Home
Calendar
Certifications
Columns
Features
Forum
Resources
Vitals
Latest Additions
Jan 2009 Free Giveaway Sponsor - Black Hat DC
Scooby Doo and the Crypto Caper - Answers and Winners
Daemon - A Contest Revealed
Hacking: The Art of Exploitation 2nd Edition
Nov 2008 Free Giveaway - Winners
Dec 2008 Free Giveaway Sponsor - SANS
Santa Claus is Hacking to Town
Plug-N-Play Network Hacking
Nov 2008 Free Giveaway Sponsor - CWNP
Daemon - A Contest Begins Now
It Happened One Friday - Answers and Winners
Daemon - A Contest
Scooby Doo and the Crypto Caper
MS Blue Hat Hackers Headline Chicago Security Con
The Pen Testing Perfect Storm Webcast Series with Skoudis, Wright, Johnson
EH-Net Login
Welcome Guest.
Username:
Password:
Remember me
Lost Password?
No account yet?
Register
Who's Online
We have 20 guests and 1 member online
EH-Net Donations
Enter Amount:
$
CAD
USD
GBP
AUD
JPY
EUR
Google Ads
EH-Net News Feeds
Latest Additions
Book Recommendations
You are here:
Home
Forum
Ethical Hacking Discussions and Related Certifications
Network Pen Testing
Your attacking O/S you favor?
Ethical Hacker Community Forums
January 09, 2009, 01:24:10 AM
Welcome,
Guest
. Please
login
or
register
.
Did you miss your
activation email?
1 Hour
1 Day
1 Week
1 Month
Forever
Login with username, password and session length
News
: ChicagoCon 2009 - May 4 - 9. Boot Camps & an Ethical Hacking Conf.
www.chicagocon.com
Home
Help
Calendar
Login
Register
Ethical Hacker Community Forums
>
Ethical Hacking Discussions and Related Certifications
>
Network Pen Testing
(Moderator:
don
) >
Your attacking O/S you favor?
Pages: [
1
]
2
Go Down
« previous
next »
Print
Author
Topic: Your attacking O/S you favor? (Read 5798 times)
0 Members and 1 Guest are viewing this topic.
p0et
Full Member
Offline
Posts: 100
Your attacking O/S you favor?
«
on:
November 16, 2006, 11:03:10 PM »
Just in the process of setting up a small home hacking lab with a friend of mine. He has 3 systems and I have 3 and we'll probably stick VMWare on 2 out of 3 of each set of systems. What is your preferred O/S to launch attacks from and store your tools on? What does your hacking lab consist of?
Thanks!
Logged
GCIH, Security+, Network+, A+, MCP, DCSE
ChrisG
EH-Net Columnist
Hero Member
Offline
Posts: 1049
Re: Your attacking O/S you favor?
«
Reply #1 on:
November 16, 2006, 11:31:34 PM »
at LSO we try to use Linux as the attack platform and try to force command line only interaction with the OS (ala SSHing into the lab)
this is usually good enough. you will find that some tools are only GUI so you need windows or Xwindows and alot of code lately will only compile on windows, in which case you need a windows box.
soooooo
to answer you question a little more fully i would have at least 2 attack platforms a linux box (your choice) and a windows box (2k)
Logged
...tests i took go here...
http://carnal0wnage.blogspot.com/
don
Editor-In-Chief
Administrator
Hero Member
Offline
Posts: 2442
Editor-In-Chief
Re: Your attacking O/S you favor?
«
Reply #2 on:
November 16, 2006, 11:34:31 PM »
Here are a few resources already in the forums:
[Article]-Virtual Lab with VMware
CEH Lab Setup
Lab Setup v1 for Study Group
After perusing the above links, let us know what you think. And, of course, keep sharing as you move through the process of setting up and using your lab.
Hope this helps,
Don
PS - Welcome to EH-Net.
Logged
CISSP, MCSE, CEH, Security+ SME
Negrita
Sr. Member
Offline
Posts: 289
Re: Your attacking O/S you favor?
«
Reply #3 on:
November 17, 2006, 03:59:14 PM »
Well don's already mentioned my article "Virtual Lab with VMware" (see the link in don's post).
