 |
| |
| |
|
Who's Online |
|
We have 41 guests and 1 member online |
|
| |
|
|
 |
|
EH-Net
|
|
May 24, 2013, 08:45:48 PM
|
Show Posts
|
|
Pages: 1 [2] 3 4 ... 6
|
|
19
|
Resources / Tools / Re: tools ot Modify DACL of remote machine
|
on: December 20, 2011, 08:48:35 AM
|
|
If you're just trying to add: psexec \\srvName icacls.exe D:\temp\* /grant user-name:(D,GR,X)
Obviously it will need a little tweaking w/ the switches but this should do you for a starter.
|
|
|
|
|
22
|
Resources / Tools / Re: tools ot Modify DACL of remote machine
|
on: December 19, 2011, 04:31:58 PM
|
If you can't use Powershell, psexec and icacls should do the trick.
Yep - these can all do it. If you don't have powershell, figure out what the ACL should look like, write out the icacls.exe command & variables, then save it in a batch file and script it out to the other boxes. What OS(es) are involved? All W2K3?
|
|
|
|
|
23
|
Ethical Hacking Discussions and Related Certifications / Web Applications / Re: Web page hacked. See if you can help?
|
on: December 19, 2011, 04:12:02 PM
|
|
I (hesitantly) went to the site and it does look like they just defaced it instead of actually hacking the thing, likely somebody just found a leak in the vBulletin software and exploited it that way. I'd say if you can restore the database w/ the updated software that's probably the most you can do for now.
FYI - this thing sadly happens a lot and is more annoying than damaging. I once had a phpBB site of mine undergo a similar treatment and I found that the time I spent being pissed about it was significantly less than the time it took me and my hosting provider (Verio) to fix it.
|
|
|
|
|
27
|
Ethical Hacking Discussions and Related Certifications / General Certification / Re: Certification plans for 2012?
|
on: December 19, 2011, 12:36:53 PM
|
You know you can challenge the exams, right? While $899 isn't cheap, it's still much more affordable than $4k. You just need to put in all the work of learning the material on your own  For someone who has a good handle on the material and is just looking for the credential, it's a pretty good option. True as well, but slightly more risky whereas by attending the course you'd have not only the benefit of the instructor but the actual course material/notes.
|
|
|
|
|
29
|
Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: How to convince your boss to allow linux in the workplace
|
on: December 18, 2011, 08:21:12 PM
|
I think I'd point out that if they don't allow you to use linux then they need to come up with some big bucks for the windows pentesting apps. Otherwise you can't do your job properly.
I thought about that too. I know it's not kosher to divulge a lot of info but has your company spent a decent amount on commercial products? I suppose there is a bit of rationale if they have a standardized suite but it is more unexpected than anything that linux just for certain tools wouldn't be part of the environment.
|
|
|
|
|
Loading...
|
|
 |
|