<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Security Tools News &#38; Tips &#187; vulnerability Scanner</title>
	<atom:link href="http://securitytnt.com/category/tools/vulnerability-scanner/feed/" rel="self" type="application/rss+xml" />
	<link>http://securitytnt.com</link>
	<description>Just another WordPress weblog</description>
	<lastBuildDate>Tue, 24 Nov 2009 19:07:09 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.8.4</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>Wireshark</title>
		<link>http://securitytnt.com/wireshark/</link>
		<comments>http://securitytnt.com/wireshark/#comments</comments>
		<pubDate>Thu, 20 Aug 2009 22:33:52 +0000</pubDate>
		<dc:creator>Niranjan</dc:creator>
				<category><![CDATA[Forensics]]></category>
		<category><![CDATA[Freeware]]></category>
		<category><![CDATA[IDS/IPS]]></category>
		<category><![CDATA[Linux/Unix]]></category>
		<category><![CDATA[Network]]></category>
		<category><![CDATA[OSX]]></category>
		<category><![CDATA[Packet Sniffer]]></category>
		<category><![CDATA[Tools]]></category>
		<category><![CDATA[Windows]]></category>
		<category><![CDATA[Wireless]]></category>
		<category><![CDATA[vulnerability Scanner]]></category>
<category>ethereal</category><category>packet sniffer</category><category>wireshark</category>
		<guid isPermaLink="false">http://securitytnt.com/wireshark/</guid>
		<description><![CDATA[Wireshark is the world&#8217;s foremost network protocol analyzer, and is the de facto (and often de jure) standard across many industries and educational institutions. Wireshark development thrives thanks to the contributions of networking experts across the globe. It is the continuation of a project that started in 1998. It started as Ethereal but was later [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://securitytnt.com/wireshark"><img src="http://securitytnt.com/wp-content/uploads/2009/08/wireshark.jpg" height="104" width="104" border="1" align="left" hspace="4" vspace="4" alt="Wireshark" /></a>Wireshark is the world&#8217;s foremost network protocol analyzer, and is the de facto (and often de jure) standard across many industries and educational institutions. Wireshark development thrives thanks to the contributions of networking experts across the globe. It is the continuation of a project that started in 1998. It started as Ethereal but was later re-branded as Wireshark due to trademark issues.</p>
<p><span id="more-348"></span><br />
<a href="http://www.wireshark.org/download.html">Wireshark Homepage</a></p>
]]></content:encoded>
			<wfw:commentRss>http://securitytnt.com/wireshark/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Sandcat</title>
		<link>http://securitytnt.com/sandcat/</link>
		<comments>http://securitytnt.com/sandcat/#comments</comments>
		<pubDate>Tue, 18 Aug 2009 21:11:20 +0000</pubDate>
		<dc:creator>Niranjan</dc:creator>
				<category><![CDATA[Freeware]]></category>
		<category><![CDATA[Tools]]></category>
		<category><![CDATA[Windows]]></category>
		<category><![CDATA[vulnerability Scanner]]></category>
<category>sandcat</category><category>web application security scanner</category>
		<guid isPermaLink="false">http://securitytnt.com/sandcat/</guid>
		<description><![CDATA[Sandcat is a feature-rich and advanced web application security scanner. It&#8217;s a windows based application which helps to scan emerging Web 2.0 technologies such as AJAX, traditional Web technologies, and Web programming languages such as PHP. Sandcat&#8217;s fast engine interacts with a truly unique, up-to-date and extremely extensive database of checks and uses sophisticated techniques [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://securitytnt.com/sandcat"><img src="http://securitytnt.com/wp-content/uploads/2009/08/sandcat_symbol.png" height="48" width="48" border="1" align="left" hspace="4" vspace="4" alt="Sandcat Symbol" /></a>Sandcat is a feature-rich and advanced web application security scanner. It&#8217;s a windows based application which helps to scan emerging Web 2.0 technologies such as AJAX, traditional Web technologies, and Web programming languages such as PHP. Sandcat&#8217;s fast engine interacts with a truly unique, up-to-date and extremely extensive database of checks and uses sophisticated techniques such as the newly introduced filter evasion and false positive reduction to give you stunning results. Sandcat has a free and pro versions.</p>
<p><span id="more-345"></span><br />
