<?xml version="1.0" encoding="utf-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title><![CDATA[[SecurityRatty] tag: nmap]]></title>
    <link>http://securityratty.com/tag/nmap</link>
    <description></description>
    <pubDate>Tue, 25 Sep 2007 18:27:43 +0000</pubDate>
    <generator>iRatty Engine</generator>
    <docs>http://blogs.law.harvard.edu/tech/rss</docs>
    <item>
      <title><![CDATA[BackTrack Beta 3 Man Pages]]></title>
      <link>http://securityratty.com/article/b9eb1399244230ecdd46be371f407fe7</link>
      <guid>http://securityratty.com/article/b9eb1399244230ecdd46be371f407fe7</guid>
      <description><![CDATA[I've decide to covert the man pages that come with the BackTrack Beta 3 Live CD to HTML and post them to my site. I've just done the ones in /usr/local/man, so expect a few bad links. This will make...]]></description>
      <content:encoded><![CDATA[I've decide to covert the man pages that come with the BackTrack Beta 3 Live CD to HTML and post them to my site. I've just done the ones in /usr/local/man, so expect a few bad links. This will make it easier for me to link to the man pages from my other videos and articles. Tools include in the list are:<br>
<a href="http://irongeek.com/i.php?page=backtrack-3-man/aircrack-ng">aircrack-ng</a>,
<a href="http://irongeek.com/i.php?page=backtrack-3-man/airdecap-ng">airdecap-ng</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/airdriver-ng">airdriver-ng</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/aireplay-ng">aireplay-ng</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/airmon-ng">airmon-ng</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/airodump-ng">airodump-ng</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/airolib-ng">airolib-ng</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/airpwn">airpwn</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/airsev-ng">airsev-ng</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/airsnort">airsnort</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/airtun-ng">airtun-ng</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/amap">amap</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/ascii-xfr">ascii-xfr</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/atftp">atftp</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/bison">bison</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/bsqldb">bsqldb</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/buddy-ng">buddy-ng</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/cabextract">cabextract</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/catdoc">catdoc</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/catppt">catppt</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/datacopy">datacopy</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/dcfldd">dcfldd</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/decrypt">decrypt</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/defncopy">defncopy</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/dhcpdump">dhcpdump</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/dmitry">dmitry</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/dos2unix">dos2unix</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/dupemap">dupemap</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/easside-ng">easside-ng</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/etherape">etherape</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/flex">flex</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/foremost">foremost</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/freebcp">freebcp</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/gencases">gencases</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/getattach.pl">getattach.pl</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/hexedit">hexedit</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/httpcapture">httpcapture</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/ike-scan">ike-scan</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/ivstools">ivstools</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/kstats">kstats</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/mac2unix">mac2unix</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/macchanger">macchanger</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/magicrescue">magicrescue</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/magicsort">magicsort</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/makeivs-ng">makeivs-ng</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/mboxgrep">mboxgrep</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/minicom">minicom</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/nemesis-arp">nemesis-arp</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/nemesis-dns">nemesis-dns</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/nemesis-ethernet">nemesis-ethernet</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/nemesis-icmp">nemesis-icmp</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/nemesis-igmp">nemesis-igmp</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/nemesis-ip">nemesis-ip</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/nemesis-ospf">nemesis-ospf</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/nemesis-rip">nemesis-rip</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/nemesis-tcp">nemesis-tcp</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/nemesis-udp">nemesis-udp</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/nemesis">nemesis</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/netcat">netcat</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/nmap">nmap</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/nmapfe">nmapfe</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/obexftp">obexftp</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/obexftpd">obexftpd</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/p0f">p0f</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/packetforge-ng">packetforge-ng</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/psk-crack">psk-crack</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/rain">rain</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/runscript">runscript</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/scrollkeeper-config">scrollkeeper-config</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/scrollkeeper-gen-seriesid">scrollkeeper-gen-seriesid</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/sipsak">sipsak</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/socat">socat</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/tcptraceroute">tcptraceroute</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/truecrypt">truecrypt</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/tsql">tsql</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/unicornscan">unicornscan</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/vomit">vomit</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/wesside-ng">wesside-ng</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/wordview">wordview</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/xls2csv">xls2csv</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/xminicom">xminicom</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/xnmap">xnmap</a>, 			<a href="http://irongeek.com/i.php?page=backtrack-3-man/gdbm">gdbm</a>, 
		<a href="http://irongeek.com/i.php?page=backtrack-3-man/etter.conf">etter.conf</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/scrollkeeper.conf">scrollkeeper.conf</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/sudoers">sudoers</a>, 			
