Home
Calendar
Certifications
Columns
Features
Forum
Resources
Vitals
Latest Additions
April 2013 Free Giveaway Sponsor - eLearnSecurity
Human Intelligence to Navigate the Security Data Deluge
February 2013 Free Giveaway Winner of SANS CyberCon Training
Interview: Bugcrowd Founders on Herding Ninjas for Crowdsourced Bug Bounties
Network Forensics: The Tree in the Forest
March 2013 Free Giveaway Sponsor - Mile2
Book Review: Violent Python
February 2013 Free Giveaway Sponsor - SANS
Holiday 2012 Free Giveaway Winner of Metasploit Pro by Rapid7
Course Review: SANS FOR408 Computer Forensic Investigations – Windows In-Depth
The Security Consulting Sugar High
Tutorial: Fun with SMB on the Command Line
Interview: Ilia Kolochenko, CEO of High-Tech Bridge
October 2012 Free Giveaway Winner of LearningGate Training
The Broken: Assessing Corporate Security in 2012 to Make a Better 2013
EH-Net Login
Welcome Guest.
Username:
Password:
Remember me
Lost Password?
No account yet?
Register
Who's Online
We have 53 guests and 1 member online
You are here:
Home
Resources
Tutorials
Backtrack Quiz
EH-Net
May 19, 2013, 08:21:03 PM
Welcome,
Guest
. Please
login
or
register
.
Did you miss your
activation email?
1 Hour
1 Day
1 Week
1 Month
Forever
Login with username, password and session length
News
: Go back to The Ethical Hacker Network Online Magazine
Home Page
Home
Help
Calendar
Login
Register
EH-Net
>
Resources
>
Tutorials
(Moderator:
don
) >
Backtrack Quiz
Pages: [
1
]
Go Down
« previous
next »
Print
Author
Topic: Backtrack Quiz (Read 5357 times)
0 Members and 1 Guest are viewing this topic.
Cyber.spirit
Sr. Member
Offline
Posts: 351
The World is sick, Save your mind...
Backtrack Quiz
«
on:
May 18, 2012, 06:45:00 AM »
Hi guys.
i have 3 different questions about backtrack and i hope specialists here can help me, first of all i want to say thank you so much to those people who helped me in previous topic.
1- As you know backtrack releases the r2 version of backtrack 5 and i wanna download it but i dont know what to choose between the KDE version or gnome version i wanna use it for wireless pentest and for metasploit.
2- Backtrack has a program named wine which can run windows programs in linux firstly i wanna know can we use a program like this in ubuntu? second if that wine can run windows programs, properly it can run windows malwares too, so is any AV needed for that?
3- i know linux based OS like Backtrack or blackbuntu are amazing for pentest. but as you know, there are many good pentest tools on the internet which is designed for windows. i wanna know your opinion about creating a windows based OS for Pentest u think is it a good project for research?
ok i know my quiz includes many different issues. but i really need to know them specially question 1 and 3.
Thank you sooooooooooo much
Logged
ICS Academy Network Security Certified
ajohnson
Recruiters
Hero Member
Offline
Posts: 1057
aka dynamik
Re: Backtrack Quiz
«
Reply #1 on:
May 18, 2012, 07:30:15 AM »
1. Download both and see which you prefer. The type of GUI isn't going to affect what you're trying to do.
2a. WINE is not specific to BackTrack and is compatible with other Linux distributions, such as Ubuntu.
2b. It will depend on the program. WINE can do semi-recent versions of Photoshop, games, etc., so it's functionality is fairly robust. There's really no way to know unless you try. I'm guessing you'd have a lot of problems with things like malware that are dependent upon the actual OS, not just Windows libraries.
3. What's the point of a distribution if you can't (legally) distribute it? Linux has risen to popularity because of their licensing model. If you want to do something like that, it would probably be more realistic to write an application that manages (installs, updates, etc.) tools in a Windows environment. I recall seeing something like this, maybe from FoundStone or SensePost, but I can't think of the name at the moment.
Logged
WIP: GCFA |
www.infosiege.net
| @infosiege
The day you stop learning is the day you start becoming obsolete.
Cyber.spirit
Sr. Member
Offline
Posts: 351
The World is sick, Save your mind...
Re: Backtrack Quiz
«
Reply #2 on:
May 18, 2012, 09:08:25 AM »
Hi ajohnson.
firstly i cant download the both, that why i asked because of my internet bandwidth and i have a little GUI problem with Backtrack 5 R1 KDE (I can run it properly but some of objects are not in the right place)
and besides i can run Ubuntu 11:04 pretty well (As you know it uses Gnome too)
2- if u think its better to test wine ok, i'll test it in my virtual lab then tell the result in this topic my opinion is it cant run windows malwares. i have no problem with malwares, im writing a book about client security malwares and so on i just interested.
3- i dont want to distribute it or do any illegal work. i just want to research about a windows OS which is designed for pentest, think about a live cd of windows with completely customized platform and when you boot with it, you can use many of free tools which is developed for pentest and so on, just tell me your Opinion is it a good subject for research or not?
thank you for your help
«
Last Edit: May 18, 2012, 09:14:13 AM by cyber.spirit
»
Logged
ICS Academy Network Security Certified
Cyber.spirit
Sr. Member
Offline
Posts: 351
The World is sick, Save your mind...
