Image
 
linkedin_logo.png rss_logo.jpg
twitter_logo.png youtube_logo.jpg
Latest Additions
 
EH-Net Login
Welcome Guest.






Lost Password?
No account yet? Register
Who's Online
We have 104 guests and 1 member online
EH-Net News Feeds
Latest Additions
 
Advertisement

You are here: Home arrow Forum arrow Columnsarrow Gatesarrow SOURCE Boston Attacking Layer 8: Client-Side Penetration Testing Presentation
EH-Net
February 10, 2012, 12:58:22 AM *
Welcome, Guest. Please login or register.
Did you miss your activation email?

Login with username, password and session length
News: Advertise on EH-Net!! - Reasonable Rates, Highly Targeted Audience.
 
   Home   Help Calendar Login Register  
Pages: [1]   Go Down
  Print  
Author Topic: SOURCE Boston Attacking Layer 8: Client-Side Penetration Testing Presentation  (Read 10327 times)
0 Members and 1 Guest are viewing this topic.
ChrisG
EH-Net Columnist
Hero Member
*****
Offline Offline

Posts: 1166


View Profile WWW
« on: March 15, 2009, 09:40:15 PM »

SOURCE Boston Attacking Layer 8: Client-Side Penetration Testing Presentation

I've uploaded the video to vimeo, its available on the channel we set up

http://vimeo.com/channels/fullscopesecurity

or direct http://vimeo.com/3665163
Logged

...tests i took go here...

http://carnal0wnage.attackresearch.com/
Dark_Knight
Full Member
***
Offline Offline

Posts: 208


View Profile WWW
« Reply #1 on: March 15, 2009, 10:40:55 PM »

Thanks Chris. Very good presentation.
Logged

CEH, OSCP, GPEN, GWAPT, GCIA
http://sector876.blogspot.com
xXxKrisxXx
Sr. Member
****
Offline Offline

Posts: 491



View Profile
« Reply #2 on: March 16, 2009, 02:40:12 AM »

Just watched the whole thing, those fileformat exploits in metasploit get the job done. Nice work though, you sounded kinda thirsty.  Tongue
Logged

OSCP, OWSP, eCPPT
hayabusa
Hero Member
*****
Offline Offline

Posts: 1202



View Profile
« Reply #3 on: March 17, 2009, 11:08:23 AM »

Great video, Chris!

I've been harping on both my current employer, as well as many of my private clients, about client-side attack vectors, and the MANY weaknesses I've seen to that regard.  I need to forward that link to a few of them, who really need an awakening, as, while I've shown them some things, they just never accept that it's becoming the 'norm' for these attacks to open the door to further penetrate an otherwise 'impenetrable' environment.

Thanks, much!
Logged

~ hayabusa ~ 

"All men can see these tactics whereby I conquer, but what none can see is the strategy out of which victory is evolved." - Sun Tzu, 'The Art of War'


OSCP , GPEN, C|EH
ChrisG
EH-Net Columnist
Hero Member
*****
Offline Offline

Posts: 1166


View Profile WWW
« Reply #4 on: March 19, 2009, 01:29:11 PM »

thanks!!  hopefully it will help get the word out
Logged

...tests i took go here...

http://carnal0wnage.attackresearch.com/
jason
Hero Member
*****
Offline Offline

Posts: 923



View Profile
« Reply #5 on: March 19, 2009, 08:05:18 PM »

Awesome. Added it to my list of things to watch.
Logged
Pages: [1]   Go Up
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.16 | SMF © 2011, Simple Machines
Joomla Bridge by JoomlaHacks.com
Valid XHTML 1.0! Valid CSS!
Page created in 0.253 seconds with 22 queries.
 

gk_static-ad_feb2012.jpg
Global Knowledge Training: Build Security Skills to Protect and Defend

offsec_130x200-2_jan-feb2012.png
Offensive Security
AWE Live in the Caribbean!
March 5 - 9, 2012

SANS Deals 4 EH-Netters
$150 OFF Any SANS Course in Any Format!
Coupon Code: Refer_EHN
Including SANS Phoenix 2012, SANS 2012
Recent Forum Topics

cbtnuggets_logo_125.jpg
Try CBT Nuggets Free!

Vote For EH-Net

Add to Technorati Favorites
technorati fave

 
         
Advertisement

© 2012 The Ethical Hacker Network
Joomla! is Free Software released under the GNU/GPL License.