒµ½¡£Ãâ·ÑÊÔÓðæÖ»ÄÜʹÓÃ15Ì죬SymantecÒѾ­Í£Ö¹³öÊÛ´ËÈí¼þµÄ×¢²áÂ룬ËùÒÔÈç¹ûÄú²»Ïë·ÅÆúʹÓÃËü£¬¾Í±ØÐëÕÒµ½Ò»¸öÓëÆä¶ÔÓ¦µÄ×¢²áÂëÉú³ÉÆ÷£¨key generator£©¡£ÒòΪSymantec²»ÔÙά»¤´ËÈí¼þ£¬ËùÒÔ×îºÃ³¢ÊÔÓÃCain and Abel»òJohn the RipperÀ´´úÌæÖ®¡£

--------------------------------------------------------------------------------

#28 Scapy£º½»»¥Ê½Êý¾Ý°ü´¦Àí¹¤¾ß
ScapyÊÇÒ»¿îÇ¿´óµÄ½»»¥Ê½Êý¾Ý°ü´¦Àí¹¤¾ß¡¢Êý¾Ý°üÉú³ÉÆ÷¡¢ÍøÂçɨÃèÆ÷¡¢ÍøÂç·¢ÏÖ¹¤¾ßºÍ°üÐá̽¹¤¾ß¡£ËüÌṩ¶àÖÖÀà±ðµÄ½»»¥Ê½Éú³ÉÊý¾Ý°ü»òÊý¾Ý°ü¼¯ºÏ¡¢¶ÔÊý¾Ý°ü½øÐвÙ×÷¡¢·¢ËÍÊý¾Ý°ü¡¢°üÐá̽¡¢Ó¦´ðºÍ·´À¡Æ¥ÅäµÈµÈ¹¦ÄÜ¡£Python½âÊÍÆ÷Ìṩ½»»¥¹¦ÄÜ£¬ËùÒÔÒªÓõ½Python±à³Ì֪ʶ£¨ÀýÈç variables¡¢loops¡¢ºÍfunctions£©¡£Ö§³ÖÉú³É±¨¸æ£¬ÇÒ±¨¸æÉú³É¼òµ¥¡£

--------------------------------------------------------------------------------

#29 Sam Spade£ºWindowsÍøÂç²éѯÃâ·Ñ¹¤¾ß
Sam SpadeΪÐí¶àÍøÂç²éѯµÄÒ»°ã¹¤×÷ÌṩÁËͼÐνçÃæºÍ·½±ãµÄ²Ù×÷¡£´Ë¹¤¾ßÉè¼ÆÓÃÓÚ¸ú×ÙÀ¬»øÐÅÏ¢·¢ËÍÕߣ¬µ«Ëü»¹¿ÉÒÔÓÃÓÚÐí¶àÆäËüµÄÍøÂç̽²é¡¢¹ÜÀíºÍ°²È«¹¤×÷¡£Ëü°üº¬Ðí¶àÓÐÓõŤ¾ß£¬ÀýÈçping¡¢nslookup¡¢whois¡¢dig¡¢Â·Óɸú×Ù¡¢²éÕÒÆ÷¡¢Ô­Ê¼HTTPÍøÒ³ä¯ÀÀÆ÷¡¢DNSµØÖ·×ª»»¡¢SMTP Öм̼ì²é¡¢ÍøÕ¾ËÑË÷µÈµÈ¡£·ÇWindowsÓû§¿ÉÒÔÔÚÏßʹÓøü¶àÆäËü¹¤¾ß¡£

--------------------------------------------------------------------------------

#30 GnuPG / PGP £º¶ÔÄúµÄÎļþºÍͨѶ½øÐи߼¶¼ÓÃÜ
PGPÊÇPhil Zimmerman³öÆ·µÄÖøÃû¼ÓÃܳÌÐò£¬¿ÉÒÔʹÄúµÄÊý¾ÝÃâÊÜÇÔÌýÒÔ¼°ÆäËüΣÏÕ¡£GnuPGÊÇÒ»¿î¿Ú±®ºÜºÃµÄ×ñÊØPGP±ê×¼µÄ¿ªÔ´Ó¦Ó㨿ÉÖ´ÐгÌÐòÃûΪgpg£©¡£GunPGÊÇÃâ·ÑµÄ£¬¶øPGP¶ÔijЩÓû§ÊÇÊշѵġ£

--------------------------------------------------------------------------------

#31 Airsnort£º802.11 WEP¼ÓÃÜÆÆ½â¹¤¾ß
AirSnortÊÇÒ»¿îÓÃÀ´»Ö¸´¼ÓÃÜÃÜÂëµÄÎÞÏßLAN£¨WLAN£©¹¤¾ß¡£Shmoo Group³öÆ·£¬¹¤×÷Ô­ÀíÊDZ»¶¯¼à¿Ø´«ÊäÐÅÏ¢£¬µ±ÊÕ¼¯µ½×ã¹»¶àµÄÊý¾Ý°üºó¿ªÊ¼¼ÆËã¼ÓÃÜÃÜÂë¡£AircrackºÍËüºÜÏñ¡£

--------------------------------------------------------------------------------

#32 BackTrack£ºÒ»¿î¼«¾ß´´ÐÂÍ»ÆÆµÄLive£¨¿ÌÔÚ¹âÅÌÉϵ쬹âÅÌÖ±½ÓÆô¶¯£© ¹âÅÌ×ÔÆô¶¯Linuxϵͳƽ̨
Õâ¿î׿ԽµÄ¹âÅÌ×ÔÆô¶¯LinuxϵͳÊÇÓÉWhaxºÍAuditorºÏ²¢¶ø³É¡£ËüÒÔÆä³¬¼¶¶àµÄ°²È«ºÍ·À»¤¹¤¾ßÅäÒԷḻµÄ¿ª·¢»·¾³¶øÎÅÃû¡£ÖصãÔÚÓÚËüµÄÓû§Ä£¿é»¯Éè¼Æ£¬Óû§¿ÉÒÔ×Ô¶¨Ò彫ÄÄЩģ¿é¿Ìµ½¹âÅÌÉÏ£¬ÀýÈç×Ô¼º±àдµÄ½Å±¾¡¢¸½¼Ó¹¤¾ß¡¢×Ô¶¨ÒåÄں˵ȵȡ£

--------------------------------------------------------------------------------

#33 P0f£ºÍòÄܵı»¶¯²Ù×÷ÏµÍ³Ö¸ÎÆ¹¤¾ß
P0fÄܹ»Í¨¹ý²¶»ñ²¢·ÖÎöÄ¿±êÖ÷»ú·¢³öµÄÊý¾Ý°üÀ´¶ÔÖ÷»úÉϵIJÙ×÷ϵͳ½øÐмø±ð£¬¼´Ê¹ÊÇÔÚϵͳÉÏ×°ÓÐÐÔÄÜÁ¼ºÃµÄ·À»ðǽµÄÇé¿öÏÂҲûÓÐÎÊÌâ¡£P0f²»Ôö¼ÓÈκÎÖ±½Ó»ò¼ä½ÓµÄÍøÂç¸ºÔØ£¬Ã»ÓÐÃû³ÆËÑË÷¡¢Ã»ÓÐÃØÃÜ̽²â¡¢Ã»ÓÐARIN²éѯ£¬Ê²Ã´¶¼Ã»ÓС£Ä³Ð©¸ßÊÖ»¹¿ÉÒÔÓÃP0f¼ì²â³öÖ÷»úÉÏÊÇ·ñÓзÀ»ðǽ´æÔÚ¡¢ÊÇ·ñÓÐ NAT¡¢ÊÇ·ñ´æÔÚ¸ºÔØÆ½ºâÆ÷µÈµÈ£¡

--------------------------------------------------------------------------------

Roc.Ken ·¢±íÓÚ 2006-9-16 21:36

--------------------------------------------------------------------------------

#34 Google£ºÈËÈËϲ°®µÄËÑË÷ÒýÇæ
Googleµ±È»²»ÊÇʲô°²È«¹¤¾ß£¬µ«ÊÇËü³¬¼¶ÅÓ´óµÄÊý¾Ý¿âÈ´Êǰ²È«×¨¼ÒºÍÈëÇÖÕß×îºÃµÄ×ÊÔ´¡£Èç¹ûÄúÏëÁ˽âijһ¹«Ë¾£¬Äú¿ÉÒÔÖ±½ÓÓÃËüËÑË÷ ¡°site£ºtarget-domain.com¡±£¬Äú¿ÉÒÔ»ñµÃÔ±¹¤ÐÕÃû¡¢Ãô¸ÐÐÅÏ¢£¨Í¨³£¹«Ë¾²»¶ÔÍ⹫¿ªµÄ£¬µ«ÔÚGoogleÉϾÍÄÑ˵ÁË£©¡¢¹«Ë¾ÄÚ²¿°²×°µÄÈí¼þ©¶´µÈµÈ¡£Í¬Ñù£¬Èç¹ûÄúÔÚGoogleÉÏ·¢ÏÖÒ»¸öÓÐij¸ö©¶´µÄÍøÕ¾£¬Google»¹»áÌṩ¸øÄúÆäËüÓÐÏàͬ©¶´µÄÍøÕ¾ÁÐ±í¡£ÆäÖÐÀûÓÃGoogle½øÐкڿͻµÄ´óʦJohny Long½¨Á¢ÁËÒ»¸öGoogleºÚ¿ÍÊý¾Ý¿â£¨Google Hacking Database£©»¹³ö°æÁËÒ»±¾ÈçºÎÓÃGoogle½øÐкڿͻµÄÊéGoogle Hacking for Penetration Testers¡£

--------------------------------------------------------------------------------

#35 WebScarab£ºÒ»¸öÓÃÀ´·ÖÎöʹÓÃHTTPºÍHTTPSЭÒéµÄÓ¦ÓóÌÐò¿ò¼Ü
ËüµÄÔ­ÀíºÜ¼òµ¥£¬WebScarab¼Ç¼Ëü¼ì²âµ½µÄ»á»°ÄÚÈÝ£¨ÇëÇóºÍÓ¦´ð£©£¬Ê¹ÓÃÕß¿ÉÒÔͨ¹ý¶àÖÖÐÎʽÀ´²é¿´¼Ç¼¡£WebScarabµÄÉè¼ÆÄ¿µÄÊÇÈÃʹÓÃÕß¿ÉÒÔÕÆÎÕijÖÖ»ùÓÚHTTP£¨S£©³ÌÐòµÄÔË×÷¹ý³Ì£»Ò²¿ÉÒÔÓÃËüÀ´µ÷ÊÔ³ÌÐòÖнÏÄÑ´¦ÀíµÄbug£¬Ò²¿ÉÒÔ°ïÖú°²È«×¨¼Ò·¢ÏÖDZÔڵijÌÐò©¶´¡£

