Category: Vulnerability Assessment

MetaScanner V1.3!

Hi guys!,
Yet another version released purely thanks to those who submitted the outputs and suggestions. This release is a complete rewrite of the project. Now MetaScanner uses the xml output provided by nmap and so has a lot of false positives reduced. However as this is  a rewrite, you can expect a lot of bugs : P.

Please report any bugs or any other issues together with out.xml to kalgecin@maestro-sec.com
Read more »

Microsoft 10 Feb – patch tuesday

Hi all system admins…we again have some work to do : )

Microsoft released 4 patches this Tuesday. Details are as mentioned below.

Read more »

MetaScanner v1.1

Good news to you all!  Some of you may have experienced a blank page on my site during the weekend but it’s all fixed now. The problem was in uploading the home page to the server. the connection must have been reset at some point :) Anyway it’s all fixed now and i’ve spent the weekend enhancing and reducing the false positives of the script (thanks for the feedback/scan outputs from all of you). The final version of MetaScanner is out!!! You can download it from here. If you’ve got any question, suggestion or want to submit your scan output, please mail me at kalgecin@maestro-sec.com

DOWNAD.AD/Conficker- MS08-67 worms

Hi All

Win32/Conficker.B is a worm that infects other computers across a network by exploiting a vulnerability in the Windows Server service (SVCHOST.EXE). If the vulnerability is successfully exploited, it could allow remote code execution when file sharing is enabled. It may also spread via removable drives and weak administrator passwords. It disables several important system services and security products.Remember even one unpatched machine is enough to have this worm spread through the entire network.Ms08-67 worm is spreading infection over millions of computers.

http://www.f-secure.com/weblog/archives/00001579.html

Read more »

MetaScanner

Are you a regular Metasploit user?  Tired of scanning a host and tryout different vulnerabilities? Can’t get autopwn to work? It’s not enough? Well guess what?

Use MetaScanner!!!

What is it? It’s a script in ruby script that uses nmap’s output to compare to available exploits in metasploit. This little scanner is still young and need help and suggestions to make it a good one.

Please note that this is not a VULNERABILITY scanner but an EXPLOIT scanner limited to Metasploit exploits.
Feel free to download it and a user guide from :
http://kalgecin.110mb.com

Read more »

Tips to protect from Ms08-67 worm

Recent outbreak of MS08-67 worm, Downadup/Conflicker has already infected more than 9 million PCs. A special thing about this Microsoft Security Bulletin MS08-67 was that it was released out-of-band, it was given an “Exploitability Index Assessment” of “1 – Consistent exploit code likely” and it allows for Remote Code Execution, in numerous versions of Windows (particularly critical for 2000, XP, and Server 2003).

ms08-067_remotecodeexecution

Read more »

MS09-001: Microsoft’s first patch release for year 2009

Microsoft has released its MS09 series by patching a highly critical SMB vulnerability affecting Win2k, Win2k3, Winxp and even Vista and Win2k8.

Microsoft ratings are as mentioned below:

Read more »

Microsoft releases MS-08 Dec packed with 28 patches

Wow!! Jumbo patch released by Microsoft after a long time (5 years). Out of these 28 patches, 23 of them have been rated Critical, 3 have been rated important and two as moderate. The patches were issued in eight updates for Windows, Internet Explorer, Office, SharePoint, Windows Media, and popular development tools, Visual Basic and Visual Studio.

So these has to be in top to-do lists of security consultants. So one more reason to work or say drive the clients to work to patch.

Read more »

Metasploit 3.2 Offers More ‘Evil Deeds’

Ahaaaa.. Newer version of Metasploit is ready to be released sooner. these will contain few newer added features. To brief , they include names such as Browser AutoPwn, Metasploit in the Middle and the Evil Wireless Access Point. As all know Metasploit is free exploit scanner and the best available. Metasploit3.0 project has moved to an all Ruby programming base, which Moore credits with quickening development and exploits.

It has made hacking (for kiddies) very easy. Just choose the target, the exploit and the payload and Boom you get their shell (of-course if the system is vulnerable).

Read more »