Formmail Scanner
Jan 4, 2007Does anyone know any open source tools that will scan cgi programs for exploits? Specifically for exploitable formmail scripts.
View 0 RepliesDoes anyone know any open source tools that will scan cgi programs for exploits? Specifically for exploitable formmail scripts.
View 0 RepliesCSF install the new version, I warned that the option Check for cxs. I had a few questions! 
1 - is it free? And can be installed and will work? 
2 - I like these things are additional to the installation? 
3 - a bit about this new possibility to explain how to solve the case to get out of the red. 
What type of free email scanner gateway that you are using? I am using SA, Clam and Qmail. It's a little old and w/o the GUI for client to manage the settings. 
I'm thinking to switch to something with GUI. Perhaps the combination of Exim, SA, Clam, MAilScanner and a GUI. 
While reading a lot of posts and blogs about hosting, I just wanted to ask if someone has an idea on how to find files with illegal content. 
I just tried a few bash scripts, but if there are a few thousand files, most of them stop working or produce server loads that stop the whole server.
Is there any software already out there or any script to scan the content on server for phrases?
i want to secure my server that scanner tools can not scan my site . because of one of my site is very important to do not scan of folder.
my server os : linux Centos 5
I would like to know how resource intensive is ClamAV Scanner. Should I allow it or not to my VPS clients/resellers?
Can I set it to use it as root? How?
I wonder which virus scanner software is useful for Unix server(Centos 4.5). One of my client install SMF forum and when visitors access the forum,their virus scanner warn that site is affected by trojan. I used Clamav to scan entire home directory but seem nothing found.
View 4 Replies View Relatedi have managed server. just i want sure if it is secured.
i want company  to test my server,  Security Scanner.
and give me report about my bugs.
Anobody knows appropriate rules to block Acunetix scanner to crawl my sites?
View 8 Replies View RelatedAre there any vulnerability scanners that search the local file system for vulnerable apps? 
I don't need an external scanner. I want to scan all my users home dirs for bad apps - old coppermines, phpbb, etc.
I've not been able to find anything like this.
Anyone use this poorly coded thing?
Goolag Scanner coded by CULT OF THE DEAD COW/cDc communications
Ive been using it for a bit, but i don't have any vulns on most of my box's.
Anyone else find this thing effective?
Ive passed it onto a few clients, seem to entertain them doing there own basic google powered security scans.
Here is a quick download; Goolag_Scanner_1.0.0.40_Setup.exe
Ive pulled a few results on other large sites, some interesting data thats spread out on google, strange how the crawlers get into it? 
1.2 Software
        To understand Goolag Scanner, it is important to understand how "dorks"
        work (see 1.4) and with that, to establish the use of dorks as an
        acceptable tool for information security experts, penetration testers,
        and practical paranoids.
1.4 Terms And Abbreviations
* Dork = A detailed search pattern - heretofore used with Google's
search engine - that uses Google to show untapped results for web
sites previously indexed by Google.
The intention of a dork is to find results that might show
information relevant to security issues and/or confidential data.
From our point of view, dorks are not limited to Google. Frankly,
they are malicious patterns that apply to most search engines.
* gS = Goolag Scanner
* cDc = CULT OF THE DEAD COW/cDc communications
i installed the latest version of the mail scanner on my linux server. It has been tested to be scanning and running properly. But one thing that is unusual is that the emails that is being processed by the mailscanner does not get tagged as its being processed by it. Hence i do not really know whether it has been processed.
When i check the email full headers, i am missing information like spam score, spam information and spam status. I did a check in the mailscanner.conf and the configuration was done correctly. 
how can we set these information to show on the email header that it has been processed.