Home
Calendar
Certifications
Columns
Features
Forum
Resources
Vitals
Latest Additions
April 2013 Free Giveaway Sponsor - eLearnSecurity
Human Intelligence to Navigate the Security Data Deluge
February 2013 Free Giveaway Winner of SANS CyberCon Training
Interview: Bugcrowd Founders on Herding Ninjas for Crowdsourced Bug Bounties
Network Forensics: The Tree in the Forest
March 2013 Free Giveaway Sponsor - Mile2
Book Review: Violent Python
February 2013 Free Giveaway Sponsor - SANS
Holiday 2012 Free Giveaway Winner of Metasploit Pro by Rapid7
Course Review: SANS FOR408 Computer Forensic Investigations – Windows In-Depth
The Security Consulting Sugar High
Tutorial: Fun with SMB on the Command Line
Interview: Ilia Kolochenko, CEO of High-Tech Bridge
October 2012 Free Giveaway Winner of LearningGate Training
The Broken: Assessing Corporate Security in 2012 to Make a Better 2013
EH-Net Login
Welcome Guest.
Username:
Password:
Remember me
Lost Password?
No account yet?
Register
Who's Online
We have 34 guests online
You are here:
Home
Ethical Hacking Discussions and Related Certifications
Other
using backtrack as a daily use linux distro
EH-Net
May 21, 2013, 07:45:12 PM
Welcome,
Guest
. Please
login
or
register
.
Did you miss your
activation email?
1 Hour
1 Day
1 Week
1 Month
Forever
Login with username, password and session length
News
: Go back to The Ethical Hacker Network Online Magazine
Home Page
Home
Help
Calendar
Login
Register
EH-Net
>
Ethical Hacking Discussions and Related Certifications
>
Other
(Moderator:
don
) >
using backtrack as a daily use linux distro
Pages: [
1
]
2
Go Down
« previous
next »
Print
Author
Topic: using backtrack as a daily use linux distro (Read 16870 times)
0 Members and 1 Guest are viewing this topic.
shakuni
Jr. Member
Offline
Posts: 80
using backtrack as a daily use linux distro
«
on:
September 11, 2008, 08:09:38 AM »
Hi everyone,
Can I use backtrack as a daily use linux distro. I mean I am a part time network security researcher (cause I am a full time malware analyst) and backtract is a full fledged linux distro, so is it a must that it should be used only for pentesting? Can't it be used in daily tasks...
what I intend to do is that I will install "only" BT3 on my laptop and I'll use it as a general linux distro in the day and as a security toolkit in the night
Please express your opinion on the concept...
Thanks
shakuni
Logged
There is no rule, law or tradition that apply universally... including this one.
Andrew Waite
Hero Member
Offline
Posts: 928
Re: using backtrack as a daily use linux distro
«
Reply #1 on:
September 11, 2008, 08:43:47 AM »
Shakuni,
I'd agree mostly. Backtrack
should
be able to be used as daily distro. But from personal experience I have found it doesn't work out that way and I've gone back to using a 'normal' Linux install with my goodies on a daily basis whilst keeping a BT usb stick around for those times when I can't afford to mess around with a tool compilation in the middle of a incident.
As you say you're a full time malware analyst your mileage may vary, good luck
Logged
--
http://www.infosanity.co.uk
--
http://blog.infosanity.co.uk
jakx
Newbie
Offline
Posts: 14
Re: using backtrack as a daily use linux distro
«
Reply #2 on:
September 11, 2008, 09:19:58 AM »
I used backtrack 2 for a little while as a everyday OS and i did not seem to have too many problems. I was not doing a whole lot outside of pentesting though. I guess it really just depends on what you want to be doing. I now have switched to just the BT usb like RoleReversal but its up to you.
Try it and if you dont like it switch back.
Logged
vijay2
Full Member
Offline
Posts: 220
Re: using backtrack as a daily use linux distro
«
Reply #3 on:
September 11, 2008, 10:18:56 AM »
I use BT 3 running on a VM most of the time
VJ
Logged
GPEN GCFA GCIH CISSP CISA GSEC OSCP C|EH Security+
Kev
Sr. Member
Offline
Posts: 428
Re: using backtrack as a daily use linux distro
«
Reply #4 on:
September 11, 2008, 10:25:36 AM »
Muts (creator of BT) uses it as his everyday distro. Yes, of course you can use it as your day to day distro,espicailly if you are experienced with Linux, but you would be better off using something with more community support for day to day apps. Ubuntu is still what I recommend for beginners and casual day to day use.
Logged
shakuni
Jr. Member
Offline
Posts: 80
Re: using backtrack as a daily use linux distro
«
Reply #5 on:
September 13, 2008, 11:57:03 PM »
Thanks a lot for your inputs. From now on I will be using backtrack as my daily use distro. I'll post my experiences here if you want me to.
