Image
 
linkedin_logo.png rss_logo.jpg
twitter_logo.png youtube_logo.jpg
Latest Additions
 
EH-Net Login
Welcome Guest.






Lost Password?
No account yet? Register
Who's Online
We have 40 guests and 1 member online
 
Advertisement

You are here: Home
EH-Net
May 24, 2013, 06:01:47 PM *
Welcome, Guest. Please login or register.
Did you miss your activation email?

Login with username, password and session length
News: Go back to The Ethical Hacker Network Online Magazine Home Page
 
  Home Help Calendar Login Register  
  Show Posts
Pages: 1 2 [3] 4 5 ... 11
31  EH-Net / News Items and General Discussion About EH-Net / Re: [Article]-May 2011 Free Giveaway Winner - Black Hat USA on: June 27, 2011, 02:32:20 PM
Congratulations! Awesome prize. Please try and provide a detailed review preferably with pics.
32  EH-Net / Ethical Hacktivism / Re: So, whats your opinion about Lulzsec??? on: June 24, 2011, 03:41:49 AM
The work of Lulzsec is clearly that of younger people. When there identities are known (and its not a question if, but when) you will see that the IT business is shocked that this can be done by some "kids who live with their parents". in the end they will spend a fortune on fixing everything, and within a few years it will all be outdated again, letting the story start from the beginning.

</doomsday-mind>

hmm, it may have happened sooner then i thought:

http://www.lulzsecurity.com

Quote
This page (http://lulzsecurity.com/) is currently offline. However, because the site uses CloudFlare's Always Online™ technology you can continue to surf a snapshot of the site. We will keep checking in the background and, as soon as the site comes back, you will automatically be served the live version. Alternatively, you can retry the live version.

The site is back up, they have added Arizona Law Enforcement info: http://lulzsecurity.com/releases/chinga_la_migra_1.txt

Amazed at those passwords!
33  EH-Net / Ethical Hacktivism / Re: So, whats your opinion about Lulzsec??? on: June 21, 2011, 08:41:33 AM
Maybe not j0rdy:

Twitter update: LulzSec The Lulz Boat
Seems the glorious leader of LulzSec got arrested, it's all over now... wait... we're all still here! Which poor b*stard did they take down?
34  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: help with hashdump on: June 20, 2011, 03:35:28 AM
This should be of interest if the DC is Win2k8: http://www.room362.com/blog/2011/5/15/dumping-hashes-on-win2k8-r2-x64-with-metasploit.html
and check out smart_hashdump: http://www.darkoperator.com/blog/2011/5/19/metasploit-post-module-smart_hashdump.html
35  Resources / Tutorials / Re: Exchange material on: June 17, 2011, 07:23:06 AM
In before the lock ... or delete  Wink
36  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: help with a hash on: June 08, 2011, 04:03:39 AM
That password is a SHA-512 hash, starts with $6$ (86 characters)
Extra info: SHA-256 hashes start with $5$ (43 Characters)
MD5 hashes start with $1$ (22 characters)
Blowfish hashes start with $2$ or $2a$ (depending on the variant used)

I'll work on the password hash and let you know if I crack it  Wink

37  Ethical Hacking Discussions and Related Certifications / Networking / Re: connecting to a pc threw mac address on: May 29, 2011, 05:18:05 PM
I wish it was that easy to exploit a machine with just the MAC address  Wink

The MAC address simply lists the physical address burnt into the network card/device when the device is manufactured. The MAC address should be unique and usually a manufacturer will have a MAC address prefix assigned to that company, for example Cisco is assigned: FC-FB-FB (hex) Cisco Systems. MAC addresses can be changed/spoofed though. The MAC address list is available from: http://standards.ieee.org/develop/regauth/oui/oui.txt

MAC addresses are used on the local LAN to locate the machine you would like to communicate with, in order for your computer to communicate with an IP Address of say 192.168.1.2, your computer which has an IP Address of 192.168.1.1 will perform an ARP request for the machine. Your computer will ARP broadcast (255.255.255.255) on the local LAN "Who has 192.168.1.2 tell 192.168.1.1"
All devices on the same network will receive the broadcast and the device that knows where 192.168.1.2 is located will reply: "192.168.1.2 is at 00:11:11:22:3d:11". Now that your computer knows where the device is located (the physical MAC Address) it will start communicating with that device.

If you want to communicate with another device that is not on your local LAN then your computer will still perform an ARP request (broadcast locally). The router on the local network will respond to the ARP request with the router's MAC address if the router has a route to the remote host, the router will respond with its own MAC address. Open up a command prompt or terminal and check the ARP entries that your computer knows about, type "arp -a". You should see your default router's IP Address and associated MAC address. Now that you know what the MAC address and IP Address is you still need to investigate how you can connect to that machine. NMAP is handy for this. You need to know what ports are open and what services are running in order to connect/access another computer the Operating System is also handy.

I'd ask your teacher to explain in detail how someone can get free access to your computer. Was there any mention of WiFi and MAC address restrictions?
 
