Image
 
linkedin_logo.png rss_logo.jpg
twitter_logo.png youtube_logo.jpg
Latest Additions
 
EH-Net Login
Welcome Guest.






Lost Password?
No account yet? Register
Who's Online
We have 69 guests and 3 members online
 
Advertisement

You are here: Home
EH-Net
May 22, 2013, 08:51:33 PM *
Welcome, Guest. Please login or register.
Did you miss your activation email?

Login with username, password and session length
News: Go back to The Ethical Hacker Network Online Magazine Home Page
 
  Home Help Calendar Login Register  
  Show Posts
Pages: [1] 2
1  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: niche pen testing on: February 07, 2012, 06:22:45 AM
Exactly what Maxe point out ... for example, reading RFCs and being expert in one or few protocols is my point of topic. I have done some team-work pen tests and what I can say is, that there are a lot of basics, working with out-of-box tools, using msf, core impcat, nessus. I think those tools should be used by security engineers inside company.

I would think you can specialize in say Wireless communications, this would include Wi-Fi, Bluetooth and RFID.  

I don't think so. Wireless communications are much more than Wi-Fi, BT etc. For example, there are some known attacks on GSM and GPRS. You can attack it with available technology but this is not black-box expertises. Being that mean, that you can built your own attacks or slightly diverse current attacks. Both demand great knowledge in cryptography (specially in stream ciphers), cryptanalysis and also sound knowledge in physical quantities.

But trying to freelance, it may be much more difficult to get work.

This can be a matter of discussion. Anyway I think that being black-box http://en.wikipedia.org/wiki/Black_box expert should give you more work as freelancer.
2  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / niche pen testing on: February 05, 2012, 03:59:05 PM
Hello.

Penetration testing covers lots of different segments (WiFi, SE, Web app, ...). I have been wondering, have anyone specialized himself for doing only one niche pen test segment (For example only RFID or only one type of web app; biometric access control etc.).

Being (black-box) expert and most of the time pursue only one niche segment of pen testing could be beneficial.
3  Ethical Hacking Discussions and Related Certifications / Hardware / Re: device/system selection on: December 22, 2011, 02:57:54 PM
If I understand that right, you want the traffic needing to be watched to go out over the exiting WAN connection without going through the existing border router? can you create down time to set things up?

Yes.

Also I have time to set-up things, it's not continuous process 24/7. For the beginning would be ok, if the device (tap) could have option to save filtered traffic and send it via smtp on every X hours. In that way the device could be plugged directly in current switch. Ofcourse I don't know if I get such smart Tap device (having laptop in rack for that is not an option).
4  Ethical Hacking Discussions and Related Certifications / Hardware / Re: device/system selection on: December 16, 2011, 09:30:05 AM
Have you tried a tap?

Yes, inline aggregating tap with filter option is needed, but do I get a device with router capabilities. Traffic should be send over WAN, but without intervention to existing (primary) router.
5  Ethical Hacking Discussions and Related Certifications / Hardware / device/system selection on: December 15, 2011, 07:09:47 AM
What kind of device is best to use if I want do "duplicate" and transfer network traffic from one remote facility to other, where analysis will be done?

So I'm looking for best "out-of-box" rack-cabinet appropriate device, sufficiently effective for being placed between switch and router.
6  Features / Book Reviews / advanced books on: September 14, 2011, 02:51:02 PM
Hello.

I'm looking for books that are more advanced and go further/beyond than hacking exposed, counter hack reloaded etc. And also what I miss in pentest books are description of more advanced techniques.

thanks.
7  Features / Book Reviews / data encryption on: April 18, 2011, 10:34:06 AM
Hello.

I'm looking for books which have useful description of not only software but also hardware devices for data encryption. A lot of books in cryptography field are deep in mathematics and crypto systems. But what I need is every day devices and programs for data encryption. I want to be familiar with out-of-box solutions for businesses and governments.
8  Ethical Hacking Discussions and Related Certifications / General Certification / Re: Information Gathering on: October 17, 2010, 06:54:35 AM
I have tried Maltego V3, great tool.

