Friday, June 20, 2008

Backtrack 3 out - with VoIP security tools

The final Backtrack 3 is out and it features some VoIP tools in the /pentest directory:
  • SIPVicious (guess you know by now what this is about :)
  • Voiper - a SIP fuzzing toolkit which aims at identifying flaws in VoIP products that do SIP and SDP.
  • Sipbomber - a SIP testing tool which has test cases that are run against SIP enabled software / devices
  • SIP Rogue - allows application level man in the middle (MITM) attacks on SIP devices.
In the $PATH one can find:
  • VoIP Hopper - allows one to hop between VLANS.
  • VOIPONG - a Voice over IP sniffer - will record any phone calls that it sees.
  • sipdump / sipcrack - an offline password cracker for the digest authentication used by SIP
Tools that were previously found in Backtrack 2 are described on the tools page.

Grab Backtrack from the official site.

Labels: ,

Friday, March 21, 2008

SIPVicious tool suite on Backtrack 3 beta

Backtrack, the popular live cd that comes with lots of Penetration Testing tools now includes SIPVicious tools in its list of packages. The latest is the BT 3 beta which has a corrupt version of
SIPVicious. A quick fix is posted on the Backtrack forums themselves here.

Archangel Amael was also kind enough to write up a short guide to SIPVicious.

Labels: ,