<?xml version="1.0" encoding="utf-8"?>
<feed xmlns="http://www.w3.org/2005/Atom">
	<id>tag:old.nabble.com,2006:forum-402</id>
	<title>Nabble - Penetration Testing</title>
	<updated>2009-12-04T10:48:18Z</updated>
	<link rel="self" type="application/atom+xml" href="http://old.nabble.com/Penetration-Testing-f402.xml" />
	<link rel="alternate" type="text/html" href="http://old.nabble.com/Penetration-Testing-f402.html" />
	<subtitle type="html">While this list is intended for 'professionals', participants frequenly disclose techniques and strategies that would be useful to anyone with a practical interest in security and network auditing. - comments provided by seclists.org</subtitle>
	
<entry>
	<id>tag:old.nabble.com,2006:post-26649629</id>
	<title>RE: Different ways to portscan IPS</title>
	<published>2009-12-04T10:48:18Z</published>
	<updated>2009-12-04T10:48:18Z</updated>
	<author>
		<name>Ward, Jon</name>
	</author>
	<content type="html">From a microsoft OS command line, you could try something like this:
&lt;br&gt;&amp;nbsp;FOR /L %i IN (1,1,254) DO nc.exe 192.168.1.%i &amp;gt;&amp;gt; result.txt
&lt;br&gt;&lt;br&gt;If you need another octet, you can nest for loops something like:
&lt;br&gt;&amp;nbsp;FOR /L %n IN (1,1,254) DO FOR /L %i IN (1,1,254) DO nc.exe
&lt;br&gt;192.168.%n.%i &amp;gt;&amp;gt; result.txt
&lt;br&gt;&lt;br&gt;Check the help file (FOR /?) for details.
&lt;br&gt;&lt;br&gt;(There is also a &amp;quot;for&amp;quot; command on *nix systems with different syntax.
&lt;br&gt;Check the man pages.)
&lt;br&gt;&lt;br&gt;Jon Ward, CEPT, CISA
&lt;br&gt;Vulnerability Testing Technical Lead
&lt;br&gt;Syntel, Inc.
&lt;br&gt;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26649629&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;Jon_Ward@...&lt;/a&gt;
&lt;br&gt;&lt;br&gt;&amp;nbsp;
&lt;br&gt;&lt;br&gt;&lt;br&gt;-----Original Message-----
&lt;br&gt;From: &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26649629&amp;i=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;listbounce@...&lt;/a&gt; [mailto:&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26649629&amp;i=2&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;listbounce@...&lt;/a&gt;]
&lt;br&gt;On Behalf Of AK
&lt;br&gt;Sent: Tuesday, December 01, 2009 1:38 PM
&lt;br&gt;To: Yiannis Koukouras
&lt;br&gt;Cc: Vimal(tm); &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26649629&amp;i=3&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;pen-test@...&lt;/a&gt;
&lt;br&gt;Subject: Re: Different ways to portscan IPS
&lt;br&gt;&lt;br&gt;Can you please paste the code?
&lt;br&gt;Cheers!
&lt;br&gt;&lt;br&gt;Yiannis Koukouras wrote:
&lt;div class='shrinkable-quote'&gt;&lt;br&gt;&amp;gt; Hi,
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; Scripting netcat to do a connect only scan worked for my team.
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; You can use time delays in your script as well ;)
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; Ioannis (Yiannis) Koukouras
&lt;br&gt;&amp;gt; CISSP, CISA, CISM
&lt;br&gt;&amp;gt; MSc in Computer Systems Security
&lt;br&gt;&amp;gt; BEng in Electronic Engineering
&lt;br&gt;&amp;gt; &lt;a href=&quot;http://www.linkedin.com/in/ikoukouras&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.linkedin.com/in/ikoukouras&lt;/a&gt;&lt;br&gt;&amp;gt; ---
&lt;br&gt;&amp;gt; The information contained in this communication is intended solely for
&lt;/div&gt;&lt;div class='shrinkable-quote'&gt;&lt;br&gt;&amp;gt; the &amp;nbsp;use &amp;nbsp;of the individual or entity to whom it is addressed and 
&lt;br&gt;&amp;gt; others authorized to receive it. &amp;nbsp;It may &amp;nbsp;contain confidential or 
&lt;br&gt;&amp;gt; legally privileged information. &amp;nbsp;If &amp;nbsp;you &amp;nbsp;are &amp;nbsp;not the intended 
&lt;br&gt;&amp;gt; recipient you are hereby notified that &amp;nbsp;any &amp;nbsp;disclosure, &amp;nbsp;copying, 
&lt;br&gt;&amp;gt; distribution &amp;nbsp;or &amp;nbsp;taking any action in reliance on the contents of 
&lt;br&gt;&amp;gt; this &amp;nbsp;information &amp;nbsp;is &amp;nbsp;strictly &amp;nbsp;prohibited &amp;nbsp;and &amp;nbsp;may be unlawful.
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; If you have received this communication in error, please notify the 
&lt;br&gt;&amp;gt; sender immediately &amp;nbsp;by &amp;nbsp;responding &amp;nbsp;to this email and then delete &amp;nbsp;it 
&lt;br&gt;&amp;gt; from your system.
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; On Fri, Nov 20, 2009 at 1:02 PM, Vimal(tm) &amp;lt;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26649629&amp;i=4&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;avvimalkumar@...&lt;/a&gt;&amp;gt;
&lt;/div&gt;wrote:
&lt;br&gt;&amp;gt; &amp;nbsp; 
&lt;br&gt;&amp;gt;&amp;gt; What are the different ways of port scanning the target when an IPS
&lt;br&gt;in placed.
&lt;div class='shrinkable-quote'&gt;&lt;br&gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; Some of the methods I used are:
&lt;br&gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; 1. Delay the scan prob (nmap --scan-delay)
&lt;br&gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; 2. Integrating the scanner with TOR
&lt;br&gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; Regards
&lt;br&gt;&amp;gt;&amp;gt; Vimal
&lt;br&gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; web &amp;nbsp; : &lt;a href=&quot;http://www.maestro-sec.com&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.maestro-sec.com&lt;/a&gt;&lt;br&gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; ---------------------------------------------------------------------
&lt;br&gt;&amp;gt;&amp;gt; --- This list is sponsored by: Information Assurance Certification 
&lt;br&gt;&amp;gt;&amp;gt; Review Board
&lt;br&gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; Prove to peers and potential employers without a doubt that you can
&lt;/div&gt;actually do a proper penetration test. IACRB CPT and CEPT certs require
&lt;br&gt;a full practical examination in order to become certified.
&lt;div class='shrinkable-quote'&gt;&lt;br&gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &lt;a href=&quot;http://www.iacertification.org&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.iacertification.org&lt;/a&gt;&lt;br&gt;&amp;gt;&amp;gt; ---------------------------------------------------------------------
&lt;br&gt;&amp;gt;&amp;gt; ---
&lt;br&gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;nbsp; &amp;nbsp; 
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; ----------------------------------------------------------------------
&lt;br&gt;&amp;gt; -- This list is sponsored by: Information Assurance Certification 
&lt;br&gt;&amp;gt; Review Board
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; Prove to peers and potential employers without a doubt that you can
&lt;/div&gt;actually do a proper penetration test. IACRB CPT and CEPT certs require
&lt;br&gt;a full practical examination in order to become certified. 
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; &lt;a href=&quot;http://www.iacertification.org&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.iacertification.org&lt;/a&gt;&lt;br&gt;&amp;gt; ----------------------------------------------------------------------
&lt;br&gt;&amp;gt; --
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; &amp;nbsp; 
&lt;br&gt;&lt;br&gt;&lt;br&gt;------------------------------------------------------------------------
&lt;br&gt;This list is sponsored by: Information Assurance Certification Review
&lt;br&gt;Board
&lt;br&gt;&lt;br&gt;Prove to peers and potential employers without a doubt that you can
&lt;br&gt;actually do a proper penetration test. IACRB CPT and CEPT certs require
&lt;br&gt;a full practical examination in order to become certified. 
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://www.iacertification.org&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.iacertification.org&lt;/a&gt;&lt;br&gt;------------------------------------------------------------------------
&lt;br&gt;&lt;br&gt;&lt;br&gt;------------------------------------------------------------------------
&lt;br&gt;This list is sponsored by: Information Assurance Certification Review Board
&lt;br&gt;&lt;br&gt;Prove to peers and potential employers without a doubt that you can actually do a proper penetration test. IACRB CPT and CEPT certs require a full practical examination in order to become certified.
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://www.iacertification.org&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.iacertification.org&lt;/a&gt;&lt;br&gt;------------------------------------------------------------------------
&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/Different-ways-to-portscan-IPS-tp26489415p26649629.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26648342</id>
	<title>The Official Training Guide for New Superheroes</title>
	<published>2009-12-02T07:23:44Z</published>
	<updated>2009-12-02T07:23:44Z</updated>
	<author>
		<name>Pete Herzog</name>
	</author>
	<content type="html">Hi,
&lt;br&gt;&lt;br&gt;ISECOM was asked to give a seminar at CERN in Switzerland this
&lt;br&gt;September showing how to measure the Attack Surface of any target and
&lt;br&gt;what to do with that information. At the time, I was working on new
&lt;br&gt;material for Hacker Highschool which used comic book superheroes to
&lt;br&gt;explain security testing. So I used a superhero theme with this
&lt;br&gt;presentation and focused on how you can use ISECOM research and the
&lt;br&gt;OSSTMM 3 to be better than the average human at security.
&lt;br&gt;&lt;br&gt;The actual slides are more pictorial however may be difficult to
&lt;br&gt;understand without narration (problem the Möbius Defense slides had).
&lt;br&gt;These are the hand-out slides and are available now here:
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://www.isecom.org/events/The_Official_Training_Guide_for_New_Superheroes_CERN_2009.pdf&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.isecom.org/events/The_Official_Training_Guide_for_New_Superheroes_CERN_2009.pdf&lt;/a&gt;&lt;br&gt;&lt;br&gt;This presentation has since been refined a few more times and has been
&lt;br&gt;very successful at explaining new security methods to non-security
&lt;br&gt;people in management. So if it also helps you out, please let me know
&lt;br&gt;as we're considering publishing a handbook version of this with more
&lt;br&gt;detail.