<a href="http://irongeek.com/i.php?page=backtrack-3-man/scrollkeeper">scrollkeeper</a>,&nbsp; <a href="http://irongeek.com/i.php?page=backtrack-3-man/80211debug">80211debug</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/80211stats">80211stats</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/arpspoof">arpspoof</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/atftpd">atftpd</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/athchans">athchans</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/athctrl">athctrl</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/athdebug">athdebug</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/athkey">athkey</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/athstats">athstats</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/ath_info">ath_info</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/dnsspoof">dnsspoof</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/dnstracer">dnstracer</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/dsniff">dsniff</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/ettercap">ettercap</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/ettercap_curses">ettercap_curses</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/ettercap_plugins">ettercap_plugins</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/etterfilter">etterfilter</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/etterlog">etterlog</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/filesnarf">filesnarf</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/fping">fping</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/fragroute">fragroute</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/fragtest">fragtest</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/hping2">hping2</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/hping3">hping3</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/in.tftpd">in.tftpd</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/macof">macof</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/mailsnarf">mailsnarf</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/msgsnarf">msgsnarf</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/netdiscover">netdiscover</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/packit">packit</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/scrollkeeper-preinstall">scrollkeeper-preinstall</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/scrollkeeper-rebuilddb">scrollkeeper-rebuilddb</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/scrollkeeper-update">scrollkeeper-update</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/sing">sing</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/sshmitm">sshmitm</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/sshow">sshow</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/sudo">sudo</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/sudoedit">sudoedit</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/tcpick">tcpick</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/tcpick_italian">tcpick_italian</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/tcpkill">tcpkill</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/tcpnice">tcpnice</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/tinyproxy">tinyproxy</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/urlsnarf">urlsnarf</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/visudo">visudo</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/webmitm">webmitm</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/webspy">webspy</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/wlanconfig">wlanconfig</a><p>
Enjoy.]]></content:encoded>
      <pubDate>Mon, 19 May 2008 02:36:31 +0000</pubDate>
      <category domain="http://securityratty.com/tag/nemesis">nemesis</category>
      <category domain="http://securityratty.com/tag/nemesis-ip">nemesis-ip</category>
      <category domain="http://securityratty.com/tag/nemesis-rip">nemesis-rip</category>
      <category domain="http://securityratty.com/tag/nemesis-igmp">nemesis-igmp</category>
      <category domain="http://securityratty.com/tag/nemesis-icmp">nemesis-icmp</category>
      <category domain="http://securityratty.com/tag/nemesis-arp">nemesis-arp</category>
      <category domain="http://securityratty.com/tag/nemesis-tcp">nemesis-tcp</category>
      <category domain="http://securityratty.com/tag/ettercap plugins">ettercap plugins</category>
      <category domain="http://securityratty.com/tag/ettercap">ettercap</category>
      <source url="http://irongeek.com/i.php?page=backtrack-3-man/list">BackTrack Beta 3 Man Pages</source>
    </item>
    <item>
      <title><![CDATA[BackTrack Beta 3 Man Pages]]></title>
      <link>http://securityratty.com/article/40186d92f5cac8291c8e4722ba6916a4</link>
      <guid>http://securityratty.com/article/40186d92f5cac8291c8e4722ba6916a4</guid>
      <description><![CDATA[I've decide to covert the man pages that come with the BackTrack Beta 3 Live CD to HTML and post them to my site. I've just done the ones in /usr/local/man, so expect a few bad links. This will make...]]></description>
      <content:encoded><![CDATA[I've decide to covert the man pages that come with the BackTrack Beta 3 Live CD to HTML and post them to my site. I've just done the ones in /usr/local/man, so expect a few bad links. This will make it easier for me to link to the man pages from my other videos and articles. Tools include in the list are:<br>
<a href="http://irongeek.com/i.php?page=backtrack-3-man/aircrack-ng">aircrack-ng</a>,
<a href="http://irongeek.com/i.php?page=backtrack-3-man/airdecap-ng">airdecap-ng</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/airdriver-ng">airdriver-ng</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/aireplay-ng">aireplay-ng</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/airmon-ng">airmon-ng</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/airodump-ng">airodump-ng</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/airolib-ng">airolib-ng</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/airpwn">airpwn</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/airsev-ng">airsev-ng</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/airsnort">airsnort</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/airtun-ng">airtun-ng</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/amap">amap</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/ascii-xfr">ascii-xfr</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/atftp">atftp</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/bison">bison</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/bsqldb">bsqldb</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/buddy-ng">buddy-ng</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/cabextract">cabextract</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/catdoc">catdoc</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/catppt">catppt</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/datacopy">datacopy</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/dcfldd">dcfldd</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/decrypt">decrypt</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/defncopy">defncopy</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/dhcpdump">dhcpdump</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/dmitry">dmitry</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/dos2unix">dos2unix</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/dupemap">dupemap</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/easside-ng">easside-ng</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/etherape">etherape</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/flex">flex</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/foremost">foremost</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