Image
 
linkedin_logo.png rss_logo.jpg
twitter_logo.png youtube_logo.jpg
Latest Additions
 
EH-Net Login
Welcome Guest.






Lost Password?
No account yet? Register
Who's Online
We have 48 guests online
 
Free Business and Tech Magazines and eBooks

You are here: Home
EH-Net
May 21, 2013, 03:05:33 PM *
Welcome, Guest. Please login or register.
Did you miss your activation email?

Login with username, password and session length
News: Go back to The Ethical Hacker Network Online Magazine Home Page
 
  Home Help Calendar Login Register  
  Show Posts
Pages: 1 [2] 3 4 ... 7
16  Resources / Mass Media / Re: Interviews with Jay Beale and Johnny Long on: April 08, 2007, 08:23:54 AM
Sorry for bumping this but I wanted to make sure there were no other questions before I continue with this project.

Thanks,
Cutaway
17  Features / Opinions / Re: Metasploit 3 - how easy is too easy? on: April 08, 2007, 08:05:45 AM
plik,

   I think as you work with MSF more you will see that your fears are even more founded in reality.  The types of things you can easily do with just a little more knowledge is incredible.  For instance, did you realize that with just a little configuration and installing a database on your system you can import your Nessus NBE files and MSF will take this information, provide you with a list of possible exploits, automatically run them all for you, and provide you with a list of owned boxes?  Very nice and efficient. 

   What the MSF people have done is provide the public with a tool that malicious individuals may have already achieved in some form or other.  The point here is that it is better WE have access to this type of thing as well as malicious individuals so that we can sufficiently test our environments before deployment and during utilization.

   Yes, script kiddies love this tool.  Heck, I still consider myself a script kiddie because I do not understand how to write my own exploits and modify MSF to do additional tasks beyond gaining access to a system.  My only saving grace is my knowledge of security architecture, project planning, and report writing.  These are the benefits that I provide to a penetration team.  I have gotten this same feeling from the majority of persons who patrol these forums.  There are varied levels of experience and each person has their own strengths and weaknesses.

Which is why I always say, "Go forth and do good things" on just about every post.  But, of course, I am sure people are starting to get a little sick of my catch phrase Cheesy

Go forth and do good MSF,
Cutaway
18  EH-Net / News Items and General Discussion About EH-Net / Re: [Article]-EH-Net - BackTrack Design Contest on: April 07, 2007, 12:22:40 PM
How strict is the 250K? Cheesy

Thanks,
Cutaway
19  Resources / Mass Media / Interviews with Jay Beale and Johnny Long on: April 05, 2007, 10:15:12 AM
I am going to have the unique opportunity to separately interview these individuals in the coming weeks.  Although I have a few ideas of what I would like to talk to them about I think that it would be great to get a few questions from this group. 

You can find more information about these individuals at the following web sites:
Jay Beale: http://www.bastille-linux.org/jay/jay_bio.htm
Johnny Long:  http://johnny.ihackstuff.com/faqs/frequently-asked-questions/whos-johnny.html

Please let me know if your questions are general or for a specific person.  I will compile the list and then work the questions I can into the conversation.

Thanks,
Don
20  Resources / Career Central / Johnny's "How can I become a professional hacker?" on: April 04, 2007, 07:34:06 PM
We get a lot of this question here.  I thought about posting this link to one of the threads but I think it needs its own.

Johnny Long, of Google Hacking and other fame, posted a quick article on Wednesday, 01 November 2006 titled, "How can I become a professional hacker?".

It is a great article and everybody who has this question should read it. 

As related to Ethical Hacking, Johnny says:

Quote
If you fall victim to the inevitable desire to hack a server that doesn't belong to you, and without permission, give up. You'll get arrested eventually, and your trust will suffer an almost certain deadly blow. If you're not in the game to be one of the good guys, give up. Your ultimate goal should be to protect your clients.

Go forth and do good things,
Cutaway
21  Ethical Hacking Discussions and Related Certifications / Malware / Re: WEP Broken Even Worse on: April 04, 2007, 06:03:59 PM
w00t!....oh.....wait.....dang  Angry
22  Resources / Tools / Re: Favorite Sniffer/Protocol Analyzer on: April 03, 2007, 07:30:20 PM
Daniel Miessler pointed out his write-up about Tcpdump to the Security Catalyst Community http://community.securitycatalyst.com.  I thought you guys would like to know about it.  It is a quick primer on tcpdump.  Very nice introduction.

http://www.ethicalhacker.net/component/option,com_smf/Itemid,54/action,post/topic,1012.0/num_replies,2/

Enjoy,
Cutaway
23  Resources / Links to cool sites. / ShmooCon Challenges on: April 03, 2007, 12:34:58 PM
Dave Aitel pointed this out to his list.  The ShmooCon challenge server has been left online and Applied Security is hosting this for a short time.  So head over and get through as many as you can before they take it down. 

http://www.appliedsec.com/conferences.html

NOTE:  The first challenge took me 2.5 hours.  Weak? Yes, but still fun Cheesy

Cutaway
24  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: Firewalls on: April 03, 2007, 10:35:28 AM
You might want to check out Cobia http://cobia.stillsecure.com/.  I can get you in touch with Martin McKeay if you would like to talk to him about it.  PM me and I'll see what I can do.