--------------------------------------------------------------------------------

#36 Ntop£ºÍøÂçͨѶ¼à¿ØÆ÷
NtopÒÔÀàËÆ½ø³Ì¹ÜÀíÆ÷µÄ·½Ê½ÏÔÊ¾ÍøÂçʹÓÃÇé¿ö¡£ÔÚÓ¦ÓóÌÐòģʽÏ£¬ËüÄÜÏÔʾÓû§ÖÕ¶ËÉϵÄÍøÂç×´¿ö¡£ÔÚÍøÒ³Ä£Ê½Ï£¬Ëü×÷ÎªÍøÒ³·þÎñÆ÷£¬ÒÔHTMLÎĵµÐÎʽÏÔÊ¾ÍøÂç×´¿ö¡£ËüÊÇNetFlow/sFlow·¢ÉäºÍÊÕ¼¯Æ÷£¬Í¨¹ýÒ»¸ö»ùÓÚHTTPµÄ¿Í»§¶Ë½çÃæÀ´Éú³ÉÒÔntopΪÖÐÐÄµÄ¼à¿Ø³ÌÐò£¬RRD£¨Round Robin Database£©£¨»·ÐÎÊý¾Ý¿â£©ÓÃÀ´³ÖÐø´¢´æÍøÂçͨѶ״̬ÐÅÏ¢¡£

--------------------------------------------------------------------------------

#37 Tripwire£ººÜÀϵÄÎļþÍêÕûÐÔ¼ì²éÆ÷
Ò»¿îÎļþºÍĿ¼ÍêÕûÐÔ¼ì²éÆ÷¡£TripwireÊÇÒ»ÖÖ¿ÉÒÔ°ïÖúϵͳ¹ÜÀíÔ±ºÍÒ»°ãÓû§¼à¿ØÄ³Ò»Ìض¨Îļþ»òĿ¼±ä»¯µÄ¹¤¾ß¡£¿ÉÒÔÓÃÒÔ¶ÔϵͳÎļþ×÷ÈÕ³££¨ÀýÈ磺ÿÌ죩¼ì²é£¬Tripwire¿ÉÒÔÏòϵͳ¹ÜÀíԱͨ±¨ÎļþË𻵻ò±»´Û¸ÄÇé¿ö£¬ËùÒÔÕâÊÇÒ»ÖÖÖÜÆÚÐÔµÄÎļþÆÆ»µ¿ØÖÆ·½·¨¡£Ãâ·ÑµÄ¿ªÔ´Linux°æ±¾¿ÉÒÔÔÚ Tripwire.OrgÏÂÔØµ½¡£AIDEÊÇUNIXƽ̨µÄTripwireÌæ´úÆ·¡£»òÕßRadmind¡¢RKHunterºÍchkrootkitÒ²ÊǺܺõÄÑ¡Ôñ¡£WindowsÓû§ÇëʹÓÃSysinternals³öÆ·µÄRootkitRevealer¡£

--------------------------------------------------------------------------------

#38 Ngrep£º·½±ãµÄÊý¾Ý°üÆ¥ÅäºÍÏÔʾ¹¤¾ß
ngrep¾¡¿ÉÄܶàµÄȥʵÏÖGNU grepµÄ¹¦ÄÜ£¬½«ËüÃÇÓ¦ÓÃÓÚÍøÂç²ã¡£NgrepÊÇÒ»¿îpcap-aware¹¤¾ß£¬ËüÔÊÐíÖ¸¶¨¸÷ÖÖ¹æÔòʽ»ò16½øÖƱí´ïʽȥ¶ÔÊý¾Ý¸ºÔØ»òÊý¾Ý°ü½øÐÐÆ¥Åä¡£µ±Ç°Ö§³ÖTCP¡¢UDP¡¢ÒÔÌ«ÍøÉϵÄICMP¡¢PPP¡¢SLIP¡¢FDDI¡¢ÁîÅÆ»·£¨Token Ring£©ºÍ¿Õ½Ó¿Ú£¨null interfaces£©£¬»¹ÄÜÀí½âÀàËÆTcpdumpºÍsnoopµÈÒ»ÑùÐÎʽµÄbpf¹ýÂËÆ÷Âß¼­¡£

--------------------------------------------------------------------------------

#39 Nbtscan£ºÔÚWindowsÍøÂçÉÏÊÕ¼¯NetBIOSÐÅÏ¢
NBTscanÊÇÒ»¿îÔÚIPÍøÂçÉÏɨÃèNetBIOSÃû³ÆÐÅÏ¢µÄ¹¤¾ß¡£Ëüͨ¹ý¸øÖ¸¶¨·¶Î§ÄÚËùÓеØÖ··¢ËÍ״̬²éѯÀ´»ñµÃ·´À¡ÐÅÏ¢²¢ÒÔ±íÐÎʽ³ÊÏÖ¸øÊ¹ÓÃÕß¡£Ã¿Ò»µØÖ·µÄ·´À¡ÐÅÏ¢°üÀ¨IPµØÖ·¡¢NetBIOS¼ÆËã»úÃû¡¢µÇ¼Óû§¡¢MACµØÖ·¡£

--------------------------------------------------------------------------------

#40 WebInspect£ºÇ¿´óµÄÍøÒ³³ÌÐòɨÃèÆ÷
SPI Dynamics' WebInspectÓ¦ÓóÌÐò°²È«ÆÀ¹À¹¤¾ß°ïÄúʶ±ðÒÑÖªºÍδ֪µÄÍøÒ³²ã©¶´¡£Ëü»¹Äܼì²âµ½Web·þÎñÆ÷µÄÅäÖÃÊôÐÔ£¬ÒÔ¼°½øÐг£¼ûµÄÍøÒ³¹¥»÷£¬ÀýÈç²ÎÊý×¢Èë¡¢¿çÍøÕ¾½Å±¾¡¢Ä¿Â¼ÓÎ×ߵȵȡ£

--------------------------------------------------------------------------------

#41 OpenSSL£º×îºÃµÄSSL/TLS¼ÓÃÜ¿â
OpenSSLÏîÄ¿µÄÄ¿µÄÊÇͨ¹ý¿ªÔ´ºÏ×÷¾«Éñ¿ª·¢Ò»ÖÖ½¡×³µÄ¡¢¿ÉÒÔºÍͬÀàÐÍÉÌ?**ÌÐòæÇÃÀµÄ¡¢È?¦Äܵģ?Ò¿?´µÄÓ¦ÓÃÓÚÓSL v2/v3£¨Secure Sockets Layer£©ºÍTLS v1£¨Transport Layer Security£©Ð­ÒéµÄÆÕ±éÊÊÓõļÓÃܿ⹤¾ß¼¯¡£±¾ÏîÄ¿ÓÉÊÀ½ç·¶Î§ÄÚµÄÖ¾Ô¸ÕßÃÇά»¤£¬ËûÃÇͨ¹ý»¥ÁªÍøÁªÂç¡¢¼Æ»®ºÍ¿ª·¢OpenSSL¹¤¾ß¼¯¼°ÆäÏà¹ØÎĵµ¡£

--------------------------------------------------------------------------------

#42 Xprobe2£ºÖ÷¶¯²Ù×÷ÏµÍ³Ö¸ÎÆ¹¤¾ß
XProbeÊÇÒ»¿îÔ¶³ÌÖ÷»ú²Ù×÷ϵͳ̽²é¹¤¾ß¡£¿ª·¢Õß»ùÓÚºÍNmapÏàͬµÄһЩ¼¼Êõ£¨same techniques£©£¬²¢¼ÓÈëÁË×Ô¼ºµÄ´´Ð¡£Xprobeͨ¹ýICMPЭÒéÀ´»ñµÃÖ¸ÎÆ¡£

--------------------------------------------------------------------------------

#43 EtherApe£ºEtherApeÊÇUnixƽ̨ÉϵÄÄ£·ÂethermanµÄͼÐνçÃæÍøÂç¼à¿ØÆ÷
°üº¬Á¬½Ó²ã¡¢IPºÍTCPÈýÖÖģʽ£¬EtherApeÍøÂç»î¶¯Í¼Í¨¹ý²»Í¬ÑÕÉ«À´±êʶ²»Í¬Ð­Òé¡£Ö÷»úºÍÁ¬½ÓµÄͼÐδóÐ¡ËæÍ¨Ñ¶Çé¿ö¶ø±ä»¯¡£ËüÖ§³ÖÒÔÌ«Íø¡¢FDDI¡¢ÁîÅÆ»·¡¢ISDN¡¢PPPºÍSLIPÉ豸¡£Ëü¿ÉÒÔʵʩ¹ýÂËÍøÂçͨѶ£¬Ò²¿ÉÒÔ×¥È¡ÍøÂçͨѶ¿ìÕÕÎļþ¡£

--------------------------------------------------------------------------------

#44 Core Impact£ºÈ«×Ô¶¯µÄÈ«ÃæÈëÇÖ¼ì²â¹¤¾ß
Core Impact¿É²»±ãÒË£¨ÏÈ×¼±¸¸öÉÏÍòÃÀÔª°É£©£¬µ«ËüÈ´Êǹ«ÈϵÄ×îÇ¿µÄ©¶´¼ì²â¹¤¾ß¡£ËüÓÐÒ»¸öÇ¿´óµÄ¶¨Ê±¸üеÄרҵ©¶´Êý¾Ý¿â£¬Ëü¿ÉÒÔÇáÒ׵ĺڵôһ̨¼ÆËã»ú£¬²¢ÒÔËüÎªÌø°åÔÙÈ¥×÷±ðµÄÊÂÇé¡£Èç¹ûÄúÂò²»ÆðCore Impact£¬¿ÉÒÔ¿´¿´±È½Ï±ãÒ˵ÄCanvas»òÕßÃâ·ÑµÄMetasploit Framework¡£µ±È»£¬Èý¸öͬʱÓÃÊÇ×îºÃµÄÁË¡£

--------------------------------------------------------------------------------

#45 IDA Pro£ºWindows»òLinux·´±àÒëÆ÷ºÍµ÷ÊÔÆ÷
·´±àÒëÆ÷ÊÇÒ»¿éºÜÖØÒªµÄ°²È«Ñо¿·½Ïò¡£Ëü¿ÉÒÔ°ïÄú²ð½â΢ÈíµÄ²¹¶¡£¬ÒÔÁ˽â΢Èíδ¹«¿ª²¢ÇÄÇÄÐÞ²¹µÄ©¶´£¬»òÖ±½ÓÒÔ¶þ½øÖƵķ½Ê½¶Ôij¸ö·þÎñÆ÷½øÐмì²â£¬ÒÔÕÒ³öΪºÎij¸ö´æÔڵĩ¶´²»Æð×÷Ó᣷´±àÒëÆ÷Óкܶ࣬µ«IDA ProÊÇ×ñÊØ¶þ½øÖưüÊÂʵ±ê×¼£¨de-facto standard£©µÄ¶ñÒâ´úÂëºÍ©¶´Ñо¿·ÖÎö¹¤¾ß¡£Õâ¸öͼÐλ¯µÄ¡¢¿É±à³ÌµÄ¡¢¿ÉÀ©Õ¹µÄ¡¢Ö§³Ö¶à´¦ÀíÆ÷µÄ·´±àÒëÆ÷ÏÖÔÚÓÐÁËÒ»¸öºÍWindowsһģһÑùµÄ Linux£¨ÃüÁîÐÐģʽ£©°æ±¾¡£

