Medusa v-2.2rc1 released : is a speedy, parallel, and modular, login brute-forcer.

Medusa v-2.2rc1 released : is a speedy, parallel, and modular, login brute-forcer.

Changelog Version 2.2:
================
Medusa Core Updates:
– General code clean-up and compiler warning squashing
Module Updates:
HTTP
– NTLM2 session response support
– Report domain name provided in NTLM challenge (verbose output)
– Allow inclusion of custom headers
RDP
– Initial release of RDP module (FreeRDP-based)
– Support for pass-the-hash authentication
SMB
– Report account access (admin vs user-level) through ADMIN$ connection
SMTP
-VRFY
– Added EXPN/RCPT support
SSH
– Fix OS X multi-thread issues

Medusa is a speedy, parallel, and modular, login brute-forcer.

Medusa is a speedy, parallel, and modular, login brute-forcer.

Medusa is a speedy, parallel, and modular, login brute-forcer. The goal is to support as many services which allow remote authentication as possible.
features of this application:
+ Thread-based parallel testing. Brute-force testing can be performed against multiple hosts, users or passwords concurrently.
+ Flexible user input. Target information (host/user/password) can be specified in a variety of ways. For example, each item can be either a single entry or a file containing multiple entries. Additionally, a combination file format allows the user to refine their target listing.
+ Modular design. Each service module exists as an independent .mod file. This means that no modifications are necessary to the core application in order to extend the supported list of services for brute-forcing.
+ Multiple protocols supported. Many services are currently supported (e.g. SMB, HTTP, POP3, MS-SQL, SSHv2, among others).

Download : medusa-2.2_rc1.tar.gz(337 KB)
Source : http://foofus.net/?page_id=51 | https://github.com/jmk-foofus