Re: Backtrack Quiz
«
Reply #3 on:
May 20, 2012, 06:26:22 AM »
Any Ideas? i really need to know about the third one please
Logged
ICS Academy Network Security Certified
ajohnson
Recruiters
Hero Member
Offline
Posts: 1057
aka dynamik
Re: Backtrack Quiz
«
Reply #4 on:
May 20, 2012, 08:28:09 AM »
1. Then use Gnome if you think you'll have problems with KDE. Unless you have a strong preference for the interface and/or some of the ancillary apps in a particular desktop environment, it really doesn't matter.
2. I don't think it's better to use WINE for malware analysis. I don't have much experience in this area, but it seems like you'd have a lot of problems.
3. Honestly, I don't see much value in this. Others might though; that's just me.
Logged
WIP: GCFA |
www.infosiege.net
| @infosiege
The day you stop learning is the day you start becoming obsolete.
Cyber.spirit
Sr. Member
Offline
Posts: 351
The World is sick, Save your mind...
Re: Backtrack Quiz
«
Reply #5 on:
May 20, 2012, 08:49:58 AM »
Ok ajohnson
No as i siad i have no problem with malwares and so on. i just interested Bcoz as u know linux is a secure OS about malware
then if that wine can run malwares i think it will be a security hole
Thats all
i know many of experts dosent like to use windows as Pentest OS but i wanna know why? whats the problem with that??
Logged
ICS Academy Network Security Certified
chrisj
Hero Member
Offline
Posts: 1163
Re: Backtrack Quiz
«
Reply #6 on:
May 20, 2012, 09:49:18 AM »
First off, the Linux is a secure OS, is a flawed agrument. The same one that Apple used to make. More so about being a non-secure OS when it comes to Back Track.
When someone asked about running backtrack as the OS at a con, here is the response.
“BT is not meant to be secure, its a "security" distro NOT a "secure" distro” - Pure_Hate
2012-03-22 11:45 #isdpodcast on freenode
Wine emulates the environment for windows to run, it is no more a security hole than say MAME.
All Backtrack is, is a distro collecting a majority of Security tools needed for Pentesting into one place. You could do everything backtrack does with any other distro on the internet, as long as you were willing to spend the time making the tools work.
Logged
OSWP, Sec+
3xban
Hero Member
Offline
Posts: 605
Re: Backtrack Quiz
«
Reply #7 on:
May 22, 2012, 09:19:24 AM »
As far as a "Windows" Security OS, well a good pen tester will have the right tools for the right job. A potential client may not allow you to run a linux machine on their network so you will need to have the ability to switch between OSes. Some jobs may require specific tools available to Mac OS. You never know until you decide what the project scope will be and what you will need to do the testing. Most of the major discovery apps are available for all platforms (nmap, wireshark, burp etc...). Backtrack is a great distro but not always meant to be your only tool available. Its main advantage is also a disadvantage. It provides a crap load of tools for various types of tasks. A beginner could get lost in the selections of tools. It is a great way to test tools to see which ones will fit, at that point you can build a base linux/windows system and add the tools when you need them (but not at the job).
A good example, a Web Application tester may not use the same tools as someone specializing in Wireless Network testing and vice versa.
Logged
Certs: GCWN
(@)Dewser
Cyber.spirit
Sr. Member
Offline
Posts: 351
The World is sick, Save your mind...
Re: Backtrack Quiz
«
Reply #8 on:
May 22, 2012, 01:18:47 PM »
Yes 3xban you are right. but for example i never used windows platform for Wireless Pentest but i think we can find many good tools for windows.
Logged
ICS Academy Network Security Certified
3xban
Hero Member
Offline
Posts: 605
Re: Backtrack Quiz
«
Reply #9 on:
May 23, 2012, 09:17:32 AM »
A good resource to check out is sectools.org, they have a pretty extensive list of tools along with platforms supported. You could essentially get a Windows system and then load it up with the prefered tools.
Logged
Certs: GCWN
(@)Dewser
Cyber.spirit
Sr. Member
Offline
Posts: 351
The World is sick, Save your mind...
Re: Backtrack Quiz
«
Reply #10 on:
May 23, 2012, 03:00:40 PM »
Ok 3xban and thank but tell me honestly Do you think its a good subject for research? To create a windows Based OS onlyfor pentest?