--------------------------------------------------------------------------------

#46 SolarWinds£ºÍøÂç·¢ÏÖ/¼à¿Ø/¹¥»÷ϵÁй¤¾ß
SolarWindsÉú²úºÍÏúÊÛÁËÐí¶àרҵµÄϵͳ¹ÜÀí¹¤¾ß¡£°²È«Ïà¹ØµÄ°üÀ¨Ðí¶àÍøÂç·¢ÏÖɨÃèÆ÷¡¢Ò»¸öSNMP±©Á¦ÆÆ½âÆ÷¡¢Â·ÓÉÆ÷ÃÜÂë½âÃÜÆ÷¡¢TCPÁ¬½ÓÖØÖóÌÐò¡¢×î¿ì×îÒ×ÓõÄÒ»¸ö·ÓÉÆ÷ÉèÖÃÏÂÔØºÍÉÏ´«³ÌÐòµÈµÈ¡£

--------------------------------------------------------------------------------

#47 Pwdump£ºÒ»¿îWindowsÃÜÂë»Ö¸´¹¤¾ß
Pwdump¿ÉÒÔ´ÓWindowsÖ÷»úÖÐÈ¡µÃNTLMºÍLanMan¹þÏ£Öµ£¬ÎÞÂÛϵͳÃÜÂëÊÇ·ñÆôÓá£Ëü»¹ÄÜÏÔʾϵͳÖдæÔÚµÄÀúÊ·ÃÜÂë¡£Êý¾ÝÊä³ö¸ñʽΪL0phtcrack¼æÈݸñʽ£¬Ò²¿ÉÒÔÒÔÎļþÐÎʽÊä³öÊý¾Ý¡£

--------------------------------------------------------------------------------

#48 LSoF£º´ò¿ªÎļþÁбí
ÕâÊÇÒ»¿îUnixƽ̨ÉϵÄÕï¶ÏºÍÑо¿¹¤¾ß£¬Ëü¿ÉÒÔÁоٵ±Ç°ËùÓнø³Ì´ò¿ªµÄÎļþÐÅÏ¢¡£ËüÒ²¿ÉÒÔÁоÙËùÓнø³Ì´ò¿ªµÄͨѶsocket£¨communications sockets£©¡£Windowsƽ̨ÉÏÀàËÆµÄ¹¤¾ßÓÐSysinternals¡£

--------------------------------------------------------------------------------

#49 RainbowCrack£º¼«¾ß´´ÐÂÐÔµÄÃÜÂë¹þÏ£ÆÆ½âÆ÷
RainbowCrackÊÇÒ»¿îʹÓÃÁË´ó¹æÄ£ÄÚ´æÊ±¼ä½»»»£¨large-scale time-memory trade-off£©¼¼ÊõµÄ¹þÏ£ÆÆ½â¹¤¾ß¡£´«Í³µÄ±©Á¦ÆÆ½â¹¤¾ß»á³¢ÊÔÿһ¸ö¿ÉÄܵÄÃÜÂë£¬ÒªÆÆ½â¸´ÔÓµÄÃÜÂë»áºÜ·Ñʱ¡£RainbowCrackÔËÓÃʱ¼ä½»»»¼¼Êõ¶ÔÆÆ½âʱ¼ä½øÐÐÔ¤¼ÆË㣬²¢½«¼ÆËã½á¹û´æÈëÒ»¸öÃû½Ð"rainbow tables"µÄ±íÀï¡£Ô¤¼ÆËãȷʵҲ»á»¨·Ñ½Ï³¤Ê±¼ä£¬µ«Ïà¶Ô±©Á¦ÆÆ½âÀ´ËµÔò¶Ì¶àÁË£¬¶øÇÒÒ»µ©Ô¤¼ÆËãÍê³ÉÆÆ½â¿ªÊ¼£¬ÄÇÃ´ÆÆ½âËùÐèÒªµÄʱ¼ä¾Í·Ç³£·Ç³£¶ÌÁË¡£

--------------------------------------------------------------------------------

#50 Firewalk£º¸ß¼¶Â·Óɸú×Ù¹¤¾ß
FirewalkʹÓÃÀàËÆÂ·Óɸú×ٵļ¼ÊõÀ´·ÖÎöIPÊý¾Ý°ü·´À¡£¬ÒÔÈ·¶¨Íø¹ØACL¹ýÂËÆ÷ÀàÐͺÍÍøÂç½á¹¹¡£©É COPY BY TTIAN.NET ©É Õâ¿î¾­µäµÄ¹¤¾ßÔÚ2002ÄêÊ®ÔÂÓÉscratchÖØÐ´¡£Õâ¿î¹¤¾ßµÄ´ó²¿·Ö¹¦ÄÜHping2µÄ·Óɸú×Ù²¿·ÖÒ²¶¼ÄÜʵÏÖ¡£

--------------------------------------------------------------------------------

#51 Angry IP Scanner£ºÒ»¿î·Ç³£¿ìµÄWindows IP ɨÃèÆ÷ºÍ¶Ë¿ÚɨÃèÆ÷
Angry IP ScannerÄܹ»ÊµÏÖ×î»ù±¾µÄWindowsƽ̨ÉϵÄÖ÷»ú·¢ÏֺͶ˿ÚɨÃè¡£ËüµÄÌå»ý·Ç³£µÄС£¬Ëü»¹¿ÉÒÔͨ¹ý¹ÒÔØ²å¼þ£¨a few plugins£©À´»ñµÃÖ÷»úÆäËüÐÅÏ¢¡£

--------------------------------------------------------------------------------

#52 RKHunter£ºÒ»¿îUnixƽ̨ÉϵÄRootkit¼ì²âÆ÷
RKHunterÊÇÒ»¿î¼ì²âÀýÈçrootkit¡¢ºóÃÅ¡¢Â©¶´µÈ¶ñÒâ³ÌÐòµÄ¹¤¾ß¡£Ëü²ÉÓöàÖÖ¼ì²âÊֶΣ¬°üÀ¨MD5¹þÏ£Öµ¶Ô±È¡¢rootkitsԭʼÎļþÃû¼ì²â¡¢ÎļþȨÏÞ¼ì²â£¬ÒÔ¼°LKMºÍKLDÄ£¿éÖеĿÉÒÉ×Ö·û´®¼ì²â¡£

--------------------------------------------------------------------------------

#53 Ike-scan£ºVPN¼ì²âÆ÷ºÍɨÃèÆ÷
Ike-scanÊÇÒ»¿î¼ì²âIKE£¨Internet Key Exchange£©·þÎñ´«ÊäÌØÐԵŤ¾ß£¬IKEÊÇVPNÍøÂçÖзþÎñÆ÷ºÍÔ¶³Ì¿Í»§¶Ë½¨Á¢Á¬½ÓµÄ»úÖÆ¡£ÔÚɨÃèµ½VPN·þÎñÆ÷µÄIPµØÖ·ºó£¬½«¸ÄÔì¹ýµÄIKEÊý¾Ý°ü·Ö·¢¸øVPNÍøÖеÄÿһÖ÷»ú¡£Ö»ÒªÊÇÔËÐÐIKEµÄÖ÷»ú¾Í»á·¢»Ø·´À¡À´Ö¤Ã÷Ëü´æÔÚ¡£´Ë¹¤¾ßÈ»ºó¶ÔÕâЩ·´À¡Êý¾Ý°ü½øÐмǼºÍÏÔʾ£¬²¢½«ËüÃÇÓëһϵÁÐÒÑÖªµÄ VPN²úÆ·Ö¸ÎÆ½øÐжԱȡ£Ike-scanµÄVPNÖ¸ÎÆ°üº¬À´×ÔCheckpoint¡¢Cisco¡¢Microsoft¡¢NortelºÍ WatchguardµÄ²úÆ·¡£

--------------------------------------------------------------------------------

#54 Arpwatch£º³ÖÐø¸ú×ÙÒÔÌ«Íø/IPµØÖ·Åä¶Ô£¬¿ÉÒÔ¼ì²é³öÖмäÈ˹¥»÷
ArpwatchÊÇLBNLÍøÂçÑо¿×é³öÆ·µÄÒ»¿î¾­µäµÄARPÖмäÈË£¨man-in-the-middle£©¹¥»÷¼ì²âÆ÷¡£Ëü¼ÇÂ¼ÍøÂ·»î¶¯µÄϵͳÈÕÖ¾£¬²¢½«Ìض¨µÄ±ä¸üͨ¹ýEmail±¨¸æ¸ø¹ÜÀíÔ±¡£ArpwatchʹÓÃLibPcapÀ´¼àÌý±¾µØÒÔÌ«Íø½Ó¿ÚARPÊý¾Ý°ü¡£

--------------------------------------------------------------------------------

#55 KisMAC£ºÒ»¿îMac OS XÉϵÄͼÐλ¯±»¶¯ÎÞÏßÍøÂçËÑѰÆ÷
Õâ¿îMac OS XÏ·dz£Á÷ÐеÄËÑѰÆ÷ºÍKismet¹¦Äܲ¶à£¬µ«ºÍKismet²»Í¬µÄÊÇKismetÊÇ»ùÓÚÃüÁîÐе쬶øKisMacÓÐºÜÆ¯ÁÁµÄͼÐλ¯½çÃæ£¬ÔÚOS XÉϳöÏÖµÃÒ²±ÈKismetÔç¡£Ëüͬʱ»¹ÌṩӳÉä¡¢Pcap¼æÈݸñʽÊý¾ÝÊäÈë¡¢µÇ¼ºÍһЩ½âÃÜ¡¢ÑéÖ¤ÆÆ½â¹¦ÄÜ¡£

--------------------------------------------------------------------------------

#56 OSSEC HIDS£ºÒ»¿î¿ªÔ´µÄ»ùÓÚÖ÷»úµÄÈëÇÖ¼ì²âϵͳ
OSSEC HIDSµÄÖ÷Òª¹¦ÄÜÓÐÈÕÖ¾·ÖÎö¡¢ÍêÕûÐÔ¼ì²é¡¢rootkit¼ì²â¡¢»ùÓÚʱ¼äµÄ¾¯±¨ºÍÖ÷¶¯ÏìÓ¦¡£³ýÁ˾ßÓÐÈëÇÖ¼ì²âϵͳ¹¦ÄÜÍ⣬Ëü»¹Ò»°ã±»ÓÃÔÚSEM/SIM £¨°²È«Ê¼þ¹ÜÀí£¨SEM£º Security Event Management£©/°²È«ÐÅÏ¢¹ÜÀí£¨SIM£ºSecurity Information Management£©£©½â¾ö·½°¸ÖС£ÒòÆäÇ¿´óµÄÈÕÖ¾·ÖÎöÒýÇæ£¬ISP£¨Internet service provider£©£¨ÍøÂç·þÎñÌṩÉÌ£©¡¢´óѧºÍÊý¾ÝÖÐÐÄÓÃÆä¼à¿ØºÍ·ÖÎöËûÃǵķÀ»ðǽ¡¢ÈëÇÖ¼ì²âϵͳ¡¢ÍøÒ³·þÎñºÍÑéÖ¤µÈ²úÉúµÄÈÕÖ¾¡£

