Image
 
linkedin_logo.png rss_logo.jpg
twitter_logo.png youtube_logo.jpg
Latest Additions
 
EH-Net Login
Welcome Guest.






Lost Password?
No account yet? Register
Who's Online
We have 40 guests and 2 members online
 
Advertisement

You are here: Home
EH-Net
May 22, 2013, 06:15:33 AM *
Welcome, Guest. Please login or register.
Did you miss your activation email?

Login with username, password and session length
News: Go back to The Ethical Hacker Network Online Magazine Home Page
 
  Home Help Calendar Login Register  
  Show Posts
Pages: 1 ... 5 6 [7] 8 9 ... 40
91  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: What might you do? on: July 29, 2011, 07:42:40 AM

2. here some pointers, remember that access isnt always enough. the ultimate goals is root/admin rights, also known as rooting the box!

I'm sorry but this is just wrong. The ultimate goal is whatever the objective of the pentest is. That is almost never root. The CIO rarely cares that you got root. He cares what you can do with it, the data you can access/exfiltrate, records you can mangle, etc depending on the nature of the business and what has value for them or what can create significant negative impact for them. Sure, root access can help you get there, but that's not the end goal. Focus on the data and however you can get at the data. A lot of times you will never need root to succeed in your test.

true, but giving the context where O_o is operating in (a virtual environment playing at home in a pentest lab) the ultimate goal is root, not whipping up a report for his CIO pointing out all the vulnerabilities. i agree that finding more vulnerabilities and pointing out what can be done with his data is more useful that focussing on just one and obtain root access. Sorry for the misunderstanding, i will try to be more specific next time.
92  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: My Pentest Lab Project and getting started on: July 29, 2011, 03:11:47 AM
Something I have downloaded but not had a chance to setup yet is Metasploits vulnerable target machines, http://www.metasploit.com/learn-more/how-do-i-use-it/test-lab.jsp#target-machines, which includes links for the metasploitable machine, and the UltimateLAMP server. Might be a good start for little cost.

did not know about the ultimateLAMP server, thank you! another fine addition to the pentest lab!

O_o: look up my pentest lab post: there are tons of downloadable pentest iso's which can be hacked for your pleasure!
93  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: just a LITTLE !!!!!!! on: July 29, 2011, 03:07:38 AM
hayabusa and cd1zz, you guys crack me up Grin

O_o: i just gave you some pointers on the other question, this one i think you can solve by yourself, and remember: have fun!
94  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: What might you do? on: July 29, 2011, 03:03:27 AM
1.  we are hackers, our mission is to manipulate a system in such a way it will do what we want it to do, which is in none of the case a DoS. DoSing wont help you get access to a computer, ever! so forget about DoS exploits, which are fine for disgruntled n00bs who have some sort of beef with a specific target.

2. here some pointers, remember that access isnt always enough. the ultimate goals is root/admin rights, also known as rooting the box! here a few things of the 1000s that can be done: with null session you mean you gained access to a windows share right? next i would see if i had write permissions and upload (malicious) code, preferably in the language of a service i could access through another way (see where i am going with this?) try to access the filesystem to, if an old box, download the sam backup file to brute force login credentials offline. be creative and see what you can find (perhaps batch scripts that contain login credentials?)
95  Resources / Career Central / Re: Is it a mistake on: July 29, 2011, 02:55:46 AM
sounds good josh! good luck with it!
96  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: Your First Pentest on: July 29, 2011, 02:54:01 AM
not my first (which was a complete fiasco because i was into security for about two weeks, firing random exploits and such) but a funny one:

i was doing a pentest on a web application that offered e-commerce functionality. it was possible to view the service after you purchased it. after providing your credentials it did around 2 or 3 authentication checks, but then you were redirected to an url that had the ordernr as an url parameter. changing this provided you with the order information of other customers. now the funny part was that all the information was provided in formfields, but were not editable. in the code there was a parameter like: CanModify=false. setting this to true lets you change the order and contact details of the person...