-shakuni
Logged
There is no rule, law or tradition that apply universally... including this one.
xXxKrisxXx
Hero Member
Offline
Posts: 512
Re: using backtrack as a daily use linux distro
«
Reply #6 on:
September 14, 2008, 09:11:27 PM »
Quote from: Kev on September 11, 2008, 10:25:36 AM
Muts (creator of BT) uses it as his everyday distro. Yes, of course you can use it as your day to day distro,espicailly if you are experienced with Linux, but you would be better off using something with more community support for day to day apps. Ubuntu is still what I recommend for beginners and casual day to day use.
Gotta go with Kev on this one. Ubuntu was my choice when I was first starting out with linux. Now it's BackTrack 3 all the way to suit my
'revenge'
, I mean 'security' testing needs.
Logged
eCPPT, GCIH, OSCP, OSWP
shakuni
Jr. Member
Offline
Posts: 80
Re: using backtrack as a daily use linux distro
«
Reply #7 on:
September 15, 2008, 06:21:01 AM »
Quote
Now it's BackTrack 3 all the way to suit my 'revenge', I mean 'security' testing needs.
he he he...
Logged
There is no rule, law or tradition that apply universally... including this one.
X0Red
Newbie
Offline
Posts: 2
Re: using backtrack as a daily use linux distro
«
Reply #8 on:
September 15, 2008, 11:59:44 AM »
yes, I agreed to have BackTrack configured for daily use to get used to it. But what about this... if we install normal linux distro as a desktop and configure all tools by hand to get the more grip?
Logged
-X0Red
g00d_4sh
Sr. Member
Offline
Posts: 394
Re: using backtrack as a daily use linux distro
«
Reply #9 on:
September 15, 2008, 12:02:29 PM »
I use BackTrack 3 when I don't want a headache. I use Ubuntu and compile all my tools to get the full 'experience'. That and I'm a bit of a masochist. I have a sweet Lexar 4 gig metal thumbdrive connected to my keychain with BackTrack 3 and extra tools on it with me at all times though. That and my "utili-key" which looks like a key... but has tons of little gadgets. Mmmmm.... if only I could fit an eee pc on my keychain.
Logged
"Bad.. Good? I'm the guy with the gun"
Kev
Sr. Member
Offline
Posts: 428
Re: using backtrack as a daily use linux distro
«
Reply #10 on:
September 15, 2008, 06:19:04 PM »
Quote from: g00d_4sh on September 15, 2008, 12:02:29 PM
I use BackTrack 3 when I don't want a headache. I use Ubuntu and compile all my tools to get the full 'experience'.
I really like the idea of this, especially for people new to linux and linux tools.
Run Backtrack to get a quick feel for how tools work, but also compile those tools on a distro with a lot of community support like Ubuntu to get the full linux experience.
Logged
LSOChris
Guest
Re: using backtrack as a daily use linux distro
«
Reply #11 on:
September 15, 2008, 10:28:59 PM »
<insert learn linux before F*ing around with BT rant here>
Logged
Andrew Waite
Hero Member
Offline
Posts: 928
Re: using backtrack as a daily use linux distro
«
Reply #12 on:
September 16, 2008, 04:31:23 AM »
Quote from: ChrisG on September 15, 2008, 10:28:59 PM
<insert learn linux before F*ing around with BT rant here>
Chris,
for the most part I agree with your stance on 'real' VS 'live' linux. However for most it is easier to gain familiarity with a system that just works (I know...) before trying to build the system themselves. It's easy for those of us with Linux experience to claim that it is best to use a 'real' distro, as this
is
the case. But live distros are like learning to ride a bike with training wheels, they give you a bit extra support until you have the confidence and ability to try the real thing.
Even in an MS world most people need to get used to a working environment before they could even determine if something was amiss, let a lone put it right. I think if more people could get an easy, bump free, start with Linux then more would be convince it is a usablt platform.
Same goes for entering the security arena, it's hard to learn the theory and actions required if you don't have confidence that your tools are functioning correctly. BackTrack serves a purpose and is, in my limited personal experience, a good route into the tools and systems required for those starting out in the field.
Logged
--
http://www.infosanity.co.uk
--
http://blog.infosanity.co.uk
LSOChris
Guest
Re: using backtrack as a daily use linux distro
«
Reply #13 on:
September 16, 2008, 07:29:34 AM »
i disagree,
liveCDs are tools, not OS's and should not be treated as such. You'll learn faster building your own distro (in vmware if you wish) and working through the problems of installation (there really arent any anymore). You can be up and going in less than an hour. In my life i have blown away more distros than i can count trying to install something with no documentation but i learned from it. Just booting into a liveCD...its good to show someone "this is linux" to recommend they use that unless there is some extreme reason is not a good way to teach people what they need to know.