&lt;br&gt;&lt;br&gt;Sincerely,
&lt;br&gt;-pete.
&lt;br&gt;&lt;br&gt;-- 
&lt;br&gt;Pete Herzog - Managing Director - &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26648342&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;pete@...&lt;/a&gt;
&lt;br&gt;ISECOM - Institute for Security and Open Methodologies
&lt;br&gt;www.isecom.org - www.osstmm.org
&lt;br&gt;www.hackerhighschool.org - www.isestorm.org
&lt;br&gt;&lt;br&gt;&lt;br&gt;------------------------------------------------------------------------
&lt;br&gt;This list is sponsored by: Information Assurance Certification Review Board
&lt;br&gt;&lt;br&gt;Prove to peers and potential employers without a doubt that you can actually do a proper penetration test. IACRB CPT and CEPT certs require a full practical examination in order to become certified.
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://www.iacertification.org&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.iacertification.org&lt;/a&gt;&lt;br&gt;------------------------------------------------------------------------
&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/The-Official-Training-Guide-for-New-Superheroes-tp26648342p26648342.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26646512</id>
	<title>Re: Different ways to portscan IPS</title>
	<published>2009-12-01T13:16:06Z</published>
	<updated>2009-12-01T13:16:06Z</updated>
	<author>
		<name>White Hat-3</name>
	</author>
	<content type="html">If your using nmap for your scanning, then you may be interested in this.
&lt;br&gt;&lt;br&gt;Fyodor did an excellent presentation on this at schmoocon 2006
&lt;br&gt;&lt;a href=&quot;http://insecure.org/presentations/Shmoo06&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://insecure.org/presentations/Shmoo06&lt;/a&gt;&lt;br&gt;&lt;br&gt;In the talk he touches on the logic and behavior behind IDS systems.
&lt;br&gt;&lt;br&gt;here are my after thoughts and notes after watching the video. &amp;nbsp;Beware
&lt;br&gt;unorganized mind thinking aloud here.
&lt;br&gt;&lt;br&gt;If you think about an IDS conceptually, it's really just a set of
&lt;br&gt;rules, syntax and definitions in rules files, that it tries to match
&lt;br&gt;against each incoming packet. &amp;nbsp;If you
&lt;br&gt;know what the rule syntax looks like, you can adjust your scan
&lt;br&gt;parameters to avoid triggering the specific IDS rule.
&lt;br&gt;&lt;br&gt;This is (was?) particularly true for snort, but applies to many of the
&lt;br&gt;more common IDS systems out
&lt;br&gt;there, as many of the default timing checks and values are the same.
&lt;br&gt;&lt;br&gt;1. Limiting the packet rate to avoid triggering an IDS packet per second
&lt;br&gt;threshold.
&lt;br&gt;The default threshold is typically 15 packets per second. &amp;nbsp;While this
&lt;br&gt;is configurable with most IDS's most people leave these types of
&lt;br&gt;defaults in place, and just don't change them.
&lt;br&gt;&lt;br&gt;You can use the --max-rate 14 parameter to specify the maximum packet rate.
&lt;br&gt;&lt;br&gt;2. Most IDS systems utilize a sliding window. &amp;nbsp;The idea of sliding
&lt;br&gt;windows is to keep track of the acknowledgments for each ID. However,
&lt;br&gt;a scheme in which a sender send a single message (e.g. to multiple
&lt;br&gt;receivers in a group) and then waits for all ACKs is to slow: a sender
&lt;br&gt;should be able to send a number of messages and a separate thread
&lt;br&gt;should receive ACKs, and resend messages with ACKs missing.
&lt;br&gt;&lt;br&gt;Many IDS systems also utilize a time out before the sliding window is
&lt;br&gt;reset. &amp;nbsp;Typically the default is 20 seconds.
&lt;br&gt;&lt;br&gt;I believe the trick here is to avoid too many ACKS too quickly.
&lt;br&gt;&lt;br&gt;We can use the following nmap parameter to avoid triggering an IDS
&lt;br&gt;systems sliding window threshold.
&lt;br&gt;&lt;br&gt;--scan-delay 22
&lt;br&gt;&lt;br&gt;Don't forget about decoy's. &amp;nbsp;These can be very useful during initial
&lt;br&gt;test scans. &amp;nbsp;Let's get someone else system filtered for the scan, not
&lt;br&gt;our scan box. &amp;nbsp;:)
&lt;br&gt;&lt;br&gt;Hope this helps.
&lt;br&gt;&lt;br&gt;whitehat237
&lt;br&gt;&lt;br&gt;&lt;br&gt;On Tue, Dec 1, 2009 at 10:21 AM, Benjamin Brown &amp;lt;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26646512&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;optikali@...&lt;/a&gt;&amp;gt; wrote:
&lt;div class='shrinkable-quote'&gt;&lt;br&gt;&amp;gt; You might want to look into using a networked printer that has not
&lt;br&gt;&amp;gt; been properly secured (which is often).
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; On Mon, Nov 30, 2009 at 2:16 PM, Yiannis Koukouras &amp;lt;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26646512&amp;i=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;ikoukouras@...&lt;/a&gt;&amp;gt; wrote:
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; Hi,
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; Scripting netcat to do a connect only scan worked for my team.
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; You can use time delays in your script as well ;)
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; Ioannis (Yiannis) Koukouras
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; CISSP, CISA, CISM
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; MSc in Computer Systems Security
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; BEng in Electronic Engineering
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; &lt;a href=&quot;http://www.linkedin.com/in/ikoukouras&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.linkedin.com/in/ikoukouras&lt;/a&gt;&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; ---
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; The information contained in this communication is intended solely
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; for  the  use  of the individual or entity to whom it is addressed
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; and others authorized to receive it.  It may  contain confidential
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; or legally privileged information.  If  you  are  not the intended
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; recipient you are hereby notified that  any  disclosure,  copying,
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; distribution  or  taking any action in reliance on the contents of
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; this  information  is  strictly  prohibited  and  may be unlawful.
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; If you have received this communication in error, please notify the
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; sender immediately  by  responding  to this email and then delete
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt;  it from your system.
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; On Fri, Nov 20, 2009 at 1:02 PM, Vimal™ &amp;lt;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26646512&amp;i=2&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;avvimalkumar@...&lt;/a&gt;&amp;gt; wrote:
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; &amp;gt; What are the different ways of port scanning the target when an IPS in placed.
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; &amp;gt; Some of the methods I used are:
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; &amp;gt; 1. Delay the scan prob (nmap --scan-delay)
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; &amp;gt; 2. Integrating the scanner with TOR
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; &amp;gt; Regards
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; &amp;gt; Vimal
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; &amp;gt; web   : &lt;a href=&quot;http://www.maestro-sec.com&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.maestro-sec.com&lt;/a&gt;&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; &amp;gt; ------------------------------------------------------------------------
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; &amp;gt; This list is sponsored by: Information Assurance Certification Review Board
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; &amp;gt; Prove to peers and potential employers without a doubt that you can actually do a proper penetration test. IACRB CPT and CEPT certs require a full practical examination in order to become certified.
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; &amp;gt; &lt;a href=&quot;http://www.iacertification.org&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.iacertification.org&lt;/a&gt;&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; &amp;gt; ------------------------------------------------------------------------
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; ------------------------------------------------------------------------
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; This list is sponsored by: Information Assurance Certification Review Board
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; Prove to peers and potential employers without a doubt that you can actually do a proper penetration test. IACRB CPT and CEPT certs require a full practical examination in order to become certified.
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; &lt;a href=&quot;http://www.iacertification.org&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.iacertification.org&lt;/a&gt;&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; ------------------------------------------------------------------------
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; ------------------------------------------------------------------------
&lt;br&gt;&amp;gt; This list is sponsored by: Information Assurance Certification Review Board
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; Prove to peers and potential employers without a doubt that you can actually do a proper penetration test. IACRB CPT and CEPT certs require a full practical examination in order to become certified.
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; &lt;a href=&quot;http://www.iacertification.org&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.iacertification.org&lt;/a&gt;&lt;br&gt;&amp;gt; ------------------------------------------------------------------------
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt;
&lt;/div&gt;&lt;br&gt;------------------------------------------------------------------------
&lt;br&gt;This list is sponsored by: Information Assurance Certification Review Board
&lt;br&gt;&lt;br&gt;Prove to peers and potential employers without a doubt that you can actually do a proper penetration test. IACRB CPT and CEPT certs require a full practical examination in order to become certified.
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://www.iacertification.org&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.iacertification.org&lt;/a&gt;&lt;br&gt;------------------------------------------------------------------------
&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/Different-ways-to-portscan-IPS-tp26489415p26646512.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26646445</id>
	<title>Re: Different ways to portscan IPS</title>
	<published>2009-12-01T11:37:47Z</published>
	<updated>2009-12-01T11:37:47Z</updated>
	<author>
		<name>A K-10</name>
	</author>
	<content type="html">Can you please paste the code?
&lt;br&gt;Cheers!
&lt;br&gt;&lt;br&gt;Yiannis Koukouras wrote:
&lt;div class='shrinkable-quote'&gt;&lt;br&gt;&amp;gt; Hi,
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; Scripting netcat to do a connect only scan worked for my team.
