Ethical Hacking Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package. | Computer Forensics Training at InfoSec Institute Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors. |

| Subject: | nmapbot: using instant messaging as a remote administration tool |
|---|---|
| Date: | Tue, 05 Oct 2004 01:06:43 -0400 |
-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1
I've created a small proof of concept named "nmapbot" that shows it is possible to use instant messaging as a platform for remote command and control of computer systems.
Purpose: - -------- To create a semi-intelligent security bot that uses instant messaging as a platform for receiving commands and returning results.
Method: - ------- Using Python, the AOL TOC protocol, Bayesian language processing, and nmap 3.70, I hacked together a little bot that can run nmap and ping. Future editions will include additional commands =)
Security pundits have been promoting the idea that IM is unsafe for several years...
nmapbot provides some new considerations to an old idea -- using ordinarily legitimate communication channels for unintended purposes.
The nmapbot rests squarely on the shoulders of python and projects such as Py-AIML, AIMLBayes, GrokItBot, and Reverend. Many thanks to fyodor et al. for the excellent tool suite in nmap 3.70.
If you are interested, you can find source code and documentation for nmap bot at: http://www.sharp-ideas.net
Cheers, Abe Usher, CISSP
-----BEGIN PGP SIGNATURE----- Version: GnuPG v1.2.4 (MingW32) Comment: Using GnuPG with Thunderbird - http://enigmail.mozdev.org
iD8DBQFBYivjT3X9miqOcSQRAnMcAJ9R5g/O4LJHo+qrtixtWISFact67wCghLt7 +hbo7jgInQx3IqMIOad0k8c= =EwQ3 -----END PGP SIGNATURE-----
------------------------------------------------------------------------------ Internet Security Systems. - Keeping You Ahead of the Threat
http://www.securityfocus.com/sponsor/ISS_pen-test_041001 -------------------------------------------------------------------------------
| <Prev in Thread] | Current Thread | [Next in Thread> |
|---|---|---|
| ||
| Previous by Date: | alternate (new?) web app exploitation angle--too much coffee version, Evans, Arian |
|---|---|
| Next by Date: | Penetration testing scope/outline, Billy Dodson |
| Previous by Thread: | alternate (new?) web app exploitation angle--too much coffee version, Evans, Arian |
| Next by Thread: | Penetration testing scope/outline, Billy Dodson |
| Indexes: | [Date] [Thread] [Top] [All Lists] |