OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
Re: [Full-Disclosure] Pattern matching search tool

From: Alain Fauconnet (alainait.ac.th)
Date: Wed Jan 05 2005 - 19:55:43 CST


Paul,

On Wed, Jan 05, 2005 at 03:28:24PM -0600, Paul Schmehl wrote:
> Is anyone aware of a search tool (not Google or search engine aggregation
> software) that could be used to search our network for "interesting stuff"?
> It needs to be capable of doing pattern matching similar to perl's regular
> expression stuff.
>
> I'm looking for something that, for example, could tell me all the machines
> on our network that are running copies of phpBB (obvious reasons) so that
> we could quickly identify potential problem areas.

What about running 'ngrep' (http://ngrep.sourceforge.net/) on your
firewall or gateway, any box that can see most of the traffic, or even
on the servers themselves?

Greets,
_Alain_
_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.netsys.com/full-disclosure-charter.html