Image
 
linkedin_logo.png rss_logo.jpg
twitter_logo.png youtube_logo.jpg
Latest Additions
 
EH-Net Login
Welcome Guest.






Lost Password?
No account yet? Register
Who's Online
We have 31 guests and 1 member online
 
Advertisement

You are here: Home
EH-Net
May 24, 2013, 11:36:51 PM *
Welcome, Guest. Please login or register.
Did you miss your activation email?

Login with username, password and session length
News: Go back to The Ethical Hacker Network Online Magazine Home Page
 
  Home Help Calendar Login Register  
  Show Posts
Pages: [1]
1  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: Pen testing logs on: February 02, 2010, 03:32:06 PM
Wow, thanks for the quick response guys.

This was kind of what I was expecting, that it is down to preference. I have not yet used Core Impact, or GFI Languard, so that is probably my next step. It seems like to get a good, repeatable, technique going for logging this info you would almost need a virtual enterprise environment that you could just build and disassemble at the stat and end of a project.

Hayabusa, you also raised another interesting point about storage of such data. I know you don't want to give away your methods, but I would guess people use HDD in safe deposit boxes Huh but then you have a constant overhead, so a safe maybe? any online storage would seem too risky. Roll Eyes

Don't want to pry, I'm just interested.
2  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Pen testing logs on: February 02, 2010, 01:52:54 PM
Not being a pen tester, I have been wondering how one would keep track of the information gathered during the test.

The way I see it, there is always the possibility of needing information you have gathered for legal/forensic reasons later so I imagine the amount of data kept and it's integrity should be high.

Not only that but there is tons of information to sift through on Google, etc.

Where would you keep and collate this? Is there a tool for this sort of thing? Do you just create a new SQL database every time? do you need to use a keystroke logger on your own machine plus some kind of mitm logger on the network?  Huh

That is actually quite a lot of questions, sorry.  Smiley
3  Resources / Looking For Work / Some polite, yet enticing title on: July 07, 2009, 09:28:46 PM
Hi everyone,

I recently passed my CEH exam and am looking for some work experience.
I currently work as a network security engineer, and as such deal with the blue team all the time, but I am looking to get some experience as red team, pen testing, what ever. I have a few hours a night to offer and don't wont to be paid, I just need to get to grips with the everyday side of the job, like writing reports, collating data, whatever. I really don't mind doing the grunt work, but I do need to be learning.
I live and work in Christchurch, New Zealand. There are no companies I can find locally to help with this, so I am putting it out to the community as a whole.

Anything would be appreciated.

Breeze
4  Ethical Hacking Discussions and Related Certifications / Other / Re: Looking for a Mentor on: June 23, 2009, 05:52:26 AM
Yeah, or just go here, select China and now you have a test lab.... (not that I would recommend that, just throwing it out there as an option) Wink
Ha ha ha, Thats funny man, I went to the site and was like, what is this guy on about, then I clicked the button. Classic.  Grin

W3bWarl0cK: I have asked this question before many times and got what I thought was just a pile of l337 anti-n00b trash, but actually it is true.
Nowadays there are so many books, sites, videos, that you just don't need to. What you need to do is obsess, read, watch, stalk Wink also twitter is huge for infosec at the minute. Another thing to do is find people around you either in security or with security interests, meet, talk, and drink (a lot.)

A good source is mubix' recent blogs, and also THIS site.

5  Ethical Hacking Discussions and Related Certifications / General Certification / Re: Passed CEH on: May 30, 2009, 11:34:51 PM
Thanks for the support guys,

I am now woundering where to go next with my qualifications.
I would like to go for the CISSP, but I don't know much about the exam itself, I also don't work with anyone who could endorse me.
Also as Penetration Testing is where I want to be I don't know if it is realy a useful cert to have.

Does anyone have any views on this exam?
6  Ethical Hacking Discussions and Related Certifications / General Certification / Passed CEH on: May 21, 2009, 07:16:28 PM
Just thought I would drop a note to say I just pass the CEH exam with 92% Grin

Like others before I read loads of books, from official guilds to Kevin Mitnick’s books on social engineering and the Hacking Exposed books.
I then bought the Preplogic test exams and found them really poor. There were major mistakes on the questions and they were also very ambiguous.
After another recent post to this site I also got the Pass4Sure questions as well and found them to be much better. So I would definitely not bother with Preplogic again.
Pages: [1]
Powered by MySQL Powered by PHP Powered by SMF 1.1.18 | SMF © 2013, Simple Machines
Joomla Bridge by JoomlaHacks.com
Valid XHTML 1.0! Valid CSS!
Page created in 0.099 seconds with 22 queries.
 
Exclusive Deal

sansfire13_245x90_cw90.jpg
SANSFIRE 2013
June 15 - 22

5% Off w/ Code: EHN_5

SANS Deals 4 EH-Netters
5% OFF Any SANS Course in Any Format!
Coupon Code: EHN_5 Including SANS Rocky Mountain 2013 & SANS Boston 2013
Polls
Compared to this year, 2013 will be:
 
Recent Forum Topics
EH-Net News Feeds
Latest Additions
 
         
Advertisement

© 2013 The Ethical Hacker Network
Joomla! is Free Software released under the GNU/GPL License.