Monthly Archive: September 2024

sshamble: A research tool for SSH implementations

sshamble SSHamble is a research tool for SSH implementations that includes: Interesting attacks against authentication Post-session authentication attacks Pre-authentication state transitions Authentication timing analysis Post-session enumeration SSHamble simulates potential attack scenarios, including unauthorized remote access...

noir: attack surface detector from source code

Noir Noir is an attack surface detector from source code.   Key Features Automatically identify language and framework from source code. Find API endpoints and web pages through code analysis. Load results quickly through...

AHWT: Hardening tool for Windows operating systems

AHWT – another hardening tool for Windows operating systems The program is a script generator with a collection of parameters and recommendations from CIS Benchmarks and DoD STIGs with some adjustments. All parameters are...