Image
 
linkedin_logo.png rss_logo.jpg
twitter_logo.png youtube_logo.jpg
Latest Additions
 
EH-Net Login
Welcome Guest.






Lost Password?
No account yet? Register
Who's Online
We have 42 guests and 1 member online
 
Free Business and Tech Magazines and eBooks

You are here: Home
EH-Net
May 23, 2013, 03:44:51 PM *
Welcome, Guest. Please login or register.
Did you miss your activation email?

Login with username, password and session length
News: Go back to The Ethical Hacker Network Online Magazine Home Page
 
  Home Help Calendar Login Register  
  Show Posts
Pages: [1] 2 3 ... 6
1  Ethical Hacking Discussions and Related Certifications / OSCP - Offensive Security Certified Professional / Re: OSCP submission prior to exam on: April 17, 2013, 02:45:52 PM
On a related note...I've heard of a person getting a bump to passing based on their report, but have never heard of someone *failing* because of a poor report, despite having garnered enough points.

I know for a fact that they do require a report. I had an e-mail snafu when I took my exam where they sent out an message indicating that they'd not received my document, even though I had passed point-wise. Talk about scrambling! No way was I going to blow my exam due to a technical difficulty with my e-mail!
2  Ethical Hacking Discussions and Related Certifications / Other / Re: Kali and Virtualbox on: April 17, 2013, 08:56:45 AM
I used this tutorial:
http://forums.kali.org/showthread.php?74-Installing-Kali-Linux-as-a-Virtual-Machine-in-Virtual-Box&highlight=virtual

Went fairly smoothly overall. While Kali seems generally better organized, it's very slow on my machine compared to BT 5 R3. Despite giving it more resources than I did for the aforementioned.
3  Ethical Hacking Discussions and Related Certifications / OSCP - Offensive Security Certified Professional / Re: OSCP submission prior to exam on: April 16, 2013, 11:41:20 PM
You submit the report after you take the exam. As for the material changing since '12...highly doubtful.

On a related note are you sure it's a good idea to go into the exam "cold" (i.e. after so long a break since the labs)? Or have you been working on your own?
4  Ethical Hacking Discussions and Related Certifications / Other / Re: Prefered Pen Testing Platform on: April 15, 2013, 12:41:29 PM
Personally, I'm not that fond of Kali - it's slow (in my VM) compared to the Backtrack versions. However, it's unlikely that they'll continue to support BT so if you're starting out, you might as well go with the latest version and the one they're going forward with...Kali.
5  Columns / Heffner / Re: [Article]-Intro to Reverse Engineering - Part 2 on: April 14, 2013, 09:48:33 AM
Can someone explain me why EAX+ECX is the entered serial address.
Why it isn't only ECX ?
My Assembly isn't the best but I'll take a stab...ECX points to the serial address and it's a DWORD. The routine is comparing BYTE. So ECX is the base address of of the serial addy and adding EAX allows you to step through it byte by byte.

One thing that helped me in learning how to read assembly is stepping through it in a debugger. It makes loads more sense when you can see the registers being modified.

Now for some coffee...
6  Ethical Hacking Discussions and Related Certifications / OSCP - Offensive Security Certified Professional / Re: Failed my first attempt at the OSCP exam on: April 06, 2013, 11:06:18 AM
Kick its ass!!
7  Features / Book Reviews / Re: Up-to-date CEH books? on: March 21, 2013, 02:22:03 PM
I used Matt Walker's ALL-IN-ONE Guide for the CEH:
http://www.amazon.com/Certified-Ethical-Hacker-All-Guide/dp/0071772294

It's much more readable than some of the other guides on the same topic (the CEH official materials included). It also points out some of the more archaic things about CEH v7.
8  Ethical Hacking Discussions and Related Certifications / OSCP - Offensive Security Certified Professional / Re: Preparing for offensive security on: March 05, 2013, 11:36:50 AM
Re. OffSec programming languages...I took the OSCP last year and didn't write a single line of Ruby. Strictly Python & C.
9  Ethical Hacking Discussions and Related Certifications / OSCP - Offensive Security Certified Professional / Re: Failed my first attempt at the OSCP exam on: February 24, 2013, 09:55:54 AM
Good luck!

I 3rd (or 4th) what ajohnson said...a password attack shouldn't be your primary vector. Personally speaking, in the lab and on the exam, I didn't put much effort into password cracking/guessing other than the obvious ones (username, defaults, etc). I felt that there were more direct/less random ways to get into the machines.
10  Ethical Hacking Discussions and Related Certifications / Malware / Re: [guidance needed] Am I doing it wrong? on: February 12, 2013, 01:50:55 PM
IIRC, this is a vulnerability that hasn't had an exploit (to do what you want) written for it (yet).

