Gag

Jul 20, 2023

Stacheldraht (DOS attack) agent detector

“gag” is a program to scan for “stacheldraht” agents, which are part of an active “stacheldraht” network. It will not detect trinoo, the original Tribe Flood Network TFN, or TFN2K agents. For methods of detecting trinoo and Tribe Flood Network, see

http//staff.washington.edu/dittrich/misc/trinoo.analysis
http//staff.washington.edu/dittrich/misc/tfn.analysis

Why “gag”? Its supposed to be a running joke I started in the trinoo analysis. trinoo/trinot, “tribe”/civilize, gag/sicken&gesundheit!. Read the ddos trilogy to find out!



Checkout these related ports:
  • Zzuf - Transparent application input fuzzer
  • Zlint - X.509 certificate linter
  • Zeronet - Decentralized websites using Bitcoin crypto and BitTorrent network
  • Zenmap - GUI frontend for the Nmap scanning utility
  • Zeek - System for detecting network intruders in real-time
  • Zaproxy - The OWASP zed attack proxy
  • Yubioath-desktop - GUI for displaying OATH codes with a Yubikey
  • Yubikey-personalization-gui - Graphical YubiKey personalization tool
  • Yubikey-manager-qt - Cross-platform application for configuring any YubiKey
  • Yubikey-agent - Seamless ssh-agent for YubiKeys
  • Yubico-piv-tool - Yubico PIV tool
  • Ylva - Command line password manager and file encryption program
  • Ykpers - Library and tool for personalization of Yubico's YubiKey
  • Ykclient - Yubico C client library
  • Yersinia - Layer 2 vulnerability scanner (switches, spanning tree, 802.1q ...)