Hackers Tools Fight Hacks

執筆者
Ryan Naraine
Ryan Naraine
Published: Apr 8, 2005
Updated: Feb 2, 2021
2 minute read
eWeek のコンテンツおよび製品のおすすめは、編集上の独立性を保っています。パートナーへのリンクをクリックすると、当社が報酬を得る場合があります。 詳細を見る

A well-known security consultant last week urged cash-strapped businesses to consider using freely available open-source security tools and applications to help cope with the rising number of malicious hacker attacks.

In what was a recurring theme last week at the InfoSec World Conference & Expo here, Matt Luallen, president and principal consultant at Chicago-based Sph3r3 LLC, said enterprises must embrace the same hacking tools used by the bad guys to find potential faults and vulnerabilities within critical information infrastructures.

“You can use open-source applications alongside commercial applications [to cut down on costs],” Luallen said during a presentation with dozens of tool sets for such things as fault identification, spam detection and incident response. “There are some open-source utilities that blow away commercial products, and you should take advantage of them.”

During his presentation, Luallen touched on the concept of Google hacking, wherein attackers use cunning search queries to uncover security flaws in a business network.

Searching for certain keywords or document extensions can put sensitive corporate data in the hands of the wrong person, and Luallen said businesses should start using the same techniques to pinpoint problem areas.

Luallen recommended SiteDigger 2.0, a free Windows utility from McAfee Inc.s Foundstone Inc. unit that automates Google security queries to the Google Web service API. SiteDigger can be used to search Googles cache to look for vulnerabilities, errors, configuration issues, proprietary information and interesting security nuggets on Web sites.

Luallen also recommended the use of NetFlow, a traffic profile monitoring technology that has been adopted by companies such as Cisco Systems Inc., Foundry Networks Inc. and Juniper Networks Inc. NetFlow describes the method for a router to export statistics about the connections it has routed.

Open-source implementations of the technology can be used to isolate traffic to a single malicious IP address and produce traffic results to a compromised host.

NetFlow results can also be inverted to see a list of hosts contacted by an attacker.

Ryan Naraine is a senior writer at eWEEK.com.

Ryan Naraine

Ryan Naraine

Content Writer

Ryan Naraine is a ServerWatch, eSecurity Planet, and eWEEK contributor.

eWeek Logo

eWeek has the latest technology news and analysis, buying guides, and product reviews for IT professionals and technology buyers. The site's focus is on innovative solutions and covering in-depth technical content. eWeek stays on the cutting edge of technology news and IT trends through interviews and expert analysis. Gain insight from top innovators and thought leaders in the fields of IT, business, enterprise software, startups, and more.

TechnologyAdvice が所有・運営しています。 © 2026 TechnologyAdvice. 無断転載を禁じます

広告主に関する開示:このサイトに掲載されている製品の一部は、TechnologyAdvice が報酬を受け取っている企業のものです。この報酬は、製品がこのサイトのどこにどのように表示されるか(表示される順序など)に影響する場合があります。TechnologyAdvice は、市場で入手可能なすべての企業やすべての種類の製品を掲載しているわけではありません。