Image
 
linkedin_logo.png rss_logo.jpg
twitter_logo.png youtube_logo.jpg
Latest Additions
 
EH-Net Login
Welcome Guest.






Lost Password?
No account yet? Register
Who's Online
We have 254 guests and 1 member online
 
Advertisement

You are here: Home arrow Ethical Hacking Discussions and Related Certificationsarrow Programmingarrow GOOD HACKING WEBSITE TO HELP YOU
EH-Net
May 20, 2013, 03:17:23 AM *
Welcome, Guest. Please login or register.
Did you miss your activation email?

Login with username, password and session length
News: Go back to The Ethical Hacker Network Online Magazine Home Page
 
   Home   Help Calendar Login Register  
Pages: [1]   Go Down
  Print  
Author Topic: GOOD HACKING WEBSITE TO HELP YOU  (Read 8378 times)
0 Members and 1 Guest are viewing this topic.
CTRLS
Newbie
*
Offline Offline

Posts: 25


View Profile
« on: July 22, 2011, 02:14:15 AM »

This website will help you figure out how advanced you in your hacking abilities. If your a new to hacking the website can really help you out alot, currently iv been testing myself with this site so just give it a try

Hackthissite.org <----- this is the website
« Last Edit: July 22, 2011, 02:29:48 AM by CTRLS » Logged
MaXe
Hero Member
*****
Offline Offline

Posts: 669


I've just upgraded myself to a cyborg muahahaa!!1


View Profile WWW
« Reply #1 on: July 22, 2011, 12:18:48 PM »

This website will help you figure out how advanced you in your hacking abilities. If your a new to hacking the website can really help you out alot, currently iv been testing myself with this site so just give it a try

Hackthissite.org <----- this is the website

That website will not help you to become a hardcore hacker. The challenges are okay, and nice for beginners, but often not _very_ realistic. (I often use 0days in Web Applications, where I may have to create a duplicate of the target, and make it as realistic as possible and of course anticipate various security controls.)

If you want something hard, go for Cracking the Perimeter by Offensive Security and do the OSCE test. That will measure "how advanced" you are in your hacking abilities. Same with OSCP. If you can complete OSCP, you're a hacker, if you can complete OSCE, you're quite good imho. (The exam requires a high amount of creativity, skill, and pain resistance.)

For beginners, there's a lot better resources. The reason why I say that, is because A LOT of these challenges are way too unrealistic, such as but not limited to various "Cyber Challenges", offered by a large amount of companies and organizations each year to find potential pentesters.

So what are the better (free) resources?  If you're going into "website hacking" aka Web Application Security:
1) Learn all the fundamentals such as: HTML, CSS and basic JavaScript.
2) Learn PHP or ASP (or any other server language that serves websites, but PHP is often the easiest and most used choice.)
3) Learn how to find vulnerabilities in PHP code, write vulnerable code yourself, exploit it, write a patch, enjoy.
4) Download various web applications, preferably not widely used ones as they are often more secure. Install these, fuzz them or review the code and find 0days in them.
5) Use that knowledge responsibly. It's that simple, but it takes time to become good at it.

If you just want resources, try the forums at intern0t.net, the Metasploit Unleashed project by Offensive Security, and SecurityTube. HackThisSite has indeed existed for a very long time, and so has Myspace, that doesn't mean it is realistic to use.  No offense intended to any parties.
Logged

I'm an InterN0T'er
CTRLS
Newbie
*
Offline Offline

Posts: 25


View Profile
« Reply #2 on: July 22, 2011, 09:50:32 PM »

Well sorry i was only trying to help :\
Logged
impelse
Hero Member
*****
Offline Offline

Posts: 565


View Profile WWW
« Reply #3 on: July 23, 2011, 12:59:58 PM »

Well sorry i was only trying to help :\

CTRLS, please do not feel sorry, the site that you mention is ok (I used in the past), the thning is that normally when somebody suggest a site other people wants to know about that site and how to progrees in the ethical hacker arena. So MaXe try to give more info
Logged

CCNA, Security+, 70-290, 70-291
CCNA Security
Taking Hackingdojo training

Website: http://blog.thehost1.com/
MaXe
Hero Member
*****
Offline Offline

Posts: 669


I've just upgraded myself to a cyborg muahahaa!!1


View Profile WWW
« Reply #4 on: July 23, 2011, 01:16:19 PM »

Well sorry i was only trying to help :\

No need to be sorry, I was just sharing my opinion about the quality of that website, compared to other resources, that would probably benefit beginners in web application security a lot more.  Wink

So MaXe try to give more info

Here's more of the same info I posted right above.