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; You can use time delays in your script as well ;)
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; Ioannis (Yiannis) Koukouras
&lt;br&gt;&amp;gt; CISSP, CISA, CISM
&lt;br&gt;&amp;gt; MSc in Computer Systems Security
&lt;br&gt;&amp;gt; BEng in Electronic Engineering
&lt;br&gt;&amp;gt; &lt;a href=&quot;http://www.linkedin.com/in/ikoukouras&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.linkedin.com/in/ikoukouras&lt;/a&gt;&lt;br&gt;&amp;gt; ---
&lt;br&gt;&amp;gt; The information contained in this communication is intended solely
&lt;br&gt;&amp;gt; for &amp;nbsp;the &amp;nbsp;use &amp;nbsp;of the individual or entity to whom it is addressed
&lt;br&gt;&amp;gt; and others authorized to receive it. &amp;nbsp;It may &amp;nbsp;contain confidential
&lt;br&gt;&amp;gt; or legally privileged information. &amp;nbsp;If &amp;nbsp;you &amp;nbsp;are &amp;nbsp;not the intended
&lt;br&gt;&amp;gt; recipient you are hereby notified that &amp;nbsp;any &amp;nbsp;disclosure, &amp;nbsp;copying,
&lt;br&gt;&amp;gt; distribution &amp;nbsp;or &amp;nbsp;taking any action in reliance on the contents of
&lt;br&gt;&amp;gt; this &amp;nbsp;information &amp;nbsp;is &amp;nbsp;strictly &amp;nbsp;prohibited &amp;nbsp;and &amp;nbsp;may be unlawful.
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; If you have received this communication in error, please notify the
&lt;br&gt;&amp;gt; sender immediately &amp;nbsp;by &amp;nbsp;responding &amp;nbsp;to this email and then delete
&lt;br&gt;&amp;gt; &amp;nbsp;it from your system.
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; On Fri, Nov 20, 2009 at 1:02 PM, Vimal™ &amp;lt;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26646445&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;avvimalkumar@...&lt;/a&gt;&amp;gt; wrote:
&lt;br&gt;&amp;gt; &amp;nbsp; 
&lt;br&gt;&amp;gt;&amp;gt; What are the different ways of port scanning the target when an IPS in placed.
&lt;br&gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; Some of the methods I used are:
&lt;br&gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; 1. Delay the scan prob (nmap --scan-delay)
&lt;br&gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; 2. Integrating the scanner with TOR
&lt;br&gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; Regards
&lt;br&gt;&amp;gt;&amp;gt; Vimal
&lt;br&gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; web &amp;nbsp; : &lt;a href=&quot;http://www.maestro-sec.com&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.maestro-sec.com&lt;/a&gt;&lt;br&gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; ------------------------------------------------------------------------
&lt;br&gt;&amp;gt;&amp;gt; This list is sponsored by: Information Assurance Certification Review Board
&lt;br&gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; Prove to peers and potential employers without a doubt that you can actually do a proper penetration test. IACRB CPT and CEPT certs require a full practical examination in order to become certified.
&lt;br&gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &lt;a href=&quot;http://www.iacertification.org&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.iacertification.org&lt;/a&gt;&lt;br&gt;&amp;gt;&amp;gt; ------------------------------------------------------------------------
&lt;br&gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;nbsp; &amp;nbsp; 
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; ------------------------------------------------------------------------
&lt;br&gt;&amp;gt; This list is sponsored by: Information Assurance Certification Review Board
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; Prove to peers and potential employers without a doubt that you can actually do a proper penetration test. IACRB CPT and CEPT certs require a full practical examination in order to become certified. 
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; &lt;a href=&quot;http://www.iacertification.org&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.iacertification.org&lt;/a&gt;&lt;br&gt;&amp;gt; ------------------------------------------------------------------------
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; &amp;nbsp; 
&lt;/div&gt;&lt;br&gt;&lt;br&gt;------------------------------------------------------------------------
&lt;br&gt;This list is sponsored by: Information Assurance Certification Review Board
&lt;br&gt;&lt;br&gt;Prove to peers and potential employers without a doubt that you can actually do a proper penetration test. IACRB CPT and CEPT certs require a full practical examination in order to become certified. 
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://www.iacertification.org&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.iacertification.org&lt;/a&gt;&lt;br&gt;------------------------------------------------------------------------
&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/Different-ways-to-portscan-IPS-tp26489415p26646445.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26646348</id>
	<title>Re: out of box scanner</title>
	<published>2009-12-01T11:24:45Z</published>
	<updated>2009-12-01T11:24:45Z</updated>
	<author>
		<name>Nathan Grandbois</name>
	</author>
	<content type="html">John Bennett wrote:
&lt;div class='shrinkable-quote'&gt;&lt;div class='shrinkable-quote'&gt;&lt;br&gt;&amp;gt; I'm currently evaluating some commercial scanners and wanted to get a 
&lt;br&gt;&amp;gt; feel for others experiences with appscan/cenzic/webinspect. &amp;nbsp;Any 
&lt;br&gt;&amp;gt; gotcha's with any of these products and can anybody recommend one over 
&lt;br&gt;&amp;gt; the other?
&lt;br&gt;&amp;gt; 
&lt;br&gt;&amp;gt; thanks,
&lt;br&gt;&amp;gt; John
&lt;br&gt;&amp;gt; 
&lt;br&gt;&amp;gt; ------------------------------------------------------------------------
&lt;br&gt;&amp;gt; This list is sponsored by: Information Assurance Certification Review Board
&lt;br&gt;&amp;gt; 
&lt;br&gt;&amp;gt; Prove to peers and potential employers without a doubt that you can 
&lt;br&gt;&amp;gt; actually do a proper penetration test. IACRB CPT and CEPT certs require 
&lt;br&gt;&amp;gt; a full practical examination in order to become certified.
&lt;br&gt;&amp;gt; &lt;a href=&quot;http://www.iacertification.org&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.iacertification.org&lt;/a&gt;&lt;br&gt;&amp;gt; ------------------------------------------------------------------------
&lt;br&gt;&amp;gt; 
&lt;/div&gt;&lt;/div&gt;John,
&lt;br&gt;&lt;br&gt;You might want to take a look at the WASC list here:
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://projects.webappsec.org/Web-Application-Security-Scanner-List&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://projects.webappsec.org/Web-Application-Security-Scanner-List&lt;/a&gt;&lt;br&gt;&lt;br&gt;The thread is still under discussion on the webappsec mailing list.
&lt;br&gt;&lt;br&gt;_nathan
&lt;br&gt;&lt;br&gt;-- 
&lt;br&gt;_______________________________________________________________________
&lt;br&gt;Nathan Grandbois, CISSP &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26646348&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;ngrandbois@...&lt;/a&gt;
&lt;br&gt;Security Analyst &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;(614) 351-1237 x 212
&lt;br&gt;PGP Key Available by Request
&lt;br&gt;MicroSolved is security expertise you can trust!
&lt;br&gt;&lt;br&gt;HoneyPoint Security Server
&lt;br&gt;Attackers get stung, instead of you!
&lt;br&gt;&lt;a href=&quot;http://www.microsolved.com/honeypoint&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.microsolved.com/honeypoint&lt;/a&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;&lt;br /&gt; &lt;div class=&quot;small&quot;&gt;&lt;br/&gt;&lt;img src=&quot;http://old.nabble.com/images/icon_attachment.gif&quot; &gt; &lt;strong&gt;smime.p7s&lt;/strong&gt; (4K) &lt;a href=&quot;http://old.nabble.com/attachment/26646348/0/smime.p7s&quot; target=&quot;_top&quot;&gt;Download Attachment&lt;/a&gt;&lt;/div&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/out-of-box-scanner-tp26570986p26646348.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26597259</id>
	<title>Re: Different ways to portscan IPS</title>
	<published>2009-12-01T10:21:51Z</published>
	<updated>2009-12-01T10:21:51Z</updated>
	<author>
		<name>Benjamin Brown-4</name>
	</author>
	<content type="html">You might want to look into using a networked printer that has not
&lt;br&gt;been properly secured (which is often).
&lt;br&gt;&lt;br&gt;&lt;br&gt;&lt;div class='shrinkable-quote'&gt;&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; On Mon, Nov 30, 2009 at 2:16 PM, Yiannis Koukouras &amp;lt;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26597259&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;ikoukouras@...&lt;/a&gt;&amp;gt; wrote:
&lt;br&gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; Hi,
&lt;br&gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; Scripting netcat to do a connect only scan worked for my team.
&lt;br&gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; You can use time delays in your script as well ;)
&lt;br&gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; Ioannis (Yiannis) Koukouras
&lt;br&gt;&amp;gt;&amp;gt; CISSP, CISA, CISM
&lt;br&gt;&amp;gt;&amp;gt; MSc in Computer Systems Security
&lt;br&gt;&amp;gt;&amp;gt; BEng in Electronic Engineering
&lt;br&gt;&amp;gt;&amp;gt; &lt;a href=&quot;http://www.linkedin.com/in/ikoukouras&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.linkedin.com/in/ikoukouras&lt;/a&gt;&lt;br&gt;&amp;gt;&amp;gt; ---
&lt;br&gt;&amp;gt;&amp;gt; The information contained in this communication is intended solely
&lt;br&gt;&amp;gt;&amp;gt; for  the  use  of the individual or entity to whom it is addressed
&lt;br&gt;&amp;gt;&amp;gt; and others authorized to receive it.  It may  contain confidential
&lt;br&gt;&amp;gt;&amp;gt; or legally privileged information.  If  you  are  not the intended
&lt;br&gt;&amp;gt;&amp;gt; recipient you are hereby notified that  any  disclosure,  copying,
&lt;br&gt;&amp;gt;&amp;gt; distribution  or  taking any action in reliance on the contents of
&lt;br&gt;&amp;gt;&amp;gt; this  information  is  strictly  prohibited  and  may be unlawful.
&lt;br&gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; If you have received this communication in error, please notify the
&lt;br&gt;&amp;gt;&amp;gt; sender immediately  by  responding  to this email and then delete
&lt;br&gt;&amp;gt;&amp;gt;  it from your system.
&lt;br&gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; On Fri, Nov 20, 2009 at 1:02 PM, Vimal™ &amp;lt;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26597259&amp;i=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;avvimalkumar@...&lt;/a&gt;&amp;gt; wrote:
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt; What are the different ways of port scanning the target when an IPS in placed.