38  Ethical Hacking Discussions and Related Certifications / GPEN - GIAC Certified Penetration Tester / Re: Hallelujah! I passed GPEN with 87% :-) on: May 22, 2011, 12:16:23 PM
Congrats MaXe!
You'll be impressed with the certificate when it arrives Smiley
39  Ethical Hacking Discussions and Related Certifications / Malware / Re: worth watching videos on: May 12, 2011, 04:22:53 PM
I have watched that video before and I think it's interesting, and Dino does a good job of explaining exploits, NOPs, EIP, EAX etc..
Is it relative to OSCP? Sure! Is the thread in the right forum? Maybe Smiley
40  Resources / Tools / Re: BackTrack 5 on: May 12, 2011, 09:48:30 AM
Anyone else tried to get gdm to start automatically under the gnome version? It seems to be disabled somewhere that's less than obvious (to me anyway)  Embarrassed

This is what I did on my system (might be worth taking a snapshot before):
Code:
apt-get install gdm

and then edit the /etc/rc.local file to start gdm automatically, which looks like this:
Code:
/usr/sbin/gdm &
exit 0
41  Features / Opinions / Re: real hackers.... on: May 11, 2011, 03:37:13 PM
01010010 01100101 01100001 01101100 00100000 01101000 01100001 01100011 01101011 01100101 01110010 01110011 00100000 01110100 01111001 01110000 01100101 00100000 01101001 01101110 00100000 01100010 01101001 01101110 01100001 01110010 01111001 00100001 00100000 00111010 00101101 00101001
42  Resources / Tools / Re: BackTrack 5 on: May 11, 2011, 08:27:42 AM
Ok, I have installed Backtrack 5 Gnome 64 bit yesterday along with VMWare Workstation, Nessus and some other little tools. So far, I have nothing to complain about. It will become my main OS.

But I miss the little drop-down that used to be in the lower panel in Backtrack 4. I used it a lot for quickly typing commands such as "shutdown -h 0", "reboot", etc. Do you guys know how to put it back? I don't even know how it's called...  Embarrassed



That's the "Run Command" applet in KDE. For KDE, If you right click on the panel and then select "add applet to panel" and then search by scrolling down to the "run command" applet, then select "add to panel".
For Gnome it's almost the same, right click on the panel and then select "add to panel" and then select "run application", it's not exactly the same as KDE (with a text box) but provides the same finctionality.
43  Ethical Hacking Discussions and Related Certifications / GPEN - GIAC Certified Penetration Tester / Re: Passed GPEN, next ? on: May 08, 2011, 04:02:55 AM
My next goal is to take the OSCP training and test but according to the reading I have done so far, it sounds like this is more challenging than the GPEN.
For those who have taken the OSCP and GPEN, what is your feel? Do I have a chance or no? I have no programming knowledge but the rest of the requirments, I can get well along.

I am currently working with BT4 and practicing all the tutorial provided by the offensive sec on the metasploit unleashed in my lab.

Bushman

The OSCP is definitely more challenging than GPEN, no multiple choice, open book with the OSCP, just 24 hours of adrenalin, fun, pain and suffering  Wink

You definitely have a chance of successfully passing the OSCP with no prior programming skills. The PWB manual and videos are pretty good and start off at a basic level and are explained well so the content is easy to understand. You won't get spoonfed with the PWB course, but you get shown enough to get you started, additional research on your own will be very useful. Metasploit Unleashed http://tinyurl.com/243fzuh is definitely useful and recommended for the PWB course. Linux experience is also very useful as well as a knowledge of writing Bash scripts, the following sites are pretty good:
http://bashscripts.org/forum/ and http://tldp.org/LDP/abs/html/

I would recommend 60 days lab access, I found that 30 days goes by so quickly and there are plenty of hosts to exploit in the labs. 

Hope this helps, if you have any questions let me/us know.
44  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: Pen Testing Report Template on: March 31, 2011, 02:40:38 AM
Not a template but more of a report guideline with samples:
http://www.sans.org/reading_room/whitepapers/bestprac/writing-penetration-testing-report_33343
45  Ethical Hacking Discussions and Related Certifications / Other / Re: World's Greatest Hacker on: March 23, 2011, 12:57:20 PM
Florida A&M Event Page

If I can find contact info, I'll surely be sending off an email.

Quote
currently on a college speaking tour around the nation

Where's the smiley to smack self in head?

https://www.compliance-helpline.com/famu.jsp?reloadPage=1

"Florida Agricultural and Mechanical University is committed to the highest standards of ethical conduct in all aspects of the University environment."

That rules out TWN1H  Cheesy
Pages: 1 2 [3] 4 5 ... 11
Powered by MySQL Powered by PHP Powered by SMF 1.1.18 | SMF © 2013, Simple Machines
Joomla Bridge by JoomlaHacks.com
Valid XHTML 1.0! Valid CSS!
Page created in 0.091 seconds with 21 queries.
 
Exclusive Deal

sansfire13_245x90_cw90.jpg
SANSFIRE 2013
June 15 - 22

5% Off w/ Code: EHN_5

SANS Deals 4 EH-Netters
5% OFF Any SANS Course in Any Format!
Coupon Code: EHN_5 Including SANS Rocky Mountain 2013 & SANS Boston 2013
Polls
Compared to this year, 2013 will be:
 
Recent Forum Topics
EH-Net News Feeds
Latest Additions
 
         
Advertisement

© 2013 The Ethical Hacker Network
Joomla! is Free Software released under the GNU/GPL License.