Section: .. / UNIX / IDS /
| /// File Name: |
samhain-2.3.3.tar.gz |
Description:
|
Samhain is a file system integrity checker that can be used as a client/server application for centralized monitoring of networked hosts. Databases and configuration files can be stored on the server. Databases, logs, and config files can be signed for tamper resistance. In addition to forwarding reports to the log server via authenticated TCP/IP connections, several other logging facilities (e-mail, console, and syslog) are available. Tested on Linux, AIX, HP-UX, Unixware, Sun and Solaris.
| | Author: | Rainer Wichmann | | Homepage: | http://samhain.sourceforge.net | | Changes: | Various updates. | | File Size: | 1719870 | | Last Modified: | Apr 2 20:18:34 2007 |
| MD5 Checksum: | ebde568b6067dc5ce2c1346265caf3dc |
|
| /// File Name: |
samhain-2.3.4.tar.gz |
Description:
|
Samhain is a file system integrity checker that can be used as a client/server application for centralized monitoring of networked hosts. Databases and configuration files can be stored on the server. Databases, logs, and config files can be signed for tamper resistance. In addition to forwarding reports to the log server via authenticated TCP/IP connections, several other logging facilities (e-mail, console, and syslog) are available. Tested on Linux, AIX, HP-UX, Unixware, Sun and Solaris.
| | Author: | Rainer Wichmann | | Homepage: | http://samhain.sourceforge.net | | Changes: | Various updates. | | File Size: | 1725798 | | Last Modified: | May 2 22:04:33 2007 |
| MD5 Checksum: | da5d5be7e0fe3e198d6fe4ed5277cab1 |
|
| /// File Name: |
samhain-2.3.5.tar.gz |
Description:
|
Samhain is a file system integrity checker that can be used as a client/server application for centralized monitoring of networked hosts. Databases and configuration files can be stored on the server. Databases, logs, and config files can be signed for tamper resistance. In addition to forwarding reports to the log server via authenticated TCP/IP connections, several other logging facilities (e-mail, console, and syslog) are available. Tested on Linux, AIX, HP-UX, Unixware, Sun and Solaris.
| | Author: | Rainer Wichmann | | Homepage: | http://samhain.sourceforge.net | | Changes: | Various updates. | | File Size: | 1726134 | | Last Modified: | Jun 21 15:49:55 2007 |
| MD5 Checksum: | 0351a6baee5d177432c6b7200b096105 |
|
| /// File Name: |
samhain-2.3.6.tar.gz |
Description:
|
Samhain is a file system integrity checker that can be used as a client/server application for centralized monitoring of networked hosts. Databases and configuration files can be stored on the server. Databases, logs, and config files can be signed for tamper resistance. In addition to forwarding reports to the log server via authenticated TCP/IP connections, several other logging facilities (e-mail, console, and syslog) are available. Tested on Linux, AIX, HP-UX, Unixware, Sun and Solaris.
| | Author: | Rainer Wichmann | | Homepage: | http://samhain.sourceforge.net | | Changes: | Various updates. | | File Size: | 1743505 | | Last Modified: | Sep 7 20:09:15 2007 |
| MD5 Checksum: | f120378aa3083ef1e7b6c621af09bbf1 |
|
| /// File Name: |
samhain-2.3.7.tar.gz |
Description:
|
Samhain is a file system integrity checker that can be used as a client/server application for centralized monitoring of networked hosts. Databases and configuration files can be stored on the server. Databases, logs, and config files can be signed for tamper resistance. In addition to forwarding reports to the log server via authenticated TCP/IP connections, several other logging facilities (e-mail, console, and syslog) are available. Tested on Linux, AIX, HP-UX, Unixware, Sun and Solaris.
| | Author: | Rainer Wichmann | | Homepage: | http://samhain.sourceforge.net | | Changes: | Various updates. | | File Size: | 1736992 | | Last Modified: | Sep 18 12:04:30 2007 |
| MD5 Checksum: | 250e5b4ec9127e4847805af3300a37ec |
|
| /// File Name: |
samhain-2.3.8.tar.gz |
Description:
|
Samhain is a file system integrity checker that can be used as a client/server application for centralized monitoring of networked hosts. Databases and configuration files can be stored on the server. Databases, logs, and config files can be signed for tamper resistance. In addition to forwarding reports to the log server via authenticated TCP/IP connections, several other logging facilities (e-mail, console, and syslog) are available. Tested on Linux, AIX, HP-UX, Unixware, Sun and Solaris.