I seem to recall seeing exploits that claimed to allow remote code execution or something similar on Pastebin BUT in reality they were bogus and ended up pwning the downloader's machine.
11  Ethical Hacking Discussions and Related Certifications / Malware / Re: Joe McCray's Exploit Development Workshop on: February 12, 2013, 09:07:50 AM
He's beginning to sounds more and more like Gregory D. Evans.
(http://attrition.org/errata/charlatan/gregory_evans/) Except that Joe, actually knows something.
Hard to believe that Anonymous hasn't taken this guy down already. World's #1 Hacker indeed. http://gregorydevans.com/

Quote
He could have made the same points using a bit more tact.
Never a good idea to drive, e-mail, or blog angry.

I'm thinking McCray has some other things going on in his life besides the financial troubles and (intense) dislike for the folks at exploitlabs.

12  Ethical Hacking Discussions and Related Certifications / Malware / Re: Joe McCray's Exploit Development Workshop on: February 11, 2013, 11:51:55 PM
Uh, I think I'll take a pass on Mr. McCray's offerings...

Wow, reads like an article in the enquirer.
http://strategicsec.com/2013/02/12/the-final-statement-on-this-issue/
Quote
At this point I didn’t care anymore, I was so angry with him for being such a cowardly bitch that I couldn’t stand it. I swore that the next time I see him there was gonna be some furniture moving. Yes ChrisJohnRiley THIS IS THE NEW BLACK I was 2 seconds away from whooping  Saumil’s ass. I was ready to put my foot so far up his ass that his breath would smell like shoe polish!

I told him explicitly (yes that means I dropped a lot of F-Bombs) how I felt, and that I’m not paying him the remaining money because he and Hiren are both some bitches.  After that – all of these notes I rewrote, scripts I ported from perl to python, lab manuals that I wrote – for him as a gift to show my appreciation that he mentions in his blog post, and yes his precious virtual machines – I used them in classes, webinars, and workshops I taught. I did it to spite him. I was pissed at him – immature I realize – but at least it’s the truth. I might as well try to make my money back after all of this mess.

Saumil and anybody else for that matter – you can write whatever you want about me. You can put me on what ever page you want, talk about me on twitter, but at the end of the day Saumil can have a hot steamy cup of FUCK YOU! At this point I flat out don’t care how many people you tell, how many people talk about this on twitter. I hope that every single human being on this earth learns how much of a whining wimpy little bitch you are, and knows that I can’t stand you and I would rather eat hot shit before I’d even acknowledge that you are a fucking human being let alone speak to you.

No I’m not paying you, and I sincerely feel bad for every single incident of a people loosing respect for me with regard to this issue, I know that I will never do it again because there is no HUMAN being that would ever be the way that he was to me, but I refuse to continue to talk to people like you are a good person when I know you are not.

So Saumil, and Hiren – I just want you to know what I think of you personally, and professionally.

From the bottom of my heart…

FUCK YOU!

Joe
13  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: OSCE advice? on: February 07, 2013, 04:43:36 PM
First off...I had to read the beginning of your review/blog twice...you took OSCE not having taken the OSCP?!?!  Shocked Whoa! I have to give you the Wayne's World "We're not worthy" bow.

Great review. One thing I noticed was that the writing in the beginning differed from the end which seemed much more frenetic - I attributed it to an abuse of Red Bull that Offsec seems to demand. Could also be all those exploded brain cells from the class/exam. Smiley

Also, noticed the line "I passed and nothing could ruin my mood. Ex was whining, angry customers, and heaps more bad stuff going on...." Earlier you wrote "my girlfriend understood me...." Couldn't help but wonder if the "ex" status was attributable to the OSCE. I know my SO was more than fed up by the end of the OSCP.

Again, great review.
14  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: OSCE advice? on: February 06, 2013, 08:35:55 PM
Hm, maybe you just need to visit the forum more frequently; it said GCIA for about the last six weeks. Wink

I put a very intense 4-6 months into the OSCE, so it's not like I just breezed through it.
Well, like I said, after OSCP I took a hiatus to decompress. Time flies I guess.

How'd it go BTW? Did you write a review?
15  Ethical Hacking Discussions and Related Certifications / Network Pen Testing / Re: OSCE advice? on: February 06, 2013, 07:53:38 PM
I can't elaborate without providing spoilers

Hey ajohnson...last I saw you had WIP:OSCE in your sig. You're not already done and on to the next cert are you? If so... Shocked
Pages: [1] 2 3 ... 6
Powered by MySQL Powered by PHP Powered by SMF 1.1.18 | SMF © 2013, Simple Machines
Joomla Bridge by JoomlaHacks.com
Valid XHTML 1.0! Valid CSS!
Page created in 0.067 seconds with 21 queries.
 
Exclusive Deal

sansfire13_245x90_cw90.jpg
SANSFIRE 2013
June 15 - 22

5% Off w/ Code: EHN_5

SANS Deals 4 EH-Netters
5% OFF Any SANS Course in Any Format!
Coupon Code: EHN_5 Including SANS Rocky Mountain 2013 & SANS Boston 2013
Polls
Compared to this year, 2013 will be:
 
Recent Forum Topics
EH-Net News Feeds
Latest Additions
 
         
Advertisement

© 2013 The Ethical Hacker Network
Joomla! is Free Software released under the GNU/GPL License.