<a href="http://www.syhunt.com/sandcat">Sandcat Homepage</a></p>
]]></content:encoded>
			<wfw:commentRss>http://securitytnt.com/sandcat/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Babel Enterprise</title>
		<link>http://securitytnt.com/babel-enterprise/</link>
		<comments>http://securitytnt.com/babel-enterprise/#comments</comments>
		<pubDate>Mon, 06 Aug 2007 03:48:18 +0000</pubDate>
		<dc:creator>Niranjan</dc:creator>
				<category><![CDATA[Freeware]]></category>
		<category><![CDATA[Linux/Unix]]></category>
		<category><![CDATA[Tools]]></category>
		<category><![CDATA[Windows]]></category>
		<category><![CDATA[vulnerability Scanner]]></category>

		<guid isPermaLink="false">http://securitytnt.com/babel-enterprise/</guid>
		<description><![CDATA[Babel Enterprise is a systems auditing tool. Babel performs a security level check of the machine, or hardening. The check consists of a number of auditing tests that obtain a snap of the security status of each machine. The result is a security index of the system that is given after each execution. Babel Enterprise [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://securitytnt.com/babel-enterprise/"><img src="http://securitytnt.com/wp-content/uploads/2007/08/babel_auditprocess.png" height="50" width="180" border="1" align="left" hspace="4" vspace="4" alt="Babel Auditprocess" /></a>Babel Enterprise is a systems auditing tool. Babel performs a security level check of the machine, or hardening. The check consists of a number of auditing tests that obtain a snap of the security status of each machine. The result is a security index of the system that is given after each execution. Babel Enterprise has a version of its agent for each of the latest Microsoft operating systems, Windows 2003 and Windows XP, and the main Unix system: Solaris 10, AIX 5.x, SUSE GNU/Linux 9 ES and Ubuntu Dapper, although they can be easily adapted to different versions and other UNIX OSs (such as BDS or HP-UX ).<br />
<span id="more-342"></span><br />
<a href="http://babel.sourceforge.net/en/index.php">Babel Enterprise Homepage</a></p>
]]></content:encoded>
			<wfw:commentRss>http://securitytnt.com/babel-enterprise/feed/</wfw:commentRss>
		<slash:comments>-9</slash:comments>
		</item>
		<item>
		<title>McAfee Rootkit Detective</title>
		<link>http://securitytnt.com/mcafee-rootkit-detective/</link>
		<comments>http://securitytnt.com/mcafee-rootkit-detective/#comments</comments>
		<pubDate>Thu, 02 Aug 2007 02:32:44 +0000</pubDate>
		<dc:creator>Niranjan</dc:creator>
				<category><![CDATA[Freeware]]></category>
		<category><![CDATA[Network]]></category>
		<category><![CDATA[Tools]]></category>
		<category><![CDATA[Windows]]></category>
		<category><![CDATA[vulnerability Scanner]]></category>

		<guid isPermaLink="false">http://securitytnt.com/mcafee-rootkit-detective/</guid>
		<description><![CDATA[McAfee Rootkit Detective 1.0 is a free program designed and developed by McAfee Avert Labs to proactively detect and clean rootkits that are running on the Windows system. This program is not dependent on any signatures and can proactively detect most of the existing and upcoming rootkits and allow the user to clean them. Some [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://securitytnt.com/mcafee-rootkit-detective/"><img src="http://securitytnt.com/wp-content/uploads/2007/08/rk-detective-1.png" height="64" width="180" border="1" align="left" hspace="4" vspace="4" alt="Rk-Detective-1" /></a>McAfee Rootkit Detective 1.0 is a free program designed and developed by McAfee Avert Labs to proactively detect and clean rootkits that are running on the Windows system. This program is not dependent on any signatures and can proactively detect most of the existing and upcoming rootkits and allow the user to clean them. Some of the features of Rootkit Detective:<br />
* Designed to proactively detect the system objects like processes, files and registry that are hidden to the user.<br />
* Provides information about all running processes in the system.<br />
* Provides information about various system hooks like SSDT(System Service Descriptor Table) hooks, user/kernel IAT/EAT(Import/Export Address Table) hooks.<br />
* Allows the user to clean/remove the malicious objects from the system by renaming/deleting the hidden files/registry.<br />
* Allows the user to terminate the malicious processes.<br />
* Users can submit samples using the submission feature present in the tool.<br />