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt; Some of the methods I used are:
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt; 1. Delay the scan prob (nmap --scan-delay)
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt; 2. Integrating the scanner with TOR
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt; Regards
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt; Vimal
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt; web   : &lt;a href=&quot;http://www.maestro-sec.com&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.maestro-sec.com&lt;/a&gt;&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt; ------------------------------------------------------------------------
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt; This list is sponsored by: Information Assurance Certification Review Board
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt; Prove to peers and potential employers without a doubt that you can actually do a proper penetration test. IACRB CPT and CEPT certs require a full practical examination in order to become certified.
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt; &lt;a href=&quot;http://www.iacertification.org&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.iacertification.org&lt;/a&gt;&lt;br&gt;&amp;gt;&amp;gt; &amp;gt; ------------------------------------------------------------------------
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; ------------------------------------------------------------------------
&lt;br&gt;&amp;gt;&amp;gt; This list is sponsored by: Information Assurance Certification Review Board
&lt;br&gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; Prove to peers and potential employers without a doubt that you can actually do a proper penetration test. IACRB CPT and CEPT certs require a full practical examination in order to become certified.
&lt;br&gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &lt;a href=&quot;http://www.iacertification.org&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.iacertification.org&lt;/a&gt;&lt;br&gt;&amp;gt;&amp;gt; ------------------------------------------------------------------------
&lt;br&gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;
&lt;/div&gt;&lt;br&gt;------------------------------------------------------------------------
&lt;br&gt;This list is sponsored by: Information Assurance Certification Review Board
&lt;br&gt;&lt;br&gt;Prove to peers and potential employers without a doubt that you can actually do a proper penetration test. IACRB CPT and CEPT certs require a full practical examination in order to become certified.
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://www.iacertification.org&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.iacertification.org&lt;/a&gt;&lt;br&gt;------------------------------------------------------------------------
&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/Different-ways-to-portscan-IPS-tp26489415p26597259.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26596908</id>
	<title>winAUTOPWN 2.0 - Introducing winAUTOPWN GUI - Now you can sleep</title>
	<published>2009-11-30T18:35:44Z</published>
	<updated>2009-11-30T18:35:44Z</updated>
	<author>
		<name>Panarchy</name>
	</author>
	<content type="html">Hello
&lt;br&gt;&lt;br&gt;Since you've decided to create a GUI for your program, I've decided to
&lt;br&gt;make an installer.
&lt;br&gt;&lt;br&gt;Written with NSIS, this encapsulates all that is included in your
&lt;br&gt;latest (2.1) release.
&lt;br&gt;&lt;br&gt;Installer: &lt;a href=&quot;http://www.mediafire.com/?3mz1nmviyvl&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.mediafire.com/?3mz1nmviyvl&lt;/a&gt;&lt;br&gt;&lt;br&gt;Best Regards,
&lt;br&gt;&lt;br&gt;Chip D. Panarchy
&lt;br&gt;&lt;br&gt;PS: If you'd like me to include installers for Python, Perl &amp; PHP just
&lt;br&gt;ask. Alternatively I can put in a check for them, and if
&lt;br&gt;not-installed, download and install the latest.
&lt;br&gt;&lt;br&gt;On Fri, Nov 6, 2009 at 9:56 AM, Chip Panarchy &amp;lt;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26596908&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;forumanarchy@...&lt;/a&gt;&amp;gt; wrote:
&lt;div class='shrinkable-quote'&gt;&lt;br&gt;&amp;gt; Thanks Quaker, I tried with WinRAR and it all worked fine.
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; The reason I tried with PeaZIP is because of what was mentioned within
&lt;br&gt;&amp;gt; the PASS.txt file.
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; Should be useful, keep up the great work.
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; Thanks,
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; Panarchy
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; On Thu, Nov 5, 2009 at 3:57 PM, QUAKER DOOMER &amp;lt;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26596908&amp;i=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;quakerdoomer@...&lt;/a&gt;&amp;gt; wrote:
&lt;br&gt;&amp;gt;&amp;gt; Its a peazip error. Nothing to do with the way its packed. Check your password.. looks reversed Could be a peazip
&lt;br&gt;&amp;gt;&amp;gt; feature though..
&lt;br&gt;&amp;gt;&amp;gt; Try Winrar. Works for me.
&lt;br&gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; Quoting &amp;quot;Chip Panarchy&amp;quot; &amp;lt;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26596908&amp;i=2&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;forumanarchy@...&lt;/a&gt;&amp;gt;:
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; Thanks for the release.
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; I've downloaded it, and am trying to extract it. Wouldn't extract with
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; IZArc, so tried with PeaZIP portable.
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; Here is the error I'm getting: &lt;a href=&quot;http://i33.tinypic.com/199yk8.jpg&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://i33.tinypic.com/199yk8.jpg&lt;/a&gt;&lt;br&gt;&amp;gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; Please help.
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; Thanks in advance,
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; Panarchy
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; On Wed, Nov 4, 2009 at 5:05 AM, QUAKER DOOMER
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; &amp;lt;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26596908&amp;i=3&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;quakerdoomer@...&lt;/a&gt;&amp;gt; wrote:
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; &amp;gt; Dear all,
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; &amp;gt; After a long break and a lot of Unpolished SITA releases of the
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; previous version, I am finally releasing
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; &amp;gt; winAUTOPWN version 2.0
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; &amp;gt; winAUTOPWN or WINDOWS AUTOPWN version 2.0 now has a GUI
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; (winAUTOPWN_GUI.exe) to initiate the main
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; &amp;gt; console winAUTOPWN.exe
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; &amp;gt; winAUTOPWN now supports all console arguments which can also be fed
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; interactively.
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; &amp;gt; This version covers almost all remote exploits from 2009 start
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; uptill October 2009. Though a few are still missing
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; &amp;gt; but they will be added shortly.
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; &amp;gt; Daily/Weekly Snapshot/Beta Releases of winAUTOPWN are always
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; available for download from WINAUTOPWN
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; &amp;gt; website
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; &amp;gt; DOWNLOAD LINK : &lt;a href=&quot;http://089dc64a.seriousfiles.com&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://089dc64a.seriousfiles.com&lt;/a&gt;&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; &amp;gt; Enjoy the Release.
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; &amp;gt; The Latest available release now is winAUTOPWN version 2.0
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; &amp;gt; Coded by : Azim Poonawala (QUAKERDOOMER)
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; &amp;gt; winAUTOPWN available at &lt;a href=&quot;http://winautopwn.co.nr&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://winautopwn.co.nr&lt;/a&gt;&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; &amp;gt; Author's website : &lt;a href=&quot;http://solidmecca.co.nr&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://solidmecca.co.nr&lt;/a&gt;&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; &amp;gt; winAUTOPWN is updated almost daily. Check the Download page for
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; weekly snapshots.
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; &amp;gt; Latest Release can always be downloaded from :
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; &amp;gt; &lt;a href=&quot;http://winautopwn.co.nr&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://winautopwn.co.nr&lt;/a&gt;&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; &amp;gt; &amp;quot;winAUTOPWN - WINDOWS AUTOPWN (For The True HyperSomniac
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; H-a-c-k-e-r-z-
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; &amp;gt; z-z-z-Z-Z)&amp;quot;
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; &amp;gt; Regards,
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; &amp;gt; QUAKERDOOMER
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; ------------------------------------------------------------------------
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; &amp;gt; This list is sponsored by: Information Assurance Certification
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; Review Board
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; &amp;gt; Prove to peers and potential employers without a doubt that you can
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; actually do a proper penetration test. IACRB CPT and CEPT certs require a
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; full practical examination in order to become certified.
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; &amp;gt; &lt;a href=&quot;http://www.iacertification.org&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.iacertification.org&lt;/a&gt;&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; ------------------------------------------------------------------------
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;
&lt;/div&gt;&lt;br&gt;------------------------------------------------------------------------
&lt;br&gt;This list is sponsored by: Information Assurance Certification Review Board
&lt;br&gt;&lt;br&gt;Prove to peers and potential employers without a doubt that you can actually do a proper penetration test. IACRB CPT and CEPT certs require a full practical examination in order to become certified. 
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://www.iacertification.org&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.iacertification.org&lt;/a&gt;&lt;br&gt;------------------------------------------------------------------------
&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/winAUTOPWN-2.0---Introducing-winAUTOPWN-GUI---Now-you-can-sleep-tp26204308p26596908.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26596352</id>
	<title>Re: out of box scanner</title>
	<published>2009-11-30T14:33:16Z</published>
	<updated>2009-11-30T14:33:16Z</updated>
	<author>
		<name>yilmaz.cankaya</name>
	</author>
	<content type="html">&lt;br&gt;&lt;br&gt;&lt;br&gt;&amp;nbsp; Hi John 
&lt;br&gt;only through personal
&lt;br&gt;experience and &amp;nbsp;not to be taken as fact, &amp;nbsp;acutetix may be a good bet for
&lt;br&gt;commercial use. The ones you mentioned may have problems with permutating
&lt;br&gt;the parameter values for complex scenarios which is of great importance
&lt;br&gt;most of the time. &amp;nbsp;Examples may be provided over private e-mailing if you
&lt;br&gt;wish. In any case, &amp;nbsp;try w3af if &amp;nbsp;only testing matters. 
&lt;br&gt;&lt;br&gt;Regards
&lt;br&gt;&lt;br&gt;&amp;gt; I'm currently evaluating some commercial
&lt;br&gt;scanners and wanted to get a
&lt;br&gt;&amp;gt; feel for others experiences with
&lt;br&gt;appscan/cenzic/webinspect. &amp;nbsp;Any
&lt;br&gt;&amp;gt; gotcha's with any of these
&lt;br&gt;products and can anybody recommend one over
&lt;br&gt;&amp;gt; the other?
&lt;br&gt;&amp;gt;
&lt;br&gt;&lt;br&gt;&amp;gt; thanks,
&lt;br&gt;&amp;gt; John
&lt;br&gt;&amp;gt; 
&lt;br&gt;&amp;gt;
&lt;br&gt;------------------------------------------------------------------------
&lt;br&gt;&amp;gt; This list is sponsored by: Information Assurance Certification
&lt;br&gt;Review
&lt;br&gt;&amp;gt; Board
&lt;br&gt;&amp;gt; 
&lt;br&gt;&amp;gt; Prove to peers and potential
&lt;br&gt;employers without a doubt that you can
&lt;br&gt;&amp;gt; actually do a proper
&lt;br&gt;penetration test. IACRB CPT and CEPT certs require a
&lt;br&gt;&amp;gt; full
&lt;br&gt;practical examination in order to become certified.
