Image
 
linkedin_logo.png rss_logo.jpg
twitter_logo.png youtube_logo.jpg
Latest Additions
 
EH-Net Login
Welcome Guest.






Lost Password?
No account yet? Register
Who's Online
We have 61 guests and 1 member online
 
Advertisement

You are here: Home
EH-Net
May 22, 2013, 08:59:07 AM *
Welcome, Guest. Please login or register.
Did you miss your activation email?

Login with username, password and session length
News: Go back to The Ethical Hacker Network Online Magazine Home Page
 
  Home Help Calendar Login Register  
  Show Posts
Pages: 1 [2] 3 4
16  Ethical Hacking Discussions and Related Certifications / CPTC - Certified Penetration Testing Consultant / Re: Why CEPT cert is not know? on: December 17, 2009, 02:18:39 AM
I'm doing it. Nothing wrong with the course.

Based on the material outline and the path to the cert, I thought it is not a paper only cert which is good. But it is not widely know and that surprised me.


Where do you get the material, just only from infosec?

Apparently yes.
17  Ethical Hacking Discussions and Related Certifications / CPTC - Certified Penetration Testing Consultant / Why CEPT cert is not know? on: December 11, 2009, 05:20:10 PM
I see the cert requires not only passing a test like most other certs, but also solve challenges.

So why it's not a popular cert? Is it marketing at there end (infosec)?



18  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: How can you differentiate between NTLM and NTLMv2? on: December 10, 2009, 04:43:53 PM
I actually did a hashdump on a Windows 2003 system. The system has different systems connect to it (XP, Vista, 7), I can see some records with LM and NTLM from all XP machines and few from Vista machines. Windows 7 users password hashes is showing as NO-PASSWORD********:PASSWORD

I think PASSWORD here is in NTLMv2 form.

Does anyone know of a tool that can pass NTLMv2 hashes available?
19  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: How can you differentiate between NTLM and NTLMv2? on: December 10, 2009, 01:35:22 PM
I'm 100% it's not LM.

I'm not trying to crack the hash, I'm trying to pass it. So far no pass-the-hash tool was able to pass it, which leads me to believe that it is NTLMv2. But I was looking for something more solid.

thx
20  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / How can you differentiate between NTLM and NTLMv2? on: December 10, 2009, 01:17:39 PM
For example, do you know if this is NTLM or NTLMv2?

27EBE7918C717D8A8F1AB7B8643FE9E1
21  Ethical Hacking Discussions and Related Certifications / CEH - Certified Ethical Hacker / Re: [Opinion] CEHv6 self-study material on: December 09, 2009, 01:40:48 PM
For me it is, as I want to focus on the exam objectives. I'm less interested in the self-study modules(for now). The hands-on training is great to have, however as I said it does not have most of the tools/materials for the training, which makes it at this point useless.
22  Ethical Hacking Discussions and Related Certifications / CEH - Certified Ethical Hacker / Re: [Opinion] CEHv6 self-study material on: December 09, 2009, 12:53:52 PM
Thank you Fr0z3n, I will check it out.

Bill thanks for getting back to me, I hope you feel better now. I have the flu also but today I feel much better than few days ago.

I've purchased some of the EC-Council Press books, and I was about to post about what I found.

I liked how the books are ordered, brief explanation of the concept, tools used, questions and answers, and finally hands-on training, that requires as you said access code. I used the access code to get to the students resources, but I was disappointed as it does not include most of the tools/materials mentioned in the training. I'm not sure whom to contact in this regard. I tried to call EC-Council office in US but the number listed is NOT working. Huh
23  Ethical Hacking Discussions and Related Certifications / CEH - Certified Ethical Hacker / Re: [Opinion] CEHv6 self-study material on: December 04, 2009, 07:22:46 PM
I see, sorry. Smiley
24  Ethical Hacking Discussions and Related Certifications / CEH - Certified Ethical Hacker / Re: [Opinion] CEHv6 self-study material on: December 04, 2009, 06:58:31 PM
I think the v6 is available (Sep 2009 books) because v5 expired in June 2009.
25  Ethical Hacking Discussions and Related Certifications / CEH - Certified Ethical Hacker / Re: [Opinion] CEHv6 self-study material on: December 04, 2009, 12:15:57 PM
Thanks BillV for the info.