--------------------------------------------------------------------------------

#57 Openbsd PF£ºOpenBSDÊý¾Ý°ü¹ýÂËÆ÷
ÏóÆäËüƽ̨ÉϵÄNetfilterºÍIP FilterÒ»Ñù£¬OpenBSDÓû§×î°®ÓÃPF£¬Õâ¾ÍÊÇËûÃǵķÀ»ðǽ¹¤¾ß¡£ËüµÄ¹¦ÄÜÓÐÍøÂçµØÖ·×ª»»¡¢¹ÜÀíTCP/IPͨѶ¡¢Ìṩ´ø¿í¿ØÖƺÍÊý¾Ý°ü·Ö¼¶¿ØÖÆ¡£Ëü»¹ÓÐһЩ¶îÍâµÄ¹¦ÄÜ£¬ÀýÈç±»¶¯²Ù×÷ϵͳ¼ì²â¡£PFÊÇÓɱàдOpenBSDµÄͬһÅúÈ˱àдµÄ£¬ËùÒÔÄúÍêÈ«¿ÉÒÔ·ÅÐÄʹÓã¬ËüÒѾ­¾­¹ýÁËºÜºÃµÄÆÀ¹À¡¢Éè¼ÆºÍ±àÂëÒÔ±ÜÃⱩ¶ÆäËü°ü¹ýÂËÆ÷£¨other  packet  filters£©ÉϵÄÀàËÆÂ©¶´¡£

--------------------------------------------------------------------------------

#58 Nemesis£º¼òµ¥µÄÊý¾Ý°ü×¢Èë
NemesisÏîÄ¿Éè¼ÆÄ¿µÄÊÇΪUnix/Linux£¨ÏÖÔÚÒ²°üº¬WindowsÁË£©Ìṩһ¸ö»ùÓÚÃüÁîÐеġ¢Ð¡Çɵġ¢ÈËÐÔ»¯µÄIP¶ÑÕ»¡£´Ë¹¤¾ßÌ××°°´Ð­Òé·ÖÀ࣬²¢ÔÊÐí¶ÔÒÑ×¢ÈëµÄÊý¾Ý°üÁ÷ʹÓüòµ¥µÄshell½Å±¾¡£Èç¹ûÄúϲ»¶Nemesis£¬ÄúÒ²Ðí¶ÔHping2Ò²»á¸ÐÐËȤ£¬ËüÃÇÊÇ»¥²¹µÄ¹ØÏµ¡£

--------------------------------------------------------------------------------

#59 Tor£ºÄäÃûÍøÂçͨѶϵͳ
TorÊÇÒ»¿îÃæÏòÏ£ÍûÌá¸ßÆäÍøÂ簲ȫÐԵĹã´ó×éÖ¯ºÍ´óÖڵŤ¾ß¼¯¡£TorµÄ¹¦ÄÜÓÐÄäÃûÍøÒ³ä¯ÀÀºÍ·¢²¼¡¢¼´Ê±ÐÅÏ¢¡¢irc¡¢sshÒÔ¼°ÆäËüһЩTCPЭÒéÏà¹ØµÄ¹¦ÄÜ¡£Tor»¹ÎªÈí¼þ¿ª·¢ÕßÌṩһ¸ö¿É¿ª·¢ÄÚÖÃÄäÃûÐÔ¡¢°²È«ÐÔºÍÆäËü˽ÃÜ»¯ÌØÐÔµÄÈí¼þƽ̨¡£ÔÚVidalia¿ÉÒÔ»ñµÃ¿çƽ̨µÄͼÐλ¯½çÃæ¡£

--------------------------------------------------------------------------------

#60 Knoppix£ºÒ»¿î¶àÓÃ;µÄCD»òDVD¹âÅÌ×ÔÆô¶¯ÏµÍ³
KnoppixÓÉһϵÁеäÐ͵ÄGNU/LinuxÈí¼þ×é³É£¬¿ÉÒÔ×Ô¶¯¼ì²âÓ²¼þ»·¾³£¬Ö§³Ö¶àÖÖÏÔ¿¨¡¢Éù¿¨¡¢SCSIºÍUSBÉ豸ÒÔ¼°ÆäËüÍâΧÉ豸¡£ KNOPPIX×÷Ϊһ¿î¸ßЧµÄLinux¹âÅÌϵͳ£¬¿ÉÒÔʤÈÎÀýÈç×ÀÃæÏµÍ³¡¢Linux½Ìѧ¹âÅÌ¡¢¾ÈԮϵͳµÈ¶àÖÖÓÃ;£¬¾­¹ýÕâ´ÎÔÚnmapÖе÷²é֤ʵ£¬ËüÒ²ÊÇÒ»¿îºÜСÇɵݲȫ¹¤¾ß¡£Èç¹ûҪʹÓøüרҵµÄLinux°²È«ÏµÍ³Çë¿´BackTrack¡£

--------------------------------------------------------------------------------

#61 ISS Internet Scanner£ºÓ¦ÓóÌÐò©¶´É¨ÃèÆ÷
Internet ScannerÊÇÓÉChristopher KlausÔÚ92Äê±àдµÄÒ»¿î¿ªÔ´µÄɨÃèÆ÷¹¤¾ß¡£ÏÖÔÚÕâ¿î¹¤¾ßÒѾ­Ñݱä³ÉÁËÒ»¸öÊÐÖµÉÏÒÚÃÀÔªÉú²úÎÞÊý°²È«²úÆ·µÄ¹«Ë¾¡£

--------------------------------------------------------------------------------

#62 Fport£ºFoundstone³öÆ·µÄ¼ÓÇ¿°ænetstat
Fport¿ÉÒÔ±¨¸æËùÓб¾µØ»úÉÏ´ò¿ªµÄTCP/IPºÍUDP¶Ë¿Ú£¬²¢ÏÔʾÊǺγÌÐò´ò¿ªµÄ¶Ë¿Ú¡£ËùÒÔÓÃËü¿ÉÒÔ¿ìËÙʶ±ð³öδ֪µÄ¿ª·Å¶Ë¿ÚÒÔ¼°ÓëÆäÏà¹ØµÄÓ¦ÓóÌÐò¡£ËüÖ»ÓÐWindows°æ±¾£¬µ«ÏÖÔںܶàUNIXϵͳÉϵÄnetstatÒ²ÌṩͬÑùµÄ¹¦ÄÜ£¨LinuxÇëÓÃ'netstat -pan'£©¡£SANS articleÓÐFportµÄʹÓÃ˵Ã÷ºÍ½á¹û·ÖÎö·½·¨¡£

--------------------------------------------------------------------------------

#63 chkrootkit£º±¾µØrootkit¼ì²âÆ÷
chkrootkitÊÇÒ»¿îСÇÉÒ×ÓõÄUnixƽ̨ÉϵĿÉÒÔ¼ì²â¶àÖÖrootkitÈëÇֵŤ¾ß¡£ËüµÄ¹¦ÄܰüÀ¨¼ì²âÎļþÐ޸ġ¢utmp/wtmp/last ÈÕÖ¾Ð޸ġ¢½çÃæÆÛÆ­£¨promiscuous interfaces£©¡¢¶ñÒâºËÐÄÄ£¿é£¨malicious kernel modules£©¡£

--------------------------------------------------------------------------------

#64 SPIKE Proxy£ºHTTP¹¥»÷
Spike ProxyÊÇÒ»¿î¿ªÔ´µÄÒÔ·¢ÏÖÍøÕ¾Â©¶´ÎªÄ¿µÄµÄHTTP´úÀí¡£ËüÊÇSpike Application Testing SuiteµÄÒ»²¿·Ö£¬¹¦ÄܰüÀ¨×Ô¶¯SQL×¢Èë¼ì²â¡¢ ÍøÕ¾ÅÀÐУ¨web site crawling£©¡¢µÇ¼ÁÐ±í±©Á¦ÆÆ½â¡¢Òç³ö¼ì²âºÍĿ¼ÓÎ×ß¼ì²â¡£

--------------------------------------------------------------------------------

#65 OpenBSD£º±»ÈÏΪÊÇ×ȫµÄ²Ù×÷ϵͳ
OpenBSDÊǽ«°²È«×÷Ϊ²Ù×÷ϵͳÊ×ÒªÈÎÎñµÄ²Ù×÷ϵͳ֮һ£¬ÉõÖÁÓÐʱ°²È«ÐÔ¼¶±ðÒª¸ßÓÚÒ×ÓÃÐÔ£¬ËùÒÔËü½¾È˵ݲȫÐÔÊDz»ÑÔ¶øÓ÷µÄ¡£OpenBSDÒ²·Ç³£ÖØÊÓϵͳµÄÎȶ¨ÐԺͶÔÓ²¼þµÄÖ§³ÖÄÜÁ¦¡£Ò²ÐíËûÃÇ×îΰ´óµÄ´´¾Ù¾ÍÊÇ´´ÔìÁËOpenSSH¡£ OpenBSDÓû§¶Ô´Ëϵͳ֮ÉϵÄ[pf]£¨OpenBSDÉϵķÀ»ðǽ¹¤¾ß£¬±¾ÁбíÖеÚ57λÓнéÉÜ£©Ò²°ý½±Óмѡ£

--------------------------------------------------------------------------------

#66 Yersinia£ºÒ»¿îÖ§³Ö¶àЭÒéµÄµ×²ã¹¥»÷¹¤¾ß
YersiniaÊÇÒ»¿îµ×²ãЭÒé¹¥»÷ÈëÇÖ¼ì²â¹¤¾ß¡£ËüÄÜʵʩÕë¶Ô¶àÖÖЭÒéµÄ¶àÖÖ¹¥»÷¡£ÀýÈç¶áÈ¡Éú³ÉÊ÷µÄ¸ù½ÇÉ«£¨Éú³ÉÊ÷ЭÒ飺Spanning Tree Protocol£©£¬Éú³ÉÐéÄâCDP£¨Cisco·¢ÏÖЭÒ飺Cisco Discovery Protocol£©ÁÚ¾Ó¡¢ÔÚÒ»¸öHSRP£¨Èȵȴý·ÓÉЭÒ飺Hot Standby Router Protocol£©»·¾³ÖÐÐéÄâ³ÉÒ»¸ö»î¶¯µÄ·ÓÉÆ÷¡¢ÖÆÔì¼ÙDHCP·´À¡£¬ÒÔ¼°ÆäËüµ×²ã¹¥»÷¡£

--------------------------------------------------------------------------------

#67 Nagios£ºÒ»¿î¿ªÔ´µÄÖ÷»ú¡¢·þÎñºÍÍøÂç¼à¿Ø³ÌÐò
NagiosÊÇÒ»¿îϵͳºÍÍøÂç¼à¿Ø³ÌÐò¡£Ëü¿ÉÒÔ¼àÊÓÄúÖ¸¶¨µÄÖ÷»úºÍ·þÎñ£¬µ±±»¼àÊÓ¶ÔÏó·¢ÉúÈκÎÎÊÌâ»òÎÊÌâ±»½â¾öʱ·¢³öÌáʾÐÅÏ¢¡£ËüµÄÖ÷Òª¹¦ÄÜÓÐ¼à¿ØÍøÂç·þÎñ£¨smtp¡¢pop3¡¢http¡¢nntp¡¢pingµÈµÈ£©¡¢¼à¿ØÖ÷»ú×ÊÔ´£¨½ø³Ì¸ºÔØ¡¢Ó²Å̿ռäʹÓÃÇé¿öµÈµÈ£©¡¢µ±·¢ÏÖÎÊÌâ»òÎÊÌâ½â¾öʱͨ¹ý¶àÖÖÐÎʽ·¢³öÌáʾÐÅÏ¢£¨Email¡¢Ñ°ºô»ú»òÆäËüÓû§¶¨ÒåµÄ·½Ê½£©¡£

