full-disclosure-uk August 2007 archive
Main Archive Page > Month Archives  > full-disclosure-uk archives
full-disclosure-uk: [Full-disclosure] SSHatter

[Full-disclosure] SSHatter

From: Tim Brown <timb_at_nospam>
Date: Mon Aug 20 2007 - 22:12:01 GMT
To: full-disclosure@lists.grok.org.uk, bugtraq@lists.securityfocus.com, news@securiteam.com


All,

Whilst working on the next version of Fuzzled, I started playing with Parallel::ForkManager. At the same time, a friend was bemoaning not having a tool to carry out auditing of passwords via SSH. A couple of hours later, SSHatter was born.

SShatter is a password brute forcer for SSH, it is multi threaded and can audit more than one system and account in a given session. It can be downloaded from http://www.nth-dimension.org.uk/downloads.php?id=34.

Credit must be given to the authors of Parallel::ForkManager (Szabó, Balázs (dLux)) and Net::SSH::Perl (Benjamin Trott, David Rolsky, David Robins) on whose code SSHatter is dependant.

Remember, auditing systems without permission may be a crime, always read the label.

Tim -- Tim Brown
<mailto:timb@nth-dimension.org.uk>
<http://www.nth-dimension.org.uk/>
_______________________________________________ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by Secunia - http://secunia.com/