Home
Calendar
Certifications
Columns
Features
Forum
Resources
Vitals
Latest Additions
April 2013 Free Giveaway Sponsor - eLearnSecurity
Human Intelligence to Navigate the Security Data Deluge
February 2013 Free Giveaway Winner of SANS CyberCon Training
Interview: Bugcrowd Founders on Herding Ninjas for Crowdsourced Bug Bounties
Network Forensics: The Tree in the Forest
March 2013 Free Giveaway Sponsor - Mile2
Book Review: Violent Python
February 2013 Free Giveaway Sponsor - SANS
Holiday 2012 Free Giveaway Winner of Metasploit Pro by Rapid7
Course Review: SANS FOR408 Computer Forensic Investigations – Windows In-Depth
The Security Consulting Sugar High
Tutorial: Fun with SMB on the Command Line
Interview: Ilia Kolochenko, CEO of High-Tech Bridge
October 2012 Free Giveaway Winner of LearningGate Training
The Broken: Assessing Corporate Security in 2012 to Make a Better 2013
EH-Net Login
Welcome Guest.
Username:
Password:
Remember me
Lost Password?
No account yet?
Register
Who's Online
We have 46 guests and 1 member online
You are here:
Home
Ethical Hacking Discussions and Related Certifications
Network Pen Testing
Your attacking O/S you favor?
EH-Net
May 24, 2013, 02:16:27 AM
Welcome,
Guest
. Please
login
or
register
.
Did you miss your
activation email?
1 Hour
1 Day
1 Week
1 Month
Forever
Login with username, password and session length
News
: Go back to The Ethical Hacker Network Online Magazine
Home Page
Home
Help
Calendar
Login
Register
EH-Net
>
Ethical Hacking Discussions and Related Certifications
>
Network Pen Testing
(Moderator:
don
) >
Your attacking O/S you favor?
Pages: [
1
]
2
Go Down
« previous
next »
Print
Author
Topic: Your attacking O/S you favor? (Read 10860 times)
0 Members and 1 Guest are viewing this topic.
p0et
Full Member
Offline
Posts: 197
Your attacking O/S you favor?
«
on:
November 16, 2006, 11:03:10 PM »
Just in the process of setting up a small home hacking lab with a friend of mine. He has 3 systems and I have 3 and we'll probably stick VMWare on 2 out of 3 of each set of systems. What is your preferred O/S to launch attacks from and store your tools on? What does your hacking lab consist of?
Thanks!
Logged
GCIH, Security+, Network+, A+, MCP, DCSE
LSOChris
Guest
Re: Your attacking O/S you favor?
«
Reply #1 on:
November 16, 2006, 11:31:34 PM »
at LSO we try to use Linux as the attack platform and try to force command line only interaction with the OS (ala SSHing into the lab)
this is usually good enough. you will find that some tools are only GUI so you need windows or Xwindows and alot of code lately will only compile on windows, in which case you need a windows box.
soooooo
to answer you question a little more fully i would have at least 2 attack platforms a linux box (your choice) and a windows box (2k)
Logged
don
Editor-In-Chief
Administrator
Hero Member
Offline
Posts: 4168
Editor-In-Chief
Re: Your attacking O/S you favor?
«
Reply #2 on:
November 16, 2006, 11:34:31 PM »
Here are a few resources already in the forums:
[Article]-Virtual Lab with VMware
CEH Lab Setup
Lab Setup v1 for Study Group
After perusing the above links, let us know what you think. And, of course, keep sharing as you move through the process of setting up and using your lab.
Hope this helps,
Don
PS - Welcome to EH-Net.
Logged
CISSP, MCSE, CSTA, Security+ SME
Negrita
Sr. Member
Offline
Posts: 299
Re: Your attacking O/S you favor?
«
Reply #3 on:
November 17, 2006, 03:59:14 PM »
Well don's already mentioned my article "Virtual Lab with VMware" (see the link in don's post).
My CEH lab consisted of 1 host running VMware. The guests included Windows XP Pro, Windows 2003 Server, Backtrack 1.0, FreeBSD 6.0 and finally a LiveCD VM (usually reserved for Knoppix-STD 1.0). Even though I've already got my CEH I've just recently added an OpenBSD 3.8 VM just to mess around with. I don't have enough RAM to run them all concurrently but I usually have at least 2 or 3 on at the same time so that I can check things out.