/freebcp">freebcp</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/gencases">gencases</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/getattach.pl">getattach.pl</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/hexedit">hexedit</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/httpcapture">httpcapture</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/ike-scan">ike-scan</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/ivstools">ivstools</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/kstats">kstats</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/mac2unix">mac2unix</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/macchanger">macchanger</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/magicrescue">magicrescue</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/magicsort">magicsort</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/makeivs-ng">makeivs-ng</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/mboxgrep">mboxgrep</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/minicom">minicom</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/nemesis-arp">nemesis-arp</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/nemesis-dns">nemesis-dns</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/nemesis-ethernet">nemesis-ethernet</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/nemesis-icmp">nemesis-icmp</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/nemesis-igmp">nemesis-igmp</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/nemesis-ip">nemesis-ip</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/nemesis-ospf">nemesis-ospf</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/nemesis-rip">nemesis-rip</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/nemesis-tcp">nemesis-tcp</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/nemesis-udp">nemesis-udp</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/nemesis">nemesis</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/netcat">netcat</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/nmap">nmap</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/nmapfe">nmapfe</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/obexftp">obexftp</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/obexftpd">obexftpd</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/p0f">p0f</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/packetforge-ng">packetforge-ng</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/psk-crack">psk-crack</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/rain">rain</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/runscript">runscript</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/scrollkeeper-config">scrollkeeper-config</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/scrollkeeper-gen-seriesid">scrollkeeper-gen-seriesid</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/sipsak">sipsak</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/socat">socat</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/tcptraceroute">tcptraceroute</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/truecrypt">truecrypt</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/tsql">tsql</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/unicornscan">unicornscan</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/vomit">vomit</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/wesside-ng">wesside-ng</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/wordview">wordview</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/xls2csv">xls2csv</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/xminicom">xminicom</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/xnmap">xnmap</a>, 			<a href="http://irongeek.com/i.php?page=backtrack-3-man/gdbm">gdbm</a>, 
		<a href="http://irongeek.com/i.php?page=backtrack-3-man/etter.conf">etter.conf</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/scrollkeeper.conf">scrollkeeper.conf</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/sudoers">sudoers</a>, 			
<a href="http://irongeek.com/i.php?page=backtrack-3-man/scrollkeeper">scrollkeeper</a>,&nbsp; <a href="http://irongeek.com/i.php?page=backtrack-3-man/80211debug">80211debug</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/80211stats">80211stats</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/arpspoof">arpspoof</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/atftpd">atftpd</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/athchans">athchans</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/athctrl">athctrl</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/athdebug">athdebug</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/athkey">athkey</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/athstats">athstats</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/ath_info">ath_info</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/dnsspoof">dnsspoof</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/dnstracer">dnstracer</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/dsniff">dsniff</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/ettercap">ettercap</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/ettercap_curses">ettercap_curses</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/ettercap_plugins">ettercap_plugins</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/etterfilter">etterfilter</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/etterlog">etterlog</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/filesnarf">filesnarf</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/fping">fping</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/fragroute">fragroute</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/fragtest">fragtest</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/hping2">hping2</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/hping3">hping3</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/in.tftpd">in.tftpd</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/macof">macof</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/mailsnarf">mailsnarf</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/msgsnarf">msgsnarf</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/netdiscover">netdiscover</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/packit">packit</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/scrollkeeper-preinstall">scrollkeeper-preinstall</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/scrollkeeper-rebuilddb">scrollkeeper-rebuilddb</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/scrollkeeper-update">scrollkeeper-update</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/sing">sing</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/sshmitm">sshmitm</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/sshow">sshow</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/sudo">sudo</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/sudoedit">sudoedit</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/tcpick">tcpick</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/tcpick_italian">tcpick_italian</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/tcpkill">tcpkill</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/tcpnice">tcpnice</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/tinyproxy">tinyproxy</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/urlsnarf">urlsnarf</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/visudo">visudo</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/webmitm">webmitm</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/webspy">webspy</a>, 
<a href="http://irongeek.com/i.php?page=backtrack-3-man/wlanconfig">wlanconfig</a><p>
Enjoy.