I guess if someone has never ever never seen or used linux then ANY liveCD would be ok to familiarize themselves.
as far as using security tools on BT first, having a ton of tools prebuilt for you teaches you nothing about:
1. installing and configuring those tools
2. why you even need those tools
There is something about the act of installing a tool yourself that forces you to think about why you are installing this and what are you going to use it for (especially if you have to go through dependency hell). that helps more with understanding the methodology than just having that stuff installed for you.
your core tools that a "new person" will need will easily install from source or package management system. As far as "have confidence that your tools are functioning correctly" if I install them myself i have confidence they work correctly.
Having someone or some distro do everything for you from the beginning does not set people up for success in working through problems on their own later...which is really what security is all about anyway.
if you need more proof then check out the remote-exploit forums yourself and look at the amount of basic linux questions that are in there, questions that shouldnt be there if people had the prerequisite knowledges that BT states you need before using their liveCD which is a good understanding of linux.
«
Last Edit: September 16, 2008, 07:31:34 AM by ChrisG
»
Logged
Andrew Waite
Hero Member
Offline
Posts: 928
Re: using backtrack as a daily use linux distro
«
Reply #14 on:
September 16, 2008, 09:19:52 AM »
Chris,
don't think we're going to get too far with this, mostly as I agree with you on most points as I've already said.
The main point I do disagree on is that using pre-built tools doesn't teach anything. Admittedly it doesn't teach you much about linux (no compile and dependency hell as you mention) but it gives people the opportunity to learn the tools and the processes. Not everyone wants to become an uber hacker, some just need to have the tools available to do a certain aspect of their job.
This doesn't necessarilly make for perfectly secure systems, but if a non-security admin can run db_autopwn at their environment and plug those holes it will enable them to move their environment from the 'low hanging fruit' level of targets. Not ideal, and certainly not 100% (not possible I know) secure, but often this is acceptable risk for the business in question.
Regarding the 'confidence in your tools' thread I'm sure you would have confidence in your tools, so would I; but for someone new to the scene is nmap showing no open ports becuase nothings listening? or because I cocked up my build? I agree that the mainstay of packages can be easily installed by source or package management, but in the later case you'll learn no more than using a live distro, the system handles the 'black-magic' for you.
Possibly I'm coming from a biased basis as I started off using Backtrack, before migrating to the real-deal. I agree 100% that there are some completely n00b questions asked on the remote-exploit forums by those without the prerequisite knowledge for the material in hand, the same as we occasionally see on EH-Net, and I've seen over at LSO. But generally these people don't get the quick fix that they're looking for and go back to the Wii.
As we agree that Backtrack (et. al) is a good tool, but a full OS is preferable and even advisable, can I suggest we agree to disagree on the other points and I'll buy the first round if we meet in r/l?
RR
P.S. Shakuni, sorry for the slight thread hi-jack, if you're still running with your trials let me know how you get on, could be interesting
Logged
--
http://www.infosanity.co.uk
--
http://blog.infosanity.co.uk
Pages: [
1
]
2
Go Up
Print
« previous
next »
Jump to:
Please select a destination:
-----------------------------
EH-Net
-----------------------------
=> Calendar Of Events
===> ChicagoCon 2007
===> ChicagoCon 2008s
===> ChicagoCon 2008f
===> ChicagoCon 2009s
=> Ethical Hacktivism
=> News Items and General Discussion About EH-Net
===> Greetings
=> Special Events
-----------------------------
Ethical Hacking Discussions and Related Certifications
-----------------------------
=> General Certification
===> Networking
===> OS
===> Security
=> Compliance, Regulations & Standards
=> Control Systems
=> Cyber Warfare
=> Forensics
===> CCE / MCCE - (Master) Certified Computer Examiner
===> CHFI - Computer Hacking Forensic Investigator
===> EnCE - EnCase® Certified Examiner
===> GCFA - GIAC Certified Forensics Analyst
=> Hardware
=> Incident Response
===> CSIH - Computer Security Incident Handler
===> GCIH - GIAC Certified Incident Handler
=> Malware
===> Advisories
=> Mobile
=> Network Pen Testing
===> CEH - Certified Ethical Hacker
===> CPTC - Certified Penetration Testing Consultant
===> CPTE - Certified Penetration Testing Engineer
===> CSTA - Certified Security Testing Associate
===> eCPPT - eLearnSecurity Certified Professional Penetration Tester
===> ECSA - EC-Council Certified Security Analyst
===> GPEN - GIAC Certified Penetration Tester
===> OSCP - Offensive Security Certified Professional
=> Physical Security
=> Programming
=> Social Engineering
=> Web Applications
=> Wireless
===> CWNP Certs
===> GAWN - GIAC Assessing Wireless Networks
===> OSWP - Offensive Security Wireless Professional
=> Other
-----------------------------
Columns
-----------------------------
=> Editor-In-Chief
=> Andress
=> Gates
=> Haddix
=> Hadnagy
=> Heffner
=> Hoffman
=> Linn
=> RichM
=> Murray
=> J. Peltier
=> Weidman
=> Wilson
-----------------------------
Features
-----------------------------
=> /root
=> Book Reviews
=> Opinions
=> Skillz
===> Examples
===> May 06 - Star Hacks, Episode V: The Empire Hacks Back
===> July 06 - Hack Bill!