| | Author: | Rainer Wichmann | | Homepage: | http://samhain.sourceforge.net | | Changes: | Various updates. | | File Size: | 1737900 | | Last Modified: | Oct 5 23:05:59 2007 |
| MD5 Checksum: | 022ca74d63b1c850ac016dc9af061838 |
|
| /// File Name: |
samhain-2.4.0.tar.gz |
Description:
|
Samhain is a file system integrity checker that can be used as a client/server application for centralized monitoring of networked hosts. Databases and configuration files can be stored on the server. Databases, logs, and config files can be signed for tamper resistance. In addition to forwarding reports to the log server via authenticated TCP/IP connections, several other logging facilities (e-mail, console, and syslog) are available. Tested on Linux, AIX, HP-UX, Unixware, Sun and Solaris.
| | Author: | Rainer Wichmann | | Homepage: | http://samhain.sourceforge.net | | Changes: | Various updates. | | File Size: | 1756687 | | Last Modified: | Nov 2 11:56:52 2007 |
| MD5 Checksum: | 930d1382a741604c0aa943280cc9484e |
|
| /// File Name: |
samhain-2.4.1.tar.gz |
Description:
|
Samhain is a file system integrity checker that can be used as a client/server application for centralized monitoring of networked hosts. Databases and configuration files can be stored on the server. Databases, logs, and config files can be signed for tamper resistance. In addition to forwarding reports to the log server via authenticated TCP/IP connections, several other logging facilities (e-mail, console, and syslog) are available. Tested on Linux, AIX, HP-UX, Unixware, Sun and Solaris.
| | Author: | Rainer Wichmann | | Homepage: | http://samhain.sourceforge.net | | Changes: | Various updates. | | File Size: | 1757118 | | Last Modified: | Nov 27 23:14:51 2007 |
| MD5 Checksum: | 21caeeb781f17d94df2cfc23e2404435 |
|
| /// File Name: |
samhain-2.4.3.tar.gz |
Description:
|
Samhain is a file system integrity checker that can be used as a client/server application for centralized monitoring of networked hosts. Databases and configuration files can be stored on the server. Databases, logs, and config files can be signed for tamper resistance. In addition to forwarding reports to the log server via authenticated TCP/IP connections, several other logging facilities (e-mail, console, and syslog) are available. Tested on Linux, AIX, HP-UX, Unixware, Sun and Solaris.
| | Author: | Rainer Wichmann | | Homepage: | http://samhain.sourceforge.net | | Changes: | Various updates. | | File Size: | 1760941 | | Last Modified: | Feb 5 20:03:18 2008 |
| MD5 Checksum: | 96b16066ea69f95687444b5dcb41f2d7 |
|
| /// File Name: |
samhain-2.4.4.tar.gz |
Description:
|
Samhain is a file system integrity checker that can be used as a client/server application for centralized monitoring of networked hosts. Databases and configuration files can be stored on the server. Databases, logs, and config files can be signed for tamper resistance. In addition to forwarding reports to the log server via authenticated TCP/IP connections, several other logging facilities (e-mail, console, and syslog) are available. Tested on Linux, AIX, HP-UX, Unixware, Sun and Solaris.
| | Author: | Rainer Wichmann | | Homepage: | http://samhain.sourceforge.net | | Changes: | Various updates. | | File Size: | 1729502 | | Last Modified: | May 6 16:13:34 2008 |
| MD5 Checksum: | 6777eb51fb868b543ba846a6fa5f41fd |
|
| /// File Name: |
scanlogd.c |
Description:
|
Example port scan detection tool. Pseudo code.
| | File Size: | 10069 | | Last Modified: | Aug 16 20:02:17 1999 |
| MD5 Checksum: | f06b8f9647890ac88eba709179ae4bd9 |
|
| /// File Name: |
scanpromisc.c |
Description:
|
REMOTE promiscuous ethernet detector. For Red Hat 5.x.