&lt;br&gt;&amp;gt; 
&lt;br&gt;&amp;gt;
&lt;br&gt;&lt;a href=&quot;http://www.iacertification.org&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.iacertification.org&lt;/a&gt;&lt;br&gt;&amp;gt;
&lt;br&gt;------------------------------------------------------------------------
&lt;br&gt;&amp;gt; 
&lt;br&gt;&amp;gt; 
&lt;br&gt;&lt;br&gt;&amp;nbsp;
&lt;br&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;------------------------------------------------------------------------
&lt;br&gt;This list is sponsored by: Information Assurance Certification Review Board
&lt;br&gt;&lt;br&gt;Prove to peers and potential employers without a doubt that you can actually do a proper penetration test. IACRB CPT and CEPT certs require a full practical examination in order to become certified.
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://www.iacertification.org&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.iacertification.org&lt;/a&gt;&lt;br&gt;------------------------------------------------------------------------
&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/out-of-box-scanner-tp26570986p26596352.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26596290</id>
	<title>Re: out of box scanner</title>
	<published>2009-11-30T12:55:36Z</published>
	<updated>2009-11-30T12:55:36Z</updated>
	<author>
		<name>Rob Fuller</name>
	</author>
	<content type="html">I completely agree with Aleph - Burp is the way to go if you are
&lt;br&gt;looking for the best of breed, but for the zero-to-report type
&lt;br&gt;scanner, please see the aforementioned list.
&lt;br&gt;&lt;br&gt;--
&lt;br&gt;Rob Fuller | Mubix
&lt;br&gt;Room362.com | Hak5.org | TheAcademyPro.com
&lt;br&gt;&lt;br&gt;&lt;br&gt;On Mon, Nov 30, 2009 at 3:51 PM, Aleph One &amp;lt;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26596290&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;al3ph.one@...&lt;/a&gt;&amp;gt; wrote:
&lt;div class='shrinkable-quote'&gt;&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; If you are looking for only scanners, then may be above scanners are in the right league. You can happily ignore the further part of this post.
&lt;br&gt;&amp;gt; If you are looking for best web application tool involving manual and automated techniques, Burp rules the web app pen testing today. Webscarab,paros and most of the others had many limitations that were overcame by this tool and is still improving.
&lt;br&gt;&amp;gt; You should verify it with other people or pen testers through your first/second degree network to get a direct feedback.
&lt;br&gt;&amp;gt; These scanners are alright if you have to scan and throw away reports just for the heck of scanning or doin git for the clients who do not know what is pen testing beyong vulnerabilitiy assessment.. In order to find out issues technically, such as SQL Injection or say CSRF , these tools may not do so off the track at some parameters that may be outside the scope of the way scanner is coded. It will just use those filters/checks specfically built inside unlike a manual technique combined with some automated techniques.
&lt;br&gt;&amp;gt; I am not at all related with burp or any of the guys associated with tool. Hope my suggestion is taken as neutral.
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; On Mon, Nov 30, 2009 at 2:33 PM, Rob Fuller &amp;lt;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26596290&amp;i=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;jd.mubix@...&lt;/a&gt;&amp;gt; wrote:
&lt;br&gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; I would highly suggest taking a look at the scanner list here:
&lt;br&gt;&amp;gt;&amp;gt; &lt;a href=&quot;http://webappsec.pbworks.com/Web-Application-Security-Scanner-List&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://webappsec.pbworks.com/Web-Application-Security-Scanner-List&lt;/a&gt;&lt;br&gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; Seems to be the most comprehensive list... (at least that I've seen)
&lt;br&gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; --
&lt;br&gt;&amp;gt;&amp;gt; Rob Fuller | Mubix
&lt;br&gt;&amp;gt;&amp;gt; Room362.com | Hak5.org | TheAcademyPro.com
&lt;br&gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; On Mon, Nov 30, 2009 at 4:24 AM, Onur YILMAZ &amp;lt;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26596290&amp;i=2&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;contact@...&lt;/a&gt;&amp;gt; wrote:
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt; You can try Netsparker;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt; &lt;a href=&quot;http://www.mavitunasecurity.com&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.mavitunasecurity.com&lt;/a&gt;&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt; -----Original Message-----
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt; From: &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26596290&amp;i=3&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;listbounce@...&lt;/a&gt; [mailto:&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26596290&amp;i=4&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;listbounce@...&lt;/a&gt;] On
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt; Behalf Of John Bennett
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt; Sent: Wednesday, November 25, 2009 6:16 PM
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt; To: &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26596290&amp;i=5&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;pen-test@...&lt;/a&gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt; Subject: out of box scanner
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt; I'm currently evaluating some commercial scanners and wanted to get a
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt; feel for others experiences with appscan/cenzic/webinspect.  Any
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt; gotcha's with any of these products and can anybody recommend one over
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt; the other?
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt; thanks,
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt; John
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt; ------------------------------------------------------------------------
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt; This list is sponsored by: Information Assurance Certification Review Board
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt; Prove to peers and potential employers without a doubt that you can actually
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt; do a proper penetration test. IACRB CPT and CEPT certs require a full
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt; practical examination in order to become certified.
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt; &lt;a href=&quot;http://www.iacertification.org&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.iacertification.org&lt;/a&gt;&lt;br&gt;&amp;gt;&amp;gt; &amp;gt; ------------------------------------------------------------------------
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt; ------------------------------------------------------------------------
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt; This list is sponsored by: Information Assurance Certification Review Board
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt; Prove to peers and potential employers without a doubt that you can actually do a proper penetration test. IACRB CPT and CEPT certs require a full practical examination in order to become certified.
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt; &lt;a href=&quot;http://www.iacertification.org&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.iacertification.org&lt;/a&gt;&lt;br&gt;&amp;gt;&amp;gt; &amp;gt; ------------------------------------------------------------------------
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; ------------------------------------------------------------------------
&lt;br&gt;&amp;gt;&amp;gt; This list is sponsored by: Information Assurance Certification Review Board
&lt;br&gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; Prove to peers and potential employers without a doubt that you can actually do a proper penetration test. IACRB CPT and CEPT certs require a full practical examination in order to become certified.
&lt;br&gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &lt;a href=&quot;http://www.iacertification.org&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.iacertification.org&lt;/a&gt;&lt;br&gt;&amp;gt;&amp;gt; ------------------------------------------------------------------------
&lt;br&gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; --
&lt;br&gt;&amp;gt; 4E 6F 6C 69 67 68 74 61 74 74 68 65 65 6E 64 6F 66 74 75 6E 6E 65 6C 79 65 74 21
&lt;/div&gt;&lt;br&gt;------------------------------------------------------------------------
&lt;br&gt;This list is sponsored by: Information Assurance Certification Review Board
&lt;br&gt;&lt;br&gt;Prove to peers and potential employers without a doubt that you can actually do a proper penetration test. IACRB CPT and CEPT certs require a full practical examination in order to become certified.
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://www.iacertification.org&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.iacertification.org&lt;/a&gt;&lt;br&gt;------------------------------------------------------------------------
&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/out-of-box-scanner-tp26570986p26596290.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26596447</id>
	<title>Re: Different ways to portscan IPS</title>
	<published>2009-11-30T11:16:37Z</published>
	<updated>2009-11-30T11:16:37Z</updated>
	<author>
		<name>Yiannis Koukouras-2</name>
	</author>
	<content type="html">Hi,
&lt;br&gt;&lt;br&gt;Scripting netcat to do a connect only scan worked for my team.
&lt;br&gt;&lt;br&gt;You can use time delays in your script as well ;)
&lt;br&gt;&lt;br&gt;Ioannis (Yiannis) Koukouras
&lt;br&gt;CISSP, CISA, CISM
&lt;br&gt;MSc in Computer Systems Security
&lt;br&gt;BEng in Electronic Engineering
&lt;br&gt;&lt;a href=&quot;http://www.linkedin.com/in/ikoukouras&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.linkedin.com/in/ikoukouras&lt;/a&gt;&lt;br&gt;---
&lt;br&gt;The information contained in this communication is intended solely
&lt;br&gt;for &amp;nbsp;the &amp;nbsp;use &amp;nbsp;of the individual or entity to whom it is addressed
&lt;br&gt;and others authorized to receive it. &amp;nbsp;It may &amp;nbsp;contain confidential
&lt;br&gt;or legally privileged information. &amp;nbsp;If &amp;nbsp;you &amp;nbsp;are &amp;nbsp;not the intended
&lt;br&gt;recipient you are hereby notified that &amp;nbsp;any &amp;nbsp;disclosure, &amp;nbsp;copying,
&lt;br&gt;distribution &amp;nbsp;or &amp;nbsp;taking any action in reliance on the contents of
&lt;br&gt;this &amp;nbsp;information &amp;nbsp;is &amp;nbsp;strictly &amp;nbsp;prohibited &amp;nbsp;and &amp;nbsp;may be unlawful.
&lt;br&gt;&lt;br&gt;If you have received this communication in error, please notify the
&lt;br&gt;sender immediately &amp;nbsp;by &amp;nbsp;responding &amp;nbsp;to this email and then delete
&lt;br&gt;&amp;nbsp;it from your system.
&lt;br&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;On Fri, Nov 20, 2009 at 1:02 PM, Vimal™ &amp;lt;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26596447&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;avvimalkumar@...&lt;/a&gt;&amp;gt; wrote:
&lt;div class='shrinkable-quote'&gt;&lt;br&gt;&amp;gt; What are the different ways of port scanning the target when an IPS in placed.
