|
Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com |
nmapbot: using instant messaging as platform for running remote system commands
From: Abe Usher (abe.usher
sharp-ideas.net)
Date: Tue Oct 05 2004 - 00:11:05 CDT
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
I've created a small proof of concept named "nmapbot" that shows it is
possible to use instant messaging as a platform for remote command and
control of computer systems.
Purpose:
- --------
To create a semi-intelligent security bot that uses instant messaging as
a platform for receiving commands and returning results.
Method:
- -------
Using Python, the AOL TOC protocol, Bayesian language processing, and
nmap 3.70, I hacked together a little bot that can run nmap and ping.
Future editions will include additional commands =)
Security pundits have been promoting the idea that IM is unsafe for
several years...
nmapbot provides some new considerations to an old idea -- using
ordinarily legitimate communication channels for unintended purposes.
The nmapbot rests squarely on the shoulders of python and projects such
as Py-AIML, AIMLBayes, GrokItBot, and Reverend. Many thanks to fyodor
et al. for the excellent tool suite in nmap 3.70.
If you are interested, you can find source code and documentation for
nmap bot at:
http://www.sharp-ideas.net
Cheers,
Abe Usher, CISSP
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.4 (MingW32)
Comment: Using GnuPG with Thunderbird - http://enigmail.mozdev.org
iD8DBQFBYizpT3X9miqOcSQRAnIJAJ9QIqzwSQZ5gQjls/WeFl+a9VmOJwCcCQBu
uTJ8z5+20YkaL0GcTSN43DU=
=jH44
-----END PGP SIGNATURE-----
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]