--------------------------------------------------------------------------------

#68 Fragroute/Fragrouter£ºÒ»¿îÍøÂçÈëÇÖ¼ì²âÌӱܹ¤¾ß¼¯
Fragrouter ÊÇÒ»¿îµ¥Ïò·Ö¶Î·ÓÉÆ÷£¬·¢ËÍ£¨½ÓÊÕ£©IPÊý¾Ý°ü¶¼ÊÇ´Ó¹¥»÷Õßµ½Fragrouter£¬½«Êý¾Ý°üת»»³É·Ö¶ÎÊý¾ÝÁ÷·¢¸øÊܺ¦Õß¡£ºÜ¶àÈëÇÖ¼ì²âϵͳ¶¼²»ÄÜÖØ½¨Ò»¶Î±»ÊÓΪһ¸öÕûÌåµÄÍøÂçÊý¾Ý£¨Í¨¹ýIP·Ö¶ÎºÍTCPÁ÷ÖØ×飩£¬ÏêÇéÇë¼ûÕâÆªÎÄÕ£¨this classic paper£©¡£Fragrouter¿ÉÒÔ°ïÖúº§¿ÍÔÚÌÓ±ÜÈëÇÖ¼ì²âºó·¢Æð»ùÓÚIPµÄ¹¥»÷¡£ËüÊÇDug Song³öÆ·µÄNIDSbenchÌ××°ÖеÄÒ»²¿·Ö¡£FragrouteÊÇDug song³öÆ·µÄÁíÒ»¿îºÍFragrouterÏàËÆµÄ¹¤¾ß¡£

--------------------------------------------------------------------------------

#69 X-scan£ºÒ»¿îÍøÂç©¶´É¨ÃèÆ÷
Ò»¿î¶àÏ̡߳¢Ö§³Ö²å¼þµÄ©¶´É¨ÃèÆ÷¡£X-ScanÖ÷Òª¹¦ÄÜÓÐÈ«ÃæÖ§³ÖNASL£¨Nessus¹¥»÷½Å±¾ÓïÑÔ£ºNessus Attack Scripting Language£©¡¢¼ì²â·þÎñÀàÐÍ¡¢Ô¶³Ì²Ù×÷ϵͳÀàÐÍ£¨°æ±¾£©¼ì²â¡¢ÈõÓû§Ãû/ÃÜÂëÆ¥ÅäµÈµÈ¡£×îа汾¿ÉÒÔÔÚÕâÀï»ñÈ¡¡£Çë×¢ÒâÕâÊÇÒ»¸öÖÐÎÄÍøÕ¾£¨Ô­ÎÄΪӢÎÄ£¬ËùÒÔÔ­ÎÄ×÷ÕßÌáÐÑÓ¢ÎĶÁÕßÕâÊǸöÖÐÎÄÍøÕ¾£©¡£

--------------------------------------------------------------------------------

#70 Whisker/libwhisker£ºRain.Forest.Puppy³öÆ·µÄCGI©¶´É¨ÃèÆ÷ºÍ©¶´¿â
LibwhiskerÊÇÒ»¿îPerlÄ£°å¼¯ÓÃÀ´²âÊÔHTTP¡£ËüµÄ¹¦ÄÜÊDzâÊÔHTTP·þÎñÆ÷ÉÏÊÇ·ñ´æÔÚÐí¶àÒÑÖªµÄ°²È«Â©¶´£¬ÌرðÊÇCGI©¶´¡£ WhiskerÊÇÒ»¿î»ùÓÚlibwhiskerµÄɨÃèÆ÷£¬µ«ÊÇÏÖÔÚ´ó¼Ò¶¼Ç÷ÏòÓÚʹÓÃNikto£¬ËüÒ²ÊÇ»ùÓÚlibwhiskerµÄ¡£

--------------------------------------------------------------------------------

#71 Socat£ºË«ÏòÊý¾Ý´«ÊäÖмÌ
ÀàËÆÓÚNetcatµÄ¹¤¾ß£¬¿ÉÒÔ¹¤×÷ÓÚÐí¶àЭÒéÖ®ÉÏ£¬ÔËÐÐÓÚÎļþ¡¢¹ÜµÀ¡¢É豸£¨ÖÕ¶Ë»òµ÷ÖÆ½âµ÷Æ÷µÈµÈ£©¡¢socket£¨Unix¡¢IP4¡¢IP6- raw¡¢UDP¡¢TCP£©¡¢Socks4¿Í»§¶Ë¡¢´úÀí·þÎñÆ÷Á¬½Ó¡¢»òÕßSSLµÈµÈÖ®¼ä¡£ËüÌṩforking¡¢loggingºÍdumping£¬ºÍ²»Í¬Ä£Ê½µÄ½»»¥Ê½´¦ÀíͨѶ£¬ÒÔ¼°¸ü¶àÆäËüÑ¡Ïî¡£Ëü¿ÉÒÔ×÷ΪTCPÖм̣¨µ¥´Î´¥·¢£ºone-shot»òÕßdaemon£¨InternetÖÐÓÃÓÚÓʼþÊÕ·¢µÄºǫ́³ÌÐò£©£©¡¢×÷Ϊ»ùÓÚdaemonµÄ¶¯Ì¬Sockes»¯£¨socksifier£©¡¢×÷ΪUnixƽ̨ÉÏsocketsµÄshell½Ó¿Ú¡¢×÷ΪIP6Öм̡¢½«ÃæÏòTCPµÄ³ÌÐòÖØ¶¨Ïò³É´®ÐÐÏß·£¨Serial Line£©³ÌÐò¡¢»òÕß½¨Á¢ÓÃÀ´ÔËÐпͻ§¶Ë»ò·þÎñÆ÷´øÓÐÍøÂçÁ¬½ÓµÄshell½Å±¾Ïà¹Ø°²È«»·¾³£¨suºÍchroot£©¡£

--------------------------------------------------------------------------------

#72 Sara£º°²È«ÆÀÉóÑо¿ÖúÊÖ
SARAÊÇÒ»¿îÔ´ÓÚinfamous SATANɨÃèÆ÷µÄ©¶´ÆÀ¹À¹¤¾ß¡£´Ë¹¤¾ß´óÔ¼Á½¸öÔ¸üÐÂÒ»´Î£¬³öÆ·´Ë¹¤¾ßµÄ¿ªÔ´ÉçÇø»¹Î¬»¤×ÅNmapºÍSamba¡£

--------------------------------------------------------------------------------

#73 QualysGuard£º»ùÓÚÍøÒ³µÄ©¶´É¨ÃèÆ÷
ÔÚÍøÕ¾ÉÏÒÔ·þÎñÐÎʽ·¢²¼£¬ËùÒÔQualysGuardûÓпª·¢¡¢Î¬»¤ºÍÉý¼¶Â©¶´¹ÜÀíÈí¼þ»òad-hoc°²È«Ó¦ÓóÌÐòµÄ¸ºµ£¡£¿Í»§¶Ë¿ÉÒÔ°²È«µÄͨ¹ýÒ»¸ö¼òµ¥Ò×ÓõÄÍøÒ³·ÃÎÊ QualysGuard¡£QualysGuardº¬ÓÐ5000ÖÖÒÔÉϵĵ¥Ò»Â©¶´¼ì²é£¬Ò»¸ö»ùÓÚÍÆÀíµÄɨÃèÒýÇæ£¬¶øÇÒ©¶´ÖªÊ¶¿â×Ô¶¯ÌìÌìÉý¼¶¡£

--------------------------------------------------------------------------------

#74 ClamAV£ºÒ»¿îUNIXƽ̨ÉϵĻùÓÚGPL£¨Í¨Óù«¿ªÐí¿ÉÖ¤£ºGeneral Public License£©µÄ·´²¡¶¾¹¤¾ß¼¯
ClamAVÊÇÒ»¿îÇ¿´óµÄ×¢ÖØÓʼþ·þÎñÆ÷¸½¼þɨÃèµÄ·´²¡¶¾É¨ÃèÆ÷¡£Ëüº¬ÓÐÒ»¸öСÇɵĿÉÉý¼¶µÄ¶àÏß³Ìdaemon¡¢Ò»¸öÃüÁîÐÐɨÃèÆ÷ºÍ×Ô¶¯Éý¼¶¹¤¾ß¡£ Clam AntiVirus»ùÓÚAntiVirus package·¢²¼µÄ¿ªÔ´²¡¶¾¿â£¬ÄúÒ²¿ÉÒÔ½«´Ë²¡¶¾¿âÓ¦ÓÃÓÚÄú×Ô¼ºµÄÈí¼þÖУ¬µ«ÊDZðÍüÁ˾­³£Éý¼¶¡£

--------------------------------------------------------------------------------

#75 cheops / cheops-ng£ºÌṩÐí¶à¼òµ¥µÄÍøÂ繤¾ß£¬ÀýÈç±¾µØ»òÔ¶³ÌÍøÂçÓ³ÉäºÍʶ±ð¼ÆËã»ú²Ù×÷ϵͳ
CheopsÌṩÐí¶àºÃÓõÄͼÐλ¯Óû§½çÃæÍøÂ繤¾ß¡£Ëüº¬ÓÐÖ÷»ú/ÍøÂç·¢ÏÖ¹¦ÄÜ£¬Ò²¾ÍÊÇÖ÷»ú²Ù×÷ϵͳ¼ì²â¡£Cheops-ngÓÃÀ´Ì½²éÖ÷»úÉÏÔËÐеķþÎñ¡£Õë¶ÔijЩ·þÎñ£¬cheops-ng¿ÉÒÔ̽²éµ½ÔËÐзþÎñµÄÓ¦ÓóÌÐòÊÇʲô£¬ÒÔ¼°³ÌÐòµÄ°æ±¾ºÅ¡£CheopsÒѾ­Í£Ö¹¿ª·¢ºÍά»¤£¬ËùÒÔÇë×îºÃʹÓÃcheops -ng¡£

--------------------------------------------------------------------------------

#76 Burpsuite£ºÒ»¿îÍøÒ³³ÌÐò¹¥»÷¼¯³Éƽ̨
Burp suiteÔÊÐí¹¥»÷Õß½áºÏÊÖ¹¤ºÍ×Ô¶¯¼¼Êõȥö¾Ù¡¢·ÖÎö¡¢¹¥»÷ÍøÒ³³ÌÐò¡£ÕâЩ²»Í¬µÄburp¹¤¾ßͨ¹ýЭͬ¹¤×÷£¬ÓÐЧµÄ·ÖÏíÐÅÏ¢£¬Ö§³ÖÒÔijÖÖ¹¤¾ßÖеÄÐÅϢΪ»ù´¡¹©ÁíÒ»ÖÖ¹¤¾ßʹÓôӶø·¢¶¯¹¥»÷¡£