| | Author: | Savage of El Apostols. | | File Size: | 5009 | | Last Modified: | Aug 16 20:02:39 1999 |
| MD5 Checksum: | 3e1436917e8949442a939c11a1534f96 |
|
| /// File Name: |
scotty-2.1.9.tar.gz |
Description:
|
Powerful network editor/monitor that can understand SNMP, ICMP, DNS, HTTP, SUN RPC, NTP and UDP protocols. Tcl/Tk.
| | File Size: | 1385587 | | Last Modified: | Aug 16 20:02:21 1999 |
| MD5 Checksum: | e05307f54f3cf0a56eea39cf1fe73b0c |
|
| /// File Name: |
seclog |
Description:
|
Seclog (security logger) is a log auditing tool written in Perl. It will watch /var/log/messages for suspicious information, and notify you via email.
| | Author: | Dilusi0n | | Homepage: | http://www.gotr00t.com/~dilusi0n/ | | File Size: | 3391 | | Last Modified: | Mar 23 16:03:00 2000 |
| MD5 Checksum: | 478b20c9c35d7911278969dcfdac5aae |
|
| /// File Name: |
seclogv03.tar.gz |
Description:
|
Seclog (security logger) is a log auditing tool written in Perl. It will watch /var/log/messages for suspicious information and notify you via email.
| | Author: | Dilusi0n | | Homepage: | http://www.gotr00t.com/~dilusi0n/ | | Changes: | Major rewrite, all system calls have been removed, works much faster now, more secure, saves backups of the reports/mails it creates. | | File Size: | 1975 | | Last Modified: | Apr 3 20:02:57 2000 |
| MD5 Checksum: | 6ef5106814689b8a023946eaa3002edb |
|
| /// File Name: |
securelib.tar.gz |
Description:
|
Protect your RPC daemons against unauthorized access. Shared library for SunOS 4.1 and later.
| | File Size: | 9766 | | Last Modified: | Aug 16 20:02:15 1999 |
| MD5 Checksum: | 2d149f795d1dbcabd85e29225fcac6a3 |
|
| /// File Name: |
secureworx0_7-B1.sh |
Description:
|
Secure Worx (TM) Network Intrusion Detection System - The intrusion detection system is a network based system that performs high-speed traffic analysis of the content and context of a network packet to detect unauthorized traffic in real-time. It has inexpensive hardware and OS requirements. The intrusion detection system runs on a Intel Pentium class compatible processor with a 10/100 Ethernet card running the Linux OS with kernel 2.2 and above with a configured TCP/IP stack. The installation process involves running an installation script that asks a few simple questions. It is then a simple matter of starting the software and your network is then searched for anomalous activity.
| | Author: | Secure Worx | | Homepage: | http://secureworx.homestead.com | | File Size: | 107122 | | Last Modified: | May 2 19:35:35 2000 |
| MD5 Checksum: | a4743d99fc1ca09beb0fcf86ef7f7579 |
|
| /// File Name: |
sensorTrends-0.6.tar.gz |
Description:
|
sensorTrends is a GPL web-based application that displays a high-level view of the ports that are being scanned over the course of time. The display is similar to the look and feel of Internet Storm Center (incidents.org). Supported log formats are Cisco router Access Control Lists (ACLs) syslog output, Cisco PIX firewall syslog output, Snort's portscan.log files and NetScreen syslog output, and more. Demonstration page available here.
| | Author: | John Weidley | | Homepage: | http://www.packetshack.org/index.php?page=sensorTrends | | File Size: | 17499 | | Last Modified: | Oct 30 14:00:05 2003 |
| MD5 Checksum: | e038e47abfe3838a0ae230d2465c1cf1 |
|
| /// Directory: |
/ sentinel / |
Description:
|
The Sentinel project is designed to be a portable, accurate implementation of all publicly known promiscuous detection techniques.
