Our first post regarding FiletypeID can be found here. A few hours ago, an update – FiletypeID version 0.2.0 – was released.
“FiletypeID is a tool designed to identify file types from their binary signatures. This simple application can help you to: identify what kind of file was sent to you via e-mail, aid in forensic [...]
Tagged as:
file forensics,
FileInfo,
FileTypeID
Our first post regarding Netzob can be found here. Sometime ago, an update - Netzob 0.3.2 – was made available to us.
Netzob is an opensource tool which supports the expert in its operations of reverse engineering, evaluation and simulation of communication protocols. Its main goals are to help security evaluators to :
Assess the robustness of proprietary [...]
Tagged as:
NETZOB,
Reverse Engineering,
Scapy,
WireShark
Wincheck is a tool that inspects undocumented or not less documented Windows internal structures. If you think that this is another anti-rootkit software and it supports disinfection or automatic analysis of rootkits, you are mistaken. However, it can help you with process anomaly detection, that makes it much more powerful than most of the “classical” anti-rootkits.
was [...]
Tagged as:
Malware Analysis,
Reverse Engineering,
Wincheck
As per new researches show that it is highly probably that many Windows cloud images may be vulnerable to a MS12-020 RDP exploit by default.
People are aware of the cloud variables and that cloud service providers offload the virtual machine security onto the customer as much as possible.
Technical people know this. Not all cloud customers [...]
Tagged as:
cloud security,
Cloudworm,
Exploit,
POC,
Windows
backfuzz can be basically used to fuzz different protocols such as FTP, HTTP, IMAP, etc but also has no-protocol plug-ins Example: File Fuzzer. The general idea is that this script has several functions already predefined in the file “functions.py”, so whoever wanna write his own plugin’s for another diffrent protocol in a few lines and [...]
Tagged as:
backfuzz,
Fuzzer,
tcp exploit tool
Finally a tool from Adobe, that will help you look at SWF issues – Adobe SWF Investigator is a cross-platform, GUI-based, comprehensive set of tools, which enables quality engineers, developers and security researchers to quickly analyze SWF files to improve the quality and security of their applications. We had blogged about similar set of tools – SWFRETools. [...]
Tagged as:
Adobe SWF Investigator,
audit,
flash,
Reverse Engineering,
SWFREtools
Our first post regarding Netzob can be found here. A few hours ago, an update - Netzob-0.3.2-rc1 – was made available to us.
Netzob is an opensource tool which supports the expert in its operations of reverse engineering, evaluation and simulation of communication protocols. Its main goals are to help security evaluators to :
Assess the robustness of [...]
Tagged as:
NETZOB,
Reverse Engineering,
Scapy,
WireShark
Our first post regarding Bokken can be found here. A few hours ago, an update Bokken version 1.6 was released! It is now more stable and easier to install.
“Bokken is a GUI for the Pyew and Radare projects. So it offers almost all the same features that Pyew has and some of the Radare’s ones. It [...]
Tagged as:
Bokken,
Inguma,
Malware Analysis,
pyew,
radare