--------------------------------------------------------------------------------

#77 Brutus£ºÒ»¿îÍøÂçÑéÖ¤±©Á¦ÆÆ½âÆ÷
Õâ¿îWindowsƽ̨Éϵı©Á¦ÆÆ½âÆ÷ͨ¹ý×Öµä²Â²âÔ¶³ÌÏµÍ³ÍøÂç·þÎñÃÜÂë¡£ËüÖ§³ÖHTTP¡¢POP3¡¢FTP¡¢SMB¡¢TELNET¡¢IMAP¡¢NTPµÈµÈ¡£²»¿ª·ÅÔ´Â룬UNIXƽ̨ÉϵÄÀàËÆÈí¼þÓÐTHC Hydra¡£

--------------------------------------------------------------------------------

#78 Unicornscan£ºÁíÀà¶Ë¿ÚɨÃèÆ÷
UnicornscanÊÇÒ»¿îͨ¹ý³¢ÊÔÁ¬½ÓÓû§ÏµÍ³£¨User-land£©·Ö²¼Ê½TCP/IP¶ÑÕ»»ñµÃÐÅÏ¢ºÍ¹ØÁª¹ØÏµµÄ¶Ë¿ÚɨÃèÆ÷¡£ËüÊÔͼΪÑо¿ÈËÔ±ÌṩһÖÖ¿ÉÒԴ̼¤TCP/IPÉ豸ºÍÍøÂç²¢¶ÈÁ¿·´À¡µÄ³¬¼¶½Ó¿Ú¡£ËüÖ÷Òª¹¦ÄܰüÀ¨´øÓÐËùÓÐTCP±äÖÖ±ê¼ÇµÄÒì²½ÎÞ״̬TCPɨÃè¡¢Òì²½ÎÞ״̬TCP±êÖ¾²¶»ñ¡¢Í¨¹ý·ÖÎö·´À¡ÐÅÏ¢»ñÈ¡Ö÷¶¯/±»¶¯Ô¶³Ì²Ù×÷ϵͳ¡¢Ó¦ÓóÌÐò¡¢×é¼þÐÅÏ¢¡£ËüºÍScanrandÒ»Ñù¶¼ÊÇÁíÀàɨÃèÆ÷¡£

--------------------------------------------------------------------------------

#79 Stunnel£ºÓÃ;¹ã·ºµÄSSL¼ÓÃÜ·â×°Æ÷
stunnelÓÃÀ´¶ÔÔ¶³Ì¿Í»§¶ËºÍ±¾µØ»ú£¨¿ÉÆô¶¯inetdµÄ£ºinetd-startable£©»òÔ¶³Ì·þÎñÆ÷¼äµÄSSL¼ÓÃܽøÐзâ×°¡£Ëü¿ÉÒÔÔÚ²»ÐÞ¸ÄÈκδúÂëµÄÇé¿öÏ£¬ÎªÒ»°ãµÄʹÓÃinetd daemonµÄPOP2¡¢POP3ºÍIMAP·þÎñÆ÷Ìí¼ÓSSL¹¦ÄÜ¡£Ëüͨ¹ýʹÓÃOpenSSL»òSSLeay¿â½¨Á¢SSLÁ¬½Ó¡£

--------------------------------------------------------------------------------

#80 Honeyd£ºÄú˽È˵ÄÃÛ¹Þϵͳ
HoneydÊÇÒ»¸ö¿ÉÒÔÔÚÍøÂçÉÏ´´½¨ÐéÄâÖ÷»úµÄСÐÍdaemon¡£¿ÉÒÔ¶Ô´ËÐéÄâÖ÷»úµÄ·þÎñºÍTCP½øÐÐÅäÖã¬Ê¹ÆäÔÚÍøÂçÖп´ÆðÀ´ÊÇÔÚÔËÐÐijÖÖ²Ù×÷ϵͳ¡£ Honeyd¿ÉÒÔʹһ̨Ö÷»úÔÚ¾ÖÓòÍøÖÐÄ£Äâ³ö¶à¸öµØÖ·ÒÔÂú×ãÍøÂçʵÑé»·¾³µÄÒªÇó¡£ÐéÄâÖ÷»ú¿ÉÒÔ±»pingͨ£¬Ò²¿ÉÒÔ¶ÔËüÃǽøÐзÓɸú×Ù¡£Í¨¹ý¶ÔÅäÖÃÎļþ½øÐÐÉèÖÿÉÒÔʹÐéÄâ¼ÆËã»úÄ£ÄâÔËÐÐÈκηþÎñ¡£Ò²¿ÉÒÔʹÓ÷þÎñ´úÀíÌæ´ú·þÎñÄ£Äâ¡£ËüµÄ¿âÓкܶ࣬ËùÒÔ±àÒëºÍ°²×°Honeyd±È½ÏÄÑ¡£

--------------------------------------------------------------------------------

Roc.Ken ·¢±íÓÚ 2006-9-16 21:37

--------------------------------------------------------------------------------

#81 Fping£ºÒ»¸ö¶àÖ÷»úͬʱpingɨÃè³ÌÐò
fpingÊÇÒ»¿îÀàËÆping£¨1£©£¨ping£¨1£©ÊÇͨ¹ýICMP£¨ÍøÂç¿ØÖÆÐÅϢЭÒéInternet Control Message Protocol£©Ð­Ò黨¸´ÇëÇóÒÔ¼ì²âÖ÷»úÊÇ·ñ´æÔÚ£©µÄ³ÌÐò¡£FpingÓëping²»Í¬µÄµØ·½ÔÚÓÚ£¬Äú¿ÉÒÔÔÚÃüÁîÐÐÖÐÖ¸¶¨ÒªpingµÄÖ÷»úÊýÁ¿·¶Î§£¬Ò²¿ÉÒÔÖ¸¶¨º¬ÓÐÒªpingµÄÖ÷»úÁбíÎļþ¡£ÓëpingÒªµÈ´ýijһÖ÷»úÁ¬½Ó³¬Ê±»ò·¢»Ø·´À¡ÐÅÏ¢²»Í¬£¬fping¸øÒ»¸öÖ÷»ú·¢ËÍÍêÊý¾Ý°üºó£¬ÂíÉϸøÏÂÒ»¸öÖ÷»ú·¢ËÍÊý¾Ý°ü£¬ÊµÏÖ¶àÖ÷»úͬʱping¡£Èç¹ûijһÖ÷»úpingͨ£¬Ôò´ËÖ÷»ú½«±»´òÉϱê¼Ç£¬²¢´ÓµÈ´ýÁбíÖÐÒÆ³ý£¬Èç¹ûûpingͨ£¬ËµÃ÷Ö÷»úÎÞ·¨µ½´ï£¬Ö÷»úÈÔÈ»ÁôÔڵȴýÁбíÖУ¬µÈ´ýºóÐø²Ù×÷¡£

--------------------------------------------------------------------------------

#82 BASE£º»ù´¡·ÖÎöºÍ°²È«ÒýÇæ£¨Basic Analysis and Security Engine£©
BASEÊÇÒ»¿î»ùÓÚPHPµÄ¿ÉÒÔËÑË÷ºÍʵʩ°²È«Ê¼þµÄ·ÖÎöÒýÇæ£¬ËýµÄ°²È«Ê¼þÊý¾Ý¿âÀ´Ô´ÓںܶàÈëÇÖ¼ì²âϵͳ¡¢·À»ðǽ¡¢ÍøÂç¼ì²â¹¤¾ßÉú³ÉµÄ°²È«Ê¼þ¡£ËüµÄ¹¦ÄܰüÀ¨Ò»¸ö²éÕÒÉú³ÉÆ÷ºÍËÑË÷½çÃæ£¬ÓÃÀ´ËÑË÷©¶´£»Ò»¸öÊý¾Ý°üä¯ÀÀÆ÷£¨½âÂëÆ÷£©£»»¹¿ÉÒÔ¸ù¾Ýʱ¼ä¡¢´«¸ÐÆ÷¡¢Ðźš¢Ð­ÒéºÍIPµØÖ·µÈÉú³É״̬ͼ¡£

--------------------------------------------------------------------------------

#83 Argus£ºIPÍøÂçÊÂÎñÆÀÉ󹤾ß
ArgusÊÇÒ»¿î¹Ì¶¨Ä£Ð͵ÄʵʱµÄÁ÷Á¿¼àÊÓÆ÷£¬ÓÃÀ´¸ú×ٺͱ¨¸æÊý¾ÝÍøÂçͨѶÁ÷ÖÐËùÓÐÊÂÎñµÄ״̬ºÍÐÔÄÜ¡£ArgusΪÁ÷Á¿ÆÀ¹À¶¨ÖÆÁËÒ»ÖÖÊý¾Ý¸ñʽ£¬ÆäÖаüÀ¨Á¬Í¨ÐÔ¡¢ÈÝÁ¿¡¢ÇëÇó¡¢¶ª°ü¡¢ÑӳٺͲ¨¶¯£¬ÕâЩ¾Í×÷ΪÆÀ¹ÀÊÂÎñµÄÔªËØ¡£ÕâÖÖÊý¾Ý¸ñʽÁé»îÒ×À©Õ¹£¬Ö§³Ö³£ÓÃÁ÷Á¿±êʶºÍ¶ÈÁ¿£¬»¹¿ÉÒÔ»ñµÃÖ¸¶¨µÄÓ¦ÓóÌÐò/ЭÒéµÄÐÅÏ¢¡£

--------------------------------------------------------------------------------

#84 Wikto£ºÍøÒ³·þÎñÆ÷ÆÀ¹À¹¤¾ß
WiktoÊÇÒ»¿î¼ì²éÍøÒ³·þÎñÆ÷©¶´µÄ¹¤¾ß¡£ËüºÍNiktoÀàËÆ£¬µ«ÊÇÌí¼ÓÁ˺ܶàÆäËü¹¦ÄÜ£¬ÀýÈçÒ»¸öÕûºÏÁËGoogleµÄºǫ́·¢¾òÆ÷¡£Wikto¹¤×÷ÓÚMS ..NET»·¾³Ï£¬ÏÂÔØ´ËÈí¼þºÍÔ´´úÂëÐèҪע²á¡£

--------------------------------------------------------------------------------

#85 Sguil£ºÍøÂ簲ȫ¼à¿ØÆ÷ÃüÁîÐзÖÎöÆ÷
Sguil£¨°´sgweel·¢Òô£©ÊÇÓÉnetwork security analysts³öÆ·µÄÍøÂ簲ȫ·ÖÎö¹¤¾ß¡£SguilµÄÖ÷Òª×é¼þ¾ÍÊÇÒ»¸öSnort/barnyardʵʱʼþÏÔʾ½çÃæ¡£Ëü»¹°üº¬Ò»Ð©ÍøÂ簲ȫ¼à¿ØµÄ¸¨Öú¹¤¾ßºÍʼþÇý¶¯µÄÈëÇÖ¼ì²âϵͳ·ÖÎö±¨¸æ¡£

