.

"Secrets of America's Top Pentester's" by Ed Skoudis

<<

Jhaddix

User avatar

Sr. Member
Sr. Member

Posts: 317

Joined: Wed Oct 29, 2008 10:25 pm

Post Fri Feb 06, 2009 10:12 am

"Secrets of America's Top Pentester's" by Ed Skoudis

So you all know, or i hope you do, that Core Technologies sponsors webcasts featuring infosec icons like Ed Skoudis. I got a chance to attend a semi-recently drafted one called Secrets of America's Top Pentester's at SANS Las Vegas (also given at CDI).

The purpose? Give back to the pentesting community, help it grow, and to point out that pentesting isnt about 0-days at all.

This ppt goes through some advanced tips on:

  1. Social networking and using it to make password lists
  2. Pivoting via netcat and other advanced netcat foo
  3. A comparison of john and rainbow tables attacks, how they work, and why we should do both
  4. Pass the hash attacks

Check it out at the InGuardians site:

http://www.inguardians.com/research/doc ... ecrets.pdf
<<

KrisTeason

User avatar

Hero Member
Hero Member

Posts: 515

Joined: Sat Sep 08, 2007 7:48 pm

Location: /dev/null

Post Fri Feb 06, 2009 11:37 am

Re: "Secrets of America's Top Pentester's" by Ed Skoudis

Thanks for the pdf, I've been hearing  a lot on pass the hash attacks, saw a video from John Strand on it, looked interesting, but I'm sure the pdf will further my knowledge on it (as well as the other info it has)...
eCPPT (Silver/Gold), eWPT, GSEC, GISP, GCIH, OSCP, OSWP
<<

Jhaddix

User avatar

Sr. Member
Sr. Member

Posts: 317

Joined: Wed Oct 29, 2008 10:25 pm

Post Fri Feb 06, 2009 11:44 am

Re: "Secrets of America's Top Pentester's" by Ed Skoudis

Yep!

John's  work ca be seen in hi-def at

http://www.vimeo.com/user595761

Return to Network Pen Testing

Who is online

Users browsing this forum: No registered users and 2 guests

.
Powered by phpBB® Forum Software © phpBB Group.
Designed by ST Software