Ethical Hacking

Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package.
Computer Forensics Training at InfoSec Institute

Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors.




Network Security Pen-Test
[Top] [All Lists]

RE: Windows based DoS Tools?

Subject: RE: Windows based DoS Tools?
Date: Tue, 11 Jan 2005 12:25:09 -0500
Quoting Jerry Shenk <jshenk@decommunications.com>:

How hard do you have to hit them to for the mitigation device to kick
in.  It seems that you should be able to generate enough traffic with
nmap although nmap really isn't designed for creating a DOS.  What you
really ought to do is approach this scientifically....find out the
thresholds and then generate just over that amount of traffic.  If it
trips on xx connections per minute, tune nmap's parameters to go that
high.  There is a GUI front end for Windows...I think, never used it.
You might try a SYN scan because that would leave the connection open.

Or is the mitigation device designed to kick clients off only if the
server starts to stumble?  If that's the case and you can use Linux
tools, you might try hping to just crank though opening port 80
connections as fast as it can.  ISIC was mentioned here a week or so ago
(http://www.packetfactory.net/projects/ISIC/isic-0.06.tgz) of course,
that's Linux too.


Hum I am suprised or maybe I have over looked it but I did not see any one
suggesting any of the live bootable linux distributions for him to use on those
windows test servers. In his last comment he mentioned he could not find
wintrino or another app a user suggested so he was going to look on the p2p
software for it. If he is willing to isntall wintrino from a p2p file, I don't
think those servers are to critical and could be rebooted for the testing. Once
he uses the live distro he can then use the tools on there or download and
compile other attack tools.

Here are some suggestions: Knoppix STD, Commander, PHALK, and Whoppix. There are
many otehrs out there.

Hope this helps some what

<Prev in Thread] Current Thread [Next in Thread>