Penetration Testing mailing list archives
Re: Open Source Database Auditing
From: Joxean Koret <joxeankoret () yahoo es>
Date: Thu, 10 May 2007 20:02:36 +0200
Hi Bobby, On jue, 2007-05-10 at 15:58 +0000, holstein.robert () bls gov wrote:
Hey all. I'm looking for open source database vulnerability assessment and penetration testing tools. Tips and techniques, and any related documentation would also be helpful. This is specific to Oracle9i-10G, but I would welcome input for any other DB's as well.
You have many interesting tools listed here: http://www.petefinnigan.com/tools.htm You can also take a look to the Inguma project (http://sourceforge.net/projects/inguma) which is Open Source and written in python and, if you're looking for exploits, in Milw0rm. There are a couple of Oracle 9i and 10g exploits. --- Regards, Joxean Koret
We have commercial tools on-site but are not licensed to assess devices outside our IP range. Thanks in advance! Bobby ------------------------------------------------------------------------ This List Sponsored by: Cenzic Are you using SPI, Watchfire or WhiteHat? Consider getting clear vision with Cenzic See HOW Now with our 20/20 program! http://www.cenzic.com/c/2020 ------------------------------------------------------------------------
Attachment:
signature.asc
Description: This is a digitally signed message part
Current thread:
- Open Source Database Auditing holstein . robert (May 10)
- Re: Open Source Database Auditing SD List (May 10)
- Re: Open Source Database Auditing James Patterson (May 10)
- Re: Open Source Database Auditing SD List (May 11)
- Re: Open Source Database Auditing Clint P. Garrison MBA, CISSP, QSA (May 10)
- Re: Open Source Database Auditing Joxean Koret (May 10)
- Re: Open Source Database Auditing Marco Ivaldi (May 11)
- <Possible follow-ups>
- Re: Re: Open Source Database Auditing toggmeister (May 11)
