 |
| |
| |
|
Who's Online |
|
We have 24 guests and 1 member online |
|
| |
|
|
 |
|
EH-Net
|
|
May 25, 2013, 05:39:44 AM
|
Show Posts
|
|
Pages: 1 ... 3 4 [5] 6 7 ... 69
|
|
68
|
Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: Non-Framework Exploits in Professional Tests?
|
on: August 13, 2010, 01:31:17 PM
|
Shame on you!...  mkdir /usr/work/exploits/{linux,bsd,solaris,windows} mkdir /usr/work/exploits/bsd/{open,net,free} mkdir /usr/worl/exploits/windows/{xp,vista,nt,9x,2003,2008} You are absolutely correct. I need more up to date archives. I am going to try to make this a project. I can't tell you how many times I have searched long and hard for some exploit code for a weird service. Next time I needed to use the same exploit, I ended up searching again. 
|
|
|
|
|
72
|
Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: Non-Framework Exploits in Professional Tests?
|
on: August 11, 2010, 09:01:43 PM
|
|
I use non-framework exploits. I use any exploit I can reasonably verify won't do too much damage. The way I look at it is the bad guys will use anything available to them.
I usually have an archive or two on my laptop, but they are almost always too outdated. I just forget to update them. What I usually do is maintain an SSH account on a standard port and some odd port. Part of pen testing is to see what egress filtering and content filtering is present on the network. If I can't get to a site like exploit-db.com, I use my SSH account to proxy out. This is actually another good test to see what outbound services are permitted.
Just my thoughts.
|
|
|
|
|
75
|
Resources / Career Central / Re: Resume Assistance
|
on: August 04, 2010, 10:35:53 AM
|
|
Something I was told a while back was to not concentrate on the job description. Like Sil said, you have to make a business case for your employer to hire your. You can do this by highlighting your accomplishments, rather than day to day tasks. If you saved the company money but running a particular project, this is much more important to a recruiter. I list all the interesting projects I have worked on, and make it a point to explain the impact of these, like Sil indicated.
|
|
|
|
|
Loading...
|
|
 |
|