UNLOCK YOUR BRAIN // HARDEN YOUR SYSTEM

A decade of tools in information security

by Thomas Debize

A decade of tools in information security

Dans le domaine de la sécurité de l’information, cette décennie a vu de plus en plus d’outils techniques développés, et ce avec un soin de plus en plus important accordé à la qualité et fiabilité de ceux-ci. Devant cette abondance d’outils, utilisés autant pour l’attaque que pour la défense ; cette intervention a pour principal objectif de présenter les résultats d’une étude quantitative réalisée sur les outils référencés par 4 sources de renom (packetstorm, n0where, kitploit et toolswatch) sur différents critères :

– change in the number of tools (seen through the number of publications)

– plateformes d’hébergement utilisées

– statistics on the GitHub repositories used (stars, forks, commits, etc.)

– average maintenance lifetime of a tool

– most popular tools / with the most contributions

– langages utilisés

– etc.

The other objective of this talk is also to list some good development and publishing practices (packaging, capabilities and options to support by default, etc.), so that your (our) tools are user-friendly and scalable.


Bio : Thomas Debize works in information security and enjoys sharing ideas around this field, whether on his GitHub repository (https://github.com/maaaaz) or at conferences