https://github.com/robertdavidgraham/heartleech
From the read me:
A typical "heartbleed" tool. What makes this different is: autopwn most (-a) that does all the steps needed to get private key post-handshake (encrypted) heartbeats instead of during handshake evades Snort IDS rules loops making repeated requests (-l <loopcount>) dumps binary data to file (-f <filename>) IPv4 or IPv6 (-v <IPver>) full 64k heartbleeds -- Juha Saarinen twitter: juhasaarinen
Good to see it has ipv6 support
Dean (striving for silver lining) Pemberton
On Wednesday, April 16, 2014, Juha Saarinen
https://github.com/robertdavidgraham/heartleech
From the read me:
A typical "heartbleed" tool. What makes this different is:
- autopwn most (-a) that does all the steps needed to get private key - post-handshake (encrypted) heartbeats instead of during handshake - evades Snort IDS rules - loops making repeated requests (-l <loopcount>) - dumps binary data to file (-f <filename>) - IPv4 or IPv6 (-v <IPver>) - full 64k heartbleeds
-- Juha Saarinen twitter: juhasaarinen http://twitter.com/juhasaarinen
On Wed 16 Apr 2014 09:19:00 NZST +1200, Dean Pemberton wrote:
Good to see it has ipv6 support
This claims ipv6 support too. Not the same of course, but much easier to install: https://github.com/noxxi/p5-scripts/blob/master/check-ssl-heartbleed.pl Volker -- Volker Kuhlmann is list0570 with the domain in header. http://volker.top.geek.nz/ Please do not CC list postings to me.
His masscan tool has heartbleed detection options too; and it's stunningly
fast. I can scan my /16 in about 10 seconds ... and I reliably get the same
results, which appear to be complete. Other 'fast' tools I've tried at the
same speed on the same hardware are unreliable.
-jim
On Wed, Apr 16, 2014 at 8:14 AM, Juha Saarinen
https://github.com/robertdavidgraham/heartleech
From the read me:
A typical "heartbleed" tool. What makes this different is:
- autopwn most (-a) that does all the steps needed to get private key - post-handshake (encrypted) heartbeats instead of during handshake - evades Snort IDS rules - loops making repeated requests (-l <loopcount>) - dumps binary data to file (-f <filename>) - IPv4 or IPv6 (-v <IPver>) - full 64k heartbleeds
-- Juha Saarinen twitter: juhasaarinen http://twitter.com/juhasaarinen
_______________________________________________ NZNOG mailing list NZNOG(a)list.waikato.ac.nz http://list.waikato.ac.nz/mailman/listinfo/nznog
participants (4)
-
Dean Pemberton
-
Jim Cheetham
-
Juha Saarinen
-
Volker Kuhlmann