S.No |Name |Brief Description |Open Source? |Platform |Functions | |

| | | | | | |

|1 |LSOF | | | |This Unix-specific diagnostic and forensics tool lists information about any |

| | |LiSt Open Files |No |*NIX |files that are open by processes currently running on the system. It can also |

| | | | | |list communications sockets open by each process. |

| | | | | |Abuky is a system for tracking bugs and aiding the developer to fix them, |

| | | | | |written in Java with JSP as web interface. Abuky has built in e-mail support. |

|2 |Abuky |The Aoo BUg tracKing sYstem |Yes |Windows |It sends information about bugs to developer via e-mail automatically when new |

| | | | |*NIX |bugs are submitted. User reports bugs: It searches a project, whether the bug |

| | | | | |was not reported earlier and if bug does not exist, selects bug template, fills|

| | | | | |in the form of selected bug template and submits it. |

| | | | | |Multi-threaded command-line tool you can use to assess a computer or selected |

|3 |HFNetChk |Command Line Win Patch management tool |No |Windows |group of computers for the absence of security patches. |

| | | | | |Downloaded both the free command line and trial version and used it. |

| | | | | | |

| | | | | |BIND includes: |

|4 |Bind |A handy DNS query tool that comes free |No | |• a Domain Name System server (named) |

| | |with Bind | | |• a Domain Name System resolver library |

| |? | | | |• tools for verifying the proper operation of the DNS server |

| |/sw/bind/index.php/ | | | | |

| | | | | |Bastille's focuses on letting the system's user/administrator choose exactly |

|5 |Bastille |Security hardening script. |No |Linux |how to harden the operating system |

| | | | |Mac OS | |

| | | | |X | |

| | | | |HP-UX | |

Miscellaneous Tools

| | | | | |Notable TCT components are the grave-robber tool that captures information, the|

|6 |The Coroner’s Toolkit |Can be used for post-mortem analysis |Yes |*NIX |ils and mactime tools that display access patterns of files dead or alive, the |

| | |of a UNIX system after break-in. | | |unrm and lazarus tools that recover deleted files, and the findkey tool that |

| | forensics/tct.html | | | |recovers cryptographic keys from a running process or from files. |

| | | | | |Provides a portable and simplified interface for low-level network packet |

| | | | | |shaping, handling and injection. |

|7 |Libnet |A high-level API (toolkit) allowing the|Yes |Linux |Libnet features portable packet creation interfaces at both the IP-layer and |

| | |application programmer to construct and| | |link-layer, as well as a host of supplementary and complementary functionality.|

| | |inject network packets. | | | |

| | | | | |Using libnet, quick and simple packet assembly applications can be whipped up |

| | | | | |with little effort. |

| | | | | |With a bit more time, more complex programs can be written (Traceroute and |

| | | | | |Ping were easily rewritten using libnet and libpcap) |

| | | | | |LIDS is an enhancement for the Linux kernel written by Xie Huagang and Philippe|

|8 |LIDS |A Linux kernel intrusion |No |Linux |Biondi. It implements several security features that are not in the Linux |

| | |detection/defense system | | |kernel natively. Some of these include: mandatory access controls (MAC), a port|

| | | | | |scan detector, file protection (even from root), and process protection. |

| | | | | | |

| | | | | | |

| | | | | | |

|9 |psTools: | | | | |

| | | | | | |

| | |psTools Consists a bunch of Linux like |Some. |Windows | |

| |Utilities/PsTools.html |commands | | | |

| | |7) PsList - list detailed information | | | |

| |PsExec – execute processes remotely |about processes | | | |

| |PsFile - shows files opened remotely |8) PsLoggedOn - see who's logged on | | | |

| |PsKill - kill processes |locally and via resource sharing (full | | | |

| |PsGetSid - display the SID of a computer or a |source is included) | | | |

| |user |9)PsLogList - dump event log records | | | |

| | |10) PsPasswd - changes account | | | |

| |PsInfo - list information about a system by |passwords | | | |

| |name or process ID |11) PsService - view and control | | | |

| | |services | | | |

| |PsList – List detailed information about |12) PsShutdown - shuts down and | | | |

| |processes |optionally reboots a computer | | | |

| | |13) PsSuspend - suspends processes | | | |

| | |14) PsUptime - shows you how long a | | | |

| | |system has been running since its last | | | |

| | |reboot (PsUptime's functionality has | | | |

| | |been incorporated into PsInfo) | | | |


In order to avoid copyright disputes, this page is only a partial summary.

Google Online Preview   Download