<p><a href="http://feeds.feedburner.com/~a/IrongeeksSecuritySite?a=K4OapG"><img src="http://feeds.feedburner.com/~a/IrongeeksSecuritySite?i=K4OapG" border="0"></img></a></p><img src="http://feeds.feedburner.com/~r/IrongeeksSecuritySite/~4/297640134" height="1" width="1"/>]]></content:encoded>
      <pubDate>Mon, 19 May 2008 02:36:31 +0000</pubDate>
      <category domain="http://securityratty.com/tag/nemesis">nemesis</category>
      <category domain="http://securityratty.com/tag/nemesis-ip">nemesis-ip</category>
      <category domain="http://securityratty.com/tag/nemesis-rip">nemesis-rip</category>
      <category domain="http://securityratty.com/tag/nemesis-igmp">nemesis-igmp</category>
      <category domain="http://securityratty.com/tag/nemesis-icmp">nemesis-icmp</category>
      <category domain="http://securityratty.com/tag/nemesis-arp">nemesis-arp</category>
      <category domain="http://securityratty.com/tag/nemesis-tcp">nemesis-tcp</category>
      <category domain="http://securityratty.com/tag/ettercap plugins">ettercap plugins</category>
      <category domain="http://securityratty.com/tag/ettercap">ettercap</category>
      <source url="http://feeds.feedburner.com/~r/IrongeeksSecuritySite/~3/297640134/i.php">BackTrack Beta 3 Man Pages</source>
    </item>
    <item>
      <title><![CDATA[Irongeek's Infosec Wargame Servers]]></title>
      <link>http://securityratty.com/article/8937e668bccaf3fdda16764f5a59fd33</link>
      <guid>http://securityratty.com/article/8937e668bccaf3fdda16764f5a59fd33</guid>
      <description><![CDATA[I'd like to announce the launch of my own wargame servers for testing out your computer security skills. The host names are
hackme1.irongeek.com
hackme2.irongeek.com
dosme1.irongeek.com
Try out Nmap ,...]]></description>
      <content:encoded><![CDATA[&nbsp;&nbsp;&nbsp; I'd like to announce the 
launch of my 
own wargame servers for testing out your computer security skills. The host 
names are:</p>
<blockquote>
	<blockquote>
		<p align="left">hackme1.irongeek.com
<br>
		hackme2.irongeek.com
<br>
		dosme1.irongeek.com </p>
	</blockquote>
</blockquote>
<p align="left">&nbsp;&nbsp;&nbsp;
Try out <a href="http://www.irongeek.com/i.php?page=videos/nmap1">Nmap</a>, 
<a href="http://www.irongeek.com/i.php?page=videos/nessus">Nessus</a>, 
<a href="http://www.irongeek.com/i.php?page=videos/metasploit1">Metasploit</a> and other tools on these boxes. Please let me 
know your findings. Thanks to my hosting provider Dreamhost. If you want to know more about <a href="http://www.irongeek.com/i.php?page=reviews/dreamhost">
Dreamhost check out my review</a> (and coupon codes), they have been pretty 
good to me.</p>
<p align="left">
<img border="0" src="http://irongeek.com/images/wgqrcode.png" width="216" height="216" align="left">]]></content:encoded>
      <pubDate>Mon, 31 Mar 2008 21:00:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/irongeek">irongeek</category>
      <category domain="http://securityratty.com/tag/wargame servers">wargame servers</category>
      <category domain="http://securityratty.com/tag/computer security skills">computer security skills</category>
      <category domain="http://securityratty.com/tag/provider dreamhost">provider dreamhost</category>
      <category domain="http://securityratty.com/tag/coupon codes">coupon codes</category>
      <category domain="http://securityratty.com/tag/dreamhost check">dreamhost check</category>
      <category domain="http://securityratty.com/tag/host names">host names</category>
      <category domain="http://securityratty.com/tag/review">review</category>
      <category domain="http://securityratty.com/tag/metasploit">metasploit</category>
      <source url="http://irongeek.com/i.php?page=security/wargames">Irongeek's Infosec Wargame Servers</source>
    </item>
    <item>
      <title><![CDATA[NAC for grown-ups]]></title>
      <link>http://securityratty.com/article/47daa82533884710695a7627cc311389</link>
      <guid>http://securityratty.com/article/47daa82533884710695a7627cc311389</guid>
      <description><![CDATA[I guess maybe if you sell to the .edu crowd a lot, after a while you start thinking that all of your users are juvenile. As a result you start thinking in terms of your product protecting against...]]></description>
      <content:encoded><![CDATA[
<div xmlns="http://www.w3.org/1999/xhtml"><p><a href="http://www.stillsecureafteralltheseyears.com/.shared/image.html?/photos/uncategorized/2008/03/13/beaver.gif"><img title="Beaver" height="204" alt="Beaver" src="http://www.stillsecureafteralltheseyears.com/ashimmy/images/2008/03/13/beaver.gif" width="260" border="0" style="FLOAT: left; MARGIN: 0px 5px 5px 0px" /></a>I guess maybe if you sell to the .edu crowd a lot, after a while you start thinking that all of your users are juvenile.&nbsp; As a result you start thinking in terms of your product protecting against adolescents who are not smart, mature or capable enough of taking care of themselves.&nbsp; You start thinking of yourself and the people who use your product as the grown ups, here to be the custodians of these addled brained users of the network. Or so it seems reading <a href="http://www.enterprisenetworksandservers.com/monthly/art.php?3570" target="_blank">Gord Boyce's advertorial</a> in Enterprise Networks and Servers titled &quot;Are your users smarter than a 5th grader&quot;.&nbsp; </p>

