 |
| |
| |
|
Who's Online |
|
We have 30 guests and 1 member online |
|
| |
|
|
 |
|
EH-Net
|
|
May 25, 2013, 06:55:17 PM
|
Show Posts
|
|
Pages: 1 ... 3 4 [5] 6
|
|
61
|
Columns / Haddix / Re: [Article]-Review: eLearnSecurity’s Penetration Testing Pro (PTP)
|
on: April 30, 2010, 03:31:48 AM
|
Hello Chris, Having taken the OSCP and GPEN, it's a strain to convince the powers that be to let me on another similar pentest course, but they seems happy to let me take a run at targeted training. Don't believe we are similar to OSCP, honestly. Not saying we are better or worse. It's just another (completely) different way of teaching things. Do you have any time lines on the Web Application Security stand alone course being made available? At now I'm not able to give you time lines. The Beginner version of our PTP course will be a never seen course and it is taking its time. However I believe the web app testing part of our current PTP course is quite a good amount of information! Check our demo to see your self, it is on Web app testing Btw Introductory price expires in 12 hours - Regular price will be 449€ ($599)
|
|
|
|
|
63
|
Columns / Haddix / Re: [Article]-Review: eLearnSecurity’s Penetration Testing Pro (PTP)
|
on: April 29, 2010, 10:37:12 AM
|
|
@hayabusa You can sign up for a demo of our course, that is an (almost) full module on SQL Injection including 20 minutes of video training. Just enter your email on our home page and you will get a user and pass within 1 hour.
Wanted to say that the introductory price ($485) will expire tomorrow April 30th at 12pm GMT. Regular price will be 449€ ($599)
We really gifted this course that is worth at least three times the current price, but yeah! We will respect our first goal to make great training affordable! Even after the great reviews we are getting
|
|
|
|
|
64
|
Columns / Haddix / Re: [Article]-Review: eLearnSecurity’s Penetration Testing Pro (PTP)
|
on: April 29, 2010, 07:25:13 AM
|
|
Thank you all.
When you have a budget of approximately 0$ for marketing and promotion, the only way to be successful is to build something great. It seems we managed to do it.
Your words will be our proof for the skeptics. So please, spread the word and be an eLS evangelist.
Thank you very much
|
|
|
|
|
67
|
Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: eLearnSecurity - Early Look at New Low Cost Training
|
on: April 14, 2010, 02:46:31 AM
|
|
@Dark_Knight I understand your point, however this is a completely different kind of course where you don't get the material and go home.
We mind to keep it up to date and add new staff continously. It's kind of a learning as a service although you just pay once and not monthly. And you even pay less than others while having up-to-date contents.
Having people understand our different model will be a tough challenge however we are going to give the students of the "Online" version, the possibility to buy the DVD of the off-line version (that we are preparing) at a symbolic price.
I can assure you that you will be more than satisfied with the current release and that we will come up very soon with the off-line version (that just need some more beurocracy due to the DVD handling).
Anyway, thanks for your feedback
We will launch in 3 hours
|
|
|
|
|
68
|
Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: eLearnSecurity - Early Look at New Low Cost Training
|
on: April 01, 2010, 05:04:20 AM
|
Hello everyone, It's Armando. Wanted to announce that the Penetration Testing Course - Professional will be launched on April 14th . So just 2 weeks to go.  I appreciate all the interest in this forum. Please do not hesitate to ask anything about the project in this thread. If you didn't do it already, make sure to add your email here: http://www.elearnsecurity.com/eh.php - This is a special 5% discount for EH members that will last until the release date. Finally I want to clear up things about the price: the Professional course will launch at $485. This price will be valid for a couple of weeks before being increased. So, if you're interested, make sure to act fast (you will save quite a lot). Thank you P.S. A review from Jason should come soon
|
|
|
|
|
70
|
Ethical Hacking Discussions and Related Certifications / Wireless / Re: tracking my own laptop
|
on: March 25, 2010, 12:23:00 PM
|
|
How many people would ever hijack an airplane to hit the most powerful country in the world?
You consider a threat only after you have felt its impact on your skin at least once.
And anyway, terrorism was just an example to say: it's not just about losing your $500 or $1000 laptop or your data. There's more risk involved than you're used to think.
|
|
|
|
|
71
|
Ethical Hacking Discussions and Related Certifications / Other / Re: IIS Problems
|
on: March 25, 2010, 11:30:32 AM
|
|
Hi Bill, it's a pleasure if I can help.
IUSR should definitely not be in the WPG group. You put Pool identities into WPG.
Let's call IUSR_mysite the anon user and IWAM_mysite the pool identity.
Try this setup:
1. Create IUSR_mysite with a pass
2. Go to your website in IIS and pick this user as the anonymous user. Make sure to re-insert the password at step 1 into IIS for this user IUSR should have access to the website folder. IWAM should NOT.
3. Create a IWAM user, say IWAM_mysite and assign a password
4. Create an application pool and use the identity at step 3. Use the password at step 3 (password is not automatically gathered by IIS).
5. Go to the Home Directory of your website and select the created application pool
6. If you use PHP, WPG group should have the rights to read the PHP executable and the php.ini (not IUSR).
Let me know if you can figure out what's wrong from the above.
Hope this helps
|
|
|
|
|
73
|
Ethical Hacking Discussions and Related Certifications / Wireless / Re: tracking my own laptop
|
on: March 25, 2010, 08:37:10 AM
|
|
Hi chrisj, Do you have a web server? or a hosting space?
0 cost solution: Write your own (hidden) tool to send the ip address and other information you may require to a specific PHP on the net every connection or every x minutes. (This is easily bypassable, but you would just require the thief to connect to the internet with your laptop once, to get a rough idea of where your laptop is).
This is of course something you can do as a small challenge and it could work well against people not interested in your laptop (someone who just finds it).
Keep in mind that : 1) Police hardly tracks such cases 2) The ip geo location is not reliable
You better full encrypt your hard drive with Truecrypt and watch it constantly.
|
|
|
|
|
74
|
Resources / Tutorials / Re: Ethical Hacking
|
on: March 25, 2010, 08:29:42 AM
|
Thought I could add something to the discussion: - Check your NetBios shares and null sessions (in the end McKinnon managed to get into Nasa with this). It's something you do from command prompt
- Get USB Firewall utility to stop autoruns on usb dongles
- Get PSI as mentioned by pizza
- Get Sandboxie to run executables which behaviour is unknown, or to run your browser (Hey FF 3.6.2 has some great holes btw)
My 2 cents.
|
|
|
|
|
Loading...
|
|
 |
|