My CEH lab consisted of 1 host running VMware. The guests included Windows XP Pro, Windows 2003 Server, Backtrack 1.0, FreeBSD 6.0 and finally a LiveCD VM (usually reserved for Knoppix-STD 1.0). Even though I've already got my CEH I've just recently added an OpenBSD 3.8 VM just to mess around with. I don't have enough RAM to run them all concurrently but I usually have at least 2 or 3 on at the same time so that I can check things out.
The Windows XP Pro machine has been fine tuned in to a mean hacking machine that I find I use just as often as I use Backtrack. It's fully patched and has the following installed on it; Cygwin, WinPcap, Nmap, Netcat, Packetyzer, Cain & Able, John the Ripper, Nessus, Tor (including Vidalia and Privoxy), Metasploit Framework, Security Forest Exploit Tree, Sid2user and User2sid.
I also installed some other stuff on it like VMware Tools (obviously), Acrobat Reader for PDF's, AVG and Zone Alarm for protection and Textpad. I much prefer Textpad over Notepad or Wordpad because it does syntax highlighting of HTML documents and has quite a lot of other features. I also installed 3 browsers; Internet Explorer, Opera and Firefox. Firefox is the default browser and has a few extensions including; FoxTor, User Agent Switcher, DOM Inspector and HTTP Live Headers. Firefox also has bookmarked links to "all the best hacking sites".
The Windows 2003 Server doesn't have any tools on it at all. It is however Active Directory DC and holds the negrita.local domain name zone.
The Windows 2003 Server and FreeBSD machines were usually the victims of my experiments while the XP machine and Backtrack usually did the attacking (though they were sometimes the victims of each other).
Logged
CEH, CCSA NG/AI, NNCSS, MCP, MCSA 2003
There are 10 kinds of people, those that understand binary, and those that don't.
p0et
Full Member
Offline
Posts: 100
Re: Your attacking O/S you favor?
«
Reply #4 on:
November 17, 2006, 05:54:02 PM »
Thanks for the links and info!
I'm not sure how many systems I can run in VMWare since I only have 1GB of RAM on my 3Ghz dual-core desktop. It's currently dual-booting XP Pro and Gentoo Linux. I'd love to get my Gentoo Linux on VMWare with KDE but it just doesn't seem possible. I think I will keep my notebook, dual booting Gentoo & XP Pro (no wireless for some reason on Gentoo though) and my Desktop will have the Host as Gentoo Linux and Guest as: WinXP MCE (for my movies, and basic web surfing), WinXP Pro and Win2K3 Server.
Logged
GCIH, Security+, Network+, A+, MCP, DCSE
Kev
Guest
Re: Your attacking O/S you favor?
«
Reply #5 on:
November 18, 2006, 02:36:49 PM »
I agree completely that you should use both Linux and Windows as your OS for pentesting. If I was forced to use just one and money was an issue, I would pick Linux. Linux comes in a lot of flavors and some are better for hacking than others, although if you are really an adept in Linux, you can make just about any distro work. I would recommend starting with Ubuntu and Backtrack.
Backtrack is good simply because you can jump right into using programs like Kismet without having to fool around with installing wlan-ng drivers,etc.., which can be a headache sometimes. That way you can get the feel of certain tools right from the start. The problem with Backtrack is its moduler installation and it can be a pain to add new things to and the entire feel of it is not nearly as smooth as more polished distros like Ubuntu or Fedora Core. So eventually you would want to take one of these and add all your tools as you learned more about how to recompile kernels,etc.. Fedora Core is great once you know enough Linux to tweek it to what you want. Once you have your Fedora the way you want it, cut off any more updates. Fedora is a beta testing ground for Red Hat and you don’t want to mess up your work with every download they send you. I will say that I like Fedora way more than Red Hat. Red Hat is way too conservative and slow to progress for my taste.
If you use windows as an attack platform, I would recommend using XP pro that is not patched up to service pack 2. Service pack 2 inhibits some scanner programs for example
«
Last Edit: November 18, 2006, 02:42:06 PM by Kev
»
Logged
Negrita
Sr. Member
Offline
Posts: 289
Re: Your attacking O/S you favor?