The Windows XP Pro machine has been fine tuned in to a mean hacking machine that I find I use just as often as I use Backtrack. It's fully patched and has the following installed on it; Cygwin, WinPcap, Nmap, Netcat, Packetyzer, Cain & Able, John the Ripper, Nessus, Tor (including Vidalia and Privoxy), Metasploit Framework, Security Forest Exploit Tree, Sid2user and User2sid.
I also installed some other stuff on it like VMware Tools (obviously), Acrobat Reader for PDF's, AVG and Zone Alarm for protection and Textpad. I much prefer Textpad over Notepad or Wordpad because it does syntax highlighting of HTML documents and has quite a lot of other features. I also installed 3 browsers; Internet Explorer, Opera and Firefox. Firefox is the default browser and has a few extensions including; FoxTor, User Agent Switcher, DOM Inspector and HTTP Live Headers. Firefox also has bookmarked links to "all the best hacking sites".
The Windows 2003 Server doesn't have any tools on it at all. It is however Active Directory DC and holds the negrita.local domain name zone.
The Windows 2003 Server and FreeBSD machines were usually the victims of my experiments while the XP machine and Backtrack usually did the attacking (though they were sometimes the victims of each other).
Logged
CEH, CCSA NG/AI, NNCSS, MCP, MCSA 2003
There are 10 kinds of people, those that understand binary, and those that don't.
p0et
Full Member
Offline
Posts: 197
Re: Your attacking O/S you favor?
«
Reply #4 on:
November 17, 2006, 05:54:02 PM »
Thanks for the links and info!
I'm not sure how many systems I can run in VMWare since I only have 1GB of RAM on my 3Ghz dual-core desktop. It's currently dual-booting XP Pro and Gentoo Linux. I'd love to get my Gentoo Linux on VMWare with KDE but it just doesn't seem possible. I think I will keep my notebook, dual booting Gentoo & XP Pro (no wireless for some reason on Gentoo though) and my Desktop will have the Host as Gentoo Linux and Guest as: WinXP MCE (for my movies, and basic web surfing), WinXP Pro and Win2K3 Server.
Logged
GCIH, Security+, Network+, A+, MCP, DCSE
Kev
Guest
Re: Your attacking O/S you favor?
«
Reply #5 on:
November 18, 2006, 02:36:49 PM »
I agree completely that you should use both Linux and Windows as your OS for pentesting. If I was forced to use just one and money was an issue, I would pick Linux. Linux comes in a lot of flavors and some are better for hacking than others, although if you are really an adept in Linux, you can make just about any distro work. I would recommend starting with Ubuntu and Backtrack.
Backtrack is good simply because you can jump right into using programs like Kismet without having to fool around with installing wlan-ng drivers,etc.., which can be a headache sometimes. That way you can get the feel of certain tools right from the start. The problem with Backtrack is its moduler installation and it can be a pain to add new things to and the entire feel of it is not nearly as smooth as more polished distros like Ubuntu or Fedora Core. So eventually you would want to take one of these and add all your tools as you learned more about how to recompile kernels,etc.. Fedora Core is great once you know enough Linux to tweek it to what you want. Once you have your Fedora the way you want it, cut off any more updates. Fedora is a beta testing ground for Red Hat and you don’t want to mess up your work with every download they send you. I will say that I like Fedora way more than Red Hat. Red Hat is way too conservative and slow to progress for my taste.
If you use windows as an attack platform, I would recommend using XP pro that is not patched up to service pack 2. Service pack 2 inhibits some scanner programs for example
«
Last Edit: November 18, 2006, 02:42:06 PM by Kev
»
Logged
Negrita
Sr. Member
Offline
Posts: 299
Re: Your attacking O/S you favor?
«
Reply #6 on:
November 19, 2006, 05:04:48 PM »
Quote from: Kev on November 18, 2006, 02:36:49 PM
The problem with Backtrack is its moduler installation and it can be a pain to add new things to and the entire feel of it is not nearly as smooth as more polished distros like Ubuntu or Fedora Core. So eventually you would want to take one of these and add all your tools as you learned more about how to recompile kernels,etc..
Don't you just wish that they'd bring out an up to date version of Knoppix-STD or that nubuntu was more polished? I do.
Quote from: Kev on November 18, 2006, 02:36:49 PM
If you use windows as an attack platform, I would recommend using XP pro that is not patched up to service pack 2. Service pack 2 inhibits some scanner programs for example
This issue has been resolved by Fyodor a long long time ago.
See here
.
