fragroute: A network IDS evasion tool1

fragroute intercepts, modifies, and rewrites egress traffic, implementing most of the attacks described in the Secure Networks "Insertion, Evasion, and Denial of Service: Eluding Network Intrusion Detection" paper. It features a simple ruleset language to delay, duplicate, drop, fragment, overlap, print, reorder, segment, source-route, or otherwise monkey with all outbound packets destined for a target host, with minimal support for randomized or probabi- listic behaviour. This tool was written in good faith to aid in the testing of intrusion detection systems, firewalls, and basic TCP/IP stack behaviour.

... part of T2, get it here


Author: Dug Song <dugsong [at] monkey [dot] org>
Maintainer: The T2 Project <t2 [at] t2-project [dot] org>

License: BSD
Status: Stable
Version: 1.2

Download: fragroute-1.2.tar.gz

T2 source: fragroute.cache
T2 source: fragroute.desc

Build time (on reference hardware): 0% (relative to binutils)2

Installed size (on reference hardware): 0.45 MB, 10 files

Dependencies (build time detected): 00-dirtree autoconf automake binutils coreutils diffutils findutils grep libdnet libevent libpcap linux-header make perl sed sysfiles tar texinfo

Installed files (on reference hardware): [show]

1) This page was automatically generated from the T2 package source. Corrections, such as dead links, URL changes or typos need to be performed directly on that source.

2) Compatible with Linux From Scratch's "Standard Build Unit" (SBU).