Image
 
linkedin_logo.png rss_logo.jpg
twitter_logo.png youtube_logo.jpg
Latest Additions
 
EH-Net Login
Welcome Guest.






Lost Password?
No account yet? Register
Who's Online
We have 30 guests and 1 member online
 
Advertisement

You are here: Home
EH-Net
May 25, 2013, 11:20:11 PM *
Welcome, Guest. Please login or register.
Did you miss your activation email?

Login with username, password and session length
News: Go back to The Ethical Hacker Network Online Magazine Home Page
 
  Home Help Calendar Login Register  
  Show Posts
Pages: 1 ... 42 43 [44] 45
646  Resources / Tools / Re: Any one use Colasoft ? on: September 16, 2010, 02:39:19 AM
What about Wireshark (or tcpdump etc.) with Scapy?

That's pretty much all you need to read, analyze and even create packets.
647  Ethical Hacking Discussions and Related Certifications / General Certification / Re: Career Path on: September 15, 2010, 04:44:12 AM
Thanks a lot for the replies

I would love to work in a front-line type role, I enjoy getting my hands dirty, so to speak. I would just hate to work in a call centre, running through some pre-made diagnostic script on a screen. Im a good problem solver and enjoy the challenge of it immensely, its the main attraction of a career in IT for me.

I was hoping to try and skip the entry level phone tech support type roles by gaining enough certification to prove my knowledge. Im guessing that even if my CV is bursting with certs that im still destined to start at the bottom?


I'm working on a 1st level (outsourced) help desk and have supported several major manufacturer products for end-users, where I've never used a pre-made diagnostic script ever.

I read about or listen to the problem which the customer has, and then I know what to try (aka troubleshoot) based on what the problem is or might be. The payment is typically insanely low within these jobs though. (But you can get food on the table each day.)

I'm not saying it's very challenging or fun, in fact it's the most boring job I've ever done to be completely honest but it has improved my soft skills a lot. Furthermore I'm also doing it, because it's better to have this within IT than nothing at all or perhaps "house cleaning".

I've done this for almost 2 years now as my daily job while doing the fun stuff after work in my own free time. I even did a shorter education within IT as System Administrator over 2 years where it was only focused on IT. Nothing else just IT  Grin That was fun but it didn't help me to get a job at all though.

I haven't gotten any certifications yet, but I'm still studying shellcode in order to complete the CTP (OSCE) examination from Offensive Security. I plan on taking a lot more certifications in the near future too of course, such as CISSP, CEH, OSCP, OSWP, and more  Smiley

Anyway, back to the topic.

It isn't easy to get a job within IT-security if you don't have any former experience, certifications nor education.

I've experienced that myself and the easiest way to get a "job" is to become a freelancer or start your own business if you have a vision you'd like to come true.

Good luck with all your certifications though, and your future job!  Wink
648  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: www.defilaide.com on: September 15, 2010, 04:21:18 AM
Have you read the Table of Contents?

It appears to be a very (very) basic course:
http://www.defilaide.com/index.php?option=com_content&view=article&id=214&Itemid=207#content

I could be wrong of course, but it looks very brief as if you might only breach the surface of (ethical) hacking.
649  Ethical Hacking Discussions and Related Certifications / Cyber Warfare / Re: Xerxes Video - Th3J35t3r on: September 15, 2010, 04:04:52 AM
Most likely D4rk357.

My best guess is a DNS Amplification Attack, POD (Ping of Death) and / or Slowloris style WebServer attack, perhaps all 3 combined for a higher success rate.

I don't think it's something new even though I can't confirm nor deny it.

Update:
Oh yeah I forgot about UDP and TCP DoS attacks too.  Cheesy

After all if he's not attacking specific services on the target computers, such as
web-servers, dns-servers etc. then he's abusing the functionality of the ICMP, TCP and / or UDP protocols which hardly can't be something new. Just better implemented.
650  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: Finger priniting NAT Router and IDS? on: September 14, 2010, 11:08:37 AM
One way to detect if NAT is present on a target network and find out a possible IP-range is:
1) Assume the target network is using its own mail-servers internally. (Some corporations outsources their e-mail servers though.)
2) Send an e-mail to an non-existing address at their domain name. ( 213782hdsa@domain.tld )
3) When the "Post Master" automatically returns your e-mail, look at the e-mail headers.

If you want a visualization of what to look at, take a look at this video about information gathering:
http://www.youtube.com/watch?v=1nd6vAz4SOw

This is also a part of the phase known as "recon" aka reconnaissance during a pentest.

I am however, unsure how to detect an IDS without scanning the internal network and / or router.
651  Features / Opinions / Re: Network Setup on: September 14, 2010, 06:42:51 AM
Mine is pretty simple.

[CABLE TV SPLITTER] <=== COAX CABLE === [Motorola MODEM] <=== UTP CAT5 === [LAPTOP]  Wink

Uncapped to 100mbit! Just kidding  Cheesy But it is possible to do though I haven't tried since it can result in a life-time ban from the ISP  Grin
652  Resources / Links to cool sites. / Re: HaXx.Me - Wargames by InterN0T on: September 12, 2010, 02:20:49 PM
If you don't know yet, here's the documentation for the HaXx.Me #02 challenge:
http://blip.tv/dashboard/episode/4127637

You can also get it here: http://bit.ly/diSgY9 ( pass: www.intern0t.net )
653  Ethical Hacking Discussions and Related Certifications / Security / Re: Looing for app pen testing and VOIP pen testing courses on: September 09, 2010, 03:16:18 AM
OSCP V2 and V3 were great courses but neither were very intense on the application pen testing as I would like.

