Penetration Testing – Tools

Penetration testing, normally consists of information gathering, vulnerability and risk analysis, vulnerability exploits, and final report preparation.

It is also essential to learn the features of various of tools which are available with penetration testing. This chapter provides information and insights about these features.

What are Penetration Testing Tools?

The following table collects some of the most significant penetration tools and illustrates their features −

Tool NamePurposePortabilityExpected Cost
HpingPort ScanningRemote OC fingerprintingLinux, NetBSD,FreeBSD,OpenBSD,Free
NmapNetwork ScanningPort ScanningOS DetectionLinux, Windows, FreeBSD, OS X, HP-UX, NetBSD, Sun, OpenBSD, Solaris, IRIX, Mac, etc.Free
SuperScanRuns queries including ping, whois, hostname lookups, etc.Detects open UDP/TCP ports and determines which services are running on those ports.Windows 2000/XP/Vista/7Free
p0fOs fingerprintingFirewall detectionLinux, FreeBSD, NetBSD, OpenBSD, Mac OS X, Solaris, Windows, and AIXFree
XprobeRemote active OS fingerprintingPort ScanningTCP fingerprintingLinuxFree
HttprintWeb server fingerprinting SSL detectionDetect web enabled devices (e.g., wireless access points, switches, modems, routers)Linux, Mac OS X, FreeBSD, Win32 (command line & GUIFree
NessusDetect vulnerabilities that allow remote cracker to control/access sensitive dataMac OS X, Linux, FreeBSD, Apple, Oracle Solaris, WindowsFree to limited edition
GFI LANguardDetect network vulnerabilitiesWindows Server 2003/2008, Windows 7 Ultimate/ Vista, Windows 2000 Professional, Business/XP, Sever 2000/2003/2008Only Trial Version Free
Iss ScannerDetect network vulnerabilitiesWindows 2000 Professional with SP4, Windows Server 2003 Standard with SO1, Windows XP Professional with SP1aOnly Trial Version Free
Shadow Security ScannerDetect network vulnerabilities, audit proxy and LDAP serversWindows but scan servers built on any platformOnly Trial Version Free
Metasploit FrameworkDevelop and execute exploit code against a remote targetTest vulnerability of computer systemsAll versions of Unix and WindowsFree
BrutusTelnet, ftp, and http password crackerWindows 9x/NT/2000Free

Leave a Reply