Image
 
linkedin_logo.png rss_logo.jpg
twitter_logo.png youtube_logo.jpg
Latest Additions
 
EH-Net Login
Welcome Guest.






Lost Password?
No account yet? Register
Who's Online
We have 59 guests and 1 member online
EH-Net News Feeds
Latest Additions
 
Advertisement

You are here: Home arrow Forum arrow Ethical Hacking Discussions and Related Certificationsarrow Network Pen Testingarrow Offensive security lab setup
EH-Net
May 25, 2012, 05:52:30 PM *
Welcome, Guest. Please login or register.
Did you miss your activation email?

Login with username, password and session length
News: Advertise on EH-Net!! - Reasonable Rates, Highly Targeted Audience.
 
   Home   Help Calendar Login Register  
Pages: [1]   Go Down
  Print  
Author Topic: Offensive security lab setup  (Read 6685 times)
0 Members and 4 Guests are viewing this topic.
LT72884
Jr. Member
**
Offline Offline

Posts: 50


View Profile
« on: March 07, 2010, 03:38:42 PM »

as of right now  you know that i am following toms book. I have created the virtual laba and what not. What i would like to do is imitate the lab setup that the offensive security(remote exploits course) lab students use so when i take that course i can be better prepared for it. If any one has taken that course it would be nice to hear from you on what type of OS's they used in there labs that you attack. Do they have winxp home or pro?

thanx

Sorry for so many posts. just trying to get all my ducks in a row.
« Last Edit: March 07, 2010, 04:06:18 PM by LT72884 » Logged
xXxKrisxXx
Sr. Member
****
Offline Offline

Posts: 491



View Profile
« Reply #1 on: March 07, 2010, 04:45:55 PM »

Hey LT72884,

I hear students are issued windows xp sp2 machines - but I've also heard they've upgraded to sp3 machines for the new v3 course ware that's starting this coming 21st.

Just for a quick reference link for you. Here's some links where you could grab a copy of a virtual image of XP Sp3.

VHD Windows XP SP3:
http://www.microsoft.com/downloads/details.aspx?FamilyId=21EABB90-958F-4B64-B5F1-73D0A413C8EF&displaylang=en
Logged

OSCP, OWSP, eCPPT
LT72884
Jr. Member
**
Offline Offline

Posts: 50


View Profile
« Reply #2 on: March 07, 2010, 05:05:43 PM »

Hey LT72884,

I hear students are issued windows xp sp2 machines - but I've also heard they've upgraded to sp3 machines for the new v3 course ware that's starting this coming 21st.

Just for a quick reference link for you. Here's some links where you could grab a copy of a virtual image of XP Sp3.

VHD Windows XP SP3:
http://www.microsoft.com/downloads/details.aspx?FamilyId=21EABB90-958F-4B64-B5F1-73D0A413C8EF&displaylang=en

So the target systems are xp sp2 machines of either flavor of xp. Are there any server targets that are windows based?

I appreciate the help. I have a few backtrack labs from my professor i wanna try out but they are for BT2 so i am not sure what type of lab setup i needed for that. My linux professor told me about backtrack and said i should research from here the lab setup and what not.

thanx
Logged
xXxKrisxXx
Sr. Member
****
Offline Offline

Posts: 491



View Profile
« Reply #3 on: March 07, 2010, 05:18:55 PM »

Not too sure if any of the server targets are windows based. I know that students are assigned an XP machine to run tests against it throughout the course.

I want to claim in the final challenge when your suppose to root boxes that some are red hat linux boxes, one may be a windows server - but I'm not absolutely positive since I haven't started the class yet. There's a couple OSCP's on here that I'm sure will help out - I do know OSCP's aren't suppose to divulge much about the final challenge personally, but I hope they'll help - I'm curious as well!
« Last Edit: March 07, 2010, 05:22:55 PM by xXxKrisxXx » Logged

OSCP, OWSP, eCPPT
LT72884
Jr. Member
**
Offline Offline

Posts: 50


View Profile
« Reply #4 on: March 07, 2010, 05:37:31 PM »

Not too sure if any of the server targets are windows based. I know that students are assigned an XP machine to run tests against it throughout the course.

