[Ach] Audit tool to audit your ciphers: OWASP 'O-Saft'

Aaron Zauner azet at azet.org
Tue Jun 3 18:46:51 CEST 2014


Hi Torsten,

Torsten Gigler wrote:
> Hi,
> 
> perhaps this is interesting for the Tools-Section/Command line tools:
> https://www.owasp.org/index.php/O-Saft
> OWASP o-saft is a SSL audit tool for testers / OWASP SSL advanced
> forensic tool
> 
> With the new alpha feature '+cipherall' it simulates the SSL/TLS
> handshake and checks ciphers independently from the locally installed
> crpto tool (like openssl).
> STARTTLS for this Mode is also coming soon.
Have you taken a look at sslyze? It's developed and actively maintained
by iSECpartners: https://github.com/iSECPartners/sslyze


Aaron

-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 801 bytes
Desc: OpenPGP digital signature
URL: <http://lists.cert.at/pipermail/ach/attachments/20140603/a3bdb040/attachment.sig>


More information about the Ach mailing list