* Users can also collect the samples manually after renaming them and submit to stinger@avertlabs.com for further analysis.</p>
<p><span id="more-340"></span><br />
<a href="http://vil.nai.com/vil/stinger/rkstinger.aspx">McAfee Rootkit Detective Homepage</a></p>
]]></content:encoded>
			<wfw:commentRss>http://securitytnt.com/mcafee-rootkit-detective/feed/</wfw:commentRss>
		<slash:comments>-12</slash:comments>
		</item>
		<item>
		<title>Sussen</title>
		<link>http://securitytnt.com/sussen/</link>
		<comments>http://securitytnt.com/sussen/#comments</comments>
		<pubDate>Wed, 01 Aug 2007 08:56:44 +0000</pubDate>
		<dc:creator>Niranjan</dc:creator>
				<category><![CDATA[Freeware]]></category>
		<category><![CDATA[Linux/Unix]]></category>
		<category><![CDATA[Tools]]></category>
		<category><![CDATA[Windows]]></category>
		<category><![CDATA[vulnerability Scanner]]></category>

		<guid isPermaLink="false">http://securitytnt.com/sussen/</guid>
		<description><![CDATA[Sussen is a tool that checks for vulnerabilities and configuration issues on computer systems. It is based on the Open Vulnerability and Assessment Language. The Sussen project is comprised of three main components: 
Interpreter &#8211; This library can analyze a system using OVAL definition files. It comes with documentation and a test suite. All the [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://securitytnt.com/sussen/"><img src="http://securitytnt.com/wp-content/uploads/2007/08/sussen-applet.png" height="151" width="180" border="1" align="left" hspace="4" vspace="4" alt="Sussen-Applet" /></a>Sussen is a tool that checks for vulnerabilities and configuration issues on computer systems. It is based on the Open Vulnerability and Assessment Language. The Sussen project is comprised of three main components: </p>
<p>Interpreter &#8211; This library can analyze a system using OVAL definition files. It comes with documentation and a test suite. All the other components depend on it. This can also be used by application developers who wish to add this kind of functionality to their applications.<br />
Applet &#8211; A GNOME-based applet for your desktop. Allows users to easily scan their systems for vulnerabilities.<br />
Agent &#8211; A command line program for scanning a system.</p>
<p>The interpreter takes a set of OVAL definitions and starts to collect characteristics and configuration information about the target system. These are non-destructive probes and are not running any exploit code. After the data collection is complete it analyzes each OVAL definition and sees if the conditions were met on the target system. When the analysis is complete the results are presented to the user.<br />
<span id="more-339"></span><br />
<a href="http://dev.mmgsecurity.com/projects/sussen/">Sussen Homepage</a></p>
]]></content:encoded>
			<wfw:commentRss>http://securitytnt.com/sussen/feed/</wfw:commentRss>
		<slash:comments>-7</slash:comments>
		</item>
		<item>
		<title>SQL Power Injector</title>
		<link>http://securitytnt.com/sql-power-injector/</link>
		<comments>http://securitytnt.com/sql-power-injector/#comments</comments>
		<pubDate>Mon, 30 Jul 2007 07:00:58 +0000</pubDate>
		<dc:creator>Niranjan</dc:creator>
				<category><![CDATA[Freeware]]></category>
		<category><![CDATA[Network]]></category>
		<category><![CDATA[Tools]]></category>
		<category><![CDATA[Windows]]></category>
		<category><![CDATA[vulnerability Scanner]]></category>

		<guid isPermaLink="false">http://securitytnt.com/sql-power-injector/</guid>
		<description><![CDATA[SQL Power Injector is an application created in .Net 1.1 that helps the penetration tester to find and exploit SQL injections on a web page. For now it is SQL Server, Oracle, MySQL, Sybase/Adaptive Server and DB2 compliant, but it is possible to use it with any existing DBMS when using the inline injection (Normal [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://securitytnt.com/sql-power-injector/"><img src="http://securitytnt.com/wp-content/uploads/2007/07/sql-injector.png" height="97" width="173" border="1" align="left" hspace="4" vspace="4" alt="Sql-Injector" /></a>SQL Power Injector is an application created in .Net 1.1 that helps the penetration tester to find and exploit SQL injections on a web page. For now it is SQL Server, Oracle, MySQL, Sybase/Adaptive Server and DB2 compliant, but it is possible to use it with any existing DBMS when using the inline injection (Normal mode). Indeed, the normal mode is basically the SQL command that someone will put in the parameter sent to the server.</p>