<p>You know what I mean by advertorial right? A piece in a magazine or e-zine that comes across looking like a real piece of journalism and is really a thinly veiled advertisement for your company's products.&nbsp; Some people say my blog could be put in the same boat. If that is how you feel, so be it, I am not going to waste time arguing about it with you.</p>

<p>Gord's gist seems to be that users need parenting and that security and network administrators can administer the proper discipline or love in one of two personas.&nbsp; You can be the Beaver's mom, Mrs. Cleaver or you can be Nurse Diesel (from High Anxiety for those too young to remember).&nbsp; Frankly I find this view of network users arrogant and condescending.&nbsp; For most enterprises their users are not some ill behaved child exhibiting bad manners.&nbsp; They are legitimate users who have to access the network in order to get their work done.&nbsp; And here is a lesson for all of you who subscribe to the &quot;parenting approach&quot; to network security, if those same users we are trying to discipline or raise into responsible adults don't get on the network and do their work, you may not have a paycheck!&nbsp; So spare us the analogies to children accessing the network unless you are selling to schools.&nbsp; Its time we treat our network users and legitimate guests as the adults they are. Adults who we are counting on to do their work and make our companies profitable and put food on our tables.</p>

<p>This same &quot;teach the kids to mind their manners&quot; approach to NAC is what has caused too many to think of NAC as being all about the quarantine.&nbsp; It is not and should not be.&nbsp; Quarantine should be something you do as a last resort. If someone has a legitimate right to be on the network, it should be the job of the NAC product to make sure they are on securely, in compliance and safely.&nbsp; If they are deficient in some configuration lets get it fixed.&nbsp; They should be allowed to go where they are allowed to go, not more or not less.&nbsp; But I think we can spare the user the finger wagging and lectures.&nbsp; </p>

<p>Unlike Gord, I actually think that time can be better spent in social engineering of NAC. Educating your network users is key.&nbsp; The more time you spend making them understand why rules are in place and what they can do to help and make everyone more successful, the better off you are going to be.&nbsp; I think the technology of NAC is only one piece of entire solution.&nbsp; Security awareness and education are also key.&nbsp; Also, unlike Gord I don't think that agentless NAC is the only way to test devices.&nbsp; Especially if like Gord's product, all you are using to do so is nMap and an old version of Nessus (btw, Gord do you include the source code with your use of those open source products?). I think to truly test the full spectrum of devices accessing the network you need a combination of agentless, agent and web delivered testing options. You need a purpose built NAC testing engine.&nbsp; If you want to provide continuous monitoring, you need to do more than recycling your failed IDS technology. </p>

<p>Here is the bottom line for me. If you think the people accessing your network are like the Beaver and Wally, Gord's product may be just what you are looking for. If you have adults trying to do business and make you and your company succeed perhaps another NAC solution might be best for you. </p></div>
]]></content:encoded>
      <pubDate>Thu, 13 Mar 2008 20:58:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/network users">network users</category>
      <category domain="http://securityratty.com/tag/network users arrogant">network users arrogant</category>
      <category domain="http://securityratty.com/tag/network">network</category>
      <category domain="http://securityratty.com/tag/network administrators">network administrators</category>
      <category domain="http://securityratty.com/tag/nac">nac</category>
      <category domain="http://securityratty.com/tag/users">users</category>
      <category domain="http://securityratty.com/tag/nac solution">nac solution</category>
      <category domain="http://securityratty.com/tag/nac product">nac product</category>
      <category domain="http://securityratty.com/tag/product">product</category>
      <source url="http://www.stillsecureafteralltheseyears.com/ashimmy/2008/03/nac-for-grown-u.html">NAC for grown-ups</source>
    </item>
    <item>
      <title><![CDATA[NAC for grown-ups]]></title>
      <link>http://securityratty.com/article/a487ec4f7f74f5ad1a991bf45997c3c6</link>
      <guid>http://securityratty.com/article/a487ec4f7f74f5ad1a991bf45997c3c6</guid>
      <description><![CDATA[I guess maybe if you sell to the .edu crowd a lot, after a while you start thinking that all of your users are juvenile. As a result you start thinking in terms of your product protecting against...]]></description>
      <content:encoded><![CDATA[
<div xmlns="http://www.w3.org/1999/xhtml"><p><a href="http://www.stillsecureafteralltheseyears.com/.shared/image.html?/photos/uncategorized/2008/03/13/beaver.gif"><img title="Beaver" height="204" alt="Beaver" src="http://www.stillsecureafteralltheseyears.com/ashimmy/images/2008/03/13/beaver.gif" width="260" border="0" style="FLOAT: left; MARGIN: 0px 5px 5px 0px" /></a>I guess maybe if you sell to the .edu crowd a lot, after a while you start thinking that all of your users are juvenile.&nbsp; As a result you start thinking in terms of your product protecting against adolescents who are not smart, mature or capable enough of taking care of themselves.&nbsp; You start thinking of yourself and the people who use your product as the grown ups, here to be the custodians of these addled brained users of the network. Or so it seems reading <a href="http://www.enterprisenetworksandservers.com/monthly/art.php?3570" target="_blank">Gord Boyce's advertorial</a> in Enterprise Networks and Servers titled &quot;Are your users smarter than a 5th grader&quot;.&nbsp; </p>