Logged
ICS Academy Network Security Certified
Pages: [
1
]
Go Up
Print
« previous
next »
Jump to:
Please select a destination:
-----------------------------
EH-Net
-----------------------------
=> Calendar Of Events
===> ChicagoCon 2007
===> ChicagoCon 2008s
===> ChicagoCon 2008f
===> ChicagoCon 2009s
=> Ethical Hacktivism
=> News Items and General Discussion About EH-Net
===> Greetings
=> Special Events
-----------------------------
Ethical Hacking Discussions and Related Certifications
-----------------------------
=> General Certification
===> Networking
===> OS
===> Security
=> Compliance, Regulations & Standards
=> Control Systems
=> Cyber Warfare
=> Forensics
===> CCE / MCCE - (Master) Certified Computer Examiner
===> CHFI - Computer Hacking Forensic Investigator
===> EnCE - EnCase® Certified Examiner
===> GCFA - GIAC Certified Forensics Analyst
=> Hardware
=> Incident Response
===> CSIH - Computer Security Incident Handler
===> GCIH - GIAC Certified Incident Handler
=> Malware
===> Advisories
=> Mobile
=> Network Pen Testing
===> CEH - Certified Ethical Hacker
===> CPTC - Certified Penetration Testing Consultant
===> CPTE - Certified Penetration Testing Engineer
===> CSTA - Certified Security Testing Associate
===> eCPPT - eLearnSecurity Certified Professional Penetration Tester
===> ECSA - EC-Council Certified Security Analyst
===> GPEN - GIAC Certified Penetration Tester
===> OSCP - Offensive Security Certified Professional
=> Physical Security
=> Programming
=> Social Engineering
=> Web Applications
=> Wireless
===> CWNP Certs
===> GAWN - GIAC Assessing Wireless Networks
===> OSWP - Offensive Security Wireless Professional
=> Other
-----------------------------
Columns
-----------------------------
=> Editor-In-Chief
=> Andress
=> Gates
=> Haddix
=> Hadnagy
=> Heffner
=> Hoffman
=> Linn
=> RichM
=> Murray
=> J. Peltier
=> Weidman
=> Wilson
-----------------------------
Features
-----------------------------
=> /root
=> Book Reviews
=> Opinions
=> Skillz
===> Examples
===> May 06 - Star Hacks, Episode V: The Empire Hacks Back
===> July 06 - Hack Bill!
===> Sept 06 - Netcat in the Hat
===> Nov 06 - Hitch-Hackers Guide to the Galaxy
===> Dec 06 - A Christmas (Hacking) Story
===> Feb 07 - Charlottes Web Site
===> April 07 - Microsoft Office Space
===> June 07 - Serenity Hack
===> Oct 07 - Worst. Ethical. Hacker. Challenge. Ever.
===> Dec 07 - Frosty the Snow Crash
===> March 2008 - It Happened One Friday
===> Oct 2008 - Scooby Doo and the Crypto Caper
===> Dec 08 - Santa Claus Is Hacking to Town
===> Feb 2009 - Brady Bunch Boondoggle
===> July 2009 - Prison Break
===> October 2009 - SSHliders
===> December 2009 - Miracle on Thirty-Hack Street
===> December 2010 - The Nightmare Before Charlie Browns Christmas
-----------------------------
Resources
-----------------------------
=> Career Central
===> Looking For Work
===> Looking To Hire
=> Links to cool sites.
=> Mass Media
=> News from the Outside World
=> Tools
=> Tutorials
===> Tutorial Requests
Loading...
Exclusive Deal
SANSFIRE 2013
June 15 - 22
5% Off
w/ Code
:
EHN_5
SANS Deals 4 EH-Netters
5% OFF
Any
SANS Course
in Any Format!
Coupon Code:
EHN_5
Including
SANS Rocky Mountain 2013
&
SANS Boston 2013
Polls
Compared to this year, 2013 will be:
Great!
Better.
About the same.
Little worse.
FUBAR!
Recent Forum Topics
OSCP - Offensive Security Certified Professional
: OSCP exam scheduled
(6) by
gbhat
Incident Response
: LinkedIn Forensics
(0) by
AFENTIS_Forensics
General Certification
: Red Team/Blue Team
(1) by
ajohnson
OSCP - Offensive Security Certified Professional
: Class Scheduled 6/8 - Linux n00b
(6) by
Grendel
Career Central
: Starter cert?
(3) by
Grendel
Network Pen Testing
: Beginner Ethical Hacker
(1) by
m0wgli
General Certification
: CPT Practical Submission
(0) by
z28power4u
Web Applications
: Nessus and Nikto
(4) by
Seen
Tutorials
: Need guidance
(7) by
impelse
Malware
: EICAR?
(2) by
SephStorm
Network Pen Testing
: Cracking salted MD5 hash
(4) by
n37sh@rk
CEH - Certified Ethical Hacker
: Passed my C|EH
(3) by
n37sh@rk
Mass Media
: EC-council hacked, irony at his best?
(0) by
j0rDy
Web Applications
: SQL Injection into an INSERT statement.
(6) by
eyenit0
Network Pen Testing
: Solution for sipXtapi INVITE Message CSeq Field Header Remote Overflow
(1) by
m0wgli
Web Applications
: dns
(2) by
H1t M0nk3y
Other
: BSides Boston
(0) by
3xban
Career Central
: InfoSec in Central, FL
(2) by
tturner
Web Applications
: Web vulnerability scanner
(4) by
H1t M0nk3y
EH-Net News Feeds
Latest Additions
Privacy Notice
for TDCC & All Properties
Free Business and Tech Magazines and eBooks
© 2013 The Ethical Hacker Network
Joomla!
is Free Software released under the GNU/GPL License.