Upgrading to latest Scientific Linux release

Scientific Linux was released a while ago. I'm still running 6.1. Time to update...

  1. yum -y --releasever=6.2 update

Done.

  1. $ cat /etc/system-release
  2. Scientific Linux release 6.2 (Carbon)
Permalink 05/18/12 04:09:00 pm, by fab Email , 24 words, Categories: General, Fedora , Leave a comment »

Alpine Linux 2.4.2 released

The Alpine Linux project is pleased to announce immediate availability of version 2.4.2 of its Alpine Linux operating system.

This is a bugfix release. Some of the news are:

  • Kernels upgraded to 3.3.6
  • Fix for live USB upgrades
  • Fix for installing packages via ACF
  • Fix for ifup/ifdown to support metric keyword
  • OpenSSL security fix (CVE-2012-2333)

Download: http://nl.alpinelinux.org/alpine/v2.4/releases/

Permalink 05/18/12 02:58:00 pm, by fab Email , 55 words, Categories: General , Leave a comment »

OpenVAS 5 verfügbar

OpenVAS 5 wurde gestern veröffentlicht. Neu ist: Asset-Management, Delta-Reports und eingebaute SCAP-Daten. Mehr Details können in der Ankündigung gelesen werden.

Permalink 05/11/12 12:49:00 pm, by fab Email , 19 words, Categories: General, Security , Leave a comment »

Tiny Core Linux 4.5

Es ist schon eine Weile her seit ich das letzte Mal mit Tiny Core Linux gespielt habe. Nach der Installation startet Tiny Core Linux extrem schnell. Als Vergleich ein Start von Alpine Linux und einer von Tiny Core Linux in einer virtuellen Maschine.

Alpine Linux: 12 s (bis Login)
Tiny Core Linux: 6 s

Die Messung ist nicht ganz fair, denn eine Alpine Linux-Instalaltion ist etwas umfangreicher als die von Tiny Core Linux. Der Start von Fedora dauert aber in jedem Fall um einiges länger. Ausser ich verzichte auf den Start der grafischen Oberfläche...der Vollständigkeithalber muss ich mal die Zeit messen bis eine Minimalinstallation von Fedora bereit ist. Dem Gefühl nach wird so sich etwa in der Grössenordnung von Alpine Linux bewegen

Sehr schön ist, dass bei Start von Tiny Core Linux eine Auswahl mit Window-Manager zur Verfügung steht.

Permalink 05/05/12 12:17:00 pm, by fab Email , 137 words, Categories: General, Fedora, Alpine , Leave a comment »

Alpine Linux 2.4 released

The Alpine Linux project is pleased to announce immediate availability of version 2.4 of its Alpine Linux operating system.

This release introduces some new features:

  • A new kernel based on Linux 3.3.
  • Improved support for configuring vlans, bonding and bridges.
  • Preliminary support for "provides" in apk-tools
  • New experimental ISO image for Xen dom0: alpine-xen.

Download: http://nl.alpinelinux.org/alpine/v2.4/releases/

Permalink 05/03/12 10:02:00 pm, by fab Email , 54 words, Categories: General, Alpine , Leave a comment »

Most Popular Linux Distribution

Wieder einmal hat jemand eine Umfrage gemacht...repräsentativ? Wohl kaum. Erstaunliches Ergebnis? Nein. Langweilig? Ja, sehr.

Arch Linux 14.56% (1,669 votes)
Ubuntu (and variants) 51.15% (5,863 votes)
Linux Mint 15.78% (1,809 votes)
Fedora 8.44% (967 votes)
Debian 10.08% (1,155 votes)

Total Votes: 11,463

Fazit: Trau keiner Statistik aus einer Umfrage, welche du nicht selber "optimiert" hast, resp. stell einer Gruppe die richtige Frage und daraus resultiert das richtige Resultat.

Permalink 04/24/12 10:45:00 pm, by fab Email , 57 words, Categories: General , Leave a comment »

crunch and Fedora

crunch is a wordlist generator. For test cases and demonstarations it's very useful to have a simple wordlist prepared to show how it works. I think that generating worklists is a missing feature for the Fedora Security Lab.

While compiling crunch on Fedora 16 x86_64 I ran into an issue.

/usr/include/gnu/stubs.h:7:27: fatal error: gnu/stubs-32.h: No such file or directory

Installing the corresponding package for 32 bit solves it.

sudo yum install -y glibc-devel.i686

Be aware, the Makefile of crunch will install the binary at a non-standard location.

Let's generate some numbers

./crunch 9 9 0123456789

Permalink 04/20/12 08:55:00 am, by fab Email , 90 words, Categories: General, Fedora, Security , Leave a comment »

Keep Metasploit up-to-date

If you have installed Metasploit on Fedora following this article, you can update Metasploit with the following command.

svn update /opt/metasploit4/msf/

or just use

msfupdate

Permalink 04/16/12 10:54:00 pm, by fab Email , 25 words, Categories: General, Fedora, Security , Leave a comment »

Wireless-Forum hat Geburtstag

Vor neun Jahren hat das wireless-forum.ch das Licht der Welt erblickt. Am 12.04.2003 wurde das Forum für die Öffentlichkeit geöffnet. Mit dieses Postings hat der Admin auf den Umstand versucht aufmerksam zu machen.

Die Anzahl der täglich registrierten Benutzer hat in der letzten Zeit abgenommen und wird wahrscheinlich auch in Zukunft weiterabnehmen.