--------------------------------------------------------------------------------

#86 Scanrand£ºÒ»¸öÒì³£¿ìËÙµÄÎÞ×´Ì¬ÍøÂç·þÎñºÍÍØÆÓ½á¹¹·¢ÏÖϵͳ
ScanrandÊÇÒ»¿îÀàËÆUnicornscanµÄÎÞ״̬Ö÷»ú·¢ÏֺͶ˿ÚɨÃ蹤¾ß¡£ËüÒÔ½µµÍ¿É¿¿ÐÔÀ´»»È¡Òì³£¿ìµÄËÙ¶È£¬»¹Ê¹ÓÃÁ˼ÓÃܼ¼Êõ·ÀÖ¹ºÚ¿ÍÐÞ¸ÄɨÃè½á¹û¡£´Ë¹¤¾ßÊÇDan Kaminsky³öÆ·µÄPaketto KeiretsuµÄÒ»²¿·Ö¡£

--------------------------------------------------------------------------------

#87 IP Filter£ºÐ¡ÇɵÄUNIXÊý¾Ý°ü¹ýÂËÆ÷
IP FilterÊÇÒ»¿îÈí¼þ°ü£¬¿ÉÒÔʵÏÖÍøÂçµØÖ·×ª»»£¨network address translation£©£¨NAT£©»òÕß·À»ðǽ·þÎñµÄ¹¦ÄÜ¡£Ëü¿ÉÒÔ×÷ΪUNIXµÄÒ»¸öºËÐÄÄ£¿é£¬Ò²¿ÉÒÔ²»Ç¶ÈëºËÐÄ£¬Ç¿ÁÒÍÆ¼ö½«Æä×÷ΪUNIXµÄºËÐÄÄ£¿é¡£°²×°ºÍΪϵͳÎļþ´ò²¹¶¡ÒªÊ¹Óýű¾¡£IP FilterÄÚÖÃÓÚFreeBSD¡¢NetBSDºÍSolarisÖС£OpenBSD¿ÉÒÔʹÓÃOpenbsd PF£¬LinuxÓû§¿ÉÒÔʹÓÃNetfilter¡£

--------------------------------------------------------------------------------

#88 Canvas£ºÒ»¿îÈ«ÃæµÄ©¶´¼ì²â¿ò¼Ü
CanvasÊÇAitel's ImmunitySec³öÆ·µÄÒ»¿î©¶´¼ì²â¹¤¾ß¡£Ëü°üº¬150¸öÒÔÉϵÄ©¶´£¬Ëü±ÈCore Impact±ãÒËһЩ£¬µ«ÊÇËüÒ²¼ÛÖµÊýǧÃÀÔª¡£ÄúÒ²¿ÉÒÔͨ¹ý¹ºÂòVisualSploit PluginʵÏÖÔÚͼÐνçÃæÉÏͨ¹ýÍÏ×§¾Í¿ÉÒÔÉú³É©¶´¡£Canvasż¶ûÒ²»á·¢ÏÖһЩODay©¶´¡£

--------------------------------------------------------------------------------

#89 VMware£º¶àƽ̨ÐéÄâÈí¼þ
VMwareÐéÄâÈí¼þÔÊÐíÄúÔÚÒ»¸öϵͳÖÐÐéÄâÔËÐÐÁíÒ»¸öϵͳ¡£Õâ¶ÔÓÚ°²È«×¨¼ÒÔÚ¶àÆ½Ì¨Ï²âÊÔ´úÂëºÍ©¶´·Ç³£ÓÐÓá£ËüÖ»ÔËÐÐÔÚWindowsºÍLinuxƽ̨ÉÏ£¬µ«Ëü¿ÉÒÔÐéÄâÔËÐм¸ºõËùÓеÄx86²Ù×÷ϵͳ¡£Ëü¶Ô½¨Á¢É³Ï䣨sandboxes£©Ò²·Ç³£ÓÐÓá£ÔÚVMwareÐéÄâϵͳÉϸÐȾÁ˶ñÒâÈí¼þ²»»áÓ°Ïìµ½ËÞÖ÷»úÆ÷£¬¿ÉÒÔͨ¹ý¼ÓÔØ¿ìÕÕÎļþ»Ö¸´±»¸ÐȾÁ˵ÄÐéÄâϵͳ¡£VMware²»ÄÜ´´½¨ÐéÄâϵͳµÄ¾µÏñÎļþ¡£VMware×î½ü¸Õ¸ÕÐû²¼Ãâ·Ñ¡£ÁíÒ»¿îÔÚLinuxÏÂÆÄÊÜÖõÄ¿µÄÐéÄâÆ½Ì¨Èí¼þÊÇXen¡£

--------------------------------------------------------------------------------

#90 Tcptraceroute£ºÒ»¿î»ùÓÚTCPÊý¾Ý°üµÄ·Óɸú×Ù¹¤¾ß
ÏÖ´úÍøÂç¹ã·ºÊ¹Ó÷À»ðǽ£¬µ¼Ö´«Í³Â·Óɸú×Ù¹¤¾ß·¢³öµÄ£¨ICMPÓ¦´ð£¨ICMP echo£©»òUDP£©Êý¾Ý°ü¶¼±»¹ýÂ˵ôÁË£¬ËùÒÔÎÞ·¨½øÐÐÍêÕûµÄ·Óɸú×Ù¡£¾¡¹ÜÈç´Ë£¬Ðí¶àÇé¿öÏ£¬·À»ðǽ»á×¼Ðí·´Ïò£¨inbound£©TCPÊý¾Ý°üͨ¹ý·À»ðǽµ½´ïÖ¸¶¨¶Ë¿Ú£¬ÕâЩ¶Ë¿ÚÊÇÖ÷»úÄÚ·À»ðǽ±³ºóµÄһЩ³ÌÐòºÍÍâ½çÁ¬½ÓÓõġ£Í¨¹ý·¢ËÍTCP SYNÊý¾Ý°üÀ´´úÌæUDP»òÕßICMPÓ¦´ðÊý¾Ý°ü£¬tcptraceroute¿ÉÒÔ´©Í¸´ó¶àÊý·À»ðǽ¡£

--------------------------------------------------------------------------------

#91 SAINT£º°²È«¹ÜÀí×ÛºÏÍøÂ繤¾ß
SAINTÏóNessus¡¢ISS Internet ScannerºÍRetinaÒ»Ñù£¬Ò²ÊÇÒ»¿îÉÌҵ©¶´ÆÀ¹À¹¤¾ß¡£ËüÒÔǰÊÇÔËÐÐÔÚUNIXϵͳ֮ÉϵÄÃâ·Ñ¿ªÔ´¹¤¾ß£¬µ«ÏÖÔÚÊÕ·ÑÁË¡£

--------------------------------------------------------------------------------

#92 OpenVPN£ºÈ«¹¦ÄÜSSL VPN½â¾ö·½°¸
OpenVPNÊÇÒ»¿î¿ªÔ´µÄSSL VPN¹¤¾ß°ü£¬Ëü¿ÉÒÔʵÏֺܶ๦ÄÜ£¬°üÀ¨Ô¶³ÌµÇ¼¡¢Õ¾¶ÔÕ¾VPN¡¢WiFi°²È«¡¢´øÓиºÔØÆ½ºâµÄÆóÒµ¼¶Ô¶³ÌµÇ¼½â¾ö·½°¸¡¢½Úµã¿ØÖÆÒƽ»£¨failover£©¡¢ÑÏÃܵķÃÎÊ¿ØÖÆ¡£OpenVPNÔËÐÐÓÚOSI 2²ã»ò3²ã°²È«ÍøÂ磬ʹÓÃSSL/TLS¹¤Òµ±ê׼ЭÒ飬֧³ÖÁé»îµÄ»ùÓÚÖ¤Êé¡¢ÖÇÄÜ¿¨¡¢¶þÔªÑéÖ¤µÄ¿Í»§¶ËÑéÖ¤·½·¨£¬ÔÊÐíÔÚVPNÐéÄâ½Ó¿ÚÉÏʹÓ÷À»ðǽ¹æÔò×÷ΪÓû§»òÖ¸¶¨Óû§×éµÄ·ÃÎÊ¿ØÖƲßÂÔ¡£OpenVPNʹÓÃOpenSSL×÷ΪÆäÊ×Ñ¡¼ÓÃÜ¿â

--------------------------------------------------------------------------------

#93 OllyDbg£º»ã±à¼¶Windowsµ÷ÊÔÆ÷
OllyDbgÊÇÒ»¿î΢ÈíWindowsƽ̨ÉϵÄ32λ»ã±à¼¶µÄ·ÖÎöµ÷ÊÔÆ÷¡£ÒòÆäÖ±½Ó¶Ô¶þ½øÖÆ´úÂë½øÐзÖÎö£¬ËùÒÔÔÚÎÞ·¨»ñµÃÔ´´úÂëµÄʱºòËü·Ç³£ÓÐÓᣠOllyDbgº¬ÓÐÒ»¸öͼÐÎÓû§½çÃæ£¬ËüµÄ¸ß¼¶´úÂë·ÖÎöÆ÷¿ÉÒÔʶ±ð¹ý³Ì¡¢Ñ­»·¡¢APIµ÷Óᢽ»»»¡¢±í¡¢³£Á¿ºÍ×Ö·û´®£¬Ëü¿ÉÒÔ¼ÓÔØÔËÐÐʱ³ÌÐò£¬Ö§³Ö¶àÏ̡߳£ OllyDbg¿ÉÒÔÃâ·ÑÏÂÔØ£¬µ«²»¿ªÔ´¡£

--------------------------------------------------------------------------------

#94 Helix£ºÒ»¿î×¢ÖØ°²È«·À»¤µÄLinux°æ±¾
HelixÊÇÒ»¿î×Ô¶¨Òå°æ±¾µÄKnoppix×ÔÆô¶¯Linux¹âÅÌϵͳ¡£HelixÔ¶²»Ö¹ÊÇÒ»ÕÅ×ÔÆô¶¯¹âÅÌ¡£³ýÁ˹âÅÌÆô¶¯µ½×Ô¶¨ÒåµÄLinux»·¾³£¬»¹¾ßÓг¬Ç¿µÄÓ²¼þÖ§³ÖÄÜÁ¦£¬°üº¬Ðí¶àÓ¦¸¶¸÷ÖÖÎÊÌâµÄÈí¼þ¡£Helix¾¡Á¿ÉٵĽӴ¥Ö÷»úÈíÓ²×ÊÔ´¡£Helix²»×Ô¶¯¼ÓÔØ½»»»£¨swap£©¿Õ¼ä£¬²»×Ô¶¯¼ÓÔØÆäËüÈκÎÍâΧÉ豸¡£Helix»¹¿ÉÒÔ×Ô¶¯¼ÓÔØWindows£¬ÒÔÓ¦¶ÔÒâÍâÇé¿ö¡£

