Image
 
linkedin_logo.png rss_logo.jpg
twitter_logo.png youtube_logo.jpg
Latest Additions
 
EH-Net Login
Welcome Guest.






Lost Password?
No account yet? Register
Who's Online
We have 43 guests online
 
Advertisement

You are here: Home
EH-Net
May 24, 2013, 09:46:31 PM *
Welcome, Guest. Please login or register.
Did you miss your activation email?

Login with username, password and session length
News: Go back to The Ethical Hacker Network Online Magazine Home Page
 
  Home Help Calendar Login Register  
  Show Posts
Pages: [1] 2
1  Ethical Hacking Discussions and Related Certifications / CEH - Certified Ethical Hacker / Re: Silly CEH Qustions on: March 03, 2011, 01:49:23 PM
Very noobish question, yet again.

Does the CEH have a hands on aspect to the exam? Also does anyone have any particular areas to focus on before taking the exam from experiance? Is this just mostly memorization?
2  Ethical Hacking Discussions and Related Certifications / Cyber Warfare / Defense Against Cyber Attacks (Skill Set)? on: February 22, 2011, 09:48:56 PM
Okay - As companies are continually being attacked by either internal espionage or cyber attacks from the outside, it seems pretty safe to say that cyber defense is a big part of security.
 
What skillset/certifications would you recommend to someone looking to perform this job instead of penetration testing?
3  Ethical Hacking Discussions and Related Certifications / CEH - Certified Ethical Hacker / Silly CEH Qustions on: February 18, 2011, 12:02:39 PM
I'm new to the CEH exam and just finished reading and studying a Sybex book that would prepar someone for the 312-50 and EC0-350. I saw a lot of talk about CEH v7 and wasn't sure which exam the study material I have would map to?

I'm going to start doing labs and setting up some stuff at home, I just wasn't sure what was on the test or what was mapped to the one I was going to hopefully take.

I heard that there was a lot of weird questions in the CEH, should I wait until the next one comes out?
4  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: Firesheep Details?? on: November 03, 2010, 04:57:46 PM
Thank You!!

So once a site has HTTPS the credentials are safe from there? Are you encrypted the entire time you're on the site? Or are there sites that go between HTTP and HTTPS?

When you're going through HTTPS are the cookies being sent through a the SSL tunnel? Is this right?
5  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: Firesheep Details?? on: November 02, 2010, 10:31:40 PM
I'm very interested in this and if anyone can help with some of the more "fine" details on how this tool works please let me know.

I'm assuming that this is based off the cookies that are being thrown up to the open wifi "hub".

I saw many responses to "HTTP everywhere", which is another interesting topic. Many of this is new to me and I'd love to hear more about these topics from any of the more "seasoned" members.
6  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Firesheep Details?? on: November 02, 2010, 03:40:44 PM
Okay - I'm not sure that this is the right forum for this, but I'm curious as to how firesheep works.

I tested the application on my wireless router which I downgraded to wep which allowed this vulnerablity to work. My understanding of this is that for sites that aren't completely HTTPS or HTTP this tool will allow you to hijack there session.

My question is how is this taking place? Are these for sites that secure your credentials intially at logon and than aren't HTTPS afterwards? Is the information being sniffed by cookies being sent over the wireless? How can you defend against this?

I understand the networking here since the AP acts like a hub, I was more intereted as to what was being sniffed out with this tool.

thanks.
7  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: Setting up a test lab on: October 24, 2010, 05:11:54 PM
Thank you Grendel - Are there tutorials or challenges with the De-Ice disks? I'm starting to get into pen testing and I was curious if there was any help with learning these techniques.

Thanks again.
8  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: Setting up a test lab on: October 23, 2010, 10:05:06 PM
Okay - Thanks to everyone in this forum I just downloaded and installed Hackerdemia within Ubuntu and got it up and working. There is a lab there thats hosted that show a few tutorials on Netcat, Nmap, and Hydra (this one doesn't work). Are there any other labs? For Hackerdemia that you can follow?

Would De-Ice be better?
9  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: Setting up a test lab on: October 23, 2010, 10:07:23 AM
Quick question......

What are the differences between Hackerdemia and De-Ice Live CD?

Thanks
10  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: Setting up a test lab on: October 22, 2010, 11:07:59 AM
Thank you all for your help. I can't wait to get started!!!
11  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Setting up a test lab on: October 21, 2010, 08:00:31 PM
I'm going to be setting up a test lab using VMware server on my workstation to play around with. Does anyone any suggestions on labs or setups that would be most helpful? I want to play around and watch how things work.

Any thoughts would be greatly appreciated.

Thanks,

Matt
12  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Port Scan from random Source IP's on: October 21, 2010, 09:26:06 AM
I've read about Dynamic port scanning, but the I thought that the spoofed IP's needed to be within the same subnet? Cany anyone help me out here?

thanks
13  Ethical Hacking Discussions and Related Certifications / Cyber Warfare / Re: Making the jump to cyber warfare on: October 12, 2010, 01:32:55 PM
Are positions in cyber warefare normally restricted to people with military experiance?
14  Ethical Hacking Discussions and Related Certifications / OSCP - Offensive Security Certified Professional / OSCP Advice on: October 07, 2010, 09:10:24 PM
This is a great forum!! I actually just came here to ask a question regarding which exam to take first, the CEH or OSCP and I'm pretty sure thats been answered already. Wink

My other question is this, I've been in the IT field now for 7 years with the past 1 1/2 years being in the infosec side of IT (Managing IPS/Firewalls/Anti-Virus/Web filters/SIEM, etc..) But I don't have any real pen testing experience to go along with that. 

I've administrated a Windows/VMware/Cisco/CheckPoint network, but is that going to prepare me enough to even attempt the OSCP? I have some linux knowledge and really no coding experience except from college way back.

I'm going to attempt the CEH first, but what I'm concerned with is being ill prepared to start the OSCP after that. This is something I really want to attempt to get the hands on knowledge of pen-testing, but I want to make sure its the wise thing to do at the time.

Any advice?

Thanks!!!
15  Ethical Hacking Discussions and Related Certifications / Incident Response / Re: SIEM Custom Correlation Rules on: October 01, 2010, 03:04:34 PM
Thank you my friend!!

Actually the database admin has approached us and wants this done, so we're kinda in a different boat.

I've already scheduled a meeting for him to go over what they're currently doing, what he'd like to see, and whats to be expected.

Thanks!!
Pages: [1] 2
Powered by MySQL Powered by PHP Powered by SMF 1.1.18 | SMF © 2013, Simple Machines
Joomla Bridge by JoomlaHacks.com
Valid XHTML 1.0! Valid CSS!
Page created in 0.074 seconds with 22 queries.
 
Exclusive Deal

sansfire13_245x90_cw90.jpg
SANSFIRE 2013
June 15 - 22

5% Off w/ Code: EHN_5

SANS Deals 4 EH-Netters
5% OFF Any SANS Course in Any Format!
Coupon Code: EHN_5 Including SANS Rocky Mountain 2013 & SANS Boston 2013
Polls
Compared to this year, 2013 will be:
 
Recent Forum Topics
EH-Net News Feeds
Latest Additions
 
         
Free Business and Tech Magazines and eBooks

© 2013 The Ethical Hacker Network
Joomla! is Free Software released under the GNU/GPL License.