|
EH-Net
|
|
May 25, 2013, 02:08:23 PM
|
Show Posts
|
|
Pages: 1 ... 5 6 [7] 8 9 ... 109
|
|
91
|
EH-Net / Greetings / Re: Happy holidays!
|
on: December 25, 2012, 02:24:05 PM
|
|
All beat me... Merry Christmas, everyone, and here's to a prosperous and beneficial coming year, for all!
|
|
|
|
|
97
|
Ethical Hacking Discussions and Related Certifications / General Certification / Re: OSCE... check!
|
on: December 22, 2012, 08:12:31 PM
|
@ajohnson - I know I got my points, so they'd better not even find a way not to pass me , this time  @Dark_Knight - The exam was a challenge, and to be honest, this was attempt #2. Looking back, I SHOULD have nailed it the first time, but like all Offsec exams, you gotta guage your time, and make sure you leave time for each host (particularly if one or another gives you more trouble than you thought), and I did NOT do as good a job as I should have, with that, the first time. As for the material, the courseware, by itself, gives you a good base, but admittedly, I had to go beyond that and improvise, on some things, along with some outside research, to pass the exam. As always, they expect you to think outside the box, and work for it, while not making that impossible, for the given exam targets, within the time allotted. As always, they expect you to have the ability to combine multiple topics / attack vectors, to achieve success. Funny thing... Sometimes when you nail a given target, you're amazed, not only at what you knew or learned, but by how easy they really are to pWn, looking back. (That is NOT to say any were particularly simple or 'easy', just that, if you're truly ready / prepared, they really aren't as bad as they might seem, at first.)
|
|
|
|
|
104
|
Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: Should I be worried? CandC server
|
on: December 17, 2012, 08:01:35 AM
|
|
Without more information, I would have a hard time telling you that THIS particular machine you've listed is a C and C botnet controller / host, or simply a machine going by that name. I fact, I have my doubts that it is, at least, solely from the information you've given us, thus far. A name, alone, means little.
That said...
What tool did you use to 'scan' the wireless? Where did you come by the name, "CandC"? Can you, at least, give us the first set of MAC address numbers that you left out (between the 00 and 7F) so that we can see who makes the adapter (assuming it's MAC wasn't altered)? What ports does it have open, etc? We have VERY little information, here, to even begin to tell you anything about this box.
Let's assume, for instance, that it IS a C and C botnet box. I'd be hard pressed to think the code would 'advertise' itself as C and C, as usually, they wouldn't want to be detected. It's more likely just a chosen name that someone gave this box. What I'd recommend / propose, is that you take the hostname and IP address, give it to IS&T (unless that's you), at your workplace, and let them find said machine and investigate it. If your work has wifi, then it would be assumed that someone there would be capable of locating the box in question. If not, I think it's time they contract someone who can.
|
|
|
|
|
105
|
Features / Skillz / Re: SANS Holiday Challenge 2012
|
on: December 14, 2012, 03:00:16 PM
|
Always gotta hand it to Ed (and now Tim)... They definitely get the wheels turning.  Stay with it. That level isn't as hard as it seems (once you figure out how to go about it.)
|
|
|
|
|
Loading...
|