Free Carbonite 1.0.1 Download
Current Page: Home > Internet > Miscellaneous >

Carbonite 1.0.1 Download

Carbonite 1.0.1

License: Freeware Free
Downloads:
Publisher: Foundstone Inc.
File size: 20KB
OS: Linux
Date added: 2009-10-27
Homepage: http://www.foundstone.com
Category: Internet

Carbonite 1.0.1 Description

"Incident Response vs. Loadable Kernel Module Rootkits"


EditBy: Rootkits are collections of commonly trojaned system processes and scripts that automate many of the actions an Attacker takes when he compromises a system. Rootkits will trojan ifconfig, NetStat, ls, ps, and many other system files to hide an attacker's actions from unwary system administrators. They are freely available on the Internet, and one exists for practically every Unix release. The state-of-the-art rootkits are Loadable Kernel Modules (a feature unique to most Unix systems) that hide files, hide processes, and create illicit backdoors on a system. Solaris, Linux, and nearly all Unix flavors support Loadable Kernel Modules. Attacker tools that are Loadable Kernel Modules, or LKMs, have added to the complexity of performing initial response and investigations on Unix systems.

All operating systems provide access to kernel structures and functions through the use of system calls. This means whenever an application or command needs to access a resource the computer manages via the kernel, it will do so through system calls. This is practically every command a user types! Therefore LKM rootkits such as knark, adore, and heroin provide quite a challenge to investigators. The typical system administrator who uses any user space tools (any normal Unix commands) to query running process could overlook critical information during the initial response.

Therefore we created a Linux kernel module called Carbonite, an lsof and ps at the kernel level. Carbonite "freezes" the status of every process in Linux's task_struct, which is the kernel structure that maintains information on every running process in Linux. you can free download Carbonite 1.0.1 now.

Carbonite 1.0.1 Related Software

  • Carbonite Online PC Backup
    Online Backup: Easy, Completely Automatic. Secure.
  • CodeScout
    Foundstone CodeScout is a free tool

  • A scriptable, server stress testing tool.
  • CookieDigger
    CookieDigger helps identify weak cookie generation
  • HackPack
    Foundstone HackPack is a tool designed to aid security

  • Microsoft UPnP MS05-039 Vulnerability Detection Utility

  • SNScan allows for the scanning of SNMP specific ports
  • WSDigger
    WSDigger is a free open source tool
  • CredDigger
    A tool that attempts to gather data to assist with penetration

  • NTLast is specifically targeted for serious security and IIS administration.
  • Hacme Shipping
    Foundstone Hacme Shipping is a web-based shipping application
  • IPv4Trace
    IPv4 fragment reassembly implementation.
  • Foundstone CredDigger
    Foundstone CredDigger is a tool that attempts to gather data to assist
  • FSCrack
    provide a graphical user interface (GUI) for access to most of JtR’s functions
  • Hacme Bank
    Hacme Bank is designed to teach application developers

  • UDP packet sender utility.
  • SSLDigger
    SSLDigger v1.02 is a tool to assess the strength of SSL servers

  • Finds Ascii, Unicode and Resource strings in a file.

  • Cisco IOS IPv4 Remote Denial of Service Vulnerability Detection Utility
  • RPCScan
    A utility that can quickly and accurately identify Microsoft operating systems
  • MessengerScan
    Vulnerability Detection Utility with Advanced Immediate Protection Capability!

  • A scanner for the infamous Back Orifice program.

  • Show information about Windows. Reveal passwords etc.

  • Mydoom worm scanner
  • Vision
    Vision is a host based Forensic Utility

  • An update of the highly popular Windows port scanning tool, SuperScan.
  • Fport
    Identify unknown open ports and their associated applications
  • Carbonite
    Incident Response vs. Loadable Kernel Module Rootkits
  • SiteScope
    Foundstone�s SiteScope creates a site map
  • Hacme Books
    Foundstone Hacme Books is a learning platform for secure software development
  • Toolk
    Tools to help examine NTFS for unauthorized activity.
  • Attacker
    A TCP/UDP port listener.
  • PatchIt
    A binary file byte-patching program.

  • A network admin utility for remotely detecting the most common DDoS programs.
  • Fpipe
    FPipe is a source port forwarder/redirector.

  • An Internet Explorer activity forensic analysis tool.
  • Galleta
    A Internet Explorer Cookie Forensic Analysis Tool

  • Traceroute and Whois program.

  • A small, quick TCP service stress test tool.
  • SiteDigger
    SiteDigger 2.0 searches Google’s cache to look for vulnerabilities

  • Remote Task Scheduler scanner

  • A Recycle Bin Forensic Analysis Tool.

  • Command line port scanner.
  • fileWATCH
    A file change monitor. Used with BlackICE Defender.

Carbonite 1.0.1 Publisher's Software

    Software by Letter

    A B C D E F G H I J K L M N O P Q R S T U V W X Y Z Others

    New Release Software