Home
Calendar
Certifications
Columns
Features
Forum
Resources
Vitals
Latest Additions
April 2013 Free Giveaway Sponsor - eLearnSecurity
Human Intelligence to Navigate the Security Data Deluge
February 2013 Free Giveaway Winner of SANS CyberCon Training
Interview: Bugcrowd Founders on Herding Ninjas for Crowdsourced Bug Bounties
Network Forensics: The Tree in the Forest
March 2013 Free Giveaway Sponsor - Mile2
Book Review: Violent Python
February 2013 Free Giveaway Sponsor - SANS
Holiday 2012 Free Giveaway Winner of Metasploit Pro by Rapid7
Course Review: SANS FOR408 Computer Forensic Investigations – Windows In-Depth
The Security Consulting Sugar High
Tutorial: Fun with SMB on the Command Line
Interview: Ilia Kolochenko, CEO of High-Tech Bridge
October 2012 Free Giveaway Winner of LearningGate Training
The Broken: Assessing Corporate Security in 2012 to Make a Better 2013
EH-Net Login
Welcome Guest.
Username:
Password:
Remember me
Lost Password?
No account yet?
Register
Who's Online
We have 54 guests and 3 members online
You are here:
Home
Ethical Hacking Discussions and Related Certifications
Network Pen Testing
how do you create a home hack lab?
EH-Net
May 22, 2013, 07:23:30 AM
Welcome,
Guest
. Please
login
or
register
.
Did you miss your
activation email?
1 Hour
1 Day
1 Week
1 Month
Forever
Login with username, password and session length
News
: Go back to The Ethical Hacker Network Online Magazine
Home Page
Home
Help
Calendar
Login
Register
EH-Net
>
Ethical Hacking Discussions and Related Certifications
>
Network Pen Testing
(Moderator:
don
) >
how do you create a home hack lab?
Pages: [
1
]
Go Down
« previous
next »
Print
Author
Topic: how do you create a home hack lab? (Read 18609 times)
0 Members and 1 Guest are viewing this topic.
info_genius
Newbie
Offline
Posts: 4
how do you create a home hack lab?
«
on:
November 01, 2009, 08:05:23 AM »
hello everyone.
just joined. this looks like a GREAT site to learn network security and hacking!
i am trying to find out how to setup my own hack lab to practice hacking and security here at home. can anyone give me some pointers on this please? where do i start? what is the best hack lab software to use? are there any online network security/hacking schools with hack labs already set up that you would advice i look into? i have checked out
www.sequrit.org
but they have not emailed me back in a several days or sent me any addtional info..
has anyone experienced working with Sequrit.org
thanks everyone!
«
Last Edit: November 01, 2009, 08:17:01 AM by info_genius
»
Logged
Andrew Waite
Hero Member
Offline
Posts: 928
Re: how do you create a home hack lab?
«
Reply #1 on:
November 01, 2009, 08:24:46 AM »
Hi and welcome to the site.
Check out Wilhelm's book on creating a pentest lab, I reviewed the book for this site
here
which also includes a sample chapter, which could actually be the best place to start for what you are attempting.
I've spent the last year+ building up a working environment and am starting to get to a point I feel the first version of my lab is 'complete'. I've documented a lot of my working on my
blog
, relevant posts are tagged with
lab
.
Hope this helps point you in the right direction, happy hacking
--Andrew Waite
P.S. Just taken a look at securit.org as I hadn't come across the site, and that is some coinage they asking in membership fees. I'll mirror info_genius' question; Anyone have any experience with securite.org?
«
Last Edit: November 01, 2009, 08:37:12 AM by Andrew Waite
»
Logged
--
http://www.infosanity.co.uk
--
http://blog.infosanity.co.uk
info_genius
Newbie
Offline
Posts: 4
Re: how do you create a home hack lab?
«
Reply #2 on:
November 01, 2009, 09:23:18 AM »
hi and thanks Andrew. do you know of any other online sites with more inexpensive fees than sequrity.org please
thanks
Logged
Equix3n-
Sr. Member
Offline
Posts: 386
Re: how do you create a home hack lab?
«
Reply #3 on:
November 01, 2009, 09:32:41 AM »
If you want to setup a virtual lab there's an excellent tutorial by Jhaddix and Laz3r
here
. Besides, you could also use
this
link.
Logged
KamiCrazy
Jr. Member
Offline
Posts: 78
Re: how do you create a home hack lab?
«
Reply #4 on:
November 01, 2009, 05:58:37 PM »
Personally my lab at home consists mainly of two things.
I run all my OS's on VMware fusion on my MBP. With 4 gigs of ram I can do most things quite well. I also run backtrack as a fusion image.