Cutaway
25  Ethical Hacking Discussions and Related Certifications / Hardware / Re: Money to burn on: April 03, 2007, 08:56:06 AM
You gotta get some gear.  There are not very many jobs that will get you all the experience that you will need.  You are going to want to do some stuff on your own.  Plus, that job will (should) be paying for your training. 

Don't have a job.  The experience with your gear will help you get that job.

Everything you make from the "gear" you should put away 10% to savings, 10% to splurging, and either add to these percentages with the rest, get ahead on those bills, or get more gear (w00t!).

Go forth and do good things,
Cutaway
26  EH-Net / News Items and General Discussion About EH-Net / Re: [Article]-EH-Net Releases Desktop Backgrounds on: April 03, 2007, 08:47:29 AM
I agree about this being too simple.  Although I am no artist, I think if there is going to be a custom BT2 then there need to be better images.  I think a contest is in order.  I bet if you advertise on this site and on Pauldotcom you will not only increase readership but you will get some very interesting submittals.

Cutaway
27  Ethical Hacking Discussions and Related Certifications / Other / Re: To Mac or not to Mac? on: April 03, 2007, 08:42:48 AM
@venom77

I did a lot of research on notebooks about 18 months ago.  I have to say the the Intel PowerBooks were not out then so I did not consider them (just missed it on that one).  But once I got to my new job I got a Mac to see how the other half lives.

I have to say that I am not impressed by the Mac other than the fact that I can get all three operating systems going on one machine.  Parallels works well but there are some default setting security issues you will want to research.  Some of the new features Parallels will have will be awesome, such as running Windows programs as single windows and not having it contained within a virtualization instance (for lack of a better term).  VMware is working but still in Beta (this should smooth out very quickly as VMware does a great job).

If you want to look at some good and powerful laptops then I suggest you go check out the systems supplied by Powernotebooks http://powernotebooks.com/.  These guys have some great and powerful systems, good prices, and EXCELLENT customer service.

The specs you have for your system look good but if you are going to be running multiple virtual images I would bump up your memory to 4 GB so you can dedicate enough ram to multiple running environments and Vista (it has been written somewhere) performs best at the level.  I would also consider getting a lot of storage.  You will probably be downloading a lot of tools and ISO images and when you combine those with the virtual images (I recommend 8 GB for anything you will be running and updating but only 4 GB for anything you are just playing with) and all those ones and zeros start to add up.

Good luck, a new notebook was tough for me but I am happy with my Sager NP9750 http://powernotebooks.com/category.php?catId=26#id1176 (although I don't look at the new prices because it makes me cry Cry).

Cutaway
28  Columns / RichM / Re: [Article]-BCP and DRP from Scratch on: April 02, 2007, 03:51:05 PM
ChrisG's comment actually happened the other day to a friend of a friend.  The fire suppression system malfunctioned and destroyed $200,000+ worth of furniture plus the water damage to the building and other assets bumping the price tag up significantly.  The insurance company will not pay up because anything over a couple hundred thousand dollars they fight over so that you have to settle a lesser claim or lose everything.  Everyday they wait for the settlement they are losing money.  They are in the process of triple mortgaging everything just to get enough stock to keep people coming in and supply the people who have already purchased.

Sometimes owning your own business is tough.  But, then again, a good BC/DRP "might" have helped.

Moral of this comment: Do not depend on the insurance company to have your best interest in mind.

Cutaway
29  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: cutaway - bt2 final hd install on: April 01, 2007, 01:40:46 AM
The tutorial is for BT2 Beta.  I have not tried BT2 Final yet.  The reason I went with a HD install is so that I could get Nessus installed and so that I could easily update Metasploit and Milw0rm.  Plus, if you are on battery the CD-ROM is not going to spin your power away.

Sure, the wireless is not usable without a USB Wireless Card but I figured I could always drop in the CD if I needed it for a wireless assessment.  I planned on saving my Kismet config so a thumb drive.  But, so far, this has not been necessary.  BTW, apparently the BT2 Final has improved USB Wireless Drivers.

Good luck with the install.  Please post how you fix your install problem or a link to the fix.  As I'll be interested.
Cutaway
30  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: Do you need to know programming to hack? on: March 30, 2007, 03:17:04 PM
I recommend bidding on three computers at eBay to make sure you get one at a great price.  What a fun it is to have a conversation standing over three brand new used computers  Shocked

Of course I have put them to good use   Grin
Pages: 1 [2] 3 4 ... 7
Powered by MySQL Powered by PHP Powered by SMF 1.1.18 | SMF © 2013, Simple Machines
Joomla Bridge by JoomlaHacks.com
Valid XHTML 1.0! Valid CSS!
Page created in 0.1 seconds with 21 queries.
 
Exclusive Deal

sansfire13_245x90_cw90.jpg
SANSFIRE 2013
June 15 - 22

5% Off w/ Code: EHN_5

SANS Deals 4 EH-Netters
5% OFF Any SANS Course in Any Format!
Coupon Code: EHN_5 Including SANS Rocky Mountain 2013 & SANS Boston 2013
Polls
Compared to this year, 2013 will be:
 
Recent Forum Topics
EH-Net News Feeds
Latest Additions
 
         
Advertisement

© 2013 The Ethical Hacker Network
Joomla! is Free Software released under the GNU/GPL License.