Remote Exploit Forums

Go Back   Remote Exploit Forums > Archives > BackTrack 3 Final > BackTrack3 Howtos


BackTrack3 Howtos Add your howto articles / tutorials here.

Reply
 
LinkBack Thread Tools Display Modes
  #1 (permalink)  
Old 03-11-2009, 10:36 AM
Senior Member
 
Join Date: Oct 2008
Posts: 125
Default check for vulnerable debian ssh keys

Hey,

to check a system (with sshd running) for the debian ssh vulnerbility (CVE-2008-0166) you can use debian_ssh_scan_v4 [1] and paramiko [2].

* download [1] and [2] and unzip them.
* change to the paramiko directory and install paramiko with "python setup.py install"
* change to the debian_ssh_scan_v4 directory
* run it with
"cat SSH-IPs.txt | ./debian_ssh_scan_v4.py"
or
"./debian_ssh_scan_v4.py <IP>"

hf
m-1-k-3

[1]: http://itsecurity.net/
[2]: http://www.lag.net/paramiko/
Reply With Quote
  #2 (permalink)  
Old 03-11-2009, 11:53 AM
secure_it's Avatar
Senior Member
 
Join Date: Dec 2007
Location: 在後面之間|軌道4 & Fwd|軌道4
Posts: 861
Send a message via Yahoo to secure_it Send a message via Skype™ to secure_it
Default

you have posted this in BT3 section which is slackware based & the vulnerability addresses debian OS based host,which is BT4.
__________________
Back|Track 4 Wiki Editor & Founder of Indian Cyber Army
0pen and free" d0es not mean "expl0ited and abused."


Centrino Core 2 Duo,250GB HDD,Geforce 9200 GS,4 Gigs RAM,Windows 7 Ultimate,Sun Solaris 10,BackTrack 4,2003 Server,2 Cisco ASA 5520 w/ security+,Cisco 7200 Series Adv. Security IOS 12.4T,Cisco NAC,Cisco IPS 4215 5.1,6.0,Cisco MARS,Cisco ACS 4.2,NetForensic Log Analyzer,Linksys WRT54G,2 Alfa AWUS036H 500 mW cards with 16 dBi Omni Antenna


Reply With Quote
  #3 (permalink)  
Old 03-11-2009, 11:59 AM
Senior Member
 
Join Date: Oct 2008
Posts: 125
Default

Quote:
Originally Posted by secure_it View Post
you have posted this in BT3 section which is slackware based & the vulnerability addresses debian OS based host,which is BT4.
For sure. BT3 is the auditing device and the HowTo it is for auditing any Linux system which has SSH enabled.

m-1-k-3
Reply With Quote
  #4 (permalink)  
Old 03-11-2009, 12:40 PM
theprez98's Avatar
Super Moderator
 
Join Date: Apr 2007
Location: Maryland
Posts: 2,556
Default

Quote:
Originally Posted by secure_it View Post
you have posted this in BT3 section which is slackware based & the vulnerability addresses debian OS based host,which is BT4.
This scans for vulnerable clients. The host whether BT3/Slackware or BT4/Ubuntu does not make a difference.
__________________
theprez98
"I want peace on earth and goodwill toward men."
"We are the United States Government. We don't do that sort of thing!"
Reply With Quote
  #5 (permalink)  
Old 03-11-2009, 01:05 PM
secure_it's Avatar
Senior Member
 
Join Date: Dec 2007
Location: 在後面之間|軌道4 & Fwd|軌道4
Posts: 861
Send a message via Yahoo to secure_it Send a message via Skype™ to secure_it
Default

Ya that I know,I saw that in example.I was just pointing he done with BT3 while BT4 already out.just like that.
__________________
Back|Track 4 Wiki Editor & Founder of Indian Cyber Army
0pen and free" d0es not mean "expl0ited and abused."


Centrino Core 2 Duo,250GB HDD,Geforce 9200 GS,4 Gigs RAM,Windows 7 Ultimate,Sun Solaris 10,BackTrack 4,2003 Server,2 Cisco ASA 5520 w/ security+,Cisco 7200 Series Adv. Security IOS 12.4T,Cisco NAC,Cisco IPS 4215 5.1,6.0,Cisco MARS,Cisco ACS 4.2,NetForensic Log Analyzer,Linksys WRT54G,2 Alfa AWUS036H 500 mW cards with 16 dBi Omni Antenna


Reply With Quote
  #6 (permalink)  
Old 03-12-2009, 01:19 AM
Senior Member
 
Join Date: Oct 2008
Posts: 125
Default

Quote:
Originally Posted by secure_it View Post
Ya that I know,I saw that in example.I was just pointing he done with BT3 while BT4 already out.just like that.
BT4 is in beta and so the stable release is BT3. I've tested it also on B4 ... same steps

m-1-k-3
Reply With Quote
Reply

Bookmarks

Tags
debian, ssh

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On



All times are GMT. The time now is 01:44 AM.


Powered by vBulletin® Version 3.8.4
Copyright ©2000 - 2010, Jelsoft Enterprises Ltd.
Search Engine Optimization by vBSEO 3.3.2