Image
 
linkedin_logo.png rss_logo.jpg
twitter_logo.png youtube_logo.jpg
Latest Additions
 
EH-Net Login
Welcome Guest.






Lost Password?
No account yet? Register
Who's Online
We have 43 guests online
 
Advertisement

You are here: Home
EH-Net
May 18, 2013, 11:25:03 PM *
Welcome, Guest. Please login or register.
Did you miss your activation email?

Login with username, password and session length
News: Go back to The Ethical Hacker Network Online Magazine Home Page
 
  Home Help Calendar Login Register  
  Show Posts
Pages: [1] 2 3 4
1  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: building a windows enterprise hacking lab suggestions? on: April 26, 2012, 01:59:14 PM
As 3xban said implement PKI and kerberos as well as that is common in enterprise networks. Also there is DHCP, the System Center set of products like config manager forefront endpoint protection, WSUS, WDS, RRAS, Terminal Services, Branche Cache, there is a ton more services and features to add that would be useful but thats just a start.
2  Features / Book Reviews / Re: advanced books on: September 14, 2011, 06:01:31 PM
Have you looked into any of the Syngress books? They are coming out with new books just about every month some of which may be what you are looking for.
3  Ethical Hacking Discussions and Related Certifications / Security / Re: SSCP on: June 27, 2011, 12:59:58 PM
If you don't get the info you are looking for here then check out this: http://www.techexams.net/forums/isc-sscp-cissp/

I know its another forum but you can find good info there for the SSCP.
4  Features / Book Reviews / Re: Recomended book for Pen Tester on: May 17, 2011, 11:59:24 AM
Check out this book: http://www.amazon.com/BackTrack-Assuring-Security-Penetration-Testing/dp/1849513945/ref=sr_1_1?ie=UTF8&qid=1305651497&sr=8-1
5  EH-Net / Ethical Hacktivism / Re: Counterattacking a hacker on: April 15, 2011, 12:23:35 PM
http://www.newscientist.com/article/dn20336-internet-probe-can-track-you-down-to-within-690-metres.html

This article is a good read showing that if their theory works they can track it closer. Still you are in the same predicament as before even if you can trace that close nonetheless still interesting.
6  EH-Net / Ethical Hacktivism / Re: Counterattacking a hacker on: April 14, 2011, 06:13:17 PM
I would say the reason is that obviously it has to be possible. Law enforcement tracks down hackers, goverments trace hacking attacks. I'm sure many of these individuals try to hide their origns.

Isnt this the reason we have CHFI's and what not?

I believe it is possible to track an ip back to a hacker/script kiddie but like sil mentioned it would be because they did not spoof their ip from the get go, or because the counter attcker is only tracing the ip back to where the attack looks like it originated from, and is of the belief that this is the hackers source ip.
7  EH-Net / Ethical Hacktivism / Re: Counterattacking a hacker on: April 14, 2011, 04:19:27 PM
Enjoyed the writeup. Makes complete sense as well unless you believe in hollywood type hacking.
8  Ethical Hacking Discussions and Related Certifications / General Certification / Re: CompTIA.org, Testout, or CareerAcademy for training? on: April 14, 2011, 03:52:51 PM
In my opinion from taking all the certs you are wanting to take there is no need for videos or cbt in my opinion. I was much like you where I worked on pc's from a young age and taught myself everything I know. The CompTIA tests can be done with a single pc or 2 without issue. Lab what you can but for the most part it is more memorizing then anything. Once you get to the higher end certs then labbing will really come into play. As for the Security+ cert there is a really great book that I would recommend. I used this pretty much for studying and got an 850: http://www.amazon.com/CompTIA-Security-Certified-Ahead-SY0-201/dp/1439236364/ref=sr_1_1?ie=UTF8&s=books&qid=1302814343&sr=8-1

Good luck with your studies.
9  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: Is my methodology correct or am I going about Penetration Testing all wrong? on: March 24, 2011, 05:46:55 PM
You can try this for av/firewall: http://personalfirewall.comodo.com/free-download.html

As for the computers themselves I would use secpol.msc and gpedit.msc to lock down the services on the computer. If there are no rules you can pretty much shut everything usable down with those. If you dont know what those are type them in a run bar and hit enter and go through each one.