One questions: Is it possible to get a good book which will teach python from basic, but has to be focused more on python scripting for data, text and web mining?
9  Ethical Hacking Discussions and Related Certifications / Wireless / Re: Does Mobile Security Deserve New Board? on: October 04, 2010, 06:00:07 AM
When do you think, will courses/tutorials/reviews go forward with wireless security?

I still see a lot of contents about WEP cracking and easy bluetooth trick. I think that today to much people use WPA2 and producer's added protections.

There are more and more apps for mobile phones, mobile OS, business wireless technologies etc. Maybe I'm wrong but I think that pentesting on wireless should be more focused on new softare/hardware standards.
10  Ethical Hacking Discussions and Related Certifications / General Certification / Re: Information Gathering on: October 04, 2010, 05:49:19 AM
Googling with "Open Source IG" has given me lots of results. It kept me busy for weekend.  Cool

Before posting I was wondering how to go "beyond" information gathering, since I'm doing OSCP and already saw Chris Gates presentation.

So thanks for replies, they have given me more to work on.
11  Ethical Hacking Discussions and Related Certifications / General Certification / Information Gathering on: October 01, 2010, 06:51:34 AM
Hello.

I haven't noticed any course or book about only information gathering (infrastructure & personal data). Also there is some non-official classes of penetration expertises (like exploits development, social engineering, malware analysis, forensics, wireless, etc.). Why is not Information Gathering a class for itself?
12  Features / Book Reviews / Re: [Article]-Hacking: The Art of Exploitation 2nd Edition on: September 11, 2010, 12:30:15 PM
Does anyone know when will 3rd edition be released?
13  Ethical Hacking Discussions and Related Certifications / Incident Response / My "action" today on: August 30, 2010, 09:11:52 AM
Last week we had a problem with web browsing. Since I made static ARP entry on few machines I knew that it is the same symptom like someone doing ARP poisoning. I started wireshark which showed massive activity on destination port 137 from one internal IP adress (machine).

So for the weekend I made my computer vulnerable for ARP attack and set up XARP on it. Today when I was working, XARP started with continious alarm. I opened wireshark to locate IP address (it was the same as last week). Then I started NMAP to identify computer brand and OS. Firstly I was sure, someone started C&A. So I went to the office where this computer was in use. It wasn't C&A; computer from a young girl obviously has a lot of malware. I made netstat -an but didn't go checking IPs. Later I want to deliberately get ARP attack with this computer, but it didn't show up. Only massive knocking on 137/138. I will make fresh install of OS at that computer.

So this is it. Have you been in situation were someone used C&A and you detected it?
14  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: Honeypot and IDS on: August 27, 2010, 05:57:22 AM
I think about protecting on Operator Work station and HMI Web/DB server level. I believe (but i don't know yet) that Operator Work station isn't segregated from corporate network at small local plants in my area.

15  Ethical Hacking Discussions and Related Certifications / OSCP - Offensive Security Certified Professional / Re: OSCP exam in 1 week - Advice? on: August 26, 2010, 03:21:22 AM
Is metasploit banned at OSCP exam? I find metasploit auxiliary scanners quite useful.
Pages: [1] 2
Powered by MySQL Powered by PHP Powered by SMF 1.1.18 | SMF © 2013, Simple Machines
Joomla Bridge by JoomlaHacks.com
Valid XHTML 1.0! Valid CSS!
Page created in 0.088 seconds with 21 queries.
 
Exclusive Deal

sansfire13_245x90_cw90.jpg
SANSFIRE 2013
June 15 - 22

5% Off w/ Code: EHN_5

SANS Deals 4 EH-Netters
5% OFF Any SANS Course in Any Format!
Coupon Code: EHN_5 Including SANS Rocky Mountain 2013 & SANS Boston 2013
Polls
Compared to this year, 2013 will be:
 
Recent Forum Topics
EH-Net News Feeds
Latest Additions
 
         
Free Business and Tech Magazines and eBooks

© 2013 The Ethical Hacker Network
Joomla! is Free Software released under the GNU/GPL License.