Image
 
linkedin_logo.png rss_logo.jpg
twitter_logo.png youtube_logo.jpg
Latest Additions
 
EH-Net Login
Welcome Guest.






Lost Password?
No account yet? Register
Who's Online
We have 40 guests online
 
Advertisement

You are here: Home
EH-Net
May 18, 2013, 08:48:56 PM *
Welcome, Guest. Please login or register.
Did you miss your activation email?

Login with username, password and session length
News: Go back to The Ethical Hacker Network Online Magazine Home Page
 
  Home Help Calendar Login Register  
  Show Posts
Pages: 1 2 3 [4]
46  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: What to learn? on: January 18, 2008, 01:40:57 PM
Its never too late to start learning, you can start by browsing this site and learn what you feel you're ok with.

because the only one who can answer this question is you.
47  Resources / Mass Media / Re: Die Hard 4.0, Swordfish. on: January 17, 2008, 01:18:33 PM
...but still there is some movies that have good story, like:
Antitrust
http://www.imdb.com/title/tt0218817/

Firewall
http://www.imdb.com/title/tt0408345/

on the Antitrust's Trivia:
Quote
President of NURV Gary Winston appears to be an amalgam of the CEOs of Microsoft and Apple: Bill Gates and Steve Jobs, respectively. NURV resembles Microsoft in power and composition, and Winston's appearance is modeled after Gates. But Gary Winston also posesses Steve Jobs' cutthroat business drive, fiery temper, and motivational speeches. This combination is also possibly supported by the coexistence of both PCs and Apple computers on the NURV compound...

the rest is on:
http://www.imdb.com/title/tt0218817/trivia

really funny.
48  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: New to ethical hacking on: January 07, 2008, 10:34:25 AM
I'd recommend getting The Protocols (TCP/IP Illustrated, Volume 1) and The Implementation (TCP/IP Illustrated, Volume 2) by the Late W. Richard Stevens, both of them are great

http://www.flazx.com/ebook3482.php
http://www.flazx.com/ebook3483.php

...The Unofficial Guide to Ethical hacking, but i read a version somewhere and it seems to deal a lot with windows 98 and seems a little outdated.. correct me if im wrong cause i just browsed through it.
If you mean the book authored by Ankit Fadia, There is of course a second Edition that is Published in 2005, and I don't think it still talks about windows 98.

http://www.amazon.com/Unofficial-Guide-Ethical-Hacking-Second/dp/1598630628/ref=pd_lpo_k2_dp_k2a_2_txt?pf_rd_p=304485601&pf_rd_s=lpo-top-stripe-2&pf_rd_t=201&pf_rd_i=1931841721&pf_rd_m=ATVPDKIKX0DER&pf_rd_r=1TQV4H3P2YPKYBF8RFRW

peace,
Marshel.
49  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: Teach me guyz how can i start and doing hacking on: January 01, 2008, 05:59:42 AM
I'm gonna try to be honest with at the best I can.

Teach me guyz how can i start and doing hacking, how can i do program to hack other pc, like on how can i operate other pc thru network by using my PC, how can i detect and still thier PC admin / user on computer / ID in yahoo password,

tnx guyz


L30

like this you're going no where, believe me.

this is a very bad way to start.

forget about stealing users passwords or PC admin....or whatever for a while.

when you learn hacking it should be for a good cause like helping securing a Network or a server or learning about how the Technology works, not for stealing yahoooo password.

but I think you wanna learn anyway, so here is list of stuff that you should get into if you wanna hack:

1- learn the basics about a computer's hardware and OS. As I said above, build the PC's for your home lab.
Then learn the basics of networking, read on TCP/IP, SSH, SSL and other Network Protocols.

2- Learn about programming language: Delphi or C/C++, java, Python, Perl (Assembly if you can put up with it you're gonna a be cOOl it can help find exploits and vulnerabilities  Smiley)

3- Search the Google for "cryptography" read about it, try to understand as much as you can (will, not so much because cryptography is so big).

4- Download and try Linux, Go to http://en.wikipedia.org/wiki/Linux and read all whats in that page, If you can go and try other *Nix Flavors that will great.

5- Now you're ready to measure the level of skill you got, so
go on to the Certification section in this forum and read about Certification like: CEH, CPTS and OSCP.

after you learn stuff like networking and programming you will be able to steal or do whatever you wanna do, but I'm not encouraging you to do that, I'm encouraging you to learn and get in the IT world.