<p>You know what I mean by advertorial right? A piece in a magazine or e-zine that comes across looking like a real piece of journalism and is really a thinly veiled advertisement for your company's products.&nbsp; Some people say my blog could be put in the same boat. If that is how you feel, so be it, I am not going to waste time arguing about it with you.</p>

<p>Gord's gist seems to be that users need parenting and that security and network administrators can administer the proper discipline or love in one of two personas.&nbsp; You can be the Beaver's mom, Mrs. Cleaver or you can be Nurse Diesel (from High Anxiety for those too young to remember).&nbsp; Frankly I find this view of network users arrogant and condescending.&nbsp; For most enterprises their users are not some ill behaved child exhibiting bad manners.&nbsp; They are legitimate users who have to access the network in order to get their work done.&nbsp; And here is a lesson for all of you who subscribe to the &quot;parenting approach&quot; to network security, if those same users we are trying to discipline or raise into responsible adults don't get on the network and do their work, you may not have a paycheck!&nbsp; So spare us the analogies to children accessing the network unless you are selling to schools.&nbsp; Its time we treat our network users and legitimate guests as the adults they are. Adults who we are counting on to do their work and make our companies profitable and put food on our tables.</p>

<p>This same &quot;teach the kids to mind their manners&quot; approach to NAC is what has caused too many to think of NAC as being all about the quarantine.&nbsp; It is not and should not be.&nbsp; Quarantine should be something you do as a last resort. If someone has a legitimate right to be on the network, it should be the job of the NAC product to make sure they are on securely, in compliance and safely.&nbsp; If they are deficient in some configuration lets get it fixed.&nbsp; They should be allowed to go where they are allowed to go, not more or not less.&nbsp; But I think we can spare the user the finger wagging and lectures.&nbsp; </p>

<p>Unlike Gord, I actually think that time can be better spent in social engineering of NAC. Educating your network users is key.&nbsp; The more time you spend making them understand why rules are in place and what they can do to help and make everyone more successful, the better off you are going to be.&nbsp; I think the technology of NAC is only one piece of entire solution.&nbsp; Security awareness and education are also key.&nbsp; Also, unlike Gord I don't think that agentless NAC is the only way to test devices.&nbsp; Especially if like Gord's product, all you are using to do so is nMap and an old version of Nessus (btw, Gord do you include the source code with your use of those open source products?). I think to truly test the full spectrum of devices accessing the network you need a combination of agentless, agent and web delivered testing options. You need a purpose built NAC testing engine.&nbsp; If you want to provide continuous monitoring, you need to do more than recycling your failed IDS technology. </p>

<p>Here is the bottom line for me. If you think the people accessing your network are like the Beaver and Wally, Gord's product may be just what you are looking for. If you have adults trying to do business and make you and your company succeed perhaps another NAC solution might be best for you. </p></div>

<p><a href="http://feeds.feedburner.com/~a/StillsecureAfterAllTheseYears?a=92pNav"><img src="http://feeds.feedburner.com/~a/StillsecureAfterAllTheseYears?i=92pNav" border="0"></img></a></p><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?a=3rnuw1F"><img src="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?i=3rnuw1F" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?a=AQU7xlF"><img src="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?i=AQU7xlF" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?a=ctdspeF"><img src="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?i=ctdspeF" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?a=RvMBHxF"><img src="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?i=RvMBHxF" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?a=2OzVvRf"><img src="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?i=2OzVvRf" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?a=O67j7if"><img src="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?i=O67j7if" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/StillsecureAfterAllTheseYears/~4/251158829" height="1" width="1"/>]]></content:encoded>
      <pubDate>Thu, 13 Mar 2008 20:06:10 +0000</pubDate>
      <category domain="http://securityratty.com/tag/network users">network users</category>
      <category domain="http://securityratty.com/tag/network users arrogant">network users arrogant</category>
      <category domain="http://securityratty.com/tag/network">network</category>
      <category domain="http://securityratty.com/tag/network administrators">network administrators</category>
      <category domain="http://securityratty.com/tag/nac">nac</category>