For wireless testing, I simply plug in a USB WiFi card into Fusion and it bridges it over to Backtrack.
For cisco related stuff I run dynagen on my home desktop, which is an opteron 175 with 4 gigs.
Honestly fusion has made testing and labwork a breeze for me.
If you don't want to run a mac my suggestion would be to use a linux host and run something like KVM, or virtualbox etc. I personally don't recommend using windows as a host OS.
Logged
sgt_mjc
Sr. Member
Offline
Posts: 294
Re: how do you create a home hack lab?
«
Reply #5 on:
November 02, 2009, 06:59:50 AM »
I'm lucky with my lab setup. I have a lab at the office that we can use to practice with as well as at home. My home lab has a couple of physical boxes. One box is my game rig so I don't do too much with it, but my other box is my test bed system. I use it to play with. I have run every thing form Solaris 10 to Ubuntu to Server 08. I have VMWare Server (Free) on my game rig since it has the most RAM and I can beef it up. I use VMs for OSes that I don't want to rebuild or reinstall. Unfortuneately, I don't have anything good for Cisco at the house.
My office lab has every thing in it or darn near. I have three servers to hos VMs. I have several SPARC platforms for various versions of Solaris. I also have ISO files for various LiveCDs that can be run in a VM that have known vulnerabilities in them.
Your lab is only limited by your imagination. Have fun with it. There are plenty of free tools out there like Sun Vitual box, Microsoft Virtual PC, and VMWare Server. You can download pre-built VMs form the VMWare site. Most Linux distros are free or there is a free version. Good luck.
Logged
Mike Conway
CISSP
CompTia Security +
C|EH
ajohnson
Recruiters
Hero Member
Offline
Posts: 1057
aka dynamik
Re: how do you create a home hack lab?
«
Reply #6 on:
November 02, 2009, 08:34:00 PM »
I'd go with ESXi if I had compatible hardware, but Workstation has worked very well for me so far. On the Microsoft side, I've got everything from Windows 3.1 (just for fun) to Windows 7 (Technet Download subscriptions are your friend), and various versions of CentOS, BSD, Solaris, etc.
A decent multicore processor, a load of memory (DDR2 is cheap), and several faster HDs is all you need. I actually found the HDs to be my bottleneck, so I just bought a bunch of cheap 160GB 7200RPM drives. Your VMs will usually range from 1-20GB, so you're more concerned with spindles than total storage.
Logged
WIP: GCFA |
www.infosiege.net
| @infosiege
The day you stop learning is the day you start becoming obsolete.
Basil1977
Guest
Re: how do you create a home hack lab?
«
Reply #7 on:
November 03, 2009, 12:56:44 AM »
hi info_genius
If you are new to EH/PT world I would suggest downloading Backtrack 3 or Backtrack 4 Prerelease and try to play with it.
It has most of the free tools .
Logged
Laz3r
Guest
Re: how do you create a home hack lab?
«
Reply #8 on:
November 06, 2009, 03:06:37 AM »
As Equix3n- already said, Jhaddix and I did a couple tutorials.
Network Pentesting Lab
and
Web Testing Lab
. We tried our best to keep costs at $0. But to be completely legal, you need a legitimate copy of windows. Though there is a legal way around this. I haven't tried it personally, but based on where it's found, I'm sure it should work. Check out
Metasploit Unleashed (required files)
. This should give you the links to a legal VM download of XP SP2. Follow some of the steps they have to give you the control over the OS that you need.
From there you should be able to install everything we've got in the videos (that require windows) all free of charge.
Logged
sgt_mjc
Sr. Member
Offline
Posts: 294
Re: how do you create a home hack lab?
«
Reply #9 on:
November 09, 2009, 11:28:40 AM »
Thanks Laz3r for the links. I may follow your web test lab setup. We don't do a lot of web app pentesting, but it is an integral part of a pentest. Thanks.
Logged
Mike Conway
CISSP
CompTia Security +
C|EH
UNIX
Hero Member
Offline
Posts: 1235
Re: how do you create a home hack lab?
«
Reply #10 on:
November 12, 2009, 06:14:36 AM »
I recommend the tutorials by Lar3r and Jhaddix as well, they did a great job.
You might also try to get a copy of Grendel's book
Professional Penetration Testing: Creating and Operating a Formal Hacking Lab
which should show you some more points to consider.
Logged
info_genius
Newbie
Offline
Posts: 4
Re: how do you create a home hack lab?
«
Reply #11 on:
November 20, 2009, 08:29:54 AM »
thanks guys!