--------------------------------------------------------------------------------

#95 Bastille£ºLinux¡¢Mac OS XºÍHP-UXµÄ°²È«¼ÓÇ¿½Å±¾
Bastilleʹ²Ù×÷ϵͳ¹ÌÈô½ðÌÀ£¬¼õÉÙϵͳÔâÊÜΣÏյĿÉÄÜ£¬Ôö¼ÓϵͳµÄ°²È«ÐÔ¡£Bastille»¹¿ÉÒÔÆÀ¹Àϵͳµ±Ç°µÄ°²È«ÐÔ£¬ÖÜÆÚÐԵı¨¸æÃ¿Ò»ÏȫÉèÖü°Æä¹¤×÷Çé¿ö¡£Bastilleµ±Ç°Ö§³ÖRed Hat£¨Fedora Core¡¢EnterpriseºÍNumbered/Classic°æ±¾£©¡¢SUSE¡¢Debian¡¢GentooºÍMandrakeÕâЩLinux°æ±¾£¬»¹ÓÐHP-UXºÍMac OS X¡£BastilleÖ¼ÔÚʹϵͳÓû§ºÍ¹ÜÀíÔ±Á˽âÈçºÎ¼Ó¹Ìϵͳ¡£ÔÚÆäĬÈϵÄ×î¼á¹ÌģʽÏ£¬Ëü²»¶ÏµÄѯÎÊÓû§ÎÊÌ⣬²¢¶ÔÕâЩÎÊÌâ¼ÓÒÔ½âÊÍ£¬¸ù¾ÝÓû§¶ÔÎÊÌⲻͬµÄ»Ø´ðÑ¡Ôñ²»Í¬µÄÓ¦¶Ô²ßÂÔ¡£ÔÚÆäÆÀ¹ÀģʽÏ£¬Ëü»áÉú³ÉÒ»·Ý±¨¸æÖ¼ÔÚ¸æËßÓû§ÓÐÄÄЩ°²È«ÉèÖÿÉÓã¬Í¬Ê±Ò²ÌáʾÓû§ÄÄЩÉèÖñ»¼Ó¹ÌÁË¡£

--------------------------------------------------------------------------------

#96 Acunetix Web Vulnerability Scanner£ºÉÌҵ©¶´É¨ÃèÆ÷
Acunetix WVS×Ô¶¯¼ì²éÄúµÄÍøÒ³³ÌÐò©¶´£¬ÀýÈçSQL×¢Èë¡¢¿çÍøÕ¾½Å±¾ºÍÑéÖ¤Ò³ÃæÈõÃÜÂëÆÆ½â¡£Acunetix WVSÓÐ×ŷdz£ÓѺõÄÓû§½çÃæ£¬»¹¿ÉÒÔÉú³É¸öÐÔ»¯µÄÍøÕ¾°²È«ÆÀ¹À±¨¸æ¡£

--------------------------------------------------------------------------------

#97 TrueCrypt£º¿ªÔ´µÄWindowsºÍLinux´ÅÅ̼ÓÃÜÈí¼þ
TrueCryptÊÇÒ»¿î·Ç³£³öÉ«µÄ¿ªÔ´´ÅÅ̼ÓÃÜϵͳ¡£Óû§¿ÉÒÔ¼ÓÃÜÕû¸öÎļþϵͳ£¬Ëü¿ÉÒÔʵʱ¼ÓÃÜ/½âÃܶø²»ÐèÒªÓû§¸ÉÉæ£¬Ö»ÒªÊÂÏÈÊäÈëÃÜÂë¡£·Ç³£ÇÉÃîµÄ hidden volumeÌØÐÔÔÊÐíÄú¶ÔÌØ±ðÃô¸ÐµÄÄÚÈݽøÐеڶþ²ã¼ÓÃÜÀ´Òþ²ØËüµÄ´æÔÚ¡£ËùÒÔ¾ÍËã¼ÓÃÜϵͳµÄÃÜÂ뱩¶£¬ºÚ¿ÍÒ²²»ÖªµÀ»¹ÓÐÒþ²ØÄÚÈÝ´æÔÚ¡£

--------------------------------------------------------------------------------

#98 Watchfire AppScan£ºÉÌÒµÍøÒ³Â©¶´É¨ÃèÆ÷
AppScan°´ÕÕÓ¦ÓóÌÐò¿ª·¢ÉúÃüÖÜÆÚ½øÐа²È«²âÊÔ£¬ÔçÔÚ¿ª·¢½×¶Î¾Í½øÐе¥Ôª²âÊԺͰ²È«±£Ö¤¡£AppscanÄܹ»É¨Ãè¶àÖÖ³£¼û©¶´£¬ÀýÈç¿çÍøÕ¾½Å±¾¡¢HTTPÓ¦´ðÇпª¡¢²ÎÊý´Û¸Ä¡¢Òþ²ØÖµ´Û¸Ä¡¢ºóÃÅ/µ÷ÊÔÑ¡ÏîºÍ»º³åÇøÒç³öµÈµÈ¡£

--------------------------------------------------------------------------------

#99 N-Stealth£ºÍøÒ³·þÎñÆ÷ɨÃèÆ÷
N-StealthÊÇÒ»¿îÍøÒ³·þÎñÆ÷°²È«É¨ÃèÆ÷¡£Ëü±ÈWhisker/libwhiskerºÍNiktoÕâЩÃâ·ÑµÄÍøÒ³É¨ÃèÆ÷Éý¼¶µÃ¸üƵ·±£¬µ«ÊÇËüÍøÕ¾ÉÏÉù³ÆµÄ¿ÉÒÔɨÃè30000ÖÖ©¶´£¨30000 vulnerabilities and exploits£©ºÍÿÌìÌí¼ÓÊýÊ®ÖÖ©¶´£¨Dozens of vulnerability checks are added every day£©µÄ˵·¨ÊǺÜÖµµÃ»³Òɵġ£ÏóNessus¡¢ISS Internet Scanner¡¢Retina¡¢SAINTºÍSaraÕâЩ·ÀÈëÇÖ¹¤¾ß¶¼º¬ÓÐÍøÒ³É¨Ãè×é¼þ£¬ËüÃǶ¼ºÜÄÑ×öµ½Ã¿ÈÕ¸üС£N-StealthÔËÐÐÓÚ Windowsƽ̨֮ÉÏ£¬ÇÒ²»¿ªÔ´¡£

--------------------------------------------------------------------------------

#100 MBSA£ºÎ¢Èí»ù×¼°²È«·ÖÎöÆ÷£¨Microsoft Baseline Security Analyzer£©
Microsoft Baseline Security Analyzer£¨MBSA£©ÊÇÒ»¿î¼òµ¥Ò×ÓõŤ¾ß£¬°ïÖúITרҵÈËÔ±¼ì²âÆäСÐͺÍÖÐÐÍÉÌÒµÓ¦ÓõݲȫÐÔ£¬½«Óû§ÏµÍ³Óë΢Èí°²È«½¨Ò飨Microsoft security recommendations£©½øÐбȶԣ¬²¢¸ø³öÌØ¶¨µÄ½¨ÒéÖ¸µ¼¡£Í¨¹ýÓëWindowsÄÚÖõÄWindows×Ô¶¯Éý¼¶´úÀíÆ÷£¨Windows Update Agent£©ºÍ΢Èí×Ô¶¯Éý¼¶»ù´¡¼Ü¹¹£¨Microsoft Update infrastructure£©µÄЭ×÷£¬MBSAÄܹ»±£Ö¤ºÍÆäËü΢Èí¹ÜÀí²úÆ·µÄÊý¾Ý±£³ÖÒ»Ö£¬ËüÃǰüÀ¨Î¢Èí×Ô¶¯Éý¼¶£¨Microsoft Update£¨MU£©£©¡¢Windows·þÎñÆ÷×Ô¶¯Éý¼¶·þÎñ£¨Windows Server Update Services£¨WSUS£©£©¡¢ÏµÍ³¹ÜÀí·þÎñÆ÷£¨Systems Management Server£¨SMS£©£©ºÍ΢ÈíÔËÐйÜÀíÆ÷£¨Microsoft Operations Manager£¨MOM£©£©¡£MBSAƽ¾ùÿÖÜҪɨÃè3°ÙÍǫ̀µçÄÔ¡£

--------------------------------------------------------------------------------

ÖÂл

Ê×ÏÈ£¬ÎÒÒª¸Ðл3243ÃûNmapÓû§£¬ËüÃÇ·ÖÏíÁ˶԰²È«¹¤¾ßϲ°®µÄÐÅÏ¢£¬ÎÒ²ÅÄÜÍê³ÉÕâÕû¸öÁÐ±í¡£ÁбíÖÐÐí¶à¹¤¾ßµÄ˵Ã÷¶¼À´Ô´ÓÚ¹¤¾ßµÄ¹Ù·½ÍøÒ³£¬»òÕß DebianºÍFreshmeatµÄ°²×°°ü˵Ã÷£¬²¢¶¼É¾³ýÁËÓÐÊг¡ÍƹãÐÔÖÊµÄ¹ã¸æÄÚÈÝ¡£ÎÒ»¹Òª¸ÐлDoug HoyteΪÎÒ¼¯³ÉÁËËùÓÐÕâЩÊý¾Ý¡£¸ÐлCatherine TornabeneºÍMark Brewis¶ÔÎÄÕµÄУ¶Ô¡£

±àºóÓ±¾ÎÄÔ´×Ôsectools.org£¬ÓÉÌìÌì°²È«ÍøÕ¾ÄÚtulipÖÒÓÚÔ­ÎÄÌṩ·­Òë¡£Ðè×¢ÒâµÄÊÇÀï±ßµÄÎÒÖ¸Ô­ÎÄ×÷ÕßFyodor£¬²¢·Çtulip±¾ÈË¡£±¾ÎÄ¿ÉÈÎÒâ×ªÔØºÍ´«²¥£¬µ«Çë±£ÁôÌìÌì°²È«Íø tulip ·­Òë×ÖÑù£¬ÎÒÃǷdz£¸ÐлÄúµÄÖ§³Ö¡£Ò²ÓÉÓÚʱ¼ä´Ò棬²»ÃâÓÐЩ´íÎ󣬻¶Ó­À´EMAILÖ¸Õý¡£±¾Îĺܶ๤¾ßÔÚÌìÌì°²È«Íø¶¼ÌṩÁ˱¾µØÏÂÔØ£¬¿Éͨ¹ýËÑË÷ÍøÕ¾À´²éѯ¡£ÐèҪףºØµÄÊDZ¾´Î°²È«½¹µãµÄX-scanÒ²ÈëÑ¡ÁË£¬ÅÅÃûµÚ69£¬Ó¦¸ÃÊǹúÄڵŤ¾ßÍ·´ÎÈëÑ¡µÄ¡£ÁíÍâµã»÷Èí¼þÃû³Æ¼´¿ÉÖ±½Ó·ÃÎʸÃÈí¼þ¹Ù·½Õ¾µã¡£´ó¼Ò»¹¿ÉÒÔ·ÃÎÊ tulip blog ²éÔÄÍêÕûµÄͼÎİ档
[url]http://blog.sina.com.cn/u/1407388885[/url]

yjuutrhe ·¢±íÓÚ 2007-5-27 11:46

ºÇºÇ.......Â¥Ö÷˵ÁËÔõô¶à,µÄÈ·´ÓÖп´µ½ÁËºÜ¶à¹Ø¼üµÄµØ·½.

Ò³: [1]

Powered by Discuz! Archiver 6.1.0  © 2001-2007 Comsenz Inc.