      <category domain="http://securityratty.com/tag/users">users</category>
      <category domain="http://securityratty.com/tag/nac solution">nac solution</category>
      <category domain="http://securityratty.com/tag/nac product">nac product</category>
      <category domain="http://securityratty.com/tag/product">product</category>
      <source url="http://feeds.feedburner.com/~r/StillsecureAfterAllTheseYears/~3/251158829/nac-for-grown-u.html">NAC for grown-ups</source>
    </item>
    <item>
      <title><![CDATA[Hacking tool guidance finally appears]]></title>
      <link>http://securityratty.com/article/0d0dcee0f1d5904f732e15be6f7a1940</link>
      <guid>http://securityratty.com/article/0d0dcee0f1d5904f732e15be6f7a1940</guid>
      <description><![CDATA[When civil servants talk about spring they mean before Parliament rises in July and by the summer they usually mean before the party conference season in September. But it seems that when a minister...]]></description>
      <content:encoded><![CDATA[<p>When civil servants talk about &#8220;spring&#8221; they mean before Parliament rises in July and by &#8220;the summer&#8221; they usually mean &#8220;before the party conference season&#8221; in September. But it seems that when a minister <a href="http://www.publications.parliament.uk/pa/ld200607/ldselect/ldsctech/165/7032807.htm">tells a Lords Committee &#8220;the end of the summer&#8221;</a> they mean the last day of December. Well it has been <a href="http://www.botanic.cam.ac.uk/weather.htm">pretty cold recently</a>, so I expect that concentrated their minds!</p>
<p>This &#8220;summer&#8221; event which can be reported today, is the publication of <a href="http://www.cps.gov.uk/legal/section12/chapter_s.html">the Crown Prosecution Service guidance</a> on what should be considered before bringing prosecutions under s3A of the Computer Misuse Act, when amendments to it come into force &#8212; probably April 2008 (for reasons that <a href="http://www.lightbluetouchpaper.org/2007/06/19/hacking-tools-are-legal-for-a-little-longer/">I discussed last July</a>).</p>
<p>What is at issue is so-called hacking tools, and the problem arises because almost every hacking tool you can think of from <a href="http://www.perl.org/">perl</a> to <a href="http://insecure.org/nmap/">nmap</a> is dual use &#8212; the good guys use it for good purposes, and the bad guys use it for bad.  The bad guys are of course committing an offence, and the good guys are not &#8230; but the complexity surrounds &#8220;distribution&#8221;, if a good guy runs a website and a lot of bad people download the tool from it, has the good guy committed an offence?</p>
<p>The actual wording of the offence says <code>"supply or offer to supply, believing that it is likely to be used to commit, or to assist in the commission of [a Computer Misuse Act s1/s3 offence]"</code> and so we need to know what <code>"believing that it is likely"</code> might mean. Whilst the law was going through Parliament the Home Office suggested that &#8220;likely&#8221; would be a 50% test, and they promised to publish the guidance to prosecutors so we&#8217;d all know where we stood.</p>
<p>Anyway, that guidance is now out &#8212; and there&#8217;s no mention, <a href="http://en.wikipedia.org/wiki/Surprise,_Surprise">surprise, surprise</a>, of &#8220;50%&#8221;. Instead, the tests that the CPS will apply are:</p>
<ul>
<li>Has the article been developed primarily, deliberately and for the sole purpose of committing a CMA offence (i.e. unauthorised access to computer material)?</li>
<li>Is the article available on a wide scale commercial basis and sold through legitimate channels?</li>
<li>Is the article widely used for legitimate purposes?</li>
<li>Does it have a substantial installation base?</li>
<li>What was the context in which the article was used to commit the offence compared with its original intended purpose?</li>
</ul>
<p>which after a good start using words like &#8220;primarily&#8221; and &#8220;deliberately&#8221; (which would have been a sensible law to have in the first place) then goes a bit downhill in that prosecutors don&#8217;t know the <a href="http://mercury.tvu.ac.uk/~alan/grammar/howlers.html#e">difference between &#8220;i.e&#8221; and &#8220;e.g.&#8221;</a> and seem to think that <a href="http://www.fsf.org/">software is generally sold</a> (!), and rather misses the point of dual use by talking about using the tool in a different &#8220;context&#8221;.</p>
<p>Still, the &#8220;installed base&#8221; test should at least allow people to distribute perl without qualms (millions of users) &#8212; though do note that these are the tests which will be applied at the &#8220;deciding if you ought to be charged with an offence&#8221; stage, not the points of law and interpretation that the court will use in deciding <a href="http://www.cartoonstock.com/blowup_stock.asp?imageref=vsh0162">your guilt</a>.</p>
]]></content:encoded>
      <pubDate>Mon, 31 Dec 2007 14:50:32 +0000</pubDate>
      <category domain="http://securityratty.com/tag/bad">bad</category>
      <category domain="http://securityratty.com/tag/bad people download">bad people download</category>
      <category domain="http://securityratty.com/tag/cma offence">cma offence</category>
      <category domain="http://securityratty.com/tag/offence">offence</category>
      <category domain="http://securityratty.com/tag/bad guys">bad guys</category>
      <category domain="http://securityratty.com/tag/guys">guys</category>
