Ecosyste.ms: Awesome
An open API service indexing awesome lists of open source software.
https://github.com/tripwire/openssl-ccs-inject-test
This script is designed for detection of vulnerable servers (CVE-2014-0224.) in a wide range of configurations. It attempts to negotiate using each affected protocol version (SSLv3, TLSv1, TLSv1.1, and TLSv1.2) advertising a comprehensive set of ciphers.
https://github.com/tripwire/openssl-ccs-inject-test
Last synced: about 2 months ago
JSON representation
This script is designed for detection of vulnerable servers (CVE-2014-0224.) in a wide range of configurations. It attempts to negotiate using each affected protocol version (SSLv3, TLSv1, TLSv1.1, and TLSv1.2) advertising a comprehensive set of ciphers.
- Host: GitHub
- URL: https://github.com/tripwire/openssl-ccs-inject-test
- Owner: Tripwire
- Created: 2014-06-12T04:44:13.000Z (over 10 years ago)
- Default Branch: master
- Last Pushed: 2014-07-24T20:47:27.000Z (over 10 years ago)
- Last Synced: 2024-05-09T19:56:00.483Z (8 months ago)
- Language: Python
- Size: 184 KB
- Stars: 38
- Watchers: 10
- Forks: 17
- Open Issues: 0
-
Metadata Files:
- Readme: README.md
Awesome Lists containing this project
README
OpenSSL CCS Inject Test
=======================This script is designed for detection of vulnerable servers (CVE-2014-0224.) in a wide range of configurations. It attempts to negotiate using each affected protocol version (SSLv3, TLSv1, TLSv1.1, and TLSv1.2) advertising a comprehensive set of ciphers.
Changes:
v0.1 - Updated receive buffer sizes to account for longer certificate messages
v0.2 - Updated record processing to recognize closure alert when included in the same segment as another TLS record
v0.3 - Revised wording to clarify tool output and updated logic to properly recognize session termination outside of standard RFC2246
This offline tool is not supported and is provided for informational purposes only.
This tool uses Python – license information is available here: http://opensource.org/licenses/Python-2.0