Logged
Pages: [
1
]
Go Up
Print
« previous
next »
Jump to:
Please select a destination:
-----------------------------
EH-Net
-----------------------------
=> Calendar Of Events
===> ChicagoCon 2007
===> ChicagoCon 2008s
===> ChicagoCon 2008f
===> ChicagoCon 2009s
=> Ethical Hacktivism
=> News Items and General Discussion About EH-Net
===> Greetings
=> Special Events
-----------------------------
Ethical Hacking Discussions and Related Certifications
-----------------------------
=> General Certification
===> Networking
===> OS
===> Security
=> Compliance, Regulations & Standards
=> Control Systems
=> Cyber Warfare
=> Forensics
===> CCE / MCCE - (Master) Certified Computer Examiner
===> CHFI - Computer Hacking Forensic Investigator
===> EnCE - EnCase® Certified Examiner
===> GCFA - GIAC Certified Forensics Analyst
=> Hardware
=> Incident Response
===> CSIH - Computer Security Incident Handler
===> GCIH - GIAC Certified Incident Handler
=> Malware
===> Advisories
=> Mobile
=> Network Pen Testing
===> CEH - Certified Ethical Hacker
===> CPTC - Certified Penetration Testing Consultant
===> CPTE - Certified Penetration Testing Engineer
===> CSTA - Certified Security Testing Associate
===> eCPPT - eLearnSecurity Certified Professional Penetration Tester
===> ECSA - EC-Council Certified Security Analyst
===> GPEN - GIAC Certified Penetration Tester
===> OSCP - Offensive Security Certified Professional
=> Physical Security
=> Programming
=> Social Engineering
=> Web Applications
=> Wireless
===> CWNP Certs
===> GAWN - GIAC Assessing Wireless Networks
===> OSWP - Offensive Security Wireless Professional
=> Other
-----------------------------
Columns
-----------------------------
=> Editor-In-Chief
=> Andress
=> Gates
=> Haddix
=> Hadnagy
=> Heffner
=> Hoffman
=> Linn
=> RichM
=> Murray
=> J. Peltier
=> Weidman
=> Wilson
-----------------------------
Features
-----------------------------
=> /root
=> Book Reviews
=> Opinions
=> Skillz
===> Examples
===> May 06 - Star Hacks, Episode V: The Empire Hacks Back
===> July 06 - Hack Bill!
===> Sept 06 - Netcat in the Hat
===> Nov 06 - Hitch-Hackers Guide to the Galaxy
===> Dec 06 - A Christmas (Hacking) Story
===> Feb 07 - Charlottes Web Site
===> April 07 - Microsoft Office Space
===> June 07 - Serenity Hack
===> Oct 07 - Worst. Ethical. Hacker. Challenge. Ever.
===> Dec 07 - Frosty the Snow Crash
===> March 2008 - It Happened One Friday
===> Oct 2008 - Scooby Doo and the Crypto Caper
===> Dec 08 - Santa Claus Is Hacking to Town
===> Feb 2009 - Brady Bunch Boondoggle
===> July 2009 - Prison Break
===> October 2009 - SSHliders
===> December 2009 - Miracle on Thirty-Hack Street
===> December 2010 - The Nightmare Before Charlie Browns Christmas
-----------------------------
Resources
-----------------------------
=> Career Central
===> Looking For Work
===> Looking To Hire
=> Links to cool sites.
=> Mass Media
=> News from the Outside World
=> Tools
=> Tutorials
===> Tutorial Requests
Loading...
Exclusive Deal
SANSFIRE 2013
June 15 - 22
5% Off
w/ Code
:
EHN_5
SANS Deals 4 EH-Netters
5% OFF
Any
SANS Course
in Any Format!
Coupon Code:
EHN_5
Including
SANS Rocky Mountain 2013
&
SANS Boston 2013
Polls
Compared to this year, 2013 will be:
Great!
Better.
About the same.
Little worse.
FUBAR!
Recent Forum Topics
News Items and General Discussion About EH-Net
: Designer logos are a fashion no
(0) by
XRwogannimeieTest
RichM
: red bottom shoes cheap 潮流必备 Sneakers个性Ā...
