Showing posts with label d3vscan. Show all posts
Showing posts with label d3vscan. Show all posts

Friday, April 04, 2008

d3vscan Alpha 8[Windows] released.

Alpha 8[Windows] release highlights:

* Integrated Windows Installer
* Experimental Bluetooth Stack installer provided
* Vulnerability Scanner plugin (v0.6) integrated
* Several bugfixes



                                    d3vscan Windows Installer Screenshot 1


                                    d3vscan Windows Installer Screenshot 2

The Neural Network OS identification plugins would be included in the next Linux and Default Source release of d3vscan.

Friday, March 28, 2008

Updates on d3vscan Alpha 8 release.

    d3vscan Alpha 8 is now scheduled for release sometime next week. This is a major release with significant changes as follows:
1. The beta version of the Neural Network optimized OS detection plugin(non-windows). Zaid's has a blog post about his achievement here.
2. The beta version of OSVDB based vulnerability scanner plugin
3. A unified Windows installer for d3vscan. Installing d3vscan on Windows would merely be a few mouse clicks away. Ondrej played a big role in this.
4. A Gentoo ebuild for d3vscan will be on the portage tree by next week.
5. Several d3vscan bugfixes.

    The d3vscan website has also been redesigned again. It has been stripped down and based solely on HTML. We are aware that the previous website loads really slowly and that was the primary issue we wanted to address. Not only that, the CMS used had an issue of formatting foreign code(Javascript) which caused amok with Google Adsense . I am looking into Drupal CMS for the long run and this website will do for now.


                                             New d3vscan website screenshot

Saturday, March 15, 2008

d3vscan Vulnerability Scanner plugin

      I've been working on the vulnerability scanner plugin for d3vscan utilizing the OSVDB database. With the correlation amongst the product_id, version_id and vendor_id, this correlation_id is then used to obtain the respective vulnerability. The issue thus far is that the correlation is made upon a larger subset when Nmap isn't able to populate the osmatch field. I have added checks on the generated osmatch but nonetheless, the accuracy depends on the OS identification. That is where I hope the work of Zaid and Hazwan for the improved Neural Network based OS identification comes in. Here are some screenshots:


                                 The Plugin Screen


                                 Vulnerability Scan Results in Scan View


                                  Vulnerability Scan Results in List View

Friday, March 07, 2008

d3vscan Alpha 7 release.

      With the release of Alpha 7, d3vscan has reached it's functionality target. That being said, the next phase would be fine tunning,code cleanup & ironing out bugs. I have decided to drop the radial map in Map View for Bluetooth mode since msbt(Win XP) doesn't support RSSI scanning. I am also looking into the vulnerability scanner plug-in based on OSVDB. Do stick with the sqlite3 module (Python 2.5) if you need any database functionality with your Python applications. Pysqlite is relatively buggy. Zaid and Hazwan are still working on the OS identification optimization plug-ins. Their work is scheduled for the Alpha 8 release.

      I will be away next week and busy preparing for my Google SoC 2008 proposal under the Umit project for the weeks to come. I am excited about GSoC 2008 and Umit. The d3vscan prototyping experience will be invaluable when writing my GSoC proposal. I've been working hard for almost a year now plus this is my last shot at GSoC. The stakes are high. I am keeping my fingers crossed as things unfold.

d3vscan Alpha 7 release highlights:

-Bluetooth Map View
-Real-time SDP browse



                                   Bluetooth Map View


                                   Service Discovery Protocol Browse

Tuesday, February 26, 2008

d3vscan gets recognized

     d3vscan initially made some headway after being featured on the Umit Project Page (thanks Adriano). Upon being accepted into Freshmeat, Google searching d3vscan sure does yield some results. Even Packet Storm has featured d3vscan. I would like to thank everyone involved with the d3vscan project for getting us thus far. It feels awesome to get some recognition after working on this for months. I am aware that d3vscan is still in Alpha and there is so much work pending but this pat on the back is a morale booster for the team.

     Zaid will be working on the new d3vscan project website. The caching issue on sourceforge is messy (we tried mounting a /tmp/presistent/) for our CMS. We'll try to retain the similar design for the new website. We do apologize for the slow access time encountered by our users.


                                        d3vscan on Packet Storm


                                        d3vscan project page traffic

Sunday, February 24, 2008

Updates

  Google SoC 2008 is nearing and Umit is once again participating as a mentoring organization. Ideas for this year includes my Bluetooth scanning idea where d3vscan has already made some headway. Looking forward to this years Google SoC. Flyers for the project would be out soon. Hopefully in time for LinuxSIG's Linux Fest this week. I am planning to conduct a class/classes with Zaid on Python,PyGTK and Silverlight(A simple game with Python & Silverlight) in conjunction with spreading the Umit message. Not forgetting the upcoming Mix event around mid-April which would be about Web technologies(.Net, Silverlight...) from Microsoft. Will be finalizing the details with Ryan by this week and interview sessions for committee members by the week after.

  Alpha 6 features an experimental Network Mode Map view. Besides that, a number of threading bugs has been fixed.

Wednesday, February 20, 2008

Umit Light is now d3vscan

Umit Light is now d3vscan[period].d3vscan Alpha 5.5 release includes the updated bluetooth device manufacturer mapping.