Permalink 04/12/12 08:20:00 pm, by fab Email , 51 words, Categories: General, Wireless , Leave a comment »

rtsp-url-brute

In the source of the rtsp-url-brute script the path to the source file (rtsp-urls.txt) is mentioned. But is file is missing. While running nmap against my levelone FCS-0030 camera no URL is found.

  1. $ sudo nmap --script=rtsp-url-brute -p 554 10.0.0.115 -d
  2.  
  3. Starting Nmap 5.51 ( http://nmap.org ) at 2012-04-09 22:43 CEST
  4. --------------- Timing report ---------------
  5. hostgroups: min 1, max 100000
  6. rtt-timeouts: init 1000, min 100, max 10000
  7. max-scan-delay: TCP 1000, UDP 1000, SCTP 1000
  8. parallelism: min 0, max 0
  9. max-retries: 10, host-timeout: 0
  10. min-rate: 0, max-rate: 0
  11. ---------------------------------------------
  12. NSE: Loaded 1 scripts for scanning.
  13. NSE: Starting runlevel 1 (of 1) scan.
  14. Initiating Ping Scan at 22:43
  15. Scanning 10.0.0.115 [4 ports]
  16. Packet capture filter (device wlan0): dst host 10.0.1.45 and (icmp or ((tcp or udp or sctp) and (src host 10.0.0.115)))
  17. We got a ping packet back from 10.0.0.115: id = 12112 seq = 0 checksum = 53423
  18. Completed Ping Scan at 22:43, 0.02s elapsed (1 total hosts)
  19. Overall sending rates: 214.60 packets / s, 8154.94 bytes / s.
  20. mass_rdns: Using DNS server 156.154.70.1
  21. mass_rdns: Using DNS server 156.154.71.1
  22. Initiating Parallel DNS resolution of 1 host. at 22:43
  23. mass_rdns: 0.03s 0/1 [#: 2, OK: 0, NX: 0, DR: 0, SF: 0, TR: 1]
  24. Completed Parallel DNS resolution of 1 host. at 22:43, 0.03s elapsed
  25. DNS resolution of 1 IPs took 0.03s. Mode: Async [#: 2, OK: 0, NX: 1, DR: 0, SF: 0, TR: 1, CN: 0]
  26. Initiating SYN Stealth Scan at 22:43
  27. Scanning 10.0.0.115 [1 port]
  28. Packet capture filter (device wlan0): dst host 10.0.1.45 and (icmp or ((tcp or udp or sctp) and (src host 10.0.0.115)))
  29. Discovered open port 554/tcp on 10.0.0.115
  30. Completed SYN Stealth Scan at 22:43, 0.01s elapsed (1 total ports)
  31. Overall sending rates: 102.07 packets / s, 4491.17 bytes / s.
  32. NSE: Starting runlevel 1 (of 1) scan.
  33. NSE: Starting rtsp-url-brute against 10.0.0.115:554.
  34. NSE: Script scanning 10.0.0.115.
  35. Initiating NSE at 22:43
  36. NSE: Finished rtsp-url-brute against 10.0.0.115:554.
  37. Completed NSE at 22:43, 0.00s elapsed
  38. Nmap scan report for 10.0.0.115
  39. Host is up, received echo-reply (0.0012s latency).
  40. Scanned at 2012-04-09 22:43:12 CEST for 0s
  41. PORT STATE SERVICE REASON
  42. 554/tcp open rtsp syn-ack
  43. | rtsp-url-brute:
  44. |_ ERROR: No dictionary could be loaded
  45. Final times for host: srtt: 1191 rttvar: 3954 to: 100000
  46.  
  47. NSE: Starting runlevel 1 (of 1) scan.
  48. Read from /usr/share/nmap: nmap-payloads nmap-services.
  49. Nmap done: 1 IP address (1 host up) scanned in 0.13 seconds
  50. Raw packets sent: 5 (196B) | Rcvd: 2 (72B)

I was trying to resolve this with a simple file which contains the last parts of a possible address.

  1. cat << end_entry > > /usr/share/nmap/nselib/data/rtsp-urls.txt
  2. /av0
  3. /av0_0
  4. /av1
  5. /av2
  6. /cam
  7. /cam1
  8. /cam1/h264
  9. /cam1/h264
  10. /cam1/mjpeg
  11. /cam1/mpeg4
  12. /ch0
  13. /ch0.sdp
  14. /channel0
  15. /channel1
  16. /encoder1
  17. /h264
  18. /h264/media.amp
  19. /image.mpg
  20. /img/video.sav
  21. /ipcam.sdp
  22. /ipcam
  23. /jpeg
  24. /live/ch00_0
  25. /live.h264
  26. /live_mpeg4.sdp
  27. /live.sdp
  28. /livestream
  29. /media
  30. /media1
  31. /media/media.amp
  32. /media/video1
  33. /mpeg
  34. /mpeg4
  35. /mpeg4/1/media.amp
  36. /mpeg4/media.amp
  37. /mpg
  38. /mpg4/rtsp.amp
  39. /play1.sdp
  40. /play2.sdp
  41. /rtpvideo1.sdp
  42. /rtpvideo.sdp
  43. /stream
  44. /streaming/channels/0
  45. /video
  46. /video.mp4
  47. END_ENTRY

Doesn't work either.

Permalink 04/09/12 11:33:00 pm, by fab Email , 372 words, Categories: General, Multimedia, Security , Leave a comment »

1 2 3 4 5 6 7 8 9 10 11 ... 108 >>