If you follow the nsm-console development tree, you might be pleased to know that I’ve switched over to git instead of working from the HeX svn repository. You can now check out the files from the NSM-Console github page, as well as download a tarball of the latest source anytime. If you’d like to check […]
After around 8 months of development, HeX 2.0, codename “Bonobo“, is released! HeX is a liveCD developed by the rawpacket team that is based on FreeBSD 7.0 and designed to be used for network security monitoring. There are a lot of new features and a lot of bugfixes that went into this release, but before […]
First off, I apologize for the lack of posts here lately, I’ve been trying to come up with something good to post, because I’m just not a fan of rehashing things other blogs post, or commenting on news stories. Hopefully I’ll be able to contribute more soon Now down to the real post, NSM-Console 0.7 […]
Remember way back, when I released Aimsnarf? Well, it turns out that people were interested in one for Yahoo IM, so I’m happy to present Yahsnarf, the Yahoo messenger sniffing script. You can download the script on the yahsnarf project page. Yahsnarf requires Ruby, ruby-pcap and bit-struct (Thanks Matasano for introducing me to bit-struct, made […]
I’m happy to announce the release of the next version of NSM-Console. Version 0.6. If you are unfamiliar with NSM-Console, here’s the synopsis from the project page: NSM-Console (Network Security Monitoring Console) is a framework for performing analysis on packet capture files. It implements a modular structure to allow for an analyst to quickly write […]
I’m written a whitepaper on some of the ideas behind NSM-Console, it also explains some of the basics of usage and what it is originally designed for, you can download the whitepaper directly or get it from the papers section on my site. Excerpt from the abstract: “With the proliferation of dozens of different packet […]
In my home network, I have a passive tap sitting between my cable modem and my router, instead of spending tons of money, I made my own. They’re surprisingly simple to make, and also extremely simple to use. Let’s start with the wiring, at a local electronics store, I purchased 4 RJ-45 wiring plugs, I […]
We just released Hex 1.0.3, the Chinese New Year release, although it’s closer to the Valentine’s day release. Congratulations to all the Hex developers for fixing bugs and adding features! You can grab the iso here. [md5] [sha256] Or, grab the iso from the mirror. [md5] [sha256] Since Geek00l already covered a list of the […]
I’d like to point out a couple of user-submitted modules for NSM-Console that are now included in the distribution. Firstly, scholar01 has created a ‘flowtag’ module for NSM-Console to use Chris Lee’s excellent Flowtag software for categorizing and tagging network flow for a packet capture. Thanks for the submission scholar01! Secondly, JohnQPublic has created a […]
That’s right, no development release this time around. I’ve been trying to get version 0.5 all finished for the Hex 1.0.3 release, and I’m happy to present the newest NSM-Console release! Firstly, you can download NSM-Console version 0.5 here: http://writequit.org/projects/nsm-console/files/nsm-console-0.5.tar.gz Mirror here: https://secure.redsphereglobal.com/data/dakrone/files/nsm-console-0.5.tar.gz Like always, let’s go over some of the new features in this […]