Showing posts with label Metasploit Framework. Show all posts
Showing posts with label Metasploit Framework. Show all posts

Tuesday, 11 August 2015

Kali Linux 2.0 Released For Security Professionals



There is a new version of Kali Linux appeared, a Linux version specifically aimed at security professionals who perform penetration tests and security audits. Kali comes from Backtrack Linux and the first version was launched in 2013. The distribution contains a variety of security tools for performing security tests and examinations.

Kali Linux 2.0 is the most important release since the first version came out two years ago. A new kernel is added, based on Debian Jessie. Also supporting hardware and wifi drivers improved and are different desktop environments such as KDE, LXDE and gnome supported. Furthermore Kali has now become a "rolling distribution", meaning that all packages from Debian Testing are met. There is also a system added checks for new versions have appeared on the tools included with Kali. Users of version 1.0 can upgrade to version 2.0.

Tuesday, 21 April 2015

Hacker Tool Does Not Ask Americans To Additional Information


Due to legal obligations should users of the popular hacker tool Metasploit who are not from the United States or Canada now give more information about themselves. It involves users of Metasploit Pro or the Metasploit Community Edition and not the Metasploit Framework.

Metasploit is software to test with the security of networks and systems. It uses encryption and is therefore, like other similar products, subject to US export regulations. Additionally get Metasploit and other attack software with more and more American and international constraints make. Because of these rules is to offer Rapid7, the company that Metasploit, the way to customize how the free and trial versions of Metasploit Pro and community can be obtained.

Customers outside the US and Canada must now apply for a license and provide additional information about themselves or their organization. It must in this case to "reliable and accurate" going data. Rapid7 will then approve or reject the request. In some cases, however, provide the US Department of Commerce or users can use the software or not. According Rapid7 most users will simply receive a license key, only this can now let alone wait any longer, up to 48 hours. Users who already have a license need not be afraid that it will be withdrawn.

Friday, 6 February 2015

Research: Cyber Spies Sloppy Programmers


Groups that advanced persistent threats (APTS) for cyber espionage prove to be sloppy programmers use, says a researcher ( pdf ) of the British anti-virus firm Sophos . The virus fighter compared the malware cybercriminals applied by cyber spies.

Apts are often considered sophisticated attacks, in which attackers long time to access the network from a target managed to obtain. However, the quality of the malware used appears to be disappointing, says researcher Gabor Szappanos. For example, there appeared to be no quality control in the APT-groups. "A big part of their creations is not well tested, and they do not see why some functionality is not working," he tells.

It also appears that ordinary malware writers have more knowledge than the known exploits APT groups. Something which is bad news, because APT groups focusing on specific targets, while the malware from the malware writers has a much greater range. The APT groups do not have extensive skills when it comes to exploits. New exploits are quickly utilized, but it comes to units which have been developed by others or come from Metasploit.

Usually they develop exploits yourself and in the case of other people's exploits are barely changed. Metasploit is a framework that is offered by security firm Rapid7 and allows security professionals to test the security of systems. According Szappanos let his research shows that when security researchers and administrators respond rapidly to undetected leaks, they probably handle this type of APT groups.

"Despite this, the malware writers mentioned in the report should not be underestimated. They develop sophisticated Trojans and know that spread to major organizations. The fact that they are not good with exploits does not mean that they are less dangerous," concludes the researcher.