Image
 
linkedin_logo.png rss_logo.jpg
twitter_logo.png youtube_logo.jpg
Latest Additions
 
EH-Net Login
Welcome Guest.






Lost Password?
No account yet? Register
Who's Online
We have 41 guests online
 
Free Business and Tech Magazines and eBooks

You are here: Home
EH-Net
May 22, 2013, 02:15:19 AM *
Welcome, Guest. Please login or register.
Did you miss your activation email?

Login with username, password and session length
News: Go back to The Ethical Hacker Network Online Magazine Home Page
 
  Home Help Calendar Login Register  
  Show Posts
Pages: 1 2 3 [4] 5 6 ... 8
46  Resources / Tools / Re: de-ice.net on: September 02, 2012, 09:17:39 PM
hi guys i have some quiz about de-ice.net
Im running backtrack and it in vmware both using dhcp disabled host only adapter and i ran ics to give the vms internet connection. So both the using ice dhcp with this net id 192.168.137.0/24
So here is the quiz:

1. When i run this command:
Nmap -sP 192.168.137.0/24 i cant find the de-ice.net's ip adderss would u please tell me why?

2. Why ifconfing is not exist in de-ice.net

It's been a while, but ifconfig should be there. Have you looked in /sbin? Try the locate and find command as well.
47  Ethical Hacking Discussions and Related Certifications / OSCP - Offensive Security Certified Professional / Re: My OSCP journey... on: September 02, 2012, 06:54:29 PM
Just rooted another one.

I was trying different stuff on that server and in my notes I wrote about a vuln: NOT WORKING - TRIED

But I said, really, and I tried it again, a little more deeper this time, and it worked!

Meaning... I can be wrong too, it's not because I say it's not working that it's not working :-)

Counter is now on 8 rooted boxes.

Try harder, try different. Smiley
48  Ethical Hacking Discussions and Related Certifications / Other / Re: Security reactions, just for laugh on: September 02, 2012, 06:47:55 PM
I think it should include this (not safe for work): http://www.what-people-think-i-do.com/hackers/

Sady it has no animation. Boo-urns.

Oh god, I threw up in my mouth a little.

I threw up in your mouth a little, too...

lol
49  Columns / Andress / Re: [Article]-Doxing and Anti-Doxing – Part I on: August 31, 2012, 02:11:44 PM
A good read. Looking forward to part 2.
50  Resources / Tutorials / Re: Basic Priv Esculation for newbi on: August 31, 2012, 07:29:39 AM
for that service of-course but i want to get os level access any idea??



We don't know anything about the server you're accessing and you haven't given us any information about it other than you've got an ftp account.

Can you write files anywhere? Can you login as the same user using a different service? Are there other services running? Are there files you can download? Have you done enough enumeration and research?

Just because you've got access to one service, doesn't mean you can escalate it to a privileged user. It could be a dead end.
51  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: Escalating Windows --help on: August 30, 2012, 11:10:51 PM
Try these links:

http://travisaltman.com/windows-privilege-escalation-via-weak-service-permissions/

http://obscuresecurity.blogspot.ca/2011/11/old-privilege-escalation-techniques.html

http://www.room362.com/blog/2012/8/25/post-exploitation-command-lists-request-to-edit.html
52  Ethical Hacking Discussions and Related Certifications / OSCP - Offensive Security Certified Professional / Re: My OSCP journey... on: August 30, 2012, 07:51:08 PM
Taking weeks off of a limited amount of lab time seems like a waste to me. Just dive in and experiment, even if you're only working on the 5-10 pages of the lab guide you read that day. That's what the environment is there for; you can easily revert a mistake.

+1 to this. Experiment, make mistakes, learn from your mistakes. The more mistakes you learn from in the lab, the less you're likely to make in the real world and the exam.
53  Resources / Mass Media / Re: Best Hacker movie ? on: August 29, 2012, 09:39:37 PM
Another vote for Sneakers.
54  Resources / Tutorials / Re: Basic Priv Esculation for newbi on: August 29, 2012, 07:55:32 PM
thank u jamie r like always good article i knew some of these technics but i have a question. I hack the ftp admin account then how can i esculate my priv? Its a linux server

Read the above article and the links it points to. Privilege escalation isn't an exact science. It depends a lot on what's on the server and what you have access to. The only way to get anywhere is to enumerate, test, fail, try again.
55  Ethical Hacking Discussions and Related Certifications / Other / Re: Security reactions, just for laugh on: August 29, 2012, 10:57:30 AM
I think it should include this (not safe for work): http://www.what-people-think-i-do.com/hackers/

Sady it has no animation. Boo-urns.
56  Resources / News from the Outside World / Re: Spot the problem..... on: August 28, 2012, 10:11:26 PM
So do you  think they store the password in clear text... and the tech support people have access to view your password!

"A hint to your password is that it begins with s and ends with j"

Bit of a fail I think!

I assumed that was more like a hint the user provides to himself, like "My mother's maiden name" sort of thing.
57  Resources / News from the Outside World / Re: Java Zero DAy exploit on: August 28, 2012, 01:35:17 PM
And it's already in Metasploit.
58  Ethical Hacking Discussions and Related Certifications / OS / Re: Remote Code Execution on: August 27, 2012, 11:43:13 PM
Doesn't even have to be server software. A vulnerable music player can load a a specially crafted MP3 file, which in turn executes code and opens a backdoor to the computer. Almost everyone installs third party software, so there's the chance that something installed is vulnerable to something.
59  Ethical Hacking Discussions and Related Certifications / OSCP - Offensive Security Certified Professional / Re: Finally took the plunge, started 08/05/12 on: August 27, 2012, 01:41:57 PM
Offensive course always seem to get great reviews I guess that why so many people want to jump in and do them.

At the risk of being branded for heresy, I have to say this...I don't understand the overwhelmingly positive reviews of the OSCP. IMHO, the OSCP training is far from perfect - there is plenty of room for improvement.

I've finished the core modules of the OSCP and am working through the labs at the moment. I would have to say that, instructionally speaking, the quality level could best be described as uneven. There are some excellent modules (BoFs to name one) but there are also some modules that fall short.




Elaborate further please. A negative critique can be just as valuable as positive ones.
60  Ethical Hacking Discussions and Related Certifications / OSCP - Offensive Security Certified Professional / Re: My OSCP journey... on: August 23, 2012, 05:45:50 PM
I suggest learning to hack without metasploit. You're allowed to use it in the labs, so when you pwn something with metasploit, figure out how to do it without metasploit. You can even look at the exploit module itself in metasploit to see how it's doing it, and maybe you can adapt it to a single script.
Pages: 1 2 3 [4] 5 6 ... 8
Powered by MySQL Powered by PHP Powered by SMF 1.1.18 | SMF © 2013, Simple Machines
Joomla Bridge by JoomlaHacks.com
Valid XHTML 1.0! Valid CSS!
Page created in 0.104 seconds with 21 queries.
 
Exclusive Deal

sansfire13_245x90_cw90.jpg
SANSFIRE 2013
June 15 - 22

5% Off w/ Code: EHN_5

SANS Deals 4 EH-Netters
5% OFF Any SANS Course in Any Format!
Coupon Code: EHN_5 Including SANS Rocky Mountain 2013 & SANS Boston 2013
Polls
Compared to this year, 2013 will be:
 
Recent Forum Topics
EH-Net News Feeds
Latest Additions
 
         
Advertisement

© 2013 The Ethical Hacker Network
Joomla! is Free Software released under the GNU/GPL License.