Image
 
linkedin_logo.png rss_logo.jpg
twitter_logo.png youtube_logo.jpg
Latest Additions
 
EH-Net Login
Welcome Guest.






Lost Password?
No account yet? Register
Who's Online
We have 33 guests online
 
Advertisement

You are here: Home
EH-Net
May 26, 2013, 03:00:38 AM *
Welcome, Guest. Please login or register.
Did you miss your activation email?

Login with username, password and session length
News: Go back to The Ethical Hacker Network Online Magazine Home Page
 
  Home Help Calendar Login Register  
  Show Posts
Pages: [1] 2 3 ... 29
1  Resources / Tutorials / Re: OWASP 2013 top 10 application security attacks using BackTrack 5 - Help Needed!! on: April 26, 2013, 09:18:00 AM
There are also loads on this that relate to web, networking and pretty much most things.

http://vulnhub.com/
2  Resources / Tutorials / Re: OWASP 2013 top 10 application security attacks using BackTrack 5 - Help Needed!! on: April 25, 2013, 10:23:51 AM
also most will give you information using -h or --help if its a command line too.
3  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: Elearnsecurity new Web App security course info on: April 25, 2013, 06:51:45 AM
I think what he is trying to say is if he pays for PRO V2 it has web contents in the course. That if he does the web course it will contain some of the same material so his paying for the material twice. I think that's is the point he is trying to make.

So what I think he is getting at is he wants a discount on PRO v2 as he not gonna to do the web module in that and just do the new web course. So does not see why he should pay full price PRO v2 when he gonna miss a module out.

I think that what he is trying to say but please correct me if I am wrong.

4  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: APACHE WEak password on: April 25, 2013, 02:12:02 AM
I am not aware of any tool that can do this. I guess Nessus would pick up if the issue of default password. I am not sure how you could detect a weak password unless you brute forced the login and found the password to be 12345 or another easy to guess password.

You should be able to write a simple python script to do this. One thing that might be an issue with is how you detect a weak password and then replace it. As if you want the hole process to be automated you would need to store the password in the script in plaintext.

I am not the best programmer in the world so maybe other might have way around this.
5  Ethical Hacking Discussions and Related Certifications / Other / Re: Managing Usernames & Pass-Phrases on: April 25, 2013, 01:59:00 AM
I sometimes use password safe.
6  Resources / Tutorials / Re: Router Hacking Video Series on: April 23, 2013, 03:56:49 AM
thanks m0wgli I was talking about all his mega primers videos
7  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: Elearnsecurity new Web App security course info on: April 23, 2013, 03:10:58 AM
Cool thanks for the info Armando I look forward to seeing the details on Monday.

I may do the course once gold is out the way tho as I got free upgrade since I don't want be in situation where I trying to do both at once.

8  Resources / Tutorials / Re: Basic Priv Esculation for newbi on: April 23, 2013, 02:36:09 AM
Glad you find it useful since this been so popular I plan on doing another tutorial soon not sure what on tho.
9  Resources / Tutorials / Re: Router Hacking Video Series on: April 23, 2013, 02:34:56 AM
Cool video any new on when they can be downloaded as it be awesome to download put on my nexus and watch them on train to work.
10  Ethical Hacking Discussions and Related Certifications / OSWP - Offensive Security Wireless Professional / Re: Passed the OSWP challenge on: April 23, 2013, 02:33:29 AM
Well done how did you find the exam ?
11  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: Elearnsecurity new Web App security course info on: April 22, 2013, 07:43:49 AM
Cool thanks for the update can you just confirm this tho as impelse has asked about upgrade price but from what I understand there was no current web certificate.

So are you saying members who have done the Pro course will get a discount to the web application one ? If this is correct how long will that offer last ?

Thanks
12  Resources / Tutorials / Re: SQL injection on: April 19, 2013, 05:36:30 AM
hmm I would say learn SQL you may not have time but being pen tester I think is about being professional. Trying find a tool that you can just run and hope it works is just so wrong. You going to run a tools that you don't really understand how it works and what is it doing. How do you know it wont break the database.

I not saying you have to be a complete expert at it but least understand the basic behind SQL I don't think learning the basic takes that much time.

I also not sure any of the De-ice disk have SQL injection in them
I would not recommend hitting you mates website

If you want to try SQL DVWA has some in and Webgoat does they are pretty basic to find.

I would agree with MaXE use SQLMAP but this does mean you have to understand SQL its not a click click win tool.
13  Ethical Hacking Discussions and Related Certifications / Physical Security / Re: End User Training on: April 19, 2013, 02:36:52 AM
Thanks a lot this has given me some ideas. I get sent onsite a lot and one company are extremely bad with security despite my warnings. So I was trying think other ways to get it into their head certain things they do should just not done.
14  EH-Net / Greetings / Re: Hey all, looking for learning advice on: April 19, 2013, 02:18:09 AM
Hi aiBreeze,

I am very much like you and don't really enjoy reading much or get easy distracted when reading. I find the best way to learn is to get hands on and do it yourself make mistake and try things. What I done was setup a lab and then watched videos then try implement what I see in the videos then try other stuff and really understand why what I done worked or didn't work.

There are loads great video online that will tech you just about everything you want to know. I also agree sometimes you do need to do a bit of reading but I find video a better way to learn as I can watch it over and over it just sinks in more.

You may want take look at
securitytube
thenewboston
youutube - lots CCNA stuff on that

You also have things like CBT nuggets and there are not lots companies that do like intense training depending on if you want to spend any money.
15  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: Elearnsecurity new Web App security course info on: April 19, 2013, 02:09:33 AM
The course does look good. I am hoping I can do this depending on how much it is for elearn students, how long that offer last and if you can pay in installment again.

Does anyone know with this course if you get unlimited lab time ? or does it work same the other lab where you get like 30 hours ?

Pages: [1] 2 3 ... 29
Powered by MySQL Powered by PHP Powered by SMF 1.1.18 | SMF © 2013, Simple Machines
Joomla Bridge by JoomlaHacks.com
Valid XHTML 1.0! Valid CSS!
Page created in 0.06 seconds with 21 queries.
 
Exclusive Deal

sansfire13_245x90_cw90.jpg
SANSFIRE 2013
June 15 - 22

5% Off w/ Code: EHN_5

SANS Deals 4 EH-Netters
5% OFF Any SANS Course in Any Format!
Coupon Code: EHN_5 Including SANS Rocky Mountain 2013 & SANS Boston 2013
Polls
Compared to this year, 2013 will be:
 
Recent Forum Topics
EH-Net News Feeds
Latest Additions
 
         
Advertisement

© 2013 The Ethical Hacker Network
Joomla! is Free Software released under the GNU/GPL License.