As for attacking... If you have physical access to them during the contest then this would be a 3 minute win on your part by booting any sam cracking tool. You can even use Microsoft Dart to reset admin passwords.

If no physical access to it then like others have said bring a laptop with backtrack on it. Or bring a backtrack live dvd and boot from it then attack from there.

If possible check the bios for boot password setups. If there is one and physical access is allowed tot he computers this will atleast require them to know the boot password to boot to a live cd or usb stick. Also set the boot order to only allow the local drive and nothing else.

If you want to get crazy you can always encrypt the entire drive with truecrypt as well. If I remember correctly you need to know the password to even boot up the drive which means unless they know the password for the drive then they cant crack the password too any accounts.

I know there are ways around some of these recommendations but they dont sound to bright from what you have said so they should work.

Hope that helps.
10  Ethical Hacking Discussions and Related Certifications / Incident Response / Re: Am I hacked and is there a defence? on: March 03, 2011, 04:25:49 PM
Why don't you just back up your data and re-install windows? If you do you need to scan the backed up data for possible malware as well. If your that worried about it that is probably the only way to get rid of a possible infection to the OS.
11  Ethical Hacking Discussions and Related Certifications / Other / Re: How to become the world's no.1 hacker? on: February 17, 2011, 03:58:21 PM
Why hasnt he been sued? By the copyright holders I mean.

Because he is legit. Haven't you seen his youtube videos!
12  Resources / Career Central / Re: college major questions on: October 21, 2010, 03:00:20 PM
Well as far as degrees go I dont know what is available in your area. I think Security is  great field to go into and It is where my passion is but if its not what drives you to want to learn everything you can then you need to find out what does. If servers is what does it for you then s system administrator would be a good field. If networking is what does it for you then network administrator would be a good place to go. If both do it for you then security is a good road to go down. If you want a technical degree look for schools that offer b.s. in information technology. That will be lots of hands on. If you are willing to do an online school then check out http://www.wgu.edu/online_it_degrees/bachelor_degree_programs they have a great b.s. program.
13  Resources / Career Central / Re: college major questions on: October 21, 2010, 12:15:22 PM
Computer science would deal with programming. One thing about security is that you will be doing lots of sitting looking at logs (depending on what part you get into). Also Knowledge of programming languages is helpful in security as well. Security is a hard road to travel and get into. I don't want deter you from going that route but be prepared to spend time working you way up the later before you do security related tasks. You gotta know the system/network before you can secure it.

Like it was posted earlier info sys would be more of a business side of things mixed with small amounts of technical.
14  Ethical Hacking Discussions and Related Certifications / CEH - Certified Ethical Hacker / Re: Free CEH training videos from Logical Security on: October 13, 2010, 11:26:13 AM
Logical Security/Shon Harris has free CEH online course available, over 30 hours of training:
http://www.logicalsecurity.com/resources/resources_videos.html

Requires registration with a valid email address.

Nice find watching them now.
15  Ethical Hacking Discussions and Related Certifications / Cyber Warfare / Re: Making the jump to cyber warfare on: October 12, 2010, 04:42:23 PM
Are positions in cyber warefare normally restricted to people with military experiance?

I am guessing that cyber warfare means government jobs?
No. You can be hired without prior military experience. It helps if you have it but doesn't mean you won't get it either. Security clearance is another helpful thing in getting a job with the government. If you got that then they are more likely to hire you because it cuts down on expenses and time to do background checks.
Pages: [1] 2 3 4
Powered by MySQL Powered by PHP Powered by SMF 1.1.18 | SMF © 2013, Simple Machines
Joomla Bridge by JoomlaHacks.com
Valid XHTML 1.0! Valid CSS!
Page created in 0.073 seconds with 21 queries.
 
Exclusive Deal

sansfire13_245x90_cw90.jpg
SANSFIRE 2013
June 15 - 22

5% Off w/ Code: EHN_5

SANS Deals 4 EH-Netters
5% OFF Any SANS Course in Any Format!
Coupon Code: EHN_5 Including SANS Rocky Mountain 2013 & SANS Boston 2013
Polls
Compared to this year, 2013 will be:
 
Recent Forum Topics
EH-Net News Feeds
Latest Additions
 
         
Free Business and Tech Magazines and eBooks

© 2013 The Ethical Hacker Network
Joomla! is Free Software released under the GNU/GPL License.