«
Reply #6 on:
November 19, 2006, 05:04:48 PM »
Quote from: Kev on November 18, 2006, 02:36:49 PM
The problem with Backtrack is its moduler installation and it can be a pain to add new things to and the entire feel of it is not nearly as smooth as more polished distros like Ubuntu or Fedora Core. So eventually you would want to take one of these and add all your tools as you learned more about how to recompile kernels,etc..
Don't you just wish that they'd bring out an up to date version of Knoppix-STD or that nubuntu was more polished? I do.
Quote from: Kev on November 18, 2006, 02:36:49 PM
If you use windows as an attack platform, I would recommend using XP pro that is not patched up to service pack 2. Service pack 2 inhibits some scanner programs for example
This issue has been resolved by Fyodor a long long time ago.
See here
.
Logged
CEH, CCSA NG/AI, NNCSS, MCP, MCSA 2003
There are 10 kinds of people, those that understand binary, and those that don't.
Kev
Guest
Re: Your attacking O/S you favor?
«
Reply #7 on:
November 19, 2006, 05:42:19 PM »
Yes that would be great if they updated and came out with a more polished Distro. My understanding is the nmap service pack 2 patch was a 90% fix but was not a complete work around. Perhaps its been updated again. I run nmap from Linux so I cant say for sure if nmap works as well on windows xp service pack 2 at this time so I need to check it out.
I know super scan had an issue with it also, but again I hope they fixed that also. I don’t really like the raw sockets restrictions that were implemented by service pack 2 and I find its so much easier to code a tool for Linux.
Logged
p0et
Full Member
Offline
Posts: 100
Re: Your attacking O/S you favor?
«
Reply #8 on:
November 19, 2006, 06:26:41 PM »
I much prefer to use nmap, nessus and metasploit from a Linux shell anyway. I'm just downloading Backtrack and going to attempt to install it in VMWare. Has anyone else done this successfully? Anything I need to know?
Thanks!
Logged
GCIH, Security+, Network+, A+, MCP, DCSE
don
Editor-In-Chief
Administrator
Hero Member
Offline
Posts: 2442
Editor-In-Chief
Re: Your attacking O/S you favor?
«
Reply #9 on:
November 19, 2006, 10:20:08 PM »
VMware has an appliance already setup for BackTrack and many other Linux OSs. There's a really good hacking one based on SUSE. Just in case you're not familiar, appliances are virtual machines created by others that are already pre-packaged. Download and open in VMware. Saves loads of time and hassle installing from scratch.
http://www.vmware.com/vmtn/appliances/directory/
Don
Logged
CISSP, MCSE, CEH, Security+ SME
ChrisG
EH-Net Columnist
Hero Member
Offline
Posts: 1049
Re: Your attacking O/S you favor?
«
Reply #10 on:
November 20, 2006, 10:34:08 AM »
you can just run it from the ISO if you dont need the latetst exploit of the day on it...
Logged
...tests i took go here...
http://carnal0wnage.blogspot.com/
p0et
Full Member
Offline
Posts: 100
Re: Your attacking O/S you favor?
«
Reply #11 on:
November 20, 2006, 10:41:26 AM »
Thanks for the tip. I have downloaded BackTrack 2.0 Beta and (installed it?) on VMWare from the .iso. I first logged in, did "xorg.conf" then "startx" to hop into KDE. From there, it seems i'm stuck with a 640x480 60Htz display. It also crashed on me when trying to open a term. Not a good sign...
Logged
GCIH, Security+, Network+, A+, MCP, DCSE
Negrita
Sr. Member
Offline
Posts: 289
Re: Your attacking O/S you favor?
«
Reply #12 on:
November 20, 2006, 02:34:05 PM »
Perhaps you should try a stable release like Backtrack 1.0. Beta versions have a tendancy to be unstable.
Don's right about the Virtual Appliances. My Backtrack is a Virtual Appliance downloaded from the link in don's post. (BTW I have a full iso version on CD too). besides configuring the eth0 nic to fit my lab setting it was ready to go with no other changes needed.
