Image
 
linkedin_logo.png rss_logo.jpg
twitter_logo.png youtube_logo.jpg
Latest Additions
 
EH-Net Login
Welcome Guest.






Lost Password?
No account yet? Register
Who's Online
We have 32 guests and 1 member online
 
Advertisement

You are here: Home
EH-Net
May 20, 2013, 11:57:43 PM *
Welcome, Guest. Please login or register.
Did you miss your activation email?

Login with username, password and session length
News: Go back to The Ethical Hacker Network Online Magazine Home Page
 
  Home Help Calendar Login Register  
  Show Posts
Pages: 1 ... 56 57 [58] 59 60 ... 71
856  Resources / Career Central / Re: Need adivce.. cissp or pwb from offsec?? on: August 18, 2010, 03:02:52 PM
Welcome to the forums.

The CISSP is probably the single most influential infosec cert there is. The OSCP is respected within pen testing communities, but it's not going to have the broad appeal that the CISSP does. Also, a lot of non-technical customers like seeing (and occasionally require) things like CISSP, CISM, etc., even though there are much more relevant pen testing certifications.

PWB, eLearnSecurity, and SANS 560 are all excellent courses on the pen testing side of things.
857  Resources / Tools / Re: Canvas versus Metasploit on: August 17, 2010, 04:36:10 PM
Hey man, as long as the problem isn't me being an idiot and missing something obvious, it's all good Cheesy
858  Resources / Tools / Re: Canvas versus Metasploit on: August 17, 2010, 04:00:43 PM
If you're curious to know which exploit Canvas using to get a foot in the door:
http://www.microsoft.com/technet/security/Bulletin/MS08-067.mspx

I actually was but forgot to ask, thanks. Am I missing something though? Didn't you say the system was fully patched? Why was that exploit able to execute successfully?
859  Ethical Hacking Discussions and Related Certifications / OSCP - Offensive Security Certified Professional / Re: Anyone did OSCE (CTP) ? on: August 17, 2010, 03:28:40 PM
Welcome to the forums MaXe!

Can you give any required skills/recommended resources to fill in the gaps between the OSCP and OSCE. It was my impression that the OSCE was significantly more advanced, and it wasn't intended to simply be a natural continuation of the OSCP.
860  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: Recommendation for an SQL fuzzer? on: August 17, 2010, 03:26:03 PM
Think about it... It literally is close to impossible to plop open 30 pages in ONE minute. I don't care what your ctrl+click skills are.

Not a fan of Fire Gestures? Wink

Ctrl + Right Click + Drag = Selected links in new tabs. Great for forums, Digg, etc.
861  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: Non-Framework Exploits in Professional Tests? on: August 16, 2010, 03:18:15 PM
I just noticed that Exploit DB provides an Archive. That simplifies things a bit. I really should pay more attention to navigational menus...
862  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: Recommendation for an SQL fuzzer? on: August 16, 2010, 02:54:24 PM
I don't have a lot of experience with these tools. They need to be used with care as some checks may drop databases or cause other damage, correct?
863  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: Banner grabbing with netcat on: August 16, 2010, 11:53:07 AM
Don't forget SMTP, IMAP, and POP with netcat. You can also use Nmap's ncat with the --ssl option to connect to ssl-based services (or use sslproxy with one of the netcat variants that don't support ssl).

Your best bet would be to perform a packet capture while establishing an legitimate connection to see what information is normally transmitted and then adjust that as necessary.

You could then use a packet crafting utilities, such as HPing, Scapy, PackEth, etc. (or hexedit and file2cable if you are feeling particularly l33t) to generate your custom packets.

Disclaimer: I don't have much hands-on experience with this, but I think that looks right in theory Wink
864  Ethical Hacking Discussions and Related Certifications / General Certification / Re: Passed CISM 2010! on: August 14, 2010, 02:09:26 PM
Here are a couple of other books that I've found to be pretty good that may help out with this one:

http://www.amazon.com/Enterprise-Security-Architecture-Business-Driven-Approach/dp/157820318X/ref=sr_1_1?s=books&ie=UTF8&qid=1281812697&sr=1-1

http://www.amazon.com/Security-Engineering-Building-Dependable-Distributed/dp/0470068523/ref=sr_1_1?s=books&ie=UTF8&qid=1281812688&sr=1-1

Honestly, as good as they are, I stopped reading early on. I really have a hard time getting into this material and would much rather be playing with something more technical.

