VoIPER

VoIP security testing toolkit incorporating several VoIP fuzzers and auxiliary tools to assist the auditor
Download

VoIPER Ranking & Summary

Advertisement

  • Rating:
  • License:
  • GPL
  • Price:
  • FREE
  • Publisher Name:
  • nnp
  • Publisher web site:
  • Operating Systems:
  • Mac OS X
  • File Size:
  • 434 KB

VoIPER Tags


VoIPER Description

VoIP security testing toolkit incorporating several VoIP fuzzers and auxiliary tools to assist the auditor VoIPER is a security toolkit that aims to allow developers and security researchers to easily, extensively and automatically test VoIP devices for security vulnerabilties. VoIPER incorporates a fuzzing suite built on the Sulley fuzzing framework, a SIP torturer tool based on RFC 4475 and a variety of auxilliary modules to assist in crash detection and debugging. VoIPER is cross platform and usable via a command line interface on Linux, Windows and OS X or a GUI on Windows. The primary goal of VoIPER is to create a toolkit with all required testing functionality built in and to minimise the amount of effort an auditor has to put into testing the security of a VoIP code base.This version has been extensively tested against a variety of SIP clients but should also work versus registrars, proxies, gateways and so on. For the moment the fuzzer incorporates tests for· SIP INVITE (3 different test suites)· SIP ACK (Dumb and 'smart' versions)· SIP CANCEL (Dumb and 'smart' versions)· SIP NOTIFY· SIP SUBSCRIBE· SIP REGISTER· SIP request structure· SDP over SIPThis translates to well over 200,000 generated tests covering all SIP attributes specified in RFC 3261 for the given messages.VoIPER is also cross-platform and has been tested on OS X, Linux, and Windows using Python 2.4/5. Here are some key features of "VoIPER": · Protocol and process based crash detection and recording · Fuzzer pause/restart functionality (SFF) · Supports clients that require registration prior to fuzzing · Simple to expand to new protocols · As far as possible, protocol compliance · Target process control (SFF) What's New in This Release: · Added a bundle of new fuzzers · Rewrote the entire SIP backend · Added a 'voiper.config' file to allow certain options to be specified to the SIP backend


VoIPER Related Software