Logged
CEH, CCSA NG/AI, NNCSS, MCP, MCSA 2003
There are 10 kinds of people, those that understand binary, and those that don't.
Kev
Guest
Re: Your attacking O/S you favor?
«
Reply #7 on:
November 19, 2006, 05:42:19 PM »
Yes that would be great if they updated and came out with a more polished Distro. My understanding is the nmap service pack 2 patch was a 90% fix but was not a complete work around. Perhaps its been updated again. I run nmap from Linux so I cant say for sure if nmap works as well on windows xp service pack 2 at this time so I need to check it out.
I know super scan had an issue with it also, but again I hope they fixed that also. I don’t really like the raw sockets restrictions that were implemented by service pack 2 and I find its so much easier to code a tool for Linux.
Logged
p0et
Full Member
Offline
Posts: 197
Re: Your attacking O/S you favor?
«
Reply #8 on:
November 19, 2006, 06:26:41 PM »
I much prefer to use nmap, nessus and metasploit from a Linux shell anyway. I'm just downloading Backtrack and going to attempt to install it in VMWare. Has anyone else done this successfully? Anything I need to know?
Thanks!
Logged
GCIH, Security+, Network+, A+, MCP, DCSE
don
Editor-In-Chief
Administrator
Hero Member
Offline
Posts: 4168
Editor-In-Chief
Re: Your attacking O/S you favor?
«
Reply #9 on:
November 19, 2006, 10:20:08 PM »
VMware has an appliance already setup for BackTrack and many other Linux OSs. There's a really good hacking one based on SUSE. Just in case you're not familiar, appliances are virtual machines created by others that are already pre-packaged. Download and open in VMware. Saves loads of time and hassle installing from scratch.
http://www.vmware.com/vmtn/appliances/directory/
Don
Logged
CISSP, MCSE, CSTA, Security+ SME
LSOChris
Guest
Re: Your attacking O/S you favor?
«
Reply #10 on:
November 20, 2006, 10:34:08 AM »
you can just run it from the ISO if you dont need the latetst exploit of the day on it...
Logged
p0et
Full Member
Offline
Posts: 197
Re: Your attacking O/S you favor?
«
Reply #11 on:
November 20, 2006, 10:41:26 AM »
Thanks for the tip. I have downloaded BackTrack 2.0 Beta and (installed it?) on VMWare from the .iso. I first logged in, did "xorg.conf" then "startx" to hop into KDE. From there, it seems i'm stuck with a 640x480 60Htz display. It also crashed on me when trying to open a term. Not a good sign...
Logged
GCIH, Security+, Network+, A+, MCP, DCSE
Negrita
Sr. Member
Offline
Posts: 299
Re: Your attacking O/S you favor?
«
Reply #12 on:
November 20, 2006, 02:34:05 PM »
Perhaps you should try a stable release like Backtrack 1.0. Beta versions have a tendancy to be unstable.
Don's right about the Virtual Appliances. My Backtrack is a Virtual Appliance downloaded from the link in don's post. (BTW I have a full iso version on CD too). besides configuring the eth0 nic to fit my lab setting it was ready to go with no other changes needed.
Logged
CEH, CCSA NG/AI, NNCSS, MCP, MCSA 2003
There are 10 kinds of people, those that understand binary, and those that don't.
LSOChris
Guest
Re: Your attacking O/S you favor?
«
Reply #13 on:
November 20, 2006, 04:35:57 PM »
i agree, i booted up a stable ISO and had no problems either
Logged
danielsen2009
Newbie
Offline
Posts: 3
Re: Your attacking O/S you favor?
«
Reply #14 on:
July 26, 2007, 12:30:10 AM »
Question.. Im at a school where novell is used to login to the file servers.. or used to gain access to school files. The security manager bet me I couldnt get on the network.. But I cracked the wep and I have access to internet and all (with firewall restrictions) I can get past those, but what i would like to do is get on the file servers. I can see then with an ip but my student id wont work... My friend a mac user actually managed to crash his mac.. or the network did. Our school has a reactive server. He attacked it so it attacked him. What would the best linux distro be to gain access to network files? or is there a way to emulate novell on a computer without installing it? I could partition my hdd to have a novell install but i dont want to do that... Help would be nice!
