Image
 
linkedin_logo.png rss_logo.jpg
twitter_logo.png youtube_logo.jpg
Latest Additions
 
EH-Net Login
Welcome Guest.






Lost Password?
No account yet? Register
Who's Online
We have 38 guests online
 
Advertisement

You are here: Home
EH-Net
May 19, 2013, 10:30:27 PM *
Welcome, Guest. Please login or register.
Did you miss your activation email?

Login with username, password and session length
News: Go back to The Ethical Hacker Network Online Magazine Home Page
 
  Home Help Calendar Login Register  
  Show Posts
Pages: [1] 2 3 ... 15
1  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / What's your go-to net pen book? #lazyweb on: October 16, 2012, 03:03:24 AM
I finally had a chance to dive in to Gray Hat hacking here recently, and it's not quite what I thought it was going to be.  I need something heavily focused on actual net pen testing, and this one falls flat in the middle where it delves off in to programming, reverse engineering, malware analysis, etc.

So, if you had to rescue one net pen book from your burning home, which one would it be?  Smiley

Thanks!
2  Resources / Career Central / Thanks EH-Net! (A success story) on: October 05, 2012, 04:21:23 PM
The infosec community is tight, and even more so here, because we're so focused. Being a member of this forum has paid dividends time and time again. This time, a fine gentleman (hah!  Cheesy ) who I will let remain nameless unless he wants to come out of the woodwork, answered a post I left up only briefly looking for work.

Well, I'm pleased to say that that was such a fantastic lead (and i was talking to five or six companies), that I turned in my badge today after 10 years with a huge company that I've just come to be miserable at... after accepting a very exciting offer generated from this lead. It's a small outfit (so far nobody i've talked to has heard of it), but they seem to be doing it right, and growing fast.

Point of that is, I probably wouldn't have heard about the opportunity if I was just using the standard search channels. The realization just hit me that i didn't touch a job board or a recruiter this entire search cycle... all social media. Quite different from the search of 10 years ago.

Anyway, thanks once again Don for providing a fantastic resource for our community, and to my new co-worker for the hookup!

Everyone have a great weekend, and groovy vibes to all!  Cool
3  Ethical Hacking Discussions and Related Certifications / Web Applications / Re: WSDL - Reminder that not all hacks need to be 'hard' on: October 02, 2012, 11:04:34 AM
That's awesome Hayabusa. I voraciously consume anything I can on web services. They are so prevalent and so shite half the time. Even great courses like SANS that list web services in the syllabus only spend 15 minutes or so on the topic. I was hoping the Mobile Pentest course (SEC575) I took in August would dig into it a bit but it really didnt. Lame. I'm still working up a review for that course btw. Looking forward to the dialogue on this topic. There's such a lacking of tools here for this stuff.

I was kind of looking to SANS Sec 642 to get more in depth with web services, but the syllabus looks pretty lean for that topic still. Sad
4  EH-Net / News Items and General Discussion About EH-Net / Re: [Article]-August 2012 Free Giveaway Winners of Offensive Security Training on: October 02, 2012, 10:57:05 AM
I has a sad... but congrats to the winners, what a great prize month!
5  EH-Net / Calendar Of Events / Re: DerbyCon 2.0 - The Reunion on: October 02, 2012, 10:54:34 AM
It was hard to find everyone without EH.net shirts. Smiley

We should actually schedule a meet-and-greet for the next one of these instead of the random "we'll try to get together in the madness" madness...
6  Ethical Hacking Discussions and Related Certifications / Other / Re: WordList on: October 02, 2012, 10:48:24 AM
I've got some specialized wordlists here: http://stormthe.net/wordlists
7  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: Streamline Burp Intruder attacks with Payload Processing Regex on: September 23, 2012, 10:49:55 PM
Thanks guys... been getting nice feedback from the post, maybe i'll have to do an "Advanced Burp" series... Smiley
8  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: Streamline Burp Intruder attacks with Payload Processing Regex on: September 21, 2012, 03:15:11 PM
The first post is always the easiest!

Seriously though, that's a good start. I like the domain too.

You might want to adjust your WordPress settings so you get clean URLs, instead of the ?p=14, etc.

I dunno about the first being easiest... took me two years to get that one up! Smiley
9  Resources / Tutorials / Re: Why directory browsing is important? on: September 21, 2012, 11:31:35 AM
To pile on top of what everyone else said, if you find old app files, like login.php.bak, guess what, you can download that file and get the raw PHP code, which may contain sql connection credentials, code level notes like:

/* if a user puts in special characters, they can access resources they shouldn't. will fix soon */

All sorts of goodies... This could give you all sorts of juicy tidbits of info for further attacks.
10  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Streamline Burp Intruder attacks with Payload Processing Regex on: September 19, 2012, 07:22:07 PM
Ladies and gentlemen, I am so proud to announce to you my first ever official info-sec related stand alone blog post! Grin  Seriously, I've had this domain sitting around for a couple of years just for this purpose. Finally a) had some extra time and b) had something neat to share.  So, enjoy!

http://www.stormthe.net/?p=14
11  EH-Net / News Items and General Discussion About EH-Net / Re: Do you need a derbycon ticket? I have one... on: September 17, 2012, 10:27:55 PM
ahh yeah, that does make it a little tougher. if it makes you feel any better (i'm not sure how), i got mine sold! Smiley
12  EH-Net / News Items and General Discussion About EH-Net / Re: Do you need a derbycon ticket? I have one... on: September 17, 2012, 04:43:37 PM
Rance, hope you have better luck than I have. I had a ticket, I wasn't selling it, I was giving it away, and took until today to get a possible taker. He has to check with his wife first.

Are you on the twitters? I think I just got mine gone...
13  EH-Net / News Items and General Discussion About EH-Net / Re: Do you need a derbycon ticket? I have one... on: September 17, 2012, 04:03:53 PM
I had someone ready to go, but i was waiting to get a link for denied-cfp ticket purchases, in the meantime they managed to get one last week when they did a release of 70.
14  EH-Net / News Items and General Discussion About EH-Net / Do you need a derbycon ticket? I have one... on: September 17, 2012, 11:28:30 AM
the title says it all...
15  EH-Net / News Items and General Discussion About EH-Net / Re: [Article]-August 2012 Free Giveaway Sponsor - Offensive Security on: September 13, 2012, 12:57:45 PM
Well crap... i was out-bribed in the beard competition at Defcon. Let's hope it's not a pattern... Smiley
Pages: [1] 2 3 ... 15
Powered by MySQL Powered by PHP Powered by SMF 1.1.18 | SMF © 2013, Simple Machines
Joomla Bridge by JoomlaHacks.com
Valid XHTML 1.0! Valid CSS!
Page created in 0.091 seconds with 21 queries.
 
Exclusive Deal

sansfire13_245x90_cw90.jpg
SANSFIRE 2013
June 15 - 22

5% Off w/ Code: EHN_5

SANS Deals 4 EH-Netters
5% OFF Any SANS Course in Any Format!
Coupon Code: EHN_5 Including SANS Rocky Mountain 2013 & SANS Boston 2013
Polls
Compared to this year, 2013 will be:
 
Recent Forum Topics
EH-Net News Feeds
Latest Additions
 
         
Advertisement

© 2013 The Ethical Hacker Network
Joomla! is Free Software released under the GNU/GPL License.