Image
 
linkedin_logo.png rss_logo.jpg
twitter_logo.png youtube_logo.jpg
Latest Additions
 
EH-Net Login
Welcome Guest.






Lost Password?
No account yet? Register
Who's Online
We have 78 guests online
 
Advertisement

You are here: Home
EH-Net
May 23, 2013, 10:32:25 AM *
Welcome, Guest. Please login or register.
Did you miss your activation email?

Login with username, password and session length
News: Go back to The Ethical Hacker Network Online Magazine Home Page
 
  Home Help Calendar Login Register  
  Show Posts
Pages: [1] 2
1  Ethical Hacking Discussions and Related Certifications / Social Engineering / Re: Friends of Friends on Facebook on: April 27, 2013, 08:10:25 AM
I agree - It's more for recon than anything else.

If you come across anything let me know, I'd be interested in it.

Matt
2  Ethical Hacking Discussions and Related Certifications / Social Engineering / Friends of Friends on Facebook on: April 26, 2013, 10:26:08 PM
I'm looking for a way to dump a listing of all the "Friends of Friends" on Facebook for social engineering. Does anyone know of a tool, service or API that I can use to accomplish this? Knowing the "Friends of Friends" on an account can allow you to see into other data or be given more access to users of interest.

I was thinking that Maltego could do it, but I can't seem a way to go the next step and find the Friends "Friends" data. The first level of Friends is easy.

Thanks,

Matt
3  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / SQL Injection Decoding on: April 23, 2013, 10:11:53 AM
Hello all,

I'm having an issue decoding some SQL injection attacks. I've put them through a few decoders, but haven't come up with anything that makes sense.

Has anyone had any luck with certain tools or sites that assist with decoding? I've tried a few, but was curious of your experience on doing this. Sometimes I see things are encoded multiple times.

Matt
4  Ethical Hacking Discussions and Related Certifications / Incident Response / Re: SANS vLive vs Onsite Training? on: April 16, 2013, 07:37:55 AM
Ziggy,

Thanks for detailed response. I'm leaning towards the vLIVE right now.

Matt
5  Ethical Hacking Discussions and Related Certifications / Incident Response / SANS vLive vs Onsite Training? on: April 15, 2013, 12:58:31 PM
Hello,

I've taken onsite instructor lead SANS courses in the past and I'm thinking about taking my first vLIVE course. Has anyone ever taken a vLIVE course and would you recomend it?

Thanks,

matt
6  Ethical Hacking Discussions and Related Certifications / Web Applications / Re: SANS GWAPT Exam? on: February 10, 2013, 05:33:52 PM
Thanks, Docrice - That was very encouraging. Looking forward to the course!!
7  Ethical Hacking Discussions and Related Certifications / Web Applications / Re: SANS GWAPT Exam? on: February 09, 2013, 05:09:56 PM
Thanks everyone for replying - I'm definitely going to take a shot at the course and the exam.

The links were very good too. Looking forward to it!!
8  Ethical Hacking Discussions and Related Certifications / Web Applications / Re: SANS GWAPT Exam? on: February 08, 2013, 08:00:03 PM
I would like to take the exam if possible, but at the very least take the course.

Are there any other course you would recommend? This one looked very interesting and my job would be paying for it.
9  Ethical Hacking Discussions and Related Certifications / Web Applications / SANS GWAPT Exam? on: February 08, 2013, 07:16:26 PM
Quick Question - I'm looking to get much better on web application security and I'm currently doing WebGoat on a home lab.

I'm responsible for working with developers and scanning websites at my job with external vulnerability scanners.

My question is that I'm not a "developer" and would taking the GWAPT test be way too over my head? I recently passed the GCIH exam and wanted to take something that would give me a better understanding of XSS, SQL injection, etc.

Thanks
10  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: Maltego v3 Questions on: January 21, 2013, 01:35:20 PM
Thank you!!

Please excuse my ignorance - I'm assuming that this is going to be installed as a local transform.

Would you be able to guide me in a few of the steps or some documentation on installing this local transform (if this is what I'm suppoused to do).

I've been searching the internet, but haven't found a decent example of which files to use in github, etc.
11  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Maltego v3 Questions on: January 19, 2013, 04:12:29 PM
Hello everyone,

I've just purchased Maltego v3 and I must say, it's pretty awesome!!  I actually noticed the article on this site http://www.ethicalhacker.net/content/view/324/2/ and was attempting to duplicate the results.

It turns out that I don't have the [social network membership - rapleaf] in my transforms. I searched the transforms in my install and didn't see it. I also discovered transforms and it didn't show up.

I'm not sure if I have to register this first before it shows up, but the link is broken too.

Any suggestions?
12  Ethical Hacking Discussions and Related Certifications / CEH - Certified Ethical Hacker / CEH vs GCIH? on: January 08, 2013, 07:11:05 PM
Okay, I recently took and past the GCIH exam and I'd like to take the CEH test in a few weeks. By studying for the SANS GCIH exam do you think I'm adequately prepared for the CEH exam?

Any areas that I might want to focus on? Also, do you recommend the CEH 7 or 8?

Thanks
13  Ethical Hacking Discussions and Related Certifications / GCIH - GIAC Certified Incident Handler / Re: Taking My GCIH 2013 on: December 31, 2012, 08:01:52 AM
Hi Musedev!! I took the GCIH exam last week and wrote a blog post regarding my preparation in passing the exam. Hopefully this answers some of your questions:

http://www.frontlinesentinel.com/2012/12/passing-sans-sec504-hacker-techniques.html

If you have additional questions, let me know.
14  Ethical Hacking Discussions and Related Certifications / GCIH - GIAC Certified Incident Handler / Re: Just Passed My GCIH!! on: December 31, 2012, 07:57:05 AM
To be honesty with you I was going to attempt the following this year:

1. CEH
2. OWSP
3. CISM

If I'm able to I'm going to attempt the CISSP or a course to take it by the end of the year or earlier next year.

Regarding the CEH how difficult it is compared to the GCIH exam?
15  Ethical Hacking Discussions and Related Certifications / GCIH - GIAC Certified Incident Handler / Re: Just Passed My GCIH!! on: December 28, 2012, 02:47:36 PM

Recommendations will be vary greatly depending on if you want to be a pen tester compared, or if you want to go into management, or if you want to do something else entirely.


Currently I'm an engineer, but would like to work my ways towards more of a managment position. Does this help?
Pages: [1] 2
Powered by MySQL Powered by PHP Powered by SMF 1.1.18 | SMF © 2013, Simple Machines
Joomla Bridge by JoomlaHacks.com
Valid XHTML 1.0! Valid CSS!
Page created in 0.066 seconds with 21 queries.
 
Exclusive Deal

sansfire13_245x90_cw90.jpg
SANSFIRE 2013
June 15 - 22

5% Off w/ Code: EHN_5

SANS Deals 4 EH-Netters
5% OFF Any SANS Course in Any Format!
Coupon Code: EHN_5 Including SANS Rocky Mountain 2013 & SANS Boston 2013
Polls
Compared to this year, 2013 will be:
 
Recent Forum Topics
EH-Net News Feeds
Latest Additions
 
         
Free Business and Tech Magazines and eBooks

© 2013 The Ethical Hacker Network
Joomla! is Free Software released under the GNU/GPL License.