| | Total Files: | 5 | | Last Modified: | Sep 5 21:21:00 2007 |
|
| /// File Name: |
sentinel-1.2.0.tar.gz |
Description:
|
Sentinel is a fast file/drive scanning utility similar to the Tripwire and Viper.pl utilities available. It uses a database similar to Tripwire, but uses a RIPEMD-160bit MAC checksumming algorithm (no patents) which is more secure than the patented MD5 128 bit checksum. It should run on most unixes (tested on redhat linux v6.0 & v5.2, slackware linux v3.x & 4.xb and IRIX (v5.2 and v6.x). Several other utilities which are used for Sentinel development are also posted here. Most utilities are included with the sentinel tarball. gSentinel is a graphical front-end to sentinel. Newbies should download gSentinel as it comes with a very simple rpm based installation and offers a friendly interface. Beware that gSentinel is currently under development and may be fairly crude compared to most GUI packages.
| | Homepage: | http://zurk.netpedia.net/zfile.html | | File Size: | 395168 | | Last Modified: | Jan 24 19:55:33 2000 |
| MD5 Checksum: | 6c7adcd611c90494db94c4e3f9b579cc |
|
| /// File Name: |
sentinel-1.2.1.tar.gz |
Description:
|
Sentinel is a fast file integrity checker similar to Tripwire or ViperDB with built in authentication using the RIPEMD 160 bit MAC hashing function. It uses a single database similar to Tripwire, maintains file integrity using the RIPEMD algorithm and also produces secure, signed logfiles. Its main design goal is to detect intruders modifying files. It also prevents intruders with root/superuser permissions from tampering with its log files and database.
| | Homepage: | http://zurk.sourceforge.net/zfile.html | | Changes: | A -fullcheck option has been added which allows you to check for files added to the drive even if they are not in the database. The efficiency and speed of the algorithms for checking and database creation have also been improved, allowing it to work at or near a hard disk's max throughput limits. | | File Size: | 407678 | | Last Modified: | Mar 21 17:11:09 2001 |
| MD5 Checksum: | 1dd56b8670f857d7f1299bbe7dd3ced7 |
|
| /// File Name: |
sentinel-1.2.1c.tar.gz |
Description:
|
Sentinel is a fast file integrity checker similar to Tripwire or ViperDB with built in authentication using the RIPEMD 160 bit MAC hashing function. It uses a single database similar to Tripwire, maintains file integrity using the RIPEMD algorithm and also produces secure, signed logfiles. Its main design goal is to detect intruders modifying files. It also prevents intruders with root/superuser permissions from tampering with its log files and database.
| | Homepage: | http://zurk.sourceforge.net/zfile.html | | Changes: | Sentinel-user for individual users has been added. The copyright has been changed to the FSF. This release also contains minor makefile updates. | | File Size: | 443155 | | Last Modified: | Apr 24 21:24:03 2001 |
| MD5 Checksum: | 87a55fcb020303d4d8efe60317948c3a |
|
| /// File Name: |
servme.tar |
Description:
|
Servme is a small daemon that listens on a port and logs the contents of all incoming connections to a file. New release allows emulation of ssh, Apache, VS-FTPD, telnetd, and generic open ports.
| | Author: | Chris | | Homepage: | http://www.cr-secure.net | | File Size: | 20480 | | Last Modified: | Aug 7 16:18:37 2004 |
| MD5 Checksum: | c317394522eebf8b04cb1b4ff4cfe6b5 |
|
| /// File Name: |
sf-0.1b.tgz |
Description:
|
Secure Files 0.1b is a security tool that checks system integrity by comparing the MD5 checksums of flagged files against their earlier recorded checksums.
| | Author: | vENOMOUS | | Homepage: | http://www.rdcrew.com.ar | | File Size: | 3645 | | Last Modified: | Aug 28 22:19:23 2000 |
| MD5 Checksum: | cae75ec5225047150b2055ad309208b8 |
|
| /// File Name: |
sfck.tar.gz |
Description:
|
Sfck is a program that locates file changes on your linux system. It keeps a database which you can put on a read-only disk to make sure no changes take place from a hacker/intruder. When a file change is detected it mails root.
| | Author: | Vision. | | File Size: | 3027 | | Last Modified: | Aug 16 20:02:40 1999 |
| MD5 Checksum: | 059733c5a98c11ca907f0160ee6b3a74 |
|
|
|
|
|