(0) by
rbirp340
ChicagoCon 2007
: buy Klonopin online no prescription
(0) by
knonrykax
ChicagoCon 2007
: a lawyer Nike Blazer Uk
(0) by
Loyatoitada
News Items and General Discussion About EH-Net
: This is meant to give professional landscapers Nike Blazer Uk
(0) by
Loyatoitada
ChicagoCon 2007
: Just as with A Better World Cheap Air Max Sale
(0) by
Loyatoitada
ChicagoCon 2007
: which along with its raise Louis Vuitton
(0) by
Loyatoitada
News Items and General Discussion About EH-Net
: Sunday Super Bowl Champion Brendon Ayanbadejo Nike Blazer Uk
(0) by
Loyatoitada
News Items and General Discussion About EH-Net
: It Louis Vuitton Pas Cher
(0) by
Loyatoitada
ChicagoCon 2007
: s go over the three places most inventory accumulates Nike Blazers Sale
(0) by
Loyatoitada
News Items and General Discussion About EH-Net
: Or you could try to partner with them or someone else Cheap Air Max Sale
(0) by
Loyatoitada
News from the Outside World
: Google Dropping Windows For Internal Use
(10) by
Loyatoitada
Special Events
: [Article]-Video: Deep Dive into Red Teaming with the Metasploit Framework
(4) by
BeecyGorror
Security
: christian louboutin cheap artic5843
(0) by
fufig388
Special Events
: [Article]-Survey of Hacking Movies: Framing the Debate on the Gateway Drug into the H...
(14) by
BeecyGorror
/root
: [Article]-Course Review: CPT by InfoSec Institute
(1) by
BeecyGorror
Ethical Hacktivism
: Paranoid parents messing with routers
(21) by
BeecyGorror
Compliance, Regulations & Standards
: SABSA - Sherwood Applied Business Security Architecture
(1) by
BeecyGorror
News Items and General Discussion About EH-Net
: What does EthicalHacker.net bring you?
(12) by
BeecyGorror
News Items and General Discussion About EH-Net
: Burberry UK,2013 Burberry Safety-valve Online Available in London
(13) by
BeecyGorror
News Items and General Discussion About EH-Net
: louis vuitton handbags mhf
(0) by
Vamscoora
Calendar Of Events
: ChicagoCon 2008f
(3) by
BeecyGorror
News Items and General Discussion About EH-Net
: "Free Monthly Giveaways" - Details
(22) by
BeecyGorror
ChicagoCon 2007
: s going to be critical to have universal identity in order for these systems to talk ...
(0) by
Loyatoitada
Malware
: New zero-day exploit for Internet Explorer 7, 8, and 9 on Windows XP, Vista & 7
(13) by
BeecyGorror
Special Events
: [Article]-Webcast: Deep Dive into Red Teaming with the Metasploit Framework
(19) by
BeecyGorror
News Items and General Discussion About EH-Net
: but it needs more help: they Sac Louis Vuitton
(0) by
Loyatoitada
Greetings
: but the desperate effort that comes from being hopeful Nike Blazers Uk
(0) by
Loyatoitada
ChicagoCon 2007
: waterfall Cheap Air Max Sale
(0) by
Loyatoitada
News Items and General Discussion About EH-Net
: The advent of the web happened slowly Nike Blazer Uk
(0) by
Loyatoitada
Network Pen Testing
: AIX Vulnerability Assessments
(2) by
ras76
Tutorials
: Need guidance
(9) by
hanyhasan
Programming
: Finished Python Course in Codecademy now what?
(15) by
hanyhasan
Network Pen Testing
: Ruby on Rails Vulnerabilities / Attacks in BackTrack 5 r3
(0) by
SUdoctstudent
Network Pen Testing
: De-ICE 1.140 released!
(2) by
superkojiman
General Certification
: CPT Practical Submission
(1) by
UNIX
OSCP - Offensive Security Certified Professional
: Failed my first attempt at the OSCP exam
(94) by
azmatt
Tools
: Social-Engineer Toolkit (SET) Version 5.0 “The Wild West” Released
(2) by
m0wgli
Malware
: EICAR?
(3) by
UKSecurityGuy
Advisories
: HTB23154: Multiple Vulnerabilities in Exponent CMS
(0) by
AndyP
Advisories
: HTB23153: Multiple Vulnerabilities in Jojo CMS
(0) by
AndyP
Advisories
: HTB23151: Cross-Site Request Forgery (CSRF) in UMI.CMS
(0) by
AndyP
OSCP - Offensive Security Certified Professional
: Class Scheduled 6/8 - Linux n00b
(7) by
Taemyks
OSCP - Offensive Security Certified Professional
: OSCP exam scheduled
(6) by
gbhat
Incident Response
: LinkedIn Forensics
(0) by
AFENTIS_Forensics
General Certification
: Red Team/Blue Team
(1) by
ajohnson
Career Central
: Starter cert?
(3) by
Grendel
Network Pen Testing
: Beginner Ethical Hacker
(1) by
m0wgli
Web Applications
: Nessus and Nikto
(4) by
Seen
Network Pen Testing
: Cracking salted MD5 hash
(4) by
n37sh@rk
EH-Net News Feeds
Latest Additions
Privacy Notice
for TDCC & All Properties
© 2013 The Ethical Hacker Network
Joomla!
is Free Software released under the GNU/GPL License.