Image
 
linkedin_logo.png rss_logo.jpg
twitter_logo.png youtube_logo.jpg
Latest Additions
 
EH-Net Login
Welcome Guest.






Lost Password?
No account yet? Register
Who's Online
We have 60 guests and 1 member online
 
Advertisement

You are here: Home
EH-Net
May 22, 2013, 02:36:19 AM *
Welcome, Guest. Please login or register.
Did you miss your activation email?

Login with username, password and session length
News: Go back to The Ethical Hacker Network Online Magazine Home Page
 
  Home Help Calendar Login Register  
  Show Posts
Pages: 1 2 3 [4] 5 6 ... 38
46  Ethical Hacking Discussions and Related Certifications / OSCP - Offensive Security Certified Professional / Re: Suplementing with samurai skills? on: September 21, 2012, 08:55:42 AM
I would like to see that answer, anybody?
47  Ethical Hacking Discussions and Related Certifications / OS / Re: Preparing for RHCE exam,Need some Advice . on: September 12, 2012, 10:40:26 PM
Did you already passed the RHCSA ?
48  Ethical Hacking Discussions and Related Certifications / Other / Re: GoDADDY.com gets hacked. DoS for millions of websites. on: September 10, 2012, 07:16:06 PM
It was a mess, I got many customer lost connection with their remote servers, the dns servers got affected.
49  Ethical Hacking Discussions and Related Certifications / OSCP - Offensive Security Certified Professional / Re: My OSCP journey... on: September 10, 2012, 01:54:19 PM
LOL,LOL, LOL

We all agree that this training is painful and good. Sometimes we get the frustration, for ex.

In the pdf and video you do not have any mention or way to do privilege escalation, sure when you get a couple of machines in the lab, you got shell but with very low limited connection and now what, begin to google, begin to read different way until you make it, sometimes you are looking for in some place that they are bad and you did not learn anything, it is frustrating but this is the good new: WHEN YOU FIND THE WAY/ANSWER YOU WILL NEVER FORGET IT.

So in other words they are teaching you how to find a way in in your mind with some system you will find in the reality, sure myself I felt a frustration, that's the reason try harder..... but later you are strong.

I spent three weeks with 2 machines with escalate priviledge, I did not make it but I learn a lot of internal process in Windows (and I am a senior lever server admin), sure I moved on but after a while I begin to get more ideas, eventually I will get it...... (I added the lab time twice)

50  Ethical Hacking Discussions and Related Certifications / OSCP - Offensive Security Certified Professional / Re: What tools are not allowed on the OSCP exam ? on: September 07, 2012, 11:59:50 PM
I take a lot of screen shots and the commands I am using, I spent three week in two machines trying to escalate without any result, I moved on to other machines and I begin to root them.

Now I noticed that some exploit are broken and others really works, others the target was not the right but it looks nice and it would work, yep, I need to begin to archive.

Try harder, at work the make fun about that but they begin to use it when they cannot fix the problems, lol
51  Ethical Hacking Discussions and Related Certifications / OSCP - Offensive Security Certified Professional / Re: What tools are not allowed on the OSCP exam ? on: September 07, 2012, 10:21:09 PM


I did the same thing. Any machine that you pwn with metasploit, do it again without using it. Build up a collection of exploits that you know are reliable so you can quickly use them when you need to.

I am not doing this, I need to do it, come on.....
52  Ethical Hacking Discussions and Related Certifications / OSCP - Offensive Security Certified Professional / Re: What tools are not allowed on the OSCP exam ? on: September 07, 2012, 01:45:23 PM
I had the same question, after the practice lab with metasploit I said, ok, I got a little easy fun, now every single computer I hack it has to be done without metasploit at all.

Sometimes I want to use it when I cannot escalate, but keep going.... TRY HARDER.
53  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: Escalating Windows --help on: August 31, 2012, 09:31:31 PM
I got some kind of interactive shell but sometimes with some errors stop, anyway I come in
 10 second later, lol
54  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: Escalating Windows --help on: August 31, 2012, 08:01:11 PM


Point is, look for installed third party apps that have local priv exploits if the box is totally patched.

I agree, this is the part I am working right now, look for weak services and their applications installed.

I know I could find a remote exploit or use meterpreter, but not, I want to do it manually, I got shell with netcat using a asp shell. I need to master it, I think is more difficult to escalate that to get shell.

Also something that mess up a lot is that sometimes when I type the wrong command or wrong way I loose connection, lol..... TRY HARDER and write down how you got shell ASAP
55  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: Escalating Windows --help on: August 31, 2012, 04:24:02 PM
Thanks guys, I just read two articles of the links and I got a bunch of ideas, good, this is what I was looking for.
56  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Escalating Windows --help on: August 30, 2012, 10:17:25 PM
Guys

For the last week I got shell in three machines and stuck escalating windows, I tried to use MS11-080 AND PwDump7.exe to get the hashes, etc, etc....

I can upload files to the server and connect with netcat but the user is very limited.

Do you have any site where I can check how to escalate privilege in Windows, I am not asking how to do it (otherwise I will not learn how to do it), I am asking websiteS with some ideas, I've been looking for and trying HARDER, LOL

Thanks.
57  Ethical Hacking Discussions and Related Certifications / OSCP - Offensive Security Certified Professional / Re: OSCP exam tomorrow (16th) on: July 31, 2012, 10:39:26 PM
I keep adding lab time, I do not know how will I remember all the info.....keep working, but let me tell you that this training open me a lot my ayes.
58  Ethical Hacking Discussions and Related Certifications / Other / Re: Security vulnerabilities and a vendor offer on: July 28, 2012, 11:35:57 PM
I think you took a good decision accepting the offer.
59  Ethical Hacking Discussions and Related Certifications / Other / Re: Hakin9 divide subscription on: July 11, 2012, 08:38:57 PM
since this is the ethical hacker network and all.... this seems like the wrong place to be asking about sharing a subscription/login that is very clearly marked as being for only one person on the hackin9 site.

 Cheesy

Lol, I thought the same when I read it, lol.
60  EH-Net / News Items and General Discussion About EH-Net / Re: Congratulations on your 1337th post, Hayabusa! on: July 11, 2012, 08:33:37 PM
I do not know, some of us we talk a lot but we write little, lol
Pages: 1 2 3 [4] 5 6 ... 38
Powered by MySQL Powered by PHP Powered by SMF 1.1.18 | SMF © 2013, Simple Machines
Joomla Bridge by JoomlaHacks.com
Valid XHTML 1.0! Valid CSS!
Page created in 0.075 seconds with 21 queries.
 
Exclusive Deal

sansfire13_245x90_cw90.jpg
SANSFIRE 2013
June 15 - 22

5% Off w/ Code: EHN_5

SANS Deals 4 EH-Netters
5% OFF Any SANS Course in Any Format!
Coupon Code: EHN_5 Including SANS Rocky Mountain 2013 & SANS Boston 2013
Polls
Compared to this year, 2013 will be:
 
Recent Forum Topics
EH-Net News Feeds
Latest Additions
 
         
Advertisement

© 2013 The Ethical Hacker Network
Joomla! is Free Software released under the GNU/GPL License.