Logged
CEH, CCSA NG/AI, NNCSS, MCP, MCSA 2003
There are 10 kinds of people, those that understand binary, and those that don't.
ChrisG
EH-Net Columnist
Hero Member
Offline
Posts: 1049
Re: Your attacking O/S you favor?
«
Reply #13 on:
November 20, 2006, 04:35:57 PM »
i agree, i booted up a stable ISO and had no problems either
Logged
...tests i took go here...
http://carnal0wnage.blogspot.com/
danielsen2009
Newbie
Offline
Posts: 3
Re: Your attacking O/S you favor?
«
Reply #14 on:
July 26, 2007, 12:30:10 AM »
Question.. Im at a school where novell is used to login to the file servers.. or used to gain access to school files. The security manager bet me I couldnt get on the network.. But I cracked the wep and I have access to internet and all (with firewall restrictions) I can get past those, but what i would like to do is get on the file servers. I can see then with an ip but my student id wont work... My friend a mac user actually managed to crash his mac.. or the network did. Our school has a reactive server. He attacked it so it attacked him. What would the best linux distro be to gain access to network files? or is there a way to emulate novell on a computer without installing it? I could partition my hdd to have a novell install but i dont want to do that... Help would be nice!
Logged
Pages: [
1
]
2
Go Up
Print
« previous
next »
Jump to:
Please select a destination:
-----------------------------
EH-Net
-----------------------------
=> Special Events
=> Calendar Of Events
===> ChicagoCon 2007
===> ChicagoCon 2008s
===> ChicagoCon 2008f
===> ChicagoCon 2009
=> News Items and General Discussion About EH-Net
-----------------------------
Ethical Hacking Discussions and Related Certifications
-----------------------------
=> Certification
===> The Charter Study Group - Pen Test
=> Network Pen Testing
===> CEH - Certified Ethical Hacker
=====> CEH - Official Course Modules v4
=====> CEH - Official Course Modules v5
=====> CEH - Official Course Modules v6
===> CPTS - Certified Pen Testing Specialist
=====> CPTS - Official Course Modules v5
===> CPTE - Certified Pen Testing Expert
=====> CPTE - Official Course Modules v1
===> ECSA - EC-Council Certified Security Analyst
=====> ECSA - Official Course Modules v1.2
=====> ECSA / LPT - Official Course Modules v3
===> OSCP - Offensive Security Certified Professional
===> GPEN - GIAC Certified Penetration Tester
=> Forensics
===> CCE / MCCE - (Master) Certified Computer Examiner
===> CHFI - Computer Hacking Forensic Investigator
=====> CHFI - Official Course Modules v2
===> EnCE - EnCase® Certified Examiner
=> Incident Response
===> CSIH - Computer Security Incident Handler
===> GCIH - GIAC Certified Incident Handler
=> Hardware
=> Malware
=> Physical Security
=> Programming
=> Social Engineering
=> Web Applications
=> Wireless
===> CWNP Certs
===> GAWN - GIAC Assessing Wireless Networks
===> OSWP - Offensive Security Wireless Professional
=> Other
-----------------------------
Columns
-----------------------------
=> Editor-In-Chief
=> Gates
=> Heffner
=> Hoffman
=> RichM
=> Murray
=> J. Peltier
=> Wilson
-----------------------------
Features
-----------------------------
=> /root
=> Book Reviews
=> Opinions
=> Skillz
===> Examples
===> May 06 - Star Hacks, Episode V: The Empire Hacks Back
===> July 06 - Hack Bill!
===> Sept 06 - Netcat in the Hat
===> Nov 06 - Hitch-Hackers Guide to the Galaxy
===> Dec 06 - A Christmas (Hacking) Story
===> Feb 07 - Charlottes Web Site
===> April 07 - Microsoft Office Space
===> June 07 - Serenity Hack
===> Oct 07 - Worst. Ethical. Hacker. Challenge. Ever.
===> Dec 07 - Frosty the Snow Crash
===> March 2008 - It Happened One Friday
===> Oct 2008 - Scooby Doo and the Crypto Caper
===> Dec 08 - Santa Claus Is Hacking to Town
-----------------------------
Resources
-----------------------------
=> Career Central
===> Looking For Work
===> Looking To Hire
=> Links to cool sites.
