Image
 
linkedin_logo.png rss_logo.jpg
twitter_logo.png youtube_logo.jpg
Latest Additions
 
EH-Net Login
Welcome Guest.






Lost Password?
No account yet? Register
Who's Online
We have 60 guests and 1 member online
 
Advertisement

You are here: Home
EH-Net
May 24, 2013, 04:35:25 PM *
Welcome, Guest. Please login or register.
Did you miss your activation email?

Login with username, password and session length
News: Go back to The Ethical Hacker Network Online Magazine Home Page
 
  Home Help Calendar Login Register  
  Show Posts
Pages: 1 ... 37 38 [39] 40
571  Resources / Mass Media / Re: Hackers well represented by Hollywood. on: February 26, 2010, 12:24:05 PM
hmm...maybe my opinion was based on the movies i saw and not the list. i see i missed quite a few. someway i see alot of movies like for example swordfish where the hacker is profiled like that. i really like the part where they compare languages, hehe  Cool
572  Ethical Hacking Discussions and Related Certifications / Other / Re: Hackerspaces on: February 26, 2010, 12:20:16 PM
i totally agree. i believe it makes you a better hacker if you understand the concept behind the hack then when you just run a script and hope for the best...however the borderline between script kiddie and (ethical) hacker are quite grey...
573  Resources / Mass Media / Re: Hackers well represented by Hollywood. on: February 26, 2010, 04:25:33 AM
Good article! however i believe that the most populair ones always feature the young playing in his room with computers type. There is a link in the article referring to the 50 movies he used for his study. so if your on a friday night at home and dont have anything to do, just work up that list.
574  Ethical Hacking Discussions and Related Certifications / Other / Re: just to say hello, new user here! on: February 26, 2010, 04:15:44 AM
thank you all!

@Dutchie: ill see if i can contact a moderator about our request Wink
575  Ethical Hacking Discussions and Related Certifications / Other / Re: Hackerspaces on: February 26, 2010, 04:14:33 AM
i guess we all have to start out as script kiddies right? nothing wrong with that, but you need the motivation to go beyond that. keep learning. most important: hack to learn, not the other way round. if you don't, you will always be a script kiddie...
576  Ethical Hacking Discussions and Related Certifications / CEH - Certified Ethical Hacker / Re: Question for current certified C|EHs on: February 26, 2010, 04:12:15 AM
to be honest, CEH isnt really a purely technical or purely management for that matter. the best advantage you will get from the course is the ethical hacker mindset. sure you will learn some tools and the way they work. but why they work is much more interesting. i would say its the best step towards sysadmins. if you know how they get in, you will know how to keep them out. anyway it was the best way my boss could spend his money Tongue
577  Ethical Hacking Discussions and Related Certifications / General Certification / Re: What's the right IT/Information Security Certification for me? on: February 25, 2010, 09:15:58 AM
funny, i started the other way around. when i landed my security job, i immediately pursuit CISSP. i'm not saying it was the best idea, but i'm glad i did. another thing to keep in mind that could come in handy is this:

http://www.bankinfosecurity.com/careers/articles.php?art_id=2025&pg=2

remember that the only gain you will have is with the points mentioned by Adriano!
578  Ethical Hacking Discussions and Related Certifications / General Certification / Re: CISSP - The Necessary Evil on: February 25, 2010, 09:03:55 AM
because all the "good" answers have already been given, i can only tell you what NOT to do Wink

stay away from the cissp in 21 days book, way to high level and does not cover the thing that is mostly required (CISSP "mindset" which can only be obtained from the original material).

also the CISSP for dummies was mostly a waste of time. some areas were covered perfectly, while others were lacking and some even too deep (way to technical for the exam).

on the other hand, a few good tips that came from CFD are:

get some earplugs. i really hated to be in a room with 100 people all eating, drinken and moaning about the difficutly of the exam.
get plenty to eat/drink for yourself, 6 hours is killing!
schedule some breaks, it will improve your focus and speed during the exam.
don't plan anything after the exam, maybe the only thing you want to do is grab a beer (with some friends if you prefer).

good luck and tell us how you did!
579  Ethical Hacking Discussions and Related Certifications / Other / Re: just to say hello, new user here! on: February 25, 2010, 03:08:43 AM
thank you for the warm welcome! i'm looking forward to see what this board will bring me.
580  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: Penetration Testing/Ethical Hacking Labs on: February 25, 2010, 03:05:56 AM
good to know. ofcourse i want to get the most out of the course, including the extra challenges. So i guess the best advise is to take the complete package (60 days). considering this i have to wait before i can register. i'm planning a little holiday in early may so starting in the end of march/beginning of april would be a good option...

glad you like the list!!! if people need pointers on installation of for example the hacme's just let me know, i'm willing to help!
581  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: Penetration Testing/Ethical Hacking Labs on: February 24, 2010, 12:21:30 PM
good luck with OSCP! did you get the 30 day or 60 day package? i'm trying to get an idea how much material it contains so i can see if its possible in 30 days.

here the list i promised:

CTF4 (Capture The Flag 4 from LampSecurity.org)
CTF5 (Capture The Flag 5)
CTF6 (Capture The Flag 6)
De-Ice1_100 (first challenge from heorot)
De-Ice1_110 (used to attack the first challenge)
De-Ice2_100 (second challenge from heorot)
pWnOS (the last challenge from heorot, focussed solely on milw0rm)
DVL1.5 (Damn Vulnerable linux)
Hackerdemia (another challenge from heorot)
Moth (Moth by Bonsai information security)
OWASP (opensource web application security live cd with tools)
Ubuntu WebGoat (OWASP vulnerabilities)
WinXP Foundstone (Hackmes challenges)
WinXP Mutillidae (Mutillidae vulnerabilities)

and the urls:

http://sourceforge.net/projects/lampsecurity/files/
http://heorot.net/livecds/
http://www.damnvulnerablelinux.org/
http://www.bonsai-sec.com/en/research/moth.php
http://www.owasp.org/index.php/Main_Page
http://www.foundstone.com/us/resources-free-tools.asp
http://www.irongeek.com/i.php?page=security/mutillidae-deliberately-vulnerable-php-owasp-top-10

good luck with building the lab!
582  Ethical Hacking Discussions and Related Certifications / Other / Re: just to say hello, new user here! on: February 24, 2010, 08:11:19 AM
I noticed you have your CISSP.  Although you have been involved with pentesting for a year, what is your previous experience?

i have a bachelor in IT communication systems and a master in IT science. during these studies i gained some what people call "script kiddie" knowledge, hehe. After i graduated i started with my CISSP immediately. Actually i'm ISC2 associate, because i cant comply to the needed experience in the security field yet (already corrected in the signature). after that i got the possibility to do CEH, wich i took with both hands. right now i'm orienting for OSCP or maybe (if the budget lets me this year) LTP. knowledge wise i feel like i'm sky rocketing right now, and i love it. I want to keep it that way for some time to come...ambition is definately there, so we'll see whats gonna happen...
583  Ethical Hacking Discussions and Related Certifications / Other / Re: Need help with a quote! on: February 24, 2010, 07:29:04 AM
reminds me of the following:

in the beginning the internet consisted of a few smart users and a lot of dumb terminals, now...
584  Ethical Hacking Discussions and Related Certifications / Other / Hackerspaces on: February 24, 2010, 07:20:51 AM
i see alot of people asking where to start and if this is the right career for them. since i'm already too deep in it to quit i was wondering what people do to get in contact with other "enthusiasts" nearby. sometime i wish i had like a studygroup with the same interest and a place to hang out. any new student should have a master who is willing to train newcomers, or at least direct them in the right way. At this point i discovered hackerspaces. a little info:

http://hackerspaces.org/wiki/

i was wondering what your opinion is about these spaces and if there any good for the ethical hacker. most of them have a much wider scope then just ethical hacking wich could drive then away....what do you think?
585  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: Penetration Testing/Ethical Hacking Labs on: February 24, 2010, 06:11:20 AM
still not home (stuck on work for another few hours) but here are a few from the top of my head (i'll add the links later)

lampsecurity, CTF 4,5 and 6. documentation is available from the same source. very good and focussing on webapplications (so prepare for SQL injection and stuff) also covers a few good tools, but for a start it can be quite hard.

De-Ice, 1,2 and dont forget pWnOS! very good one wich is focussed on milw0rm and exploit-db!

Hacme's Foundstone. A bit harder to do because of the installation needed. then again it took me about a day to get the most of them working (trust me, with my knowledge, you will probably be quicker)

DVL. just download, boot and get started. no manuals, no pointers, no documentation...the ultimate challenge! a good tool to start with is the OWASP os, or if you prefer BT use BT Wink

Mutilidea (sp?) is based on the OWASP top 10. havent done this one yet so dont know if it is any good.

Moth. same here, havent done this one yet.

the last 2 require some installation too, but didnt give me much trouble.

in my personal lab i also included some standard installations of a linux distribution, windows XP/Vista/7 and Server 2000/2003/2008 as victims.

the main advantage of a virtual lab is when you use backups and mess up, its delete and copy and your ready to go!
Pages: 1 ... 37 38 [39] 40
Powered by MySQL Powered by PHP Powered by SMF 1.1.18 | SMF © 2013, Simple Machines
Joomla Bridge by JoomlaHacks.com
Valid XHTML 1.0! Valid CSS!
Page created in 0.066 seconds with 21 queries.
 
Exclusive Deal

sansfire13_245x90_cw90.jpg
SANSFIRE 2013
June 15 - 22

5% Off w/ Code: EHN_5

SANS Deals 4 EH-Netters
5% OFF Any SANS Course in Any Format!
Coupon Code: EHN_5 Including SANS Rocky Mountain 2013 & SANS Boston 2013
Polls
Compared to this year, 2013 will be:
 
Recent Forum Topics
EH-Net News Feeds
Latest Additions
 
         
Advertisement

© 2013 The Ethical Hacker Network
Joomla! is Free Software released under the GNU/GPL License.