Image
 
linkedin_logo.png rss_logo.jpg
twitter_logo.png youtube_logo.jpg
Latest Additions
 
EH-Net Login
Welcome Guest.






Lost Password?
No account yet? Register
Who's Online
We have 45 guests and 2 members online
 
Advertisement

You are here: Home
EH-Net
May 19, 2013, 11:04:31 AM *
Welcome, Guest. Please login or register.
Did you miss your activation email?

Login with username, password and session length
News: Go back to The Ethical Hacker Network Online Magazine Home Page
 
  Home Help Calendar Login Register  
  Show Posts
Pages: 1 ... 5 6 [7] 8 9 ... 15
91  Ethical Hacking Discussions and Related Certifications / Web Applications / Re: Web application testing lab on: October 26, 2011, 01:02:13 PM
If you use Damn Vulnerable Web App (DVWA), don't forget to add the Web Services (DVWS) module: http://dvws.secureideas.net/downloads/index.html
92  EH-Net / Calendar Of Events / Re: ShmooCon 2012 on: October 26, 2011, 12:57:44 PM
I'll post later after there are some more details, but there appears to be a CTF event (ghost in the shellcode).  There might be some pre-assessment required to get a spot, but at the very least I want to put together a team.  Keep it in mind if that's an activity you're interested in, and look for my post! Smiley
93  EH-Net / Calendar Of Events / Re: ShmooCon 2012 on: October 26, 2011, 12:00:21 PM
I know tix still need to be got (a feat all its own), but who is planning on going?  A get-together might be in order.  Given it'll be the dead of winter, might just stay in the hotel, but we can figure it out. 
94  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Requesting information on Errors and Omissions (E&O) Insurance on: October 23, 2011, 08:24:25 AM
Folks,

I'm about to get involved in some interdependent pen tests.  I'm getting a contract together, but I also need to get this E&O insurance.  If anyone has any guidelines about what to "shop" for, and what I might expect to pay, I'd certainly appreciate it.

Thanks, and Groovy vibes to all!  Cool
95  Resources / Tools / Open Source Security Assessment Management System on: October 21, 2011, 11:08:25 AM
My brain has been tossing around building something like this for a while... they saved me a lot of work.  Even had a name... PeTRA (Pen Test Reporting Application)...  Haven't looked at this one yet, but I know it's something that's "needed"... I hope it matures well.

http://www.ossams.com/
96  Ethical Hacking Discussions and Related Certifications / Web Applications / Re: Web application testing lab on: October 20, 2011, 09:29:25 AM
Ahhh gotcha.  Well, I think my answer still stands...  Grin
97  Ethical Hacking Discussions and Related Certifications / Web Applications / Re: Web application testing lab on: October 19, 2011, 05:24:20 PM
Oh, and UltimateLAMP: http://www.metasploit.com/about/how-do-i-use-it/test-lab.jsp
98  Ethical Hacking Discussions and Related Certifications / Web Applications / Re: Web application testing lab on: October 19, 2011, 05:21:45 PM
Dude... WebGoat or DVWA.  Free.
99  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: Question with SNMP Enumeration on: October 19, 2011, 11:07:54 AM
Been a while since i messed with SNMP, but try replacing your 1 at the end of your command with a .
100  EH-Net / Ethical Hacktivism / Re: Need help on: October 19, 2011, 10:08:06 AM
If you file a complaint with facebook, it's highly unlikely that they're going to turn around and tell the other person who you are.

Your other option is lawyers and subpenas for IP logs from Facebook and ISPs.  If this is a threatening harassment situation, you may want to contact law enforcement.
101  EH-Net / Ethical Hacktivism / Re: Need help on: October 19, 2011, 09:55:21 AM
That would be the official, responsible way to start dealing with a "gossiper" on a site like that... why would you need another way?
102  EH-Net / Ethical Hacktivism / Re: Need help on: October 19, 2011, 09:45:46 AM
This sounds like a matter that Facebook should address, you should contact them.
103  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: Blue Team Assessment on: October 18, 2011, 04:58:20 PM
This was my experience with "pentests" in the military.  Hopefully it's changed since then.

I hope so too... it's only our nation's security we're talking about here! Wink
104  Ethical Hacking Discussions and Related Certifications / Physical Security / Re: Physical Security? on: October 17, 2011, 10:21:36 PM
Would I just get a "lock picking" kit? or is there a special name for it?

There are a lot of tools, the most common being the lock pick, of which there are many and the tension rod, also several to choose from.  The next most common and recent is the bump key and hammer, then there's jigglers and shims and tubular picks.

Something good to start with would be this: http://www.lockpicks.com/brockhage-lock-pick-set-b230.aspx

(i'd also get one of these for starters: http://www.lockpicks.com/longtwistwrench.aspx)

I've got this kit: http://toool.us/equipment.html The only benefit of that over the other one above is that is has a mix of thick and thin picks, and it has the twist tension rod.  But I don't know if that justifies the cost difference.  That site has a lot of cool stuff, look around.  That vice I mentioned earlier is here: http://www.lockpickersmall.com/universal-practice-lock-stand.html

Now, I'd be remiss if I didn't share the lockpicking rules.

1. Do not pick locks which you do not own.

2. Do not pick locks which you rely on.

That's it.  And I can personally attest to rule number two.   Grin
105  Features / Book Reviews / Re: Professional Penetration Testing on: October 17, 2011, 05:01:13 PM
If you're looking for something to practice against, check out WebGoat or DVWA.  Both are intentionally insecure apps.  WebGoat has built in "lessons", and DVWA will give you three difficulty levels.  These will give you a ton of exercises to work on...

(Keep in mind that any machine you run these on instantly becomes vulnerable, take care.)
Pages: 1 ... 5 6 [7] 8 9 ... 15
Powered by MySQL Powered by PHP Powered by SMF 1.1.18 | SMF © 2013, Simple Machines
Joomla Bridge by JoomlaHacks.com
Valid XHTML 1.0! Valid CSS!
Page created in 0.067 seconds with 21 queries.
 
Exclusive Deal

sansfire13_245x90_cw90.jpg
SANSFIRE 2013
June 15 - 22

5% Off w/ Code: EHN_5

SANS Deals 4 EH-Netters
5% OFF Any SANS Course in Any Format!
Coupon Code: EHN_5 Including SANS Rocky Mountain 2013 & SANS Boston 2013
Polls
Compared to this year, 2013 will be:
 
Recent Forum Topics
EH-Net News Feeds
Latest Additions
 
         
Free Business and Tech Magazines and eBooks

© 2013 The Ethical Hacker Network
Joomla! is Free Software released under the GNU/GPL License.