Image
 
linkedin_logo.png rss_logo.jpg
twitter_logo.png youtube_logo.jpg
Latest Additions
 
EH-Net Login
Welcome Guest.






Lost Password?
No account yet? Register
Who's Online
We have 42 guests and 1 member online
 
Advertisement

You are here: Home
EH-Net
May 24, 2013, 08:25:52 PM *
Welcome, Guest. Please login or register.
Did you miss your activation email?

Login with username, password and session length
News: Go back to The Ethical Hacker Network Online Magazine Home Page
 
  Home Help Calendar Login Register  
  Show Posts
Pages: 1 ... 3 4 [5] 6 7 ... 9
61  Ethical Hacking Discussions and Related Certifications / OSCP - Offensive Security Certified Professional / Re: My OSCP journey... on: September 03, 2012, 02:22:52 PM
Rooted another one.

Counter is on 11 !!  Grin
62  Resources / Tutorials / Re: Basic Priv Esculation for newbi on: September 03, 2012, 02:20:44 PM
Linux is not a service. It's an OS.
I have ubuntu, backtrack, fedora, and kubuntu and i can work with all of the so i think i know what is linux! Grin and the difference is so much but not in this case coz i know 100% that the server is ubuntu coz as i mentioned im helping 1 of my friends and he told me before the pentest but im sure i cant find any useable exploit

Sounds like your living in a prison !! A prison which you can see Ubuntu, touch Ubuntu, taste Ubuntu, or smell Ubuntu. A prison for your Ubuntu mind. The differences between something which you see and the truth is so much in this Ubuntu prison.
63  Ethical Hacking Discussions and Related Certifications / OSCP - Offensive Security Certified Professional / Re: OSCP exam tomorrow (16th) on: September 03, 2012, 12:52:36 PM
I think it was just wishful thinking.

There is no such thing as a pause. The OSCP is all about the labs.
64  Ethical Hacking Discussions and Related Certifications / OSCP - Offensive Security Certified Professional / Re: My OSCP journey... on: September 03, 2012, 09:18:00 AM
Just rooted nr 10.
65  Ethical Hacking Discussions and Related Certifications / OSCP - Offensive Security Certified Professional / Re: My OSCP journey... on: September 03, 2012, 08:38:35 AM
DAY 23

Another day, another ROOT !

COUNTER: 9 ROOTED BOXES

It seems to be that the exploits I tried when I started the lab that aren't working are working now. How is this possible ?

Hate to admit it, but it's maybe because I'm getting slighter better at it. I still have to say that I consider this all to be 'low hanging fruit' so far.

One strange thing happened today, I tried to exploit a certain service with a know overflow bug by MS. I crashed the server really hard. So hard maybe that when I reverted it several times, that one service is not coming up at all. That service also ran for several weeks so I'm wondering maybe it's a service that another hacker opened ? I have a complain about the labs, I'm hacking a server and I'm not the only one, all of the sudden the webdir is full of exploit code., I revert it, but the other guy who's also working on it, puts back quickly his exploit code. I kinda hate that :-(


I'm also still in my student network and no sign at all of any links to any other networks. Still a really really long way to go imho !!!
66  Resources / News from the Outside World / Re: Data Breaches increasing 1000% in 5years? on: September 03, 2012, 06:38:44 AM
There will also be more people online, more people with multiple devices (i.e. smart phones), and application and service functionality will be increased exponentially across the board.

There will be less hacks in the future.

Buffer overflows will be hardware and compiler wise protected and compilers will be more intelligent in producing software security holes.

I talk to many programmers, there is a change since the whole anonymous group in the press, the coders are much more aware of the security issues.
67  Resources / Tutorials / Re: Basic Priv Esculation for newbi on: September 03, 2012, 05:27:38 AM
the server is ubuntu i think ok im going to find some vuln but i dont think so its not possible

The differences between something which you see and the truth is so much
68  Ethical Hacking Discussions and Related Certifications / OSCP - Offensive Security Certified Professional / Re: My OSCP journey... on: September 02, 2012, 02:37:10 PM
Just rooted another one.

