Re: password cracker for PCAnywhere and VNC (RFB 003.008)

From: Idan Deshe (deshe.idan@gmail.com)
Date: Wed Mar 01 2006 - 15:57:04 EST


Actually brute-force will be the last thing to do unless you have at
least user name and password policy of the organization.
But here you go:

http://www.thc.org/download.php?t=r&f=hydra-5.2-src.tar.gz

Hydra will be a good choice for brute-forcing forms,vnc and ftp.

Idan.

On 3/1/06, 3 shool <3shool@gmail.com> wrote:
> Hi,
>
> I'm doing a Penetration Test for two servers. Nmap has identified both
> the servers as Windows 2003 .Net. Both the servers are running a web
> appilication each, 1 is on Lotus Domino and other on IIS 6.0. The
> first one looks to be Lotus Domino email server and the other what I
> found from its webpage is a Datawarehouse from Cognos (BI system).
>
> Nessus didn't show any vulnerability on these servers. But these
> systems have services like VNC and PCAnywhere. So I think Password
> Cracking at this stage would be the best idea.
>
> Could anyone suggest a good tool for password cracking following:
> 1. PCANywhere
> 2. VNC
> 3. Website forms (form based authentication using HTTPS)
> 4. FTP
>
> Await your reply.
>
> Thanks in advance.
>
> ------------------------------------------------------------------------------
> This List Sponsored by: Lancope
>
> "Discover the Security Benefits of Cisco NetFlow"
> Learn how Cisco NetFlow enables cost-effective security across distributed
> enterprise networks. StealthWatch, the veteran Network Behavior Analysis (NBA)
> and Response solution, leverages Cisco NetFlow to provide scalable,
> internal network security.
> Download FREE Whitepaper "Role of Network Behavior Analysis (NBA) and Response
> Systems in the Enterprise."
>
> http://www.lancope.com/resource/
> ------------------------------------------------------------------------------
>
>

------------------------------------------------------------------------------
This List Sponsored by: Lancope

"Discover the Security Benefits of Cisco NetFlow"
Learn how Cisco NetFlow enables cost-effective security across distributed
enterprise networks. StealthWatch, the veteran Network Behavior Analysis (NBA)
and Response solution, leverages Cisco NetFlow to provide scalable,
internal network security.
Download FREE Whitepaper "Role of Network Behavior Analysis (NBA) and Response
Systems in the Enterprise."

http://www.lancope.com/resource/
------------------------------------------------------------------------------



This archive was generated by hypermail 2.1.7 : Sat Apr 12 2008 - 10:55:35 EDT