=> Mass Media
=> News from the Outside World
=> Tools
=> Tutorials
Loading...
Sponsors
Polls
How many security events including conferences and training do you attend a year:
1 - 2
3 - 4
5 - 6
7+
None - But want to
None - Choose not to
Support EH-Net
Support EH-Net by
Buying all of your
Amazon items using
the search bar above.
Try CBT Nuggets Free!
Recent Forum Topics
Other
: Windows 7 Beta Available Tomorrow
(1) by
jason
Malware
: uninstall trend mciro officescan clients
(2) by
Hack_80
Other
: openSUSE 11.1 Released
(0) by
don
Other
: Insanity?
(5) by
jason
Other
: Fedora Hits the 10 Spot
(0) by
don
Other
: FreeBSD 7.1 Released
(0) by
don
OSCP - Offensive Security Certified Professional
: Next Up OSCP101 v2.0
(39) by
don
OSCP - Offensive Security Certified Professional
: Offensive Security Releases Sample Pen Testing Report
(0) by
don
Book Reviews
: Need a book suggestion!
(4) by
don
Web Applications
: Determine URL from IP address
(2) by
BillV
Tools
: Core Impact Essentials
(0) by
sgt_mjc
News from the Outside World
: Google branching out a little further...
(3) by
jason
Physical Security
: Magnetic stripe card spoofing
(5) by
jason
Gates
: Oracle version module for metasploit
(3) by
RoleReversal
Malware
: THe website is Evil but what to do??
(3) by
NickFnord
CEH - Certified Ethical Hacker
: Helow... help some tutorials...
(7) by
K3lV1n
CEH - Certified Ethical Hacker
: CEH is a scam
(20) by
K3lV1n
Mass Media
: Daniel Suarez Interview
(9) by
blackazarro
Malware
: Security Forecast for 2009
(5) by
jason
News from the Outside World
: Is this acceptable?
(9) by
jason
Wireless
: Wireless Pen Testing Cards
(6) by
jason
Oct 2008 - Scooby Doo and the Crypto Caper
: Skillz October 08 Winning Entry - Technical
(1) by
jason
Book Reviews
: [Article]-Mitnick - The Art Of Intrusion: Ch 1 - Hacking The Casinos For A Million Bu...
(5) by
jason
Links to cool sites.
: Free Computer Engineering Classes From Stanford
(3) by
jason
Oct 2008 - Scooby Doo and the Crypto Caper
: Skillz October 08 Winning Entry - Creative
(1) by
jason
Oct 2008 - Scooby Doo and the Crypto Caper
: [Article]-Scooby Doo and the Crypto Caper - Answers and Winners
(2) by
jason
News Items and General Discussion About EH-Net
: [Article]-Jan 2009 Free Giveaway Sponsor - Black Hat DC
(1) by
jason
News Items and General Discussion About EH-Net
: EH-Net Milestone - 2 Articles Cross 1 Million Page Views
(3) by
BillV
Other
: What kind of lab, machines you have for your security testing?
(12) by
charlottebandit
Malware
: Network Virus Problem
(9) by
RoleReversal
Wireless
: WUSB600N good usb ?
(2) by
nap191
Other
: FBI code cracking challenge
(3) by
jimbob
Calendar Of Events
: RSA 2009
(0) by
don
Forensics
: Network Forensic tools/practice/techniques
(2) by
jimbob
Malware
: Autoplay when i try to open the drive.
(4) by
jimbob
CEH - Certified Ethical Hacker
: Any Practice Environment for learning tool for CEH?
(15) by
don
Wireless
: a petri-dish bridge
(2) by
don
CEH - Certified Ethical Hacker
: TFTP Tranfer time out
(5) by
jason
Tools
: tool to trace users
(8) by
pseud0
Malware
: Malware Challenge 2008 Analysis
(0) by
blackazarro
Vote For EH-Net
progenic.com
binarica.com
technorati fave
Privacy Notice
for TDCC & All Properties
© 2009 The Ethical Hacker Network
Joomla!
is Free Software released under the GNU/GPL License.