97  EH-Net / Special Events / Re: [Article]-Webcast Exclusive: HD Moore Personally Offers Sneak Preview of New Metasploit Version on: July 29, 2011, 02:38:46 AM
any reply from the ones who did attend? how was it?
98  Ethical Hacking Discussions and Related Certifications / OSCP - Offensive Security Certified Professional / Re: OSCP - Time Commitment Required on: July 29, 2011, 02:37:43 AM
hmm, if you can bring up the discipline to really study every day(!) for about 2 hours and put some more in during the weekend, it can be done. i probably did it the same way you will. remember that it will take a lot of time from you, and besides that, get ready to be exhausted after studying for that long in a row, i have days i am tired from just working, and i am sure i will not be able to study when i get home.

bottom line is only you can make that decision if you are able to pull it off, just dont underestimate it...
99  Ethical Hacking Discussions and Related Certifications / Web Applications / Re: PHP in GIF file. on: July 25, 2011, 11:44:54 AM
whats the full name of the file that you try to upload? it may be possible the application does not accept .php files (even with modified content-type). try something like evil.php.gif or evil.php%00.gif...good luck!
100  Ethical Hacking Discussions and Related Certifications / OSCP - Offensive Security Certified Professional / Re: Woo! on: July 25, 2011, 02:40:59 AM
Congrats! and kudo's on the wifu video's on security tube, those are very good!
101  Ethical Hacking Discussions and Related Certifications / OSWP - Offensive Security Wireless Professional / Re: Alfa AWUS036H or Alfa AWUSO36NH on: July 25, 2011, 02:38:50 AM
I used the Alfa AWUSO36NH and worked fine for me with no problems

same here, still have loads of fun with it  Cool
102  Ethical Hacking Discussions and Related Certifications / OSCP - Offensive Security Certified Professional / Re: Exchanging Courses ? Offensive Security CTP on: July 25, 2011, 02:35:16 AM
Like Kris and cd1zz said, i am sure nobody will trade you their course, because of the previous stated reasons. also the CTP course is a bargain compared to other courses, which cost 3 or 4 times more, easy! and you have the benefit to practice in the labs. just save up for a few months (buy a few less games and you will be fine  Wink) and take the course yourself, in the end it pays off and as a little bonus you will receive the certificate.
103  Ethical Hacking Discussions and Related Certifications / CEH - Certified Ethical Hacker / Re: still waiting... on: July 12, 2011, 02:39:59 AM
I think there's much confusion, so let me try this to clear things up from my own experience and reading many other posts on the topic...

- The backpack only comes with certain packages of training materials.
- The physical certificate takes anywhere from 1 week to 1 year and never includes a backpack.
- EC-Council is notorious for not getting back to you.

If you know this going in, hopefully it will cause less stress coming out.

Don

Thank you, but dont get me wrong, i could not care less about the backpack Wink

@bickmade: good to see you are getting somewhere, i received the training kit from the institute i took the course at, so i dont know how long it took them to receive it...
104  Resources / Links to cool sites. / Re: Free IT Practice Exams on: July 11, 2011, 03:41:34 AM
thanks! too bad CEH is the only ec-council cert they are covering...

for the archive:
if people are looking for CISSP and other ISC2 test exams, check out http://www.cccure.org/.
105  Ethical Hacking Discussions and Related Certifications / OSCP - Offensive Security Certified Professional / Re: Just registered on: July 11, 2011, 03:38:09 AM
good luck! i guess we won't be seeing you around here much the next 60 days Wink
Pages: 1 ... 5 6 [7] 8 9 ... 40
Powered by MySQL Powered by PHP Powered by SMF 1.1.18 | SMF © 2013, Simple Machines
Joomla Bridge by JoomlaHacks.com
Valid XHTML 1.0! Valid CSS!
Page created in 0.072 seconds with 21 queries.
 
Exclusive Deal

sansfire13_245x90_cw90.jpg
SANSFIRE 2013
June 15 - 22

5% Off w/ Code: EHN_5

SANS Deals 4 EH-Netters
5% OFF Any SANS Course in Any Format!
Coupon Code: EHN_5 Including SANS Rocky Mountain 2013 & SANS Boston 2013
Polls
Compared to this year, 2013 will be:
 
Recent Forum Topics
EH-Net News Feeds
Latest Additions
 
         
Advertisement

© 2013 The Ethical Hacker Network
Joomla! is Free Software released under the GNU/GPL License.