I saw the 5-book series, but I did not think of it seriously for different reasons. One it does not have the tools included. Second it did not look like it's covering the optional topics in addition to the required ones. I'm thinking of something that I can use as a reference. If you have to choose between the two which one you will pick?
26  Ethical Hacking Discussions and Related Certifications / CEH - Certified Ethical Hacker / [Opinion] CEHv6 self-study material on: December 03, 2009, 01:09:27 PM
For those who took CEHv6, and used the self-study material do you think the review below is still valid for the current content?
Quote
Study Guide Content

Each of the books was quite thick, containing literally hundreds of pages. I was quite surprised at the amount of text I was to begin studying. It didn’t take me long to realize that these books were written extremely poorly. The CEH’s choice of actual modules was quite good, though I have issue with how the actual content of the modules was presented. The courseware books really came across as being more of a Teacher’s Guide than a self-study course. I say this because there would commonly be a PowerPoint slide on the top of a page, then an explanation written beneath each slide. I don’t so much have issue with that, though it also wasn’t uncommon for the explanation written beneath to be the exact text that just appeared in the above PowerPoint with nothing extra added. That didn’t seem to make much sense.

I found a number of core issues with the courseware books:

- Proofread: The books are in dire, dire need of being proofread.

- No Clear Flow: Technical information can be dry, but there is still a need to make the content readable in an attempt to at least be in somewhat of a story format. The content of the modules often didn’t have any logical flow, and often an area would be covered to what you believe to be completion, then an item relating to that area would appear seemingly out-of-turn later in the module.

- Overwhelmed with Tools: Without question, it is important to be familiar with the various hacking tools that are available; that is pretty much the point of this course. That notwithstanding, tool after tool is literally dumped on the reader, without context of why you would want to use one tool over another. The tools were not logically grouped within each module, either, so it was difficult to have comprehension of the purpose of the tools after reading the module. Also, there’s more to hacking than just knowing the tools. The tool’s use needs to be put into context with an example of when the tool should be utilized. This was not adequately done in the courseware material. I actually went back to count the various tools that were discussed, and unofficially the count was over 250. I didn’t have the heart to actually go back and count each and every one for an exact number. Personally, I think that number could have been drastically reduced with more emphasis on select tools, their use and the situations in which you would want to use that tool. Instead, the reader is just literally dumped with brief explanations of hundreds of tools.

- Choppy: Reading the material felt like reading thousands of individual pages - not thought-out and modules had no flow to them. I actually told my boss that in reading this material, that I truly felt the authors had Attention Deficit Disorder with poor grammar skills.
http://www.ethicalhacker.net/content/view/54/24/
 
27  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: Pass-the-hash question on: December 02, 2009, 12:34:59 PM
Very informative Ryan, thank you so much!

28  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: Pass-the-hash question on: November 30, 2009, 12:03:45 AM
Thanks much timmedin. Incidentally I was reading the post you kindly provided a link to.

This is my understanding on the subject. Cracking a sniffed challenge-response hash to get the password hash is not an easy task (time wise) when the challenge key is not known. If the challenge key is known, the process will be much easier. This is however if LM/NTLM challenge-response is sniffed, however if NTLMv2 is sniffed, it will be extremely hard to do.

Thanks a lot timmedin for all your help in this post.

29  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: Pass-the-hash question on: November 24, 2009, 01:40:14 AM
Quote
1. Sniffing - When sniffing the authentication between two machines there is a "challenge" value used. If you don't know this value you won't be able to use the hash.

How hard/easy it is for an attacker to guess/crack the challenge? What if both the workstation and the server only supports NTLM or only NTLMv2?

Thanks
30  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: Pass-the-hash question on: November 16, 2009, 12:38:41 PM
Thanks so much timmedin for the detail explanation.

In my previous post, I posted a capture I gathered from msf smb module. What I did to the html page to make it work is that I change the img url to this <img src="file://ubuntu/blah/blah.img" >

But as you can see from the capture LM is not used at all. NTLM hash is much longer than the usual. I'm not sure if there is further tweaks needs to be done to the hash to make it usable, or if it can't be used at all.

Any idea?

thx
Pages: 1 [2] 3 4
Powered by MySQL Powered by PHP Powered by SMF 1.1.18 | SMF © 2013, Simple Machines
Joomla Bridge by JoomlaHacks.com
Valid XHTML 1.0! Valid CSS!
Page created in 0.089 seconds with 21 queries.
 
Exclusive Deal

sansfire13_245x90_cw90.jpg
SANSFIRE 2013
June 15 - 22

5% Off w/ Code: EHN_5

SANS Deals 4 EH-Netters
5% OFF Any SANS Course in Any Format!
Coupon Code: EHN_5 Including SANS Rocky Mountain 2013 & SANS Boston 2013
Polls
Compared to this year, 2013 will be:
 
Recent Forum Topics
EH-Net News Feeds
Latest Additions
 
         
Advertisement

© 2013 The Ethical Hacker Network
Joomla! is Free Software released under the GNU/GPL License.