So what are the better (free) resources?  If you're going into "website hacking" aka Web Application Security:
1) Learn all the fundamentals such as: HTML, CSS and basic JavaScript.
2) Learn PHP or ASP (or any other server language that serves websites, but PHP is often the easiest and most used choice.)
3) Learn how to find vulnerabilities in PHP code, write vulnerable code yourself, exploit it, write a patch, enjoy.
4) Download various web applications, preferably not widely used ones as they are often more secure. Install these, fuzz them or review the code and find 0days in them.
5) Use that knowledge responsibly. It's that simple, but it takes time to become good at it.

If you just want resources, try the forums at intern0t.net, the Metasploit Unleashed project by Offensive Security, and SecurityTube. HackThisSite has indeed existed for a very long time, and so has Myspace, that doesn't mean it is realistic to use.  No offense intended to any parties.
Logged

I'm an InterN0T'er
CTRLS
Newbie
*
Offline Offline

Posts: 25


View Profile
« Reply #5 on: July 24, 2011, 12:52:11 AM »

alright i just thought you were trying to talk shit or put me down....i was just trying nto help other

hey do you know any website sites where i could download the language C
Logged
Quote
Newbie
*
Offline Offline

Posts: 5


View Profile
« Reply #6 on: July 24, 2011, 07:23:34 AM »

Hey there, what is your opinion of the following sites?

http://www.overthewire.org/wargames/
http://smashthestack.org/faq.php
http://osix.net

The former two have SSH wargames, and I was wondering how similar they were to Offensive Security's offerings. OSIX is a little more of a mainstream hacker game, with more coding and reverse engineering, and a bit of steganalysis. Also, they're bringing back Cyberarmy.

Anyway, I'm looking to enter the pen testing industry and would like to know about any other good kind of playgrounds like these.
Logged
MaXe
Hero Member
*****
Offline Offline

Posts: 669


I've just upgraded myself to a cyborg muahahaa!!1


View Profile WWW
« Reply #7 on: July 24, 2011, 03:04:24 PM »

Hey there, what is your opinion of the following sites?

http://www.overthewire.org/wargames/
http://smashthestack.org/faq.php
http://osix.net

The former two have SSH wargames, and I was wondering how similar they were to Offensive Security's offerings. OSIX is a little more of a mainstream hacker game, with more coding and reverse engineering, and a bit of steganalysis. Also, they're bringing back Cyberarmy.

Anyway, I'm looking to enter the pen testing industry and would like to know about any other good kind of playgrounds like these.

Tough challenges, but no bad opinions!  Grin

If you want something fun, look out for challenges by Offensive Security:
http://www.information-security-training.com/blog/
http://www.offensive-security.com/blog/

And perhaps more HaXx.Me's will be coming soon:
http://forum.intern0t.net/intern0t-contests/

(You can watch some of the solution videos at http://intern0t.blip.tv )
Logged

I'm an InterN0T'er
chrisj
Hero Member
*****
Offline Offline

Posts: 1163


View Profile WWW
« Reply #8 on: July 24, 2011, 03:28:42 PM »

Personally, what I use (and try to abuse) to build my skills:
Damn Vulnerable Web App (maintained one of the forum members)
Damn Vulnerable Linux
OWASP
De-ICE

There is another one I came across for web apps, I remember it was a collection with one being a Bank. I think I came across it In Hacking Exposed Web Apps, but I can't remember what it was called.
Logged

OSWP, Sec+
MaXe
Hero Member
*****
Offline Offline

Posts: 669


I've just upgraded myself to a cyborg muahahaa!!1


View Profile WWW
« Reply #9 on: July 24, 2011, 04:09:36 PM »

There is another one I came across for web apps, I remember it was a collection with one being a Bank. I think I came across it In Hacking Exposed Web Apps, but I can't remember what it was called.

HackMe ;-)

List of more similar good apps:
- HackMe Bank
- MackMe Books
- WebMaven
- WebGoat

WebGoat is made by Owasp and is quite good, however at some points, not 100% realistic and it could work better, but overall it's quite good.  Smiley
Logged

I'm an InterN0T'er
Quote
Newbie
*
Offline Offline

Posts: 5


View Profile
« Reply #10 on: July 24, 2011, 08:10:52 PM »

Thanks, guys! This should keep me busy.
Logged
Pages: [1]   Go Up
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.18 | SMF © 2013, Simple Machines
Joomla Bridge by JoomlaHacks.com
Valid XHTML 1.0! Valid CSS!
Page created in 0.068 seconds with 23 queries.
 
Exclusive Deal

sansfire13_245x90_cw90.jpg
SANSFIRE 2013
June 15 - 22

5% Off w/ Code: EHN_5

SANS Deals 4 EH-Netters
5% OFF Any SANS Course in Any Format!
Coupon Code: EHN_5 Including SANS Rocky Mountain 2013 & SANS Boston 2013
Polls
Compared to this year, 2013 will be:
 
Recent Forum Topics
EH-Net News Feeds
Latest Additions
 
         
Free Business and Tech Magazines and eBooks

© 2013 The Ethical Hacker Network
Joomla! is Free Software released under the GNU/GPL License.