I want to claim in the final challenge when your suppose to root boxes that some are red hat linux boxes, one may be a windows server - but I'm not absolutely positive since I haven't started the class yet. There's a couple OSCP's on here that I'm sure will help out - I do know OSCP's aren't suppose to divulge much about the final challenge personally, but I hope they'll help - I'm curious as well!

thanx. HAHA. let me re word this cuz last time i said the same thing on another forum and got banned.

I know that they have a security policy and privacy statment in place so not to much can be told about the actual challanges, i assume. But if i can closly imitate the lab setup that they use that would help me out alot so that i can practice with the material i have, such as those BT2 labs from my professor. Not every company uses linux servers so i need to learn to practice against windows as well.

thanx
Logged
MosGuy
Newbie
*
Offline Offline

Posts: 10


View Profile
« Reply #5 on: March 08, 2010, 05:20:23 PM »

LT72884,

I would have hoped you'd have learned something from your post over at remote-exploit. From the looks of it I guess not. I wonder if you actually bought Tom's book or you "borrowed" a copy of that as well.

For the benefit of the community: http://forums.remote-exploit.org/newbie-area/28264-pen-test-lab-setup.html
Logged

A+, Network+
BillV
Hero Member
*****
Offline Offline

Posts: 1830


View Profile WWW
« Reply #6 on: March 09, 2010, 05:55:46 AM »


Thank you.

LT72884 - I think you have, or been given, enough information to do what you need to do. None of us that have taken the OSCP course or hold the certification are going to provide you with the details you're asking for. There are plenty of threads here about setting up a virtual lab, I'd suggest reading them.
Logged
hayabusa
Hero Member
*****
Offline Offline

Posts: 1304



View Profile
« Reply #7 on: March 09, 2010, 07:35:39 AM »

I'm going to hope, for the sake of LT, that he's already learned his lesson, regarding possession and use of copyrighted materials.  I'd further say that he'd been PM'ing me for advice, here on EH-net, and in the PM's, at least, appears truly apologetic, even to the point of 'being sick to his stomach' over it.  (Which is the proper feeling, when one realizes what they've done, for something as serious as legal issues from copyright infringement, and possibly alienating yourself from the very community you want to be a part of.)

I'm of the opinion that folks learn from their mistakes and move on.  I agree with BillV, that the info for a lab setup has been given, and LT should have enough to begin moving forward with his labs, and understanding that nobody will hand him the keys to the OSCP labs, at this point.  I'm also of the belief that we aren't here to continue to bash him over the mistakes, so long as he now leaves them at the door, and moves forward in a more positive direction with this.

MosGuy, thank you for having pointed it out, and I think that, at least, I will leave it alone at that, now.  I'm glad you made someone aware, and that maybe you've helped LT move forward, as well.  However, I personally would've preferred that you take it to don, or one of the EH-net admins, first, and let them address it, rather than making such a fuss about it, in only your second post.  For me, I don't know who YOU are, enough, yet, to know if you were solely trying to educate him as a positive influence, or publicly humiliate him, or where your intentions lie. 

In any event, welcome to EH-net, MosGuy, and I look forward to positive contributions from you, as well!
Logged

~ hayabusa ~ 

"All men can see these tactics whereby I conquer, but what none can see is the strategy out of which victory is evolved." - Sun Tzu, 'The Art of War'


OSCP , GPEN, C|EH
Pages: [1]   Go Up
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.16 | SMF © 2011, Simple Machines
Joomla Bridge by JoomlaHacks.com
Valid XHTML 1.0! Valid CSS!
Page created in 0.101 seconds with 21 queries.
 

gk_static-ad_feb2012.jpg
Global Knowledge: Build Security Skills to Protect & Defend

els_130x200fixed2.gif
eLearnSecurity Student Course Now Live!
5% Off with Code
ELS-EH-5

SANS Deals 4 EH-Netters
$150 OFF Any SANS Course in Any Format!
Coupon Code: EHN_Connect Including SANS Security West 2012 & SANSFIRE 2012
Recent Forum Topics

cbtnuggets_logo_125.jpg
Try CBT Nuggets Free!

Vote For EH-Net

Add to Technorati Favorites
technorati fave

 
         
Advertisement

© 2012 The Ethical Hacker Network
Joomla! is Free Software released under the GNU/GPL License.