Great courses none the less I recommend them for anyone who wants some of the best pen testing training around.

I assume you're OSCP certified then if you completed both courses? If so have you thought about the more hardcore OSCE certification (CTP course)? It isn't as "big" as PWB but it surely is a lot more harder of course.

If you're into Web Application Pentesting then I don't know which course I can recommend yet. Perhaps the link dynamik wrote in the post above  Wink

I assumed you meant software application pentesting, so I'm sorry if you meant Web Applications  Smiley

There's of course AWE (by OffSec as well) which is only Live and of course based on Windows software exploitation.
654  Ethical Hacking Discussions and Related Certifications / Security / Re: Looing for app pen testing and VOIP pen testing courses on: September 08, 2010, 02:53:10 AM
OSCP (Offensive Security Certified Professional) aka PWB (Pentesting with BackTrack) from OffSec offers a lot of Application Pentesting and a certification too as you can see.

I don't think it includes VOIP, but if you have never done any of their courses nor certifications then with your amount of certifications and experience, it would be on time to try some of the hardest certifications Wink
655  Ethical Hacking Discussions and Related Certifications / Cyber Warfare / Re: Please guys, I really need your help on: September 03, 2010, 08:25:33 AM
My advice to you is to warn people about "other copies" of your site. There is not much you can do about it...

Hope you understand Undecided

In case there is copyrighted material which has been copied from his site to the other, then he's able to claim copyright for that if he's the rightful owner.
656  Resources / News from the Outside World / Re: Hackers accidentally give Microsoft their code on: September 03, 2010, 06:27:16 AM
Quote
When the hacker's system crashes in Windows, as with all typical Windows crashes, Heckman said the user would be prompted to send the error details — including the malicious code — to Microsoft. The funny thing is that many say yes

So funny!  Cheesy

I found that funny as well, though at least not all "hackers" including blackhats (and many other hats) do that mistake.

I'm not a blackhat but when I've had to develop bypassing techniques for AV-scanners, I made sure that my work was not automatically sent to M$ nor the Anti-Virus manufacturer.

Else it's pretty much worthless work, which I assume most of us are not fond of  Wink

If you wonder exactly what those bypassing techniques are used for, it's for demonstration purposes to compare how hard or easy it may be to bypass different Anti-Virus systems. (The entire system, that is.)
657  Resources / Links to cool sites. / Re: HaXx.Me - Wargames by InterN0T on: September 02, 2010, 02:01:46 PM
So, is it only for one day?

No the challenge aka wargame lasts around 7 days  Wink

Very nice, thanks!

I always enjoy watching these videos!
+1

btw nice guides page (guides.intern0t.net)

Thanks pizza1337, there's also a few here:
http://www.youtube.com/user/maxel3g3nd
658  Ethical Hacking Discussions and Related Certifications / Web Applications / Re: MySQL HTTP Header injection help on: September 02, 2010, 09:13:55 AM
Well, I believe that mysql_query will essentially prevent you from running stacked queries.  So, adding a semicolon and another statement wouldn't work.  One thing is clear, you can insert anything you want into that table.   I think that you are back looking to see where that data is displayed.   You can then implement a CSRF / XSS vector.   The CSRF vector is especially nice since an admin would likely be reviewing the logs.

Correct, stacked queries does not work on PHP and MySQL implementations  Wink

It is possible to pollute / poison the logs with CSRF and / or XSS vector attacks,
however it is also possible to perform completely blind sql injection if all aspects are known or possible to be predicted or enumerated.

In this case, one thing to check is e.g. is magic_quotes turned on?

Possible attack vectors include but are not limited to:
- Altering user and password credentials
- Uploading backdoors in PHP (this requires special permissions.)
- Loading system files and moving them into the "http" (html) directory. (requires special permissions too.)
- Adding new users with administrator privileges.
- Log Pollution / Poisoning as Ketchup said  Wink
659  Resources / Links to cool sites. / Re: HaXx.Me - Wargames by InterN0T on: September 02, 2010, 09:06:26 AM
Very nice, thanks!

I always enjoy watching these videos!

Thanks H1t M0nk3y  Grin

There will probably be a video by InterN0T as well when HaXx.Me #02 ends  Wink
660  Ethical Hacking Discussions and Related Certifications / General Certification / Re: will pay to be taught how to hack wireless credit card networks(plz dont ban me) on: September 02, 2010, 07:01:13 AM
You do know that this is a board (forum) for ethical hackers right?   Cheesy

Ethical, as in not breaking the law. You, are on the other hand asking for blackhat or script kiddie services which I don't think is suitable for this board.

None the less I had a great time reading your request.
Pages: 1 ... 42 43 [44] 45
Powered by MySQL Powered by PHP Powered by SMF 1.1.18 | SMF © 2013, Simple Machines
Joomla Bridge by JoomlaHacks.com
Valid XHTML 1.0! Valid CSS!
Page created in 0.079 seconds with 21 queries.
 
Exclusive Deal

sansfire13_245x90_cw90.jpg
SANSFIRE 2013
June 15 - 22

5% Off w/ Code: EHN_5

SANS Deals 4 EH-Netters
5% OFF Any SANS Course in Any Format!
Coupon Code: EHN_5 Including SANS Rocky Mountain 2013 & SANS Boston 2013
Polls
Compared to this year, 2013 will be:
 
Recent Forum Topics
EH-Net News Feeds
Latest Additions
 
         
Advertisement

© 2013 The Ethical Hacker Network
Joomla! is Free Software released under the GNU/GPL License.