Disco v1.2 Passive IP Discovery

From: Preston (pat_private)
Date: Fri Jul 04 2003 - 13:36:18 PDT

  • Next message: contactat_private: "Paros v2.2 for web application security assessment"

    Release v1.2 of Disco - Passive IP Discovery and fingerprinting tool
    available for download.
    
    Disco is a passive IP discovery utility designed to uniquely identify
    source IPs and fingerprint TCP SYN and now TCP SYNACK packets for host OS.
    
    Disco Features
    
       * Uniquely identify source IPs on the network
       * Toggle discovery of only TCP SYN or SYNACK packets and fingerprint
       * Ability to toggle fingerprint on/off
       * Output data to a flat text file
       * Define TCPDUMP style rules to filter on a subnet or range of IPs
       * Able to turn "uniqueness" off when fingerprinting for fingerprinting
    all TCP SYN or SYNACK packets
       * Parse a previously saved TCPDUMP file through DISCO
       * Option to add a system timestamp to output file
       * Pipe output to another program
       * New v1.2 Option to fingerprint SYNACK packets
       * New v1.2 Option to output more verbose fingerprint info to outfile
       * New v1.2 Added a ton of new fingerprints (1214 SYN/SYNACK
    fingerprints total)
    
    See http://www.altmode.com/disco for download
    
    Thanks,
    Preston
    



    This archive was generated by hypermail 2b30 : Fri Jul 04 2003 - 17:57:31 PDT