The release of the security-focused distribution Kali Linux 2022.3

The release of the Kali Linux 2022.3 distribution has been announced, designed for testing systems for vulnerabilities, conducting audits, analyzing residual information, and identifying the consequences of attacks by malicious actors. All original developments created within the distribution are licensed under GPL and available through a public Git repository. Several iso-images have been prepared for download, sized at 432 MB, 2.9 GB, 3.4 GB, and 9.8 GB. Builds are available for i386, x86_64, and ARM architectures (armhf and armel, Raspberry Pi, Banana Pi, ARM Chromebook, Odroid). The default desktop is Xfce, but optional support is provided for KDE, GNOME, MATE, LXDE, and Enlightenment e17.

Kali includes one of the most comprehensive toolsets for computer security specialists: from tools for testing web applications and penetrating wireless networks to software for reading data from RFID identification chips. It comes with a collection of exploits and over 300 specialized utilities for security checks, such as Aircrack, Maltego, SAINT, Kismet, Bluebugger, Btcrack, Btscanner, Nmap, p0f. Additionally, the distribution includes tools for accelerating password cracking (Multihash CUDA Brute Forcer) and WPA keys (Pyrit) using CUDA and AMD Stream technology, allowing the utilization of NVIDIA and AMD GPUs for computational operations.

In the new release:

  • To assist in learning how to use security testing tools and conducting experiments to identify vulnerabilities, the packages DVWA and vJuice Shop have been included, featuring examples of web applications that contain typical vulnerabilities.
  • Images for VirtualBox have been built in VDI format (with .vbox metadata), which is native to VirtualBox and compresses better compared to the universal OVA format. The implementation of weekly updated images has also been achieved for of virtual machines, built from the kali-rolling branch.
  • New utilities added:
    • BruteShark — network analyzer.
    • DefectDojo — vulnerability management information.
    • phpsploit — a framework for leaving a backdoor after exploiting a vulnerability.
    • shellfire — a toolkit for exploiting vulnerabilities of RFI (Remote File Inclusion), LFI (Local File Inclusion), and CI (Command Injection) types.
    • SprayingToolkit — a utility for conducting a "Password spraying" attack (login guessing using common passwords) on Lync/S4B, OWA, and O365 devices.
  • In the ARM architecture builds for all Raspberry Pi boards, Linux kernel 5.15 is offered.
  • The release of NetHunter 2022.3 has been prepared simultaneously, an environment for mobile devices based on the Android platform with a collection of tools for testing systems for vulnerabilities. With NetHunter, it is possible to check for attacks specific to mobile devices, for example, through USB device emulation (BadUSB and HID Keyboard - emulation of a network USB adapter that can be used for MITM attacks, or a USB keyboard performing character substitutions) and to create fake access points (MANA Evil Access Point). NetHunter is installed in the standard environment of the Android platform as a chroot image, in which a specially adapted version of Kali Linux runs. The new version features full support for Android 12 and updates many applications.

Source: opennet.ru

Buy reliable website hosting with DDoS protection, VPS VDS servers 🔥 Buy reliable website hosting with DDoS protection, VPS VDS servers | ProHoster