I was trying different stuff on that server and in my notes I wrote about a vuln: NOT WORKING - TRIED

But I said, really, and I tried it again, a little more deeper this time, and it worked!

Meaning... I can be wrong too, it's not because I say it's not working that it's not working :-)

Counter is now on 8 rooted boxes.
69  Ethical Hacking Discussions and Related Certifications / OSCP - Offensive Security Certified Professional / Re: My OSCP journey... on: September 02, 2012, 01:18:24 PM
Thanks, just rooted another one and finished the half one too ;-)

That puts the number on 7 boxes rooted.

 Grin
70  Ethical Hacking Discussions and Related Certifications / OSCP - Offensive Security Certified Professional / Re: My OSCP journey... on: September 02, 2012, 09:52:31 AM
DAY 22

Started with SQL Injection and managed to bypass one web authenticate login to the admin console on a server I didn't rooted yet. So I guess that's a half server hacked today :-)

I must say, Hacking Web Applications is a BIG subject, and the PDF and the Videos cover it only on the surface, back to reading books now !!!!

I'm also planning to re-read the PDF and review all the videos starting from tomorrow.
71  Resources / Tutorials / Re: Basic Priv Esculation for newbi on: September 02, 2012, 06:48:41 AM
Linux is not a service. It's an OS.
72  Ethical Hacking Discussions and Related Certifications / OSCP - Offensive Security Certified Professional / Re: My OSCP journey... on: September 01, 2012, 08:04:16 PM
Check out their pdf on their site, they address your questions.

Every server I came across has specific applications running.
73  Ethical Hacking Discussions and Related Certifications / OSCP - Offensive Security Certified Professional / Re: My OSCP journey... on: September 01, 2012, 06:04:05 PM
I can just say: They look just like a real server.

They are not like a clean image with patches missing, that's for sure.
74  Ethical Hacking Discussions and Related Certifications / OSCP - Offensive Security Certified Professional / Re: My OSCP journey... on: September 01, 2012, 02:10:47 PM
DAY 21

Another day, another server ? I rooted another one. And this time, I have to say it was really really cool meaning -without spoiling it for the others- that I came across something that I said: Hey I might use this on server X, I tried it, and it worked.

Puts the counter on 5 servers rooted so far. Let's do some more reading further on the day and try another one tomorrow.

Instead of trying several servers at once, I now try to take 1 server out per day and try to hack it. Focused on only 1 server. It seems to be a little less frustrated and let me go deeper on the server but it makes me need to read more and more :-)

Let's see if I can hack another one tomorrow!
75  Ethical Hacking Discussions and Related Certifications / OSCP - Offensive Security Certified Professional / Re: My OSCP journey... on: August 31, 2012, 03:39:33 PM
DAY 20

Okay okay OKAY again ;-)

I listened and read more in the books but meanwhile took 1 server out with many ports opened and worked on it.

Found one way to enter it, so I rooted it, that puts the number on 4.

Not a lot. Step by step... but happy I rooted another one.
Pages: 1 ... 3 4 [5] 6 7 ... 9
Powered by MySQL Powered by PHP Powered by SMF 1.1.18 | SMF © 2013, Simple Machines
Joomla Bridge by JoomlaHacks.com
Valid XHTML 1.0! Valid CSS!
Page created in 0.074 seconds with 21 queries.
 
Exclusive Deal

sansfire13_245x90_cw90.jpg
SANSFIRE 2013
June 15 - 22

5% Off w/ Code: EHN_5

SANS Deals 4 EH-Netters
5% OFF Any SANS Course in Any Format!
Coupon Code: EHN_5 Including SANS Rocky Mountain 2013 & SANS Boston 2013
Polls
Compared to this year, 2013 will be:
 
Recent Forum Topics
EH-Net News Feeds
Latest Additions
 
         
Advertisement

© 2013 The Ethical Hacker Network
Joomla! is Free Software released under the GNU/GPL License.