      <category domain="http://securityratty.com/tag/offence stage">offence stage</category>
      <category domain="http://securityratty.com/tag/tool">tool</category>
      <category domain="http://securityratty.com/tag/article widely">article widely</category>
      <source url="http://www.lightbluetouchpaper.org/2007/12/31/hacking-tool-guidance-finally-appears/">Hacking tool guidance finally appears</source>
    </item>
    <item>
      <title><![CDATA[Security World: Zenmap - Nmap official GUI screenshots]]></title>
      <link>http://securityratty.com/article/9c4dd4c89973d85192c8ddea9eceb136</link>
      <guid>http://securityratty.com/article/9c4dd4c89973d85192c8ddea9eceb136</guid>
      <description><![CDATA[Zenmap is the official Nmap Security Scanner GUI. It is a multi-platform free and open source application which aims to make Nmap easy for beginners to use while providing advanced features for...]]></description>
      <content:encoded><![CDATA[Zenmap is the official Nmap Security Scanner GUI. It is a multi-platform free and open source application which aims to make Nmap easy for beginners to use while providing advanced features for experi...]]></content:encoded>
      <pubDate>Fri, 14 Dec 2007 15:20:14 +0000</pubDate>
      <category domain="http://securityratty.com/tag/source application">source application</category>
      <category domain="http://securityratty.com/tag/nmap easy">nmap easy</category>
      <category domain="http://securityratty.com/tag/zenmap">zenmap</category>
      <category domain="http://securityratty.com/tag/multi-platform free">multi-platform free</category>
      <category domain="http://securityratty.com/tag/experi">experi</category>
      <category domain="http://securityratty.com/tag/features">features</category>
      <category domain="http://securityratty.com/tag/beginners">beginners</category>
      <category domain="http://securityratty.com/tag/aims">aims</category>
      <source url="http://feeds.feedburner.com/~r/HelpNetSecurity/~3/200382412/secworld.php">Security World: Zenmap - Nmap official GUI screenshots</source>
    </item>
    <item>
      <title><![CDATA[Security World: 10 years of Nmap celebrated with a new stable release]]></title>
      <link>http://securityratty.com/article/087121b8fe1f7717efb8ab6d6d990683</link>
      <guid>http://securityratty.com/article/087121b8fe1f7717efb8ab6d6d990683</guid>
      <description><![CDATA[To celebrate the 10th anniversary of this powerful tool, Nmap 4.50 has been released. It is the first stable release in more than a year and the first major release since 4.00 two years ago....]]></description>
      <content:encoded><![CDATA[To celebrate the 10th anniversary of this powerful tool, Nmap 4.50 has been released.  It is the first stable release in more than a year and the first major release since 4.00 two years ago.
 
 
 
 T...]]></content:encoded>
      <pubDate>Fri, 14 Dec 2007 15:12:37 +0000</pubDate>
      <category domain="http://securityratty.com/tag/stable release">stable release</category>
      <category domain="http://securityratty.com/tag/major release">major release</category>
      <category domain="http://securityratty.com/tag/nmap">nmap</category>
      <category domain="http://securityratty.com/tag/powerful tool">powerful tool</category>
      <category domain="http://securityratty.com/tag/10th anniversary">10th anniversary</category>
      <category domain="http://securityratty.com/tag/ago">ago</category>
      <source url="http://feeds.feedburner.com/~r/HelpNetSecurity/~3/200375083/secworld.php">Security World: 10 years of Nmap celebrated with a new stable release</source>
    </item>
    <item>
      <title><![CDATA[Nokia 770/800 Pen-Testing Setup (Nmap, Kismet, Dsniff and other fun stuff) Video]]></title>
      <link>http://securityratty.com/article/def42aef6fb866619a5efdb8445d4fac</link>
      <guid>http://securityratty.com/article/def42aef6fb866619a5efdb8445d4fac</guid>
      <description><![CDATA[New Video: Nokia 770/800 Pen-Testing Setup (Nmap, Kismet, Dsniff and other fun stuff
This video introduces the viewer to using a Nokia Internet Tablet as a pen-testing...]]></description>
      <content:encoded><![CDATA[New Video:
<a href="http://www.irongeek.com/i.php?page=videos/nokia-770-800-pen-testing-setup">
Nokia 770/800 Pen-Testing Setup (Nmap, Kismet, Dsniff and other fun stuff)</a><br>
This video introduces the viewer to using a Nokia Internet Tablet as a 
pen-testing device.]]></content:encoded>
      <pubDate>Tue, 25 Sep 2007 18:27:43 +0000</pubDate>
      <category domain="http://securityratty.com/tag/nokia">nokia</category>
      <category domain="http://securityratty.com/tag/video">video</category>
      <category domain="http://securityratty.com/tag/fun stuff">fun stuff</category>
      <category domain="http://securityratty.com/tag/nokia internet tablet">nokia internet tablet</category>
      <category domain="http://securityratty.com/tag/video introduces">video introduces</category>
      <category domain="http://securityratty.com/tag/nmap">nmap</category>
      <category domain="http://securityratty.com/tag/kismet">kismet</category>
      <category domain="http://securityratty.com/tag/dsniff">dsniff</category>
      <category domain="http://securityratty.com/tag/setup">setup</category>
      <source url="http://www.irongeek.com/i.php?page=videos/nokia-770-800-pen-testing-setup">Nokia 770/800 Pen-Testing Setup (Nmap, Kismet, Dsniff and other fun stuff) Video</source>
    </item>
  </channel>
</rss>