I think one thing that's really benefited me is that I'm a cert junkie, and having taken so many exams, I feel that I have gotten significantly better at determining what the question is asking and what they're looking for in terms of an answer. That may sound kind of stupid for anyone who hasn't taken an (ISC)2 or ISACA exam, but determining what the question is asking and knowing how to answer it in the way they want (not necessarily real-world) is as important as knowing the material itself. Seriously.
865  Ethical Hacking Discussions and Related Certifications / General Certification / Re: Passed CISM 2010! on: August 13, 2010, 07:22:45 AM
anyone taking it?  Wink

I'll take a stab in December. I got my CISA results yesterday (pass), so that one's up next. I used pretty much the same resources as you, minus the 100 question supplement. I'll splurge for that on the CISM; I felt pretty shaky on this one.

Congratulations on your pass. What's up next?
866  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: VPS for free on: August 12, 2010, 03:31:58 PM
I just talked about it recently in this thread: http://www.ethicalhacker.net/component/option,com_smf/Itemid,54/topic,5923.msg31439/#msg31439 Smiley

Honestly, aside from the security-centric stuff, it's just been a good learning experience too. I really hadn't done anything with BSD up until that point, so it was fun to just dive in and try to get things working.
867  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: Non-Framework Exploits in Professional Tests? on: August 12, 2010, 03:30:08 PM
So you're an exploit whore with OCD? Wink

I figured that was the route I was going to have to go. I was just wondering if there was an easier way to acquire and manage everything since that is a major PITA.

I <3 snapshots. I'm a VMware junkie, without a doubt!

I appreciate the response. Also, ISACA *said* they will be email results out today or tomorrow.
868  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: VPS for free on: August 12, 2010, 12:39:24 PM
It's not free, but I'll vouch for ARP Networks. You get a lot for only $10/mo.

http://www.arpnetworks.com/vps

The only down-side is that they sell out quick and you need to get on a waiting list. I waited almost two months for mine.
869  Ethical Hacking Discussions and Related Certifications / Malware / Re: From Advisory to Exploit on: August 12, 2010, 12:06:52 AM
You're probably going to be best of learning assembly. After that, The Shellcoder's Handbook and Hacking: The Art of Exploitation (2nd) are good resources to take the next step.
870  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: Non-Framework Exploits in Professional Tests? on: August 11, 2010, 11:23:56 PM
Thanks for the response. I do the same thing Smiley

I have an OpenBSD VPS ($10/mo with ARP Networks - They ROCK), and I have SSH listening on 443, amongst others. It's pretty nasty as I only get stopped if they're doing application-level inspection or are a deny-all shop and are only allowing specific IPs/URLs.

I used to do port-redirection to TinyProxy until I found out about the ssh -D option. That's been working out great. It's nice for keeping away from eavesdroppers on Hilton's network too.

If all else fails, I can often just get back online once I return to the hotel and prepare for the next day. It'd be nice if work would spring for some sort of air card though.

I think the issue I run into is simply a lack of time. Like this week, I had to perform social engineering, a security assessment with physical inspection, and a pen test in three days. I'm not even going to be able to get all the low-hanging fruit on this one, let alone go after anything more obscure.
Pages: 1 ... 56 57 [58] 59 60 ... 71
Powered by MySQL Powered by PHP Powered by SMF 1.1.18 | SMF © 2013, Simple Machines
Joomla Bridge by JoomlaHacks.com
Valid XHTML 1.0! Valid CSS!
Page created in 0.071 seconds with 22 queries.
 
Exclusive Deal

sansfire13_245x90_cw90.jpg
SANSFIRE 2013
June 15 - 22

5% Off w/ Code: EHN_5

SANS Deals 4 EH-Netters
5% OFF Any SANS Course in Any Format!
Coupon Code: EHN_5 Including SANS Rocky Mountain 2013 & SANS Boston 2013
Polls
Compared to this year, 2013 will be:
 
Recent Forum Topics
EH-Net News Feeds
Latest Additions
 
         
Advertisement

© 2013 The Ethical Hacker Network
Joomla! is Free Software released under the GNU/GPL License.