 |
| |
| |
|
Who's Online |
|
We have 44 guests and 1 member online |
|
| |
|
|
 |
|
EH-Net
|
|
May 24, 2013, 09:52:54 PM
|
Show Posts
|
|
Pages: [1] 2 3 ... 32
|
|
1
|
Ethical Hacking Discussions and Related Certifications / Other / Re: World's Greatest Hacker
|
on: April 12, 2011, 11:13:01 AM
|
|
I find it funny that a university is having him come speak. In higher ed one of the most egregious sins is to plagiarize, and there is so much proof of him doing so (one example in his book is a rip of Chris Gate's work and even has "cgates" in the text).
The guy is an absolute Charlatan. His felony fraud charges clearly prove it.
|
|
|
|
|
3
|
Features / Book Reviews / Re: Anyone read your InfoSec books on Kindle?
|
on: April 12, 2011, 11:01:24 AM
|
|
I totally agree with everyone here. If you are just reading, then it works fine, but pictures, illustrations, and such are not displayed will on these devices. A tablet of some kinds works the best, but the battery life and back light are somewhat limiting.
Ironic, books on technology fail miserably when viewed on the latest technology.
|
|
|
|
|
7
|
Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: Some complex questions about ssl stripping and re-encrypting ssl traffic?
|
on: March 25, 2011, 09:47:22 PM
|
It's not just that, there is more too it. I you type www.paypal.com into your browser you will go to paypal and be redirected to https. SSLStrip will negotiate the secure traffic with the server, but then rewrite it so the user is never sent to the SSL site. No need to see any cert errors on the client side. I don't believe it is implemented yet, but since you are in the middle of the connection you can mess with the nline Certificate Status Protocol (OCSP). "Applications are required to check for revocation of the certificate before accepting it. The application should support both CRL and OCSP, although OCSP is clearly the wave of the future and the only scalable approach. (In his presentation Marlinspike suggests a method for bypassing OCSP by returning a “Try again later” code, in which case the application typically gives up and authenticates. The EV rules state: “If the application cannot obtain a response using one service, then it should try all available alternative services.” This precludes the lazy behavior described by Marlinspike.)" (ref: http://extendedvalidationsslcertificates.com/) The "Try again later" code is the only response from the server that is not encrypted. If I remember correctly, most of the browsers will continue to the site if they can't get a good OCSP response, but you might want to double check.
|
|
|
|
|
9
|
EH-Net / Ethical Hacktivism / Re: The inside story of the HBGary hack
|
on: March 01, 2011, 09:01:36 PM
|
Making yourself the poster child of how not to run a security company, nice. I actually appreciate someone trying to take on Anonymous. Whether you support the cause that Anonymous stands for, what they are doing *is* illegal. And we supporting an "ends justify the means" approach is very dangerous. If they ever recovery its going to be a while and no steak is going to remove that black eye. They are dead. My understanding is that they have two employees left. The using of the same password accross domains (company and internet) really kills me. Yeah, not a great idea, but I can guarantee they they aren't the only security company doing it.
|
|
|
|
|
10
|
Ethical Hacking Discussions and Related Certifications / GPEN - GIAC Certified Penetration Tester / Re: Help me passing GPEN
|
on: March 01, 2011, 08:55:52 PM
|
The test is cake if you took the SANS class. My suggestion would be to improve the index in each book to allow you to find things easier if you want to double-check before you answer the questions.
If you didn't take the SANS class and are challenging the test, that may be more challenging. I totally agree with kagyu. If you have taken the class and you have the books the test isn't hard to pass. You have plenty of time to look stuff up, so do it. They aren't breaking any new ground here, so look in the books.
|
|
|
|
|
11
|
Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: NeXpose vulnerability scanner review
|
on: March 01, 2011, 08:52:39 PM
|
|
I use Nessus and NeXpose regularly. I really like NeXpose's UI (Nessus's sucks) and its web checks. The pretty export formats are nice, but the down and dirty csv and xml formats leave much to be desired.
NeXpose is also a memory pig! So buy some more ram. Support won't even talk to you if you don't have 4Gb available. After making a few [unsupported] tweaks to the db config it doesn't pound my testing lappy when I run it.
They also have a few false positives (MS09-001), but otherwise it is quite accurate.
The biggest pain point is it licensing model. You have to pay by the number of IPs it can scan, which is counter to Nessus's scan the planet method.
I know I sound like I'm dogging on NeXpose, but I actually quite like it. The UI is something I really like. Also, if you run it internally, you can compare scans which is a big plus!
|
|
|
|
|
14
|
EH-Net / Ethical Hacktivism / Re: The inside story of the HBGary hack
|
on: February 22, 2011, 08:55:12 AM
|
|
There have a number of security companies pwned in the last few years. I'd be shocked if a number of the bigger companies wouldn't also be pwnable, especially when you count the SE attacks. The SE attacks aren't a pass/fail, its a question of what percentage of the people will fall for it.
|
|
|
|
|
Loading...
|
|
 |
|