===> Sept 06 - Netcat in the Hat
===> Nov 06 - Hitch-Hackers Guide to the Galaxy
===> Dec 06 - A Christmas (Hacking) Story
===> Feb 07 - Charlottes Web Site
===> April 07 - Microsoft Office Space
===> June 07 - Serenity Hack
===> Oct 07 - Worst. Ethical. Hacker. Challenge. Ever.
===> Dec 07 - Frosty the Snow Crash
===> March 2008 - It Happened One Friday
===> Oct 2008 - Scooby Doo and the Crypto Caper
===> Dec 08 - Santa Claus Is Hacking to Town
===> Feb 2009 - Brady Bunch Boondoggle
===> July 2009 - Prison Break
===> October 2009 - SSHliders
===> December 2009 - Miracle on Thirty-Hack Street
===> December 2010 - The Nightmare Before Charlie Browns Christmas
-----------------------------
Resources
-----------------------------
=> Career Central
===> Looking For Work
===> Looking To Hire
=> Links to cool sites.
=> Mass Media
=> News from the Outside World
=> Tools
=> Tutorials
===> Tutorial Requests
Loading...
Exclusive Deal
SANSFIRE 2013
June 15 - 22
5% Off
w/ Code
:
EHN_5
SANS Deals 4 EH-Netters
5% OFF
Any
SANS Course
in Any Format!
Coupon Code:
EHN_5
Including
SANS Rocky Mountain 2013
&
SANS Boston 2013
Polls
Compared to this year, 2013 will be:
Great!
Better.
About the same.
Little worse.
FUBAR!
Recent Forum Topics
Programming
: Finished Python Course in Codecademy now what?
(13) by
securitian
Network Pen Testing
: Ruby on Rails Vulnerabilities/Attacks in BackTrack 5 r3
(0) by
SUdoctstudent
Network Pen Testing
: De-ICE 1.140 released!
(2) by
superkojiman
Network Pen Testing
: AIX Vulnerability Assessments
(1) by
3xban
General Certification
: CPT Practical Submission
(1) by
UNIX
OSCP - Offensive Security Certified Professional
: Failed my first attempt at the OSCP exam
(94) by
azmatt
Tools
: Social-Engineer Toolkit (SET) Version 5.0 “The Wild West” Released
(2) by
m0wgli
Malware
: EICAR?
(3) by
UKSecurityGuy
Advisories
: HTB23154: Multiple Vulnerabilities in Exponent CMS
(0) by
AndyP
Advisories
: HTB23153: Multiple Vulnerabilities in Jojo CMS
(0) by
AndyP
Advisories
: HTB23151: Cross-Site Request Forgery (CSRF) in UMI.CMS
(0) by
AndyP
Tutorials
: Need guidance
(8) by
r0ckm4n
OSCP - Offensive Security Certified Professional
: Class Scheduled 6/8 - Linux n00b
(7) by
Taemyks
OSCP - Offensive Security Certified Professional
: OSCP exam scheduled
(6) by
gbhat
Incident Response
: LinkedIn Forensics
(0) by
AFENTIS_Forensics
General Certification
: Red Team/Blue Team
(1) by
ajohnson
Career Central
: Starter cert?
(3) by
Grendel
Network Pen Testing
: Beginner Ethical Hacker
(1) by
m0wgli
Web Applications
: Nessus and Nikto
(4) by
Seen
Network Pen Testing
: Cracking salted MD5 hash
(4) by
n37sh@rk
CEH - Certified Ethical Hacker
: Passed my C|EH
(3) by
n37sh@rk
Mass Media
: EC-council hacked, irony at his best?
(0) by
j0rDy
Web Applications
: SQL Injection into an INSERT statement.
(6) by
eyenit0
Network Pen Testing
: Solution for sipXtapi INVITE Message CSeq Field Header Remote Overflow
(1) by
m0wgli
Web Applications
: dns
(2) by
H1t M0nk3y
Other
: BSides Boston
(0) by
3xban
Career Central
: InfoSec in Central, FL
(2) by
tturner
Web Applications
: Web vulnerability scanner
(4) by
H1t M0nk3y
EH-Net News Feeds
Latest Additions
Privacy Notice
for TDCC & All Properties
© 2013 The Ethical Hacker Network
Joomla!
is Free Software released under the GNU/GPL License.