It is long and very hard path that you looking at right now but it is not impossible.

that is if you want to learn.

more on the meaning of the word "hacking":
http://en.wikipedia.org/wiki/Hacker

this is a great paper (old one but it is worth it):
http://www.catb.org/~esr/faqs/hacker-howto.html


Sure you can get tools like metasploit and nmap and Nessus, and go on hacking other poor peoples computers stealing their Yahoo passwords (people how does that are called lamers and Script kiddies), but you will not accomplish anything from that.

It is never too late to start learn about computers as long that you have the passion for it, as long that you enjoy learning how programs work.

and If you read most of the topic in this forum they will help a lot tryin to figure out what you wanna do.

Regards,
Marshel
50  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: Password Help! on: December 25, 2007, 12:36:44 PM
.....Dear Lord, Did you said windows 98 that is so old.

but anyway, to delete the password When windows ask for the password, click on the X box in the upper right. It will only work if you start Windows.

or like you said if you can get to the dos on that computer delete all the .pwl files in C:\windows Directory.

Marshel.
51  EH-Net / News Items and General Discussion About EH-Net / Re: Happy Holidays 2007 on: December 24, 2007, 11:41:26 AM
Best wishes everyone And Happy whatever you celebrate in your area.
...

Abdullah
52  EH-Net / Calendar Of Events / Re: HITB SecConf 2008 - Dubai on: December 23, 2007, 04:11:53 PM
Really nice, dubai is a nice city.

I'll try to be there.
53  Ethical Hacking Discussions and Related Certifications / General Certification / Re: Introduction on: December 05, 2007, 05:54:22 AM
Glad to be the first to say, Welcome in EH-NET

Best wishes,
Marshel
54  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: questions on: December 02, 2007, 09:56:40 AM
just like slinjim100 said,

and here is a guide for making strong password:
http://geodsoft.com/howto/password/

peace.
55  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: Building A Lab for ethical Hacking on: December 01, 2007, 06:50:36 AM

Last night I was playing with my lab more than I should, let's just say that I messed up some stuff, and three of my
PCs went down   Angry
and I only have one PC now, which have 1 GB ram, Do you know what that means ?? Yep, thank god I still get the
chance to run VMware and setup another Virtual lab, until I repair the other Boxes  Cheesy

Anyway, on top of windows XP-SP2, I installed 3 VMs:
- Windows server 2000
- Windows server 2003
- Linux (Fedora and Back|Track2)

This is what I did the first time when I first got the chance to setup a lab:
- scanning and discovering the security holes on windows 2000 server
and hardening the system and close unneeded ports (make it more secure)
Note: some may argue that windows 2000 server is too old and you won't learn anything from it.
will, it is always good thing to start from point zero and start learning, so after I feel that That I got
bored from windows 2000 server then I go to practice on windows 2003 server and so on.

- setting SAMBA on the Linux box.

Also, I found real great book called:
Practical Hacking Techniques and Countermeasures
http://www.amazon.com/Practical-Hacking-Techniques-Countermeasures-Spivey/dp/0849370574/ref=pd_bbs_sr_1?ie=UTF8&s=books&qid=1196512700&sr=8-1

It shows a lot of the most common security holes and how to exploit them and close them. I wouldn't recommend it for Newbies because it doesn't explain exactly how these holes work or how did they show up.
But, it is great if you already knew about networks, at least that is my opinion.

...and I' will tell you guys more soon when I got the time.
funny thing is when someone have a lot time to kill he doesn't do any thing useful, and when someone is so busy
he remembers how could he invest his time in learning new skills.

as I said before [any comment or suggestions would be great help for me ?? ]

Peace.
56  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: Cracking email pw : webmail based and other on: November 26, 2007, 09:56:22 AM
I don't have an answer for your question but what I want to say is that it is illegal to hack someone else email even if it is your wife and even if she is cheating on you.

If you are a pen-tester looking for help or you have a technical problem that gives a headache it would be more than welcome to share it with us here in the forum and I'm sure you will a lot of help.

but since you've but it this way.... Sad

I hate to say this, and I don't mean to middle in your relationship with your wife but it would a lot more better if you solve your problem in more reasonable way, cerntly not by hacking nor cracking or what so ever.