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; Some of the methods I used are:
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; 1. Delay the scan prob (nmap --scan-delay)
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; 2. Integrating the scanner with TOR
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; Regards
&lt;br&gt;&amp;gt; Vimal
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; web   : &lt;a href=&quot;http://www.maestro-sec.com&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.maestro-sec.com&lt;/a&gt;&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; ------------------------------------------------------------------------
&lt;br&gt;&amp;gt; This list is sponsored by: Information Assurance Certification Review Board
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; Prove to peers and potential employers without a doubt that you can actually do a proper penetration test. IACRB CPT and CEPT certs require a full practical examination in order to become certified.
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; &lt;a href=&quot;http://www.iacertification.org&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.iacertification.org&lt;/a&gt;&lt;br&gt;&amp;gt; ------------------------------------------------------------------------
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt;
&lt;/div&gt;&lt;br&gt;------------------------------------------------------------------------
&lt;br&gt;This list is sponsored by: Information Assurance Certification Review Board
&lt;br&gt;&lt;br&gt;Prove to peers and potential employers without a doubt that you can actually do a proper penetration test. IACRB CPT and CEPT certs require a full practical examination in order to become certified.
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://www.iacertification.org&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.iacertification.org&lt;/a&gt;&lt;br&gt;------------------------------------------------------------------------
&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/Different-ways-to-portscan-IPS-tp26489415p26596447.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26576778</id>
	<title>Re: out of box scanner</title>
	<published>2009-11-30T06:37:14Z</published>
	<updated>2009-11-30T06:37:14Z</updated>
	<author>
		<name>Mike Duncan-3</name>
	</author>
	<content type="html">-----BEGIN PGP SIGNED MESSAGE-----
&lt;br&gt;Hash: SHA1
&lt;br&gt;&lt;br&gt;Yeah...I do not think it will help to send a link to a website which is
&lt;br&gt;only offering a BETA product and you need to join a mailing list to even
&lt;br&gt;get word/download link for the product. I signed up 2 weeks ago and
&lt;br&gt;haven't heard back yet. From the website it states &amp;quot;Filling out this
&lt;br&gt;form does not guarantee that you will get a beta.&amp;quot;
&lt;br&gt;&lt;br&gt;So, unless they send word more quickly about the product, I wouldn't
&lt;br&gt;waste your time filling out the form.
&lt;br&gt;&lt;br&gt;Mike Duncan
&lt;br&gt;ISSO, Application Security Specialist
&lt;br&gt;Government Contractor with STG, Inc.
&lt;br&gt;NOAA :: National Climatic Data Center
&lt;br&gt;&lt;br&gt;&lt;br&gt;Onur YILMAZ wrote:
&lt;div class='shrinkable-quote'&gt;&lt;br&gt;&amp;gt; You can try Netsparker;
&lt;br&gt;&amp;gt; 
&lt;br&gt;&amp;gt; &lt;a href=&quot;http://www.mavitunasecurity.com&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.mavitunasecurity.com&lt;/a&gt;&amp;nbsp;
&lt;br&gt;&amp;gt; 
&lt;br&gt;&amp;gt; -----Original Message-----
&lt;br&gt;&amp;gt; From: &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26576778&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;listbounce@...&lt;/a&gt; [mailto:&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26576778&amp;i=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;listbounce@...&lt;/a&gt;] On
&lt;br&gt;&amp;gt; Behalf Of John Bennett
&lt;br&gt;&amp;gt; Sent: Wednesday, November 25, 2009 6:16 PM
&lt;br&gt;&amp;gt; To: &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26576778&amp;i=2&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;pen-test@...&lt;/a&gt;
&lt;br&gt;&amp;gt; Subject: out of box scanner
&lt;br&gt;&amp;gt; 
&lt;br&gt;&amp;gt; I'm currently evaluating some commercial scanners and wanted to get a 
&lt;br&gt;&amp;gt; feel for others experiences with appscan/cenzic/webinspect. &amp;nbsp;Any 
&lt;br&gt;&amp;gt; gotcha's with any of these products and can anybody recommend one over 
&lt;br&gt;&amp;gt; the other?
&lt;br&gt;&amp;gt; 
&lt;br&gt;&amp;gt; thanks,
&lt;br&gt;&amp;gt; John
&lt;br&gt;&amp;gt; 
&lt;br&gt;&amp;gt; ------------------------------------------------------------------------
&lt;br&gt;&amp;gt; This list is sponsored by: Information Assurance Certification Review Board
&lt;br&gt;&amp;gt; 
&lt;br&gt;&amp;gt; Prove to peers and potential employers without a doubt that you can actually
&lt;br&gt;&amp;gt; do a proper penetration test. IACRB CPT and CEPT certs require a full
&lt;br&gt;&amp;gt; practical examination in order to become certified. 
&lt;br&gt;&amp;gt; 
&lt;br&gt;&amp;gt; &lt;a href=&quot;http://www.iacertification.org&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.iacertification.org&lt;/a&gt;&lt;br&gt;&amp;gt; ------------------------------------------------------------------------
&lt;br&gt;&amp;gt; 
&lt;br&gt;&amp;gt; 
&lt;br&gt;&amp;gt; 
&lt;br&gt;&amp;gt; 
&lt;br&gt;&amp;gt; ------------------------------------------------------------------------
&lt;br&gt;&amp;gt; This list is sponsored by: Information Assurance Certification Review Board
&lt;br&gt;&amp;gt; 
&lt;br&gt;&amp;gt; Prove to peers and potential employers without a doubt that you can actually do a proper penetration test. IACRB CPT and CEPT certs require a full practical examination in order to become certified. 
&lt;br&gt;&amp;gt; 
&lt;br&gt;&amp;gt; &lt;a href=&quot;http://www.iacertification.org&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.iacertification.org&lt;/a&gt;&lt;br&gt;&amp;gt; ------------------------------------------------------------------------
&lt;br&gt;&amp;gt; 
&lt;/div&gt;-----BEGIN PGP SIGNATURE-----
&lt;br&gt;Version: GnuPG v1.4.9 (GNU/Linux)
&lt;br&gt;Comment: Using GnuPG with Mozilla - &lt;a href=&quot;http://enigmail.mozdev.org/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://enigmail.mozdev.org/&lt;/a&gt;&lt;br&gt;&lt;br&gt;iEYEARECAAYFAksT2JgACgkQnvIkv6fg9hYRYgCfe8gmUBmq3Xbd+XsKaBjscHvv
&lt;br&gt;DZsAoI7NC1ynsoR4fCr8+8jAWc84HxHQ
&lt;br&gt;=Labq
&lt;br&gt;-----END PGP SIGNATURE-----
&lt;br&gt;&lt;br&gt;------------------------------------------------------------------------
&lt;br&gt;This list is sponsored by: Information Assurance Certification Review Board
&lt;br&gt;&lt;br&gt;Prove to peers and potential employers without a doubt that you can actually do a proper penetration test. IACRB CPT and CEPT certs require a full practical examination in order to become certified. 
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://www.iacertification.org&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.iacertification.org&lt;/a&gt;&lt;br&gt;------------------------------------------------------------------------
&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/out-of-box-scanner-tp26570986p26576778.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26577140</id>
	<title>Re: out of box scanner</title>
	<published>2009-11-30T06:33:36Z</published>
	<updated>2009-11-30T06:33:36Z</updated>
	<author>
		<name>Rob Fuller</name>
	</author>
	<content type="html">I would highly suggest taking a look at the scanner list here:
&lt;br&gt;&lt;a href=&quot;http://webappsec.pbworks.com/Web-Application-Security-Scanner-List&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://webappsec.pbworks.com/Web-Application-Security-Scanner-List&lt;/a&gt;&lt;br&gt;&lt;br&gt;Seems to be the most comprehensive list... (at least that I've seen)
&lt;br&gt;&lt;br&gt;--
&lt;br&gt;Rob Fuller | Mubix
&lt;br&gt;Room362.com | Hak5.org | TheAcademyPro.com
&lt;br&gt;&lt;br&gt;&lt;br&gt;On Mon, Nov 30, 2009 at 4:24 AM, Onur YILMAZ &amp;lt;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26577140&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;contact@...&lt;/a&gt;&amp;gt; wrote:
&lt;div class='shrinkable-quote'&gt;&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; You can try Netsparker;
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; &lt;a href=&quot;http://www.mavitunasecurity.com&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.mavitunasecurity.com&lt;/a&gt;&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; -----Original Message-----
&lt;br&gt;&amp;gt; From: &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26577140&amp;i=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;listbounce@...&lt;/a&gt; [mailto:&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26577140&amp;i=2&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;listbounce@...&lt;/a&gt;] On
&lt;br&gt;&amp;gt; Behalf Of John Bennett
&lt;br&gt;&amp;gt; Sent: Wednesday, November 25, 2009 6:16 PM
&lt;br&gt;&amp;gt; To: &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26577140&amp;i=3&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;pen-test@...&lt;/a&gt;
&lt;br&gt;&amp;gt; Subject: out of box scanner
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; I'm currently evaluating some commercial scanners and wanted to get a
&lt;br&gt;&amp;gt; feel for others experiences with appscan/cenzic/webinspect.  Any
&lt;br&gt;&amp;gt; gotcha's with any of these products and can anybody recommend one over
&lt;br&gt;&amp;gt; the other?
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; thanks,
&lt;br&gt;&amp;gt; John
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; ------------------------------------------------------------------------
&lt;br&gt;&amp;gt; This list is sponsored by: Information Assurance Certification Review Board
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; Prove to peers and potential employers without a doubt that you can actually
&lt;br&gt;&amp;gt; do a proper penetration test. IACRB CPT and CEPT certs require a full
&lt;br&gt;&amp;gt; practical examination in order to become certified.
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; &lt;a href=&quot;http://www.iacertification.org&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.iacertification.org&lt;/a&gt;&lt;br&gt;&amp;gt; ------------------------------------------------------------------------
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; ------------------------------------------------------------------------
&lt;br&gt;&amp;gt; This list is sponsored by: Information Assurance Certification Review Board
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; Prove to peers and potential employers without a doubt that you can actually do a proper penetration test. IACRB CPT and CEPT certs require a full practical examination in order to become certified.
