Image
 
linkedin_logo.png rss_logo.jpg
twitter_logo.png youtube_logo.jpg
Latest Additions
 
EH-Net Login
Welcome Guest.






Lost Password?
No account yet? Register
Who's Online
We have 32 guests and 3 members online
 
Advertisement

You are here: Home arrow Ethical Hacking Discussions and Related Certificationsarrow Network Pen Testingarrow OSCP - Offensive Security Certified Professionalarrow OSCP - Module 6 Buffer Overflows Question
EH-Net
May 19, 2013, 12:01:53 PM *
Welcome, Guest. Please login or register.
Did you miss your activation email?

Login with username, password and session length
News: Go back to The Ethical Hacker Network Online Magazine Home Page
 
   Home   Help Calendar Login Register  
Pages: [1]   Go Down
  Print  
Author Topic: OSCP - Module 6 Buffer Overflows Question  (Read 1288 times)
0 Members and 1 Guest are viewing this topic.
esojzuir
Newbie
*
Offline Offline

Posts: 36


View Profile
« on: March 12, 2013, 05:14:48 PM »

Hi... can anyone help me out here? For the OSCP exam do you use only the regular overflow or do you need to know SEH stack based overflows???

Thanks in advance
« Last Edit: March 12, 2013, 05:21:03 PM by esojzuir » Logged
Dark_Knight
Sr. Member
****
Offline Offline

Posts: 292


View Profile WWW
« Reply #1 on: March 12, 2013, 06:26:57 PM »

Well we are not allowed to discuss the details of the exam. However, what I will say is this. Make sure you understand the course material.
« Last Edit: March 12, 2013, 06:28:44 PM by Dark_Knight » Logged

CEH, OSCP, GPEN, GWAPT, GCIA
http://sector876.blogspot.com
xXxKrisxXx
Hero Member
*****
Online Online

Posts: 512



View Profile
« Reply #2 on: March 12, 2013, 06:28:34 PM »

I'll ++1 to what Dark_Knight said. Be sure that you know all of the course material comfortably before you attempt the examination. The best way to gear for this is practice, practice, practice! I recommend doing the Extra Mile Exercises also to make yourself more familiar.
Logged

eCPPT, GCIH, OSCP, OSWP
esojzuir
Newbie
*
Offline Offline

Posts: 36


View Profile
« Reply #3 on: March 12, 2013, 07:07:00 PM »

Well regarding the material, I was able to get the windows sample on the module plus aditional excercises from Vivek (mini share, FreeSSH, Easy Chat - SEH Based) plus Stephen Bradshaw material on info sec institute. Right now I can do this type of overflows in a really consistent manner plus a few others taken from the exploit DB that are not in the form of tutorials but I was able to adapt them to fit both Vivek and Stephen methodologies.
« Last Edit: March 12, 2013, 07:18:14 PM by esojzuir » Logged
r0ckm4n
Jr. Member
**
Offline Offline

Posts: 67


View Profile
« Reply #4 on: March 12, 2013, 07:12:36 PM »

Try harder!  Wink
Logged

CISSP, IAM, working on OSCP
esojzuir
Newbie
*
Offline Offline

Posts: 36


View Profile
« Reply #5 on: March 12, 2013, 07:19:09 PM »

Try harder!  Wink

I will!!!!! Smiley
Logged
r0ckm4n
Jr. Member
**
Offline Offline

Posts: 67


View Profile
« Reply #6 on: March 12, 2013, 07:22:59 PM »


I the spirit of Offensive Security, I had to do it.
Logged

CISSP, IAM, working on OSCP
superkojiman
Jr. Member
**
Offline Offline

Posts: 59



View Profile WWW
« Reply #7 on: March 12, 2013, 11:33:31 PM »

Well regarding the material, I was able to get the windows sample on the module plus aditional excercises from Vivek (mini share, FreeSSH, Easy Chat - SEH Based) plus Stephen Bradshaw material on info sec institute. Right now I can do this type of overflows in a really consistent manner plus a few others taken from the exploit DB that are not in the form of tutorials but I was able to adapt them to fit both Vivek and Stephen methodologies.