Peace.
57  Resources / News from the Outside World / Conference to Focus on IT and National Security in Saudi Arabia on: November 26, 2007, 09:36:57 AM
Quote
A four-day conference on Information Technology and National Security will be held here from Nov. 3-6 as part of the Kingdom’s drive against terrorism via the Internet and other security issues.

Prince Muqrin ibn Abdul Aziz, chief of intelligence and chairman of the organizing committee, announced in a statement issued yesterday that the conference would also see the inauguration of its headquarters by Custodian of the Two Holy Mosques King Abdullah, under whose patronage the conference is being held.

One of the goals of the conference, said Prince Muqrin, was to “encourage researchers in modern technology to use it in such a way as to serve national security in a comprehensive manner.”

He said some 1,000 delegates, including IT experts from the Kingdom and abroad, were expected to attend the conference..........

The Source:
http://www.arabnews.com/?page=1&section=0&article=97024&d=4&m=6&y=2007

another one from Alryiadh News paper (in Arabic):
http://www.alriyadh.com/2007/11/25/article296702.html

Details of the conference are available on:
(Arabic) www.itns.org.sa
(English) http://www.itns.org.sa/detail.asp?InServiceID=212&intemplatekey=MainPage
58  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: Building A Lab for ethical Hacking on: November 10, 2007, 04:55:11 AM
BillV:Thanks, thats what I hope to accomplish.

don: Its good to here this from you, I'm trying to do my best.

Yes you are on your way. But be free to set it up in different ways. I like to attack the server and then go to client boxes. Other times I like to attack a client and then own the server. My point is, you should be flexible in your lab configuration. There is not just one way!  Keep changing it around. Also, when you are more comfortable, try introducing a lot of traffic to make a real feel of a congested network.  If you play with it., you can really make it feel like a live network you are attacking.  One important point is to install each OS in its default configs. Then keep updating until you can no longer exploit. Then try installing 3rd party apps. See if you can exploit those.

The best lab is a flexible thing that you play with. As they say way too often, think outside the box! 

Noted, I'll try to make the lab more flexible as you said, and thank you.


once again thank you all guys.

59  Resources / Tutorials / Re: If you know how to use Google: on: November 09, 2007, 08:26:37 AM
thanks this is a nice one, of course there is the famous:

Google Hacking Database
http://johnny.ihackstuff.com/ghdb.php


Peace.
60  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Building A Lab for ethical Hacking on: November 09, 2007, 01:22:45 AM

Hi everyone,

   I know there's a few posts in the forums here that talks about building a lab to practice security (ethical hacking). I've already read some of them.

in this post I just want to share with you the way I'm gonna build my lab, hopefully with your comments and maybe criticism I'll do best.

first here is a simple MAP:



by the way I know there is something called "Virtual Machine"
I tried it and its Okay  Cool


and here is Objectives that I want to achieve:

- Practice setting up Active Directory & DNS on the windows boxes.
- Practice setting up SAMBA on the Linux box.
- Get Snort and Ethereal and learn to monitor traffic.
- Practice tightening the kernel on Linux.
- Read up on the Windows services and see which ones you can disable w/o breaking authentication or replication.
- Set up VPN's and RAS in ALL of the Boxes and learn to harden them.
- Practice MONITORING SECURITY LOGS.

and more that I can't remember right now.


and also practicing to get Certifications like:
[CCNA or RHCE or MCSE, CEH, CPTE, OSWP and OSCP]

It might take some time to get all those, but it doesn't matter how long it will take. because I'm having fun right now and I don't want it to end  Grin
Pages: 1 2 3 [4]
Powered by MySQL Powered by PHP Powered by SMF 1.1.18 | SMF © 2013, Simple Machines
Joomla Bridge by JoomlaHacks.com
Valid XHTML 1.0! Valid CSS!
Page created in 0.064 seconds with 21 queries.
 
Exclusive Deal

sansfire13_245x90_cw90.jpg
SANSFIRE 2013
June 15 - 22

5% Off w/ Code: EHN_5

SANS Deals 4 EH-Netters
5% OFF Any SANS Course in Any Format!
Coupon Code: EHN_5 Including SANS Rocky Mountain 2013 & SANS Boston 2013
Polls
Compared to this year, 2013 will be:
 
Recent Forum Topics
EH-Net News Feeds
Latest Additions
 
         
Advertisement

© 2013 The Ethical Hacker Network
Joomla! is Free Software released under the GNU/GPL License.