Publicly Available PAssworDs is a program to capture cleartext passwords from the network. It is a useful tool to assess the security of network software at your site.

RFC 2015 defines a proposed Internet standard for sending PGP-encrypted email. This PGP/MIME has been incorporated into several MUAs such as Mutt and (with the AEGYPTEN project) KMail. However, a lot of email clients still don't support it. pgp-mime-handler can decrypt/verify such messages via a pipe, so it can be used as an email filter in many programs or scripts.

RCDevs OpenOTP Server provides two-factor authentication with one-time passwords (OTP). It supports OATH RFC-4226 HOTP (Event-based) and TOTP (Time-based), OCRA (Challenge-based), Mobile-OTP, YubiKey Software/Hardware Tokens, SMSOTP, MailOTP, and OTP lists. It provides a SOAP/XML, RADIUS, and OpenID APIs and integrates into your LDAP (OpenLDAP, Novell, ActiveDirectory). It works with Web applications, VPNs, Linux PAM, Microsoft, and more. It is composed of the RCDevs WebADM server application, the OpenOTP SOAP service, the OpenOTP Radius Bridge, the User Self-service Desk, and Token Self-enrollemnt end-user Web application. VMWare appliances and Web demos are available.

Joseph is a Python class and program that parses config files into iptables commands. It supports ACL definitions to reduce the repetition of rules. The config file format is a custom, native English-like format that supports internal, external, and DMZ interfaces with allowed, masqueraded, and redirected services (ports).

Adeos Filesystem Security Scanner is an automated filesystem security scanner. It recursively walks all mounted filesystems on the local system, and attempts to identify common security concerns, such as SUID, and world-writeable files. The output is available as text or HTML, with either output type formatted in either report or list style. Text is written to stdout and may be redirected to a file, while HTML is written to a file named results.html in the local directory.

IP-packetgenerator is a (ICMP/UDP/TCP)/IP packet generator written in Perl. When creating a TCP packet, it lets you specify the source and destination IP address, source and destination port, sequence and acknowledgement number, window size, and TCP flags. When creating a UDP packet, it lets you specify the source and destination IP and source and destination port. When creating an ICMP packet, it lets you specify the type, code, and mtu. Additionally, you can set the Time-to-live, set the fragmentation offset, send data within the packets, and select the number of packets to send over the wire. There are commandline and GUI versions. The configuration of packets can be read from a config file or saved to a config file.

upgverify is a wrapper around PGP (versions 2 and 5) and GPG, designed to be used inside .qmail files but also usable outside of qmail. It deals with MIME (RFC 2015) and non-MIME emails, and makes it easy to set up email robots/gateways with PGP authentication.

pyOpenSSL is a Python wrapper for a subset of OpenSSL's functionality, featuring an advanced error management system, connection objects that wrap socket methods, and flexible context objects. Also included is a rudimentary crypto module that can be used to create and verify certificates (X509 objects).

@1 Script Secure protects your existing scripts by checking the locations of the forms (referers) calling your scripts. If the forms are not located on your domain, the execution of the scripts will be terminated.

SilkPHP TextPass system was initially created as a temporary solution, whilst testing other scripts that were not yet publicly available. This system allows you to quickly set up a protected area for testing, and then remove everything once testing is complete. The resulting scripts may also be useful to those just starting out learning PHP and cookies.