Sounds like you're ready. If you want more practice,  search for buffer overflows at Exploit-DB. In some cases, the vulnerable software is included so you can download it and recreate the exploit.
Logged

OSCP, GSEC
esojzuir
Newbie
*
Offline Offline

Posts: 36


View Profile
« Reply #8 on: March 13, 2013, 05:35:20 AM »

Well regarding the material, I was able to get the windows sample on the module plus aditional excercises from Vivek (mini share, FreeSSH, Easy Chat - SEH Based) plus Stephen Bradshaw material on info sec institute. Right now I can do this type of overflows in a really consistent manner plus a few others taken from the exploit DB that are not in the form of tutorials but I was able to adapt them to fit both Vivek and Stephen methodologies.

Sounds like you're ready. If you want more practice,  search for buffer overflows at Exploit-DB. In some cases, the vulnerable software is included so you can download it and recreate the exploit.

Hey! I checked your website and you have awesome material! One question regarding your pivoting series. if I want to recreate your setup do I have to use a GNS3 setup or can I use, say a 2003 server with RRAS configured to act as a router? I think this tutorials are great to avoid using metasploit for pivoting on the exam, in case you need to pivot, and maybe save the opportunity to use it for a harder machine! Thanks again for your amazing website!
« Last Edit: March 13, 2013, 09:13:57 AM by esojzuir » Logged
superkojiman
Jr. Member
**
Offline Offline

Posts: 59



View Profile WWW
« Reply #9 on: March 13, 2013, 10:04:05 AM »

Well regarding the material, I was able to get the windows sample on the module plus aditional excercises from Vivek (mini share, FreeSSH, Easy Chat - SEH Based) plus Stephen Bradshaw material on info sec institute. Right now I can do this type of overflows in a really consistent manner plus a few others taken from the exploit DB that are not in the form of tutorials but I was able to adapt them to fit both Vivek and Stephen methodologies.

Sounds like you're ready. If you want more practice,  search for buffer overflows at Exploit-DB. In some cases, the vulnerable software is included so you can download it and recreate the exploit.

Hey! I checked your website and you have awesome material! One question regarding your pivoting series. if I want to recreate your setup do I have to use a GNS3 setup or can I use, say a 2003 server with RRAS configured to act as a router? I think this tutorials are great to avoid using metasploit for pivoting on the exam, in case you need to pivot, and maybe save the opportunity to use it for a harder machine! Thanks again for your amazing website!

You can use whatever setup you want really. The main thing is your pivot point (in my case the web server) has access to both networks and your attacking machine only has access to the web server. Glad you found the articles useful. Smiley
Logged

OSCP, GSEC
esojzuir
Newbie
*
Offline Offline

Posts: 36


View Profile
« Reply #10 on: March 13, 2013, 12:11:54 PM »

Really useful, I'm exploring your site since Monday!!!!! Thanks!!!!
« Last Edit: March 13, 2013, 12:13:37 PM by esojzuir » Logged
Pages: [1]   Go Up
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.18 | SMF © 2013, Simple Machines
Joomla Bridge by JoomlaHacks.com
Valid XHTML 1.0! Valid CSS!
Page created in 0.077 seconds with 23 queries.
 
Exclusive Deal

sansfire13_245x90_cw90.jpg
SANSFIRE 2013
June 15 - 22

5% Off w/ Code: EHN_5

SANS Deals 4 EH-Netters
5% OFF Any SANS Course in Any Format!
Coupon Code: EHN_5 Including SANS Rocky Mountain 2013 & SANS Boston 2013
Polls
Compared to this year, 2013 will be:
 
Recent Forum Topics
EH-Net News Feeds
Latest Additions
 
         
Free Business and Tech Magazines and eBooks

© 2013 The Ethical Hacker Network
Joomla! is Free Software released under the GNU/GPL License.