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; &lt;a href=&quot;http://www.iacertification.org&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.iacertification.org&lt;/a&gt;&lt;br&gt;&amp;gt; ------------------------------------------------------------------------
&lt;br&gt;&amp;gt;
&lt;/div&gt;&lt;br&gt;------------------------------------------------------------------------
&lt;br&gt;This list is sponsored by: Information Assurance Certification Review Board
&lt;br&gt;&lt;br&gt;Prove to peers and potential employers without a doubt that you can actually do a proper penetration test. IACRB CPT and CEPT certs require a full practical examination in order to become certified.
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://www.iacertification.org&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.iacertification.org&lt;/a&gt;&lt;br&gt;------------------------------------------------------------------------
&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/out-of-box-scanner-tp26570986p26577140.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26571657</id>
	<title>RE: out of box scanner</title>
	<published>2009-11-30T01:24:05Z</published>
	<updated>2009-11-30T01:24:05Z</updated>
	<author>
		<name>contact-75</name>
	</author>
	<content type="html">You can try Netsparker;
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://www.mavitunasecurity.com&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.mavitunasecurity.com&lt;/a&gt;&amp;nbsp;
&lt;br&gt;&lt;br&gt;-----Original Message-----
&lt;br&gt;From: &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26571657&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;listbounce@...&lt;/a&gt; [mailto:&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26571657&amp;i=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;listbounce@...&lt;/a&gt;] On
&lt;br&gt;Behalf Of John Bennett
&lt;br&gt;Sent: Wednesday, November 25, 2009 6:16 PM
&lt;br&gt;To: &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26571657&amp;i=2&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;pen-test@...&lt;/a&gt;
&lt;br&gt;Subject: out of box scanner
&lt;br&gt;&lt;br&gt;I'm currently evaluating some commercial scanners and wanted to get a 
&lt;br&gt;feel for others experiences with appscan/cenzic/webinspect. &amp;nbsp;Any 
&lt;br&gt;gotcha's with any of these products and can anybody recommend one over 
&lt;br&gt;the other?
&lt;br&gt;&lt;br&gt;thanks,
&lt;br&gt;John
&lt;br&gt;&lt;br&gt;------------------------------------------------------------------------
&lt;br&gt;This list is sponsored by: Information Assurance Certification Review Board
&lt;br&gt;&lt;br&gt;Prove to peers and potential employers without a doubt that you can actually
&lt;br&gt;do a proper penetration test. IACRB CPT and CEPT certs require a full
&lt;br&gt;practical examination in order to become certified. 
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://www.iacertification.org&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.iacertification.org&lt;/a&gt;&lt;br&gt;------------------------------------------------------------------------
&lt;br&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;------------------------------------------------------------------------
&lt;br&gt;This list is sponsored by: Information Assurance Certification Review Board
&lt;br&gt;&lt;br&gt;Prove to peers and potential employers without a doubt that you can actually do a proper penetration test. IACRB CPT and CEPT certs require a full practical examination in order to become certified. 
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://www.iacertification.org&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.iacertification.org&lt;/a&gt;&lt;br&gt;------------------------------------------------------------------------
&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/out-of-box-scanner-tp26570986p26571657.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26571070</id>
	<title>Re: Windows Internationalization?</title>
	<published>2009-11-29T21:07:51Z</published>
	<updated>2009-11-29T21:07:51Z</updated>
	<author>
		<name>τ∂υƒιφ *</name>
	</author>
	<content type="html">Hi,
&lt;br&gt;&lt;br&gt;I am not to sure you will be allowed for this approach. But Microsoft
&lt;br&gt;Windows is shipped with support for various languages. One can always
&lt;br&gt;customize the UI depending on individual preferences. You can read
&lt;br&gt;more on Multilingual User Interface (MUI) at
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://en.wikipedia.org/wiki/Multilingual_User_Interface&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://en.wikipedia.org/wiki/Multilingual_User_Interface&lt;/a&gt;&lt;br&gt;&lt;br&gt;However your question can only be answered once you use check the
&lt;br&gt;support for MUI in action.
&lt;br&gt;&lt;br&gt;&lt;br&gt;Cheers!
&lt;br&gt;--
&lt;br&gt;Taufiq Ali
&lt;br&gt;Security Analyst
&lt;br&gt;Network Intelligence (India) Pvt. Ltd.
&lt;br&gt;&lt;a href=&quot;http://www.niiconsulting.com/products/iso_toolkit.html&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.niiconsulting.com/products/iso_toolkit.html&lt;/a&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;2009/11/19 Jon Kibler &amp;lt;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26571070&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;Jon.Kibler@...&lt;/a&gt;&amp;gt;:
&lt;div class='shrinkable-quote'&gt;&lt;br&gt;&amp;gt; -----BEGIN PGP SIGNED MESSAGE-----
&lt;br&gt;&amp;gt; Hash: SHA1
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; Hi,
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; I have been approached about doing a pen test job that would involve a target
&lt;br&gt;&amp;gt; organization whose native character set is not ASCII. So, I have a few questions
&lt;br&gt;&amp;gt; and would appreciate some pointers to help me decide if I really want this
&lt;br&gt;&amp;gt; assignment.
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; Questions that immediately come to mind are:
&lt;br&gt;&amp;gt; 1) On a Windows system that uses a non-ASCII character set (Chinese, Arabic,
&lt;br&gt;&amp;gt; Russian, etc.), how does that effect Windows?
&lt;br&gt;&amp;gt;   -- Are registry key names still ASCII? Key values still ASCII?
&lt;br&gt;&amp;gt;   -- Are Windows directories still ASCII?
&lt;br&gt;&amp;gt;   -- Are Windows file names still ASCII? English language file names?
&lt;br&gt;&amp;gt;   -- Are there any differences in how internationalization works between
&lt;br&gt;&amp;gt; Windows versions, such as W2K3 and XP/Vista?
&lt;br&gt;&amp;gt;   -- Are standard user names such as &amp;quot;administrator&amp;quot; and &amp;quot;guest&amp;quot; still ASCII,
&lt;br&gt;&amp;gt; or have they been internationalized, too?
&lt;br&gt;&amp;gt;   -- Are file extensions (.exe .bat .ini, etc.) still ASCII or have they been
&lt;br&gt;&amp;gt; internationalized?
&lt;br&gt;&amp;gt;   -- Are INI file contents ASCII or internationalized?
&lt;br&gt;&amp;gt;   -- Any changes to the SAM file? (Will pwdump still work against it?)
&lt;br&gt;&amp;gt; I guess the bottom line is, what gets changed and what is left in ASCII on an
&lt;br&gt;&amp;gt; internationalized Windows box?
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; 2) Are there any tools that have been customized for use with non-ASCII
&lt;br&gt;&amp;gt; character sets, such as non-ASCII nikto databases?
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; 3) What are the issues that I should be aware of when pen testing an
&lt;br&gt;&amp;gt; internationalized target? I would be working with a native speaker of the
&lt;br&gt;&amp;gt; language who is a sys admin, but not a security expert. (Unfortunately, I would
&lt;br&gt;&amp;gt; not get to speak to them until after I agree to the assignment!)
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; Most of the stuff I find when googling the subject gives links to old pages that
&lt;br&gt;&amp;gt; really do not give much specific information.
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; Thoughts, comments, suggestions?
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; Thanks in advance for any/all help!
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; Jon
&lt;br&gt;&amp;gt; - --
&lt;br&gt;&amp;gt; Jon R. Kibler
&lt;br&gt;&amp;gt; Chief Technical Officer
&lt;br&gt;&amp;gt; Advanced Systems Engineering Technology, Inc.
&lt;br&gt;&amp;gt; Charleston, SC  USA
&lt;br&gt;&amp;gt; o: 843-849-8214
&lt;br&gt;&amp;gt; c: 843-813-2924
&lt;br&gt;&amp;gt; s: 843-564-4224
&lt;br&gt;&amp;gt; s: JonRKibler
&lt;br&gt;&amp;gt; e: &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26571070&amp;i=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;Jon.Kibler@...&lt;/a&gt;
&lt;br&gt;&amp;gt; e: &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26571070&amp;i=2&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;Jon.R.Kibler@...&lt;/a&gt;
&lt;br&gt;&amp;gt; &lt;a href=&quot;http://www.linkedin.com/in/jonrkibler&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.linkedin.com/in/jonrkibler&lt;/a&gt;&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; My PGP Fingerprint is:
&lt;br&gt;&amp;gt; BAA2 1F2C 5543 5D25 4636 A392 515C 5045 CF39 4253
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; -----BEGIN PGP SIGNATURE-----
&lt;br&gt;&amp;gt; Version: GnuPG v1.4.8 (Darwin)
&lt;br&gt;&amp;gt; Comment: Using GnuPG with Mozilla - &lt;a href=&quot;http://enigmail.mozdev.org/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://enigmail.mozdev.org/&lt;/a&gt;&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; iEYEARECAAYFAksEYHMACgkQUVxQRc85QlMmUACfeaUvnSiYJBTG4cJ0jSnDKHkd
&lt;br&gt;&amp;gt; zNkAn3SxetV7AV1z4uN/FzD89oaeNo24
&lt;br&gt;&amp;gt; =XVHd
&lt;br&gt;&amp;gt; -----END PGP SIGNATURE-----
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; ==================================================
&lt;br&gt;&amp;gt; Filtered by: TRUSTEM.COM's Email Filtering Service
&lt;br&gt;&amp;gt; &lt;a href=&quot;http://www.trustem.com/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.trustem.com/&lt;/a&gt;&lt;br&gt;&amp;gt; No Spam. No Viruses. Just Good Clean Email.
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; ------------------------------------------------------------------------
&lt;br&gt;&amp;gt; This list is sponsored by: Information Assurance Certification Review Board
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; Prove to peers and potential employers without a doubt that you can actually do a proper penetration test. IACRB CPT and CEPT certs require a full practical examination in order to become certified.
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; &lt;a href=&quot;http://www.iacertification.org&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.iacertification.org&lt;/a&gt;&lt;br&gt;&amp;gt; ------------------------------------------------------------------------
&lt;br&gt;&amp;gt;
&lt;/div&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;-- 
&lt;br&gt;Cheers!
