|
Backtrack: a comprehensive suite of hacking on LiveCD |
|
|
|
|
Written by Administrator @ LUG-JSR
|
|
Friday, 13 April 2007 18:21 |
|
Backtrack is the most established on liveCD Linux distribution designed and optimized to perform any kind of penetration test (elegant way to define the 'hacking'): I have no need to be installed Backtrack can be started within minutes, simply burning your ISO on a CD and rebooting the computer!

Formed by the merger of two distribution (Whax and Auditor Security Collection),Backtrack is now based on Slackware: the kernel configuration, which included every single package are optimized, designed and organized (through patches, and automatic ad hoc) to be own best used in the definition of any "penetration test". Backtrack currently contains within it, more than 300 different tools (updated to their latest versions) dedicated to 'hacking and classifiable second what are the various stages of each penestrazione in a remote system: - Information Gathering: This is the initial phase in which you make a first collection of general information concerning the place of 'host on which you are performing the penetration test. The tools available are the classic traceroute, dnsenum, dig, ...
- Network Mapping: Once clearly identified the host, you can skip the detailed analysis at the network level. In this phase you will have the classic nmap, ipscanner, netcat, hping ...
- Vulnerability Identification: we assume that at this point all the information obtainable from the outside (open ports, network configurations, firewall, ...) have been collected. At this stage we enter the heart of the penetration test with the identification of all the possible vulnerabilities of 'target host. The tools available to manage this phase are mostly of the scanner as OpenSSL-Scanner, fuzzer or Bed.
- Penetration: once identified a possible vulnerability will pass the tests of real penetration and well targeted. The suite of choice for the management of this phase is the Metasploitframework.
- Privilege Escalation: once it's opened a gap on the, you must take control, or find ways to gain root privilege. In general within this category are tools for the management of brute-force attacks and password sniffing him as the legendary John The Ripper, dsniff andntop.
- Maintaining Access: Once you violate a remote server you need to architect a solution peri maintaining access by creating well-hidden backdoor, for instance based on shell reached on tunnel reversed. The tools that we can come to the aid at this stage for the creation of channels are hidden ProxyTunnel, or CryptCat Matahari.
These categories are then added to those for cracking wireless networks (such as Aircrackand Hotspotter) and the reverse engineering of compiled (such as the GDB debugger andHexdump). In any event found in this page the full list and detailed. Backtrack is available as a LiveCD ISO format as well as VMware image. Download Backtrack
|
|
Last Updated on Sunday, 10 May 2009 18:09 |