<p><span id="more-337"></span><br />
<a href="http://www.sqlpowerinjector.com/download.htm">SQL Power Injector Homepage</a></p>
]]></content:encoded>
			<wfw:commentRss>http://securitytnt.com/sql-power-injector/feed/</wfw:commentRss>
		<slash:comments>-5</slash:comments>
		</item>
		<item>
		<title>Secunia Personal Software Inspector (Beta)</title>
		<link>http://securitytnt.com/secunia-personal-software-inspector-beta/</link>
		<comments>http://securitytnt.com/secunia-personal-software-inspector-beta/#comments</comments>
		<pubDate>Fri, 27 Jul 2007 02:20:14 +0000</pubDate>
		<dc:creator>Niranjan</dc:creator>
				<category><![CDATA[Freeware]]></category>
		<category><![CDATA[Tools]]></category>
		<category><![CDATA[Windows]]></category>
		<category><![CDATA[vulnerability Scanner]]></category>

		<guid isPermaLink="false">http://securitytnt.com/secunia-personal-software-inspector-beta/</guid>
		<description><![CDATA[The Secunia Personal Software Inspector (Beta) detects installed software and categorises your software as either Insecure, End-of-Life, or Up-To-Date. Effectively enabling you to focus your attention on software installations where more secure versions are available from the vendors. Highlights of The Secunia PSI: The Secunia PSI will be available free of charge; Calculates your unique [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://securitytnt.com/secunia-personal-software-inspector-beta"><img src="http://securitytnt.com/wp-content/uploads/2007/07/secunia-PSI.png" height="42" width="280" border="1" align="left" hspace="4" vspace="4" alt="Secunia-Psi" /></a>The Secunia Personal Software Inspector (Beta) detects installed software and categorises your software as either Insecure, End-of-Life, or Up-To-Date. Effectively enabling you to focus your attention on software installations where more secure versions are available from the vendors. Highlights of The Secunia PSI: The Secunia PSI will be available free of charge; Calculates your unique Secunia System Score; Automatically scans your computer; Enables you to update Insecure/End-of-Life software; Provides Direct Download Links to security updates &#38; patches; Detects and advises on more than 4,200 applications; Direct correlation between thousands of Secunia Advisories and your specific system and software; Secure SSL encrypted connection to Secunia.</p>
<p><span id="more-336"></span><br />
<a href="https://psi.secunia.com/">Secunia PSI Homepage</a></p>
]]></content:encoded>
			<wfw:commentRss>http://securitytnt.com/secunia-personal-software-inspector-beta/feed/</wfw:commentRss>
		<slash:comments>-3</slash:comments>
		</item>
		<item>
		<title>LCP</title>
		<link>http://securitytnt.com/lcp/</link>
		<comments>http://securitytnt.com/lcp/#comments</comments>
		<pubDate>Mon, 23 Jul 2007 05:27:28 +0000</pubDate>
		<dc:creator>Niranjan</dc:creator>
				<category><![CDATA[Freeware]]></category>
		<category><![CDATA[Password Cracker]]></category>
		<category><![CDATA[Tools]]></category>
		<category><![CDATA[Windows]]></category>
		<category><![CDATA[vulnerability Scanner]]></category>
<category>L0phtCrack</category><category>LC5</category><category>LCP</category><category>Windows Password Cracker</category>
		<guid isPermaLink="false">http://securitytnt.com/lcp/</guid>
		<description><![CDATA[LCP is a free Windows password cracker created to replace the very popular L0phtCrack since Symantec stopped it&#8217;s development. LCP uses combination of dictionary and brute force attacks to guess the passwords. LCP can crack common passwords in matter of seconds, the more advanced passwords with numbers and characters take longer. LCP helps administrators to [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://securitytnt.com/lcp/"><img src="http://securitytnt.com/wp-content/uploads/2007/07/lcp-1.png" height="53" width="160" border="1" align="left" hspace="4" vspace="4" alt="Lcp-1" /></a>LCP is a free Windows password cracker created to replace the very popular L0phtCrack since Symantec stopped it&#8217;s development. LCP uses combination of dictionary and brute force attacks to guess the passwords. LCP can crack common passwords in matter of seconds, the more advanced passwords with numbers and characters take longer. LCP helps administrators to identify and remediate security vulnerabilities that result from the use of weak or easily guessed passwords. It also helps to recover lost passwords and to streamline migration of users to another authentication system.<br />
<span id="more-334"></span><br />
<a href="http://www.lcpsoft.com/english/download.htm">Download LCP</a></p>
]]></content:encoded>
			<wfw:commentRss>http://securitytnt.com/lcp/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>SSA &#8211; Security System Analyzer</title>
		<link>http://securitytnt.com/ssa-security-system-analyzer/</link>
		<comments>http://securitytnt.com/ssa-security-system-analyzer/#comments</comments>
		<pubDate>Thu, 19 Jul 2007 07:32:28 +0000</pubDate>
		<dc:creator>Niranjan</dc:creator>
				<category><![CDATA[Freeware]]></category>
		<category><![CDATA[Tools]]></category>
		<category><![CDATA[Windows]]></category>
		<category><![CDATA[vulnerability Scanner]]></category>

		<guid isPermaLink="false">http://securitytnt.com/ssa-security-system-analyzer/</guid>
		<description><![CDATA[SSA (Security System Analyzer) is a free non-intrusive OVAL-Compatible policy compliance and vulnerability assessment software. It provides auditors and security officers a comprehensive solution to keep pace with security compliance requirements (patch management, vulnerability management, software inventories&#8230;). Features: OVAL-compatible product; SCAP (Security Content Automation Protocol); Perform a deep inventory audit on installed softwares and applications; [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://securitytnt.com/ssa-security-system-analyzer/"><img src="http://securitytnt.com/wp-content/uploads/2007/07/ssa.png" height="43" width="220" border="1" align="left" hspace="4" vspace="4" alt="Ssa" /></a>SSA (Security System Analyzer) is a free non-intrusive OVAL-Compatible policy compliance and vulnerability assessment software. It provides auditors and security officers a comprehensive solution to keep pace with security compliance requirements (patch management, vulnerability management, software inventories&#8230;). Features: OVAL-compatible product; SCAP (Security Content Automation Protocol); Perform a deep inventory audit on installed softwares and applications; Scan and map vulnerabilities using non-intrusive techniques based on schemas; Detect and identify missed patches and hotfixes; Define a patch management deployment strategy using CVSS scores.</p>
<p><span id="more-332"></span><br />
<a href="http://www.security-database.com/ssa.php">SSA Homepage</a></p>
]]></content:encoded>
			<wfw:commentRss>http://securitytnt.com/ssa-security-system-analyzer/feed/</wfw:commentRss>
		<slash:comments>-1</slash:comments>
		</item>
		<item>
		<title>DirBuster</title>
		<link>http://securitytnt.com/dirbuster/</link>
		<comments>http://securitytnt.com/dirbuster/#comments</comments>
		<pubDate>Thu, 12 Jul 2007 14:26:04 +0000</pubDate>
		<dc:creator>Niranjan</dc:creator>
				<category><![CDATA[Freeware]]></category>
		<category><![CDATA[Linux/Unix]]></category>
		<category><![CDATA[OSX]]></category>
		<category><![CDATA[Tools]]></category>
		<category><![CDATA[Windows]]></category>
		<category><![CDATA[vulnerability Scanner]]></category>

		<guid isPermaLink="false">http://securitytnt.com/dirbuster/</guid>
		<description><![CDATA[DirBuster is a multi threaded java application designed to brute force directories and files names on web/application servers. Often is the case now of what looks like a web server in a state of default installation is actually not, and has pages and applications hidden within. DirBuster attempts to find these. What DirBuster can do [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://securitytnt.com/dirbuster/"><img src="http://securitytnt.com/wp-content/uploads/2007/01/webscarab.gif" height="125" width="125" border="1" align="left" hspace="4" vspace="4" alt="DirBuster" /></a>DirBuster is a multi threaded java application designed to brute force directories and files names on web/application servers. Often is the case now of what looks like a web server in a state of default installation is actually not, and has pages and applications hidden within. DirBuster attempts to find these. What DirBuster can do for you? Attempt to find hidden pages/directories and directories with a web application, thus giving a another attack vector (For example. Finding an unlinked to administration page).</p>
<p><span id="more-328"></span><br />
<a href="http://www.owasp.org/index.php/Category:OWASP_DirBuster_Project">Homepage</a></p>
]]></content:encoded>
			<wfw:commentRss>http://securitytnt.com/dirbuster/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