Logged
Pages: [
1
]
2
Go Up
Print
« previous
next »
Jump to:
Please select a destination:
-----------------------------
EH-Net
-----------------------------
=> Calendar Of Events
===> ChicagoCon 2007
===> ChicagoCon 2008s
===> ChicagoCon 2008f
===> ChicagoCon 2009s
=> Ethical Hacktivism
=> News Items and General Discussion About EH-Net
===> Greetings
=> Special Events
-----------------------------
Ethical Hacking Discussions and Related Certifications
-----------------------------
=> General Certification
===> Networking
===> OS
===> Security
=> Compliance, Regulations & Standards
=> Control Systems
=> Cyber Warfare
=> Forensics
===> CCE / MCCE - (Master) Certified Computer Examiner
===> CHFI - Computer Hacking Forensic Investigator
===> EnCE - EnCase® Certified Examiner
===> GCFA - GIAC Certified Forensics Analyst
=> Hardware
=> Incident Response
===> CSIH - Computer Security Incident Handler
===> GCIH - GIAC Certified Incident Handler
=> Malware
===> Advisories
=> Mobile
=> Network Pen Testing
===> CEH - Certified Ethical Hacker
===> CPTC - Certified Penetration Testing Consultant
===> CPTE - Certified Penetration Testing Engineer
===> CSTA - Certified Security Testing Associate
===> eCPPT - eLearnSecurity Certified Professional Penetration Tester
===> ECSA - EC-Council Certified Security Analyst
===> GPEN - GIAC Certified Penetration Tester
===> OSCP - Offensive Security Certified Professional
=> Physical Security
=> Programming
=> Social Engineering
=> Web Applications
=> Wireless
===> CWNP Certs
===> GAWN - GIAC Assessing Wireless Networks
===> OSWP - Offensive Security Wireless Professional
=> Other
-----------------------------
Columns
-----------------------------
=> Editor-In-Chief
=> Andress
=> Gates
=> Haddix
=> Hadnagy
=> Heffner
=> Hoffman
=> Linn
=> RichM
=> Murray
=> J. Peltier
=> Weidman
=> Wilson
-----------------------------
Features
-----------------------------
=> /root
=> Book Reviews
=> Opinions
=> Skillz
===> Examples
===> May 06 - Star Hacks, Episode V: The Empire Hacks Back
===> July 06 - Hack Bill!
===> Sept 06 - Netcat in the Hat
===> Nov 06 - Hitch-Hackers Guide to the Galaxy
===> Dec 06 - A Christmas (Hacking) Story
===> Feb 07 - Charlottes Web Site
===> April 07 - Microsoft Office Space
===> June 07 - Serenity Hack
===> Oct 07 - Worst. Ethical. Hacker. Challenge. Ever.
===> Dec 07 - Frosty the Snow Crash
===> March 2008 - It Happened One Friday
===> Oct 2008 - Scooby Doo and the Crypto Caper
===> Dec 08 - Santa Claus Is Hacking to Town
===> Feb 2009 - Brady Bunch Boondoggle
===> July 2009 - Prison Break
===> October 2009 - SSHliders
===> December 2009 - Miracle on Thirty-Hack Street
===> December 2010 - The Nightmare Before Charlie Browns Christmas
-----------------------------
Resources
-----------------------------
=> Career Central
===> Looking For Work
===> Looking To Hire
=> Links to cool sites.
=> Mass Media
=> News from the Outside World
=> Tools
=> Tutorials
===> Tutorial Requests
Loading...
Exclusive Deal
SANSFIRE 2013
June 15 - 22
5% Off
w/ Code
:
EHN_5
SANS Deals 4 EH-Netters
5% OFF
Any
SANS Course
in Any Format!
Coupon Code:
EHN_5
Including
SANS Rocky Mountain 2013
&
SANS Boston 2013
Polls
Compared to this year, 2013 will be:
Great!
Better.
About the same.
Little worse.
FUBAR!
Recent Forum Topics
News Items and General Discussion About EH-Net
: When your benjamin will be to your own car and truck clean up
(0) by
areluctes
Network Pen Testing
: Want a challenge? Want a GXPN practice exam?
(0) by
ajohnson
GCIH - GIAC Certified Incident Handler
: Passed my GCIH
(8) by
ajohnson
News Items and General Discussion About EH-Net
: Change is Coming to EH-Net!!
(29) by
ajohnson
GCIH - GIAC Certified Incident Handler
: GCIH Free Practice test attempt
(1) by
prats84
Greetings
: Hi from the UK
(4) by
MrTuxracer
EH-Net News Feeds
Latest Additions
Privacy Notice
for TDCC & All Properties
© 2013 The Ethical Hacker Network
Joomla!
is Free Software released under the GNU/GPL License.