&lt;br&gt;&amp;nbsp;___ &amp;nbsp; __ &amp;nbsp; &amp;nbsp;___
&lt;br&gt;(_ &amp;nbsp;_) /__\ &amp;nbsp;/ __)
&lt;br&gt;&amp;nbsp; ) &amp;nbsp;( &amp;nbsp;/(__)\ \__ \
&lt;br&gt;&amp;nbsp;(__)(__)(__)(__/
&lt;br&gt;&lt;br&gt;------------------------------------------------------------------------
&lt;br&gt;This list is sponsored by: Information Assurance Certification Review Board
&lt;br&gt;&lt;br&gt;Prove to peers and potential employers without a doubt that you can actually do a proper penetration test. IACRB CPT and CEPT certs require a full practical examination in order to become certified.
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://www.iacertification.org&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.iacertification.org&lt;/a&gt;&lt;br&gt;------------------------------------------------------------------------
&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/Windows-Internationalization--tp26433781p26571070.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26571084</id>
	<title>Tools Update - last week of november 2009</title>
	<published>2009-11-29T02:33:29Z</published>
	<updated>2009-11-29T02:33:29Z</updated>
	<author>
		<name>SD List</name>
	</author>
	<content type="html">Hello
&lt;br&gt;&lt;br&gt;Here is the site's newsletter &amp;quot;Security Database Tools Watch&amp;quot;
&lt;br&gt;(&lt;a href=&quot;http://www.security-database.com/toolswatch&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.security-database.com/toolswatch&lt;/a&gt;).
&lt;br&gt;This letter summarizes the articles and news items published since 7 days.
&lt;br&gt;&lt;br&gt;We also announce 3 new features :
&lt;br&gt;&lt;br&gt;- Vulnerability Dashboard is fully integrated the OSVDB API. Now with each
&lt;br&gt;CVE comes the available OSVDB entry(ies).
&lt;br&gt;&lt;br&gt;- Vulnerability Dashboard is now linking to SAINT Corporation Exploits.
&lt;br&gt;When available, the CVE displays with CVSS, CPE, CAPEC, CWE, OVAL, OSVDB
&lt;br&gt;and SaintExploit ID.
&lt;br&gt;&lt;br&gt;- ToolsWatch Process (6 categories : Vulnerability Scanner &amp; Management,
&lt;br&gt;Penetration testing &amp; Ethical Hacking, IDS, Code Auditing, Application
&lt;br&gt;Scanner) is now mapped with to the appropriate standard or regulation as
&lt;br&gt;well as PCI DSS, GLBA, HIPAA, ISO 27001/27002, SOX, and FISMA
&lt;br&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;New articles
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;--------------------------
&lt;br&gt;&lt;br&gt;&lt;br&gt;** Eclipse HTTP Client (HTTP4e) v2.0 available **
&lt;br&gt;by &amp;nbsp;Tools Tracker Team
&lt;br&gt;- 28 November 2009
&lt;br&gt;&lt;br&gt;Eclipse HTTP Client (HTTP4e) is an Eclipse plugin formaking HTTP and
&lt;br&gt;RESTful calls. Build with user experience in mind, it simplifies the
&lt;br&gt;developer/QA job of testing Web Services, REST, JSON and HTTP. It is a
&lt;br&gt;useful tool for your daily job of HTTP header tampering and hacking.
&lt;br&gt;&lt;br&gt;Features:
&lt;br&gt;&lt;br&gt;Making/Replaying an HTTP call directly from Eclipse IDE
&lt;br&gt;&lt;br&gt;Visual Editor Panels for headers, parameters and http packet body
&lt;br&gt;&lt;br&gt;Tabbed browsing (allowing replaying different RESTful, HTTP calls on
&lt;br&gt;separate (...)
&lt;br&gt;&lt;br&gt;-&amp;gt;
&lt;br&gt;&lt;a href=&quot;http://www.security-database.com/toolswatch/Eclipse-HTTP-Client-HTTP4e-v2.html&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.security-database.com/toolswatch/Eclipse-HTTP-Client-HTTP4e-v2.html&lt;/a&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;** History of Hacking - Part 1 **
&lt;br&gt;by &amp;nbsp;Tools Tracker Team
&lt;br&gt;- 28 November 2009
&lt;br&gt;&lt;br&gt;Every culture has its beginning somewhere, Computer hacking is no
&lt;br&gt;exception. The History of Hacking video series is a 5 part documentary
&lt;br&gt;which runs down memory lane and presents important figures, facts and
&lt;br&gt;personalities of the Hacking culture. In History of Hacking Part 1, we will
&lt;br&gt;look at Phone Phreaking and John Draper a.k.a Captain Crunch and try and
&lt;br&gt;understand the string of events which molded the Phone Phreaking culture.
&lt;br&gt;&lt;br&gt;Those of you who have not heard of John, he is the guy who (...)
&lt;br&gt;&lt;br&gt;-&amp;gt;
&lt;br&gt;&lt;a href=&quot;http://www.security-database.com/toolswatch/History-of-Hacking-Part-1.html&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.security-database.com/toolswatch/History-of-Hacking-Part-1.html&lt;/a&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;** Security Acts Magazine Issue 1 released **
&lt;br&gt;by &amp;nbsp;Tools Tracker Team
&lt;br&gt;- 27 November 2009
&lt;br&gt;&lt;br&gt;Security Acts is the challenge of producing a high-quality magazine for
&lt;br&gt;profes- sionals in IT Security, which is made by and issued for the people
&lt;br&gt;involved in IT Security. This online magazine is free of charge and will
&lt;br&gt;finance itself through adverts.
&lt;br&gt;&lt;br&gt;In this 1st issue
&lt;br&gt;&lt;br&gt;AJAX makes applications more difficult to secure by Manu Cohen
&lt;br&gt;&lt;br&gt;AJAX is the new hot technology concerning web applications. It allows the
&lt;br&gt;client to do much more than before and have a much better user experience.
&lt;br&gt;&lt;br&gt;An (...)
&lt;br&gt;&lt;br&gt;-&amp;gt;
&lt;br&gt;&lt;a href=&quot;http://www.security-database.com/toolswatch/Security-Acts-Magazine-Issue-1.html&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.security-database.com/toolswatch/Security-Acts-Magazine-Issue-1.html&lt;/a&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;** vmap v0.7 released - identifying remotely daemons **
&lt;br&gt;by &amp;nbsp;ToolsTracker
&lt;br&gt;- 26 November 2009
&lt;br&gt;&lt;br&gt;vmap lets you remotely ident the version of a daemon. It currently works
&lt;br&gt;for ftp, smtp, pop3, imap and http.
&lt;br&gt;&lt;br&gt;Version 0.7
&lt;br&gt;&lt;br&gt;Code cleanup
&lt;br&gt;&lt;br&gt;Fixed lots of bugs
&lt;br&gt;&lt;br&gt;Added support for nmap and amap logs
&lt;br&gt;&lt;br&gt;Added a &amp;quot;make install&amp;quot; (public dir is /usr/local/share/vmap)
&lt;br&gt;&lt;br&gt;Got rid of that damn rn-stuff, now every line ends just with n
&lt;br&gt;&lt;br&gt;How does it work?
&lt;br&gt;&lt;br&gt;Every daemon has it's own reply on commands. For example, the HELP command
&lt;br&gt;sends different replies on different FTP daemons.
&lt;br&gt;&lt;br&gt;This can be (...)
&lt;br&gt;&lt;br&gt;-&amp;gt;
&lt;br&gt;&lt;a href=&quot;http://www.security-database.com/toolswatch/vmap-v0-7-released-identifying.html&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.security-database.com/toolswatch/vmap-v0-7-released-identifying.html&lt;/a&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;** Slitaz Aircrack-ng Distribution v20091117 released **
&lt;br&gt;by &amp;nbsp;ToolsTracker
&lt;br&gt;- 26 November 2009
&lt;br&gt;&lt;br&gt;The Slitaz Aircrack-ng Distribution is the base Slitaz cooking
&lt;br&gt;version plus the latest Aircrack-ng SVN version, wireless drivers patched
&lt;br&gt;for injection and other related tools. The custom distribution is
&lt;br&gt;especially tuned for the Acer Aspire One netbooks but will work well on
&lt;br&gt;virtually all desktops, notebooks and netbooks.
&lt;br&gt;&lt;br&gt;Version November 17/2009
&lt;br&gt;&lt;br&gt;Updated aircrack-ng suite to 1.0 final including sqlite airolib-ng support
&lt;br&gt;&lt;br&gt;&lt;br&gt;Updated all Slitaz packages as of November 16/2009. This is Slitaz (...)
&lt;br&gt;&lt;br&gt;-&amp;gt;
&lt;br&gt;&lt;a href=&quot;http://www.security-database.com/toolswatch/Slitaz-Aircrack-ng-Distribution,885.html&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.security-database.com/toolswatch/Slitaz-Aircrack-ng-Distribution,885.html&lt;/a&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;** log2timeline v0.40 released **
&lt;br&gt;by &amp;nbsp;ToolsTracker
&lt;br&gt;- 26 November 2009
&lt;br&gt;&lt;br&gt;log2timeline is a framework for artifact timeline creation and analysis.
&lt;br&gt;The main purpose is to provide a single tool to parse various log files and
&lt;br&gt;artifacts found on suspect systems (and supporting systems, such as network
&lt;br&gt;equipment) and produce a body file that can be used to create a timeline,
&lt;br&gt;using tools such as mactime from TSK, for forensic investigators.
&lt;br&gt;&lt;br&gt;Version 0.40
&lt;br&gt;&lt;br&gt;[CFTL output] Fixed few bugs in the cftl.pm output module, didn't work in
&lt;br&gt;the current CFTL version without these (...)
&lt;br&gt;&lt;br&gt;-&amp;gt;
&lt;br&gt;&lt;a href=&quot;http://www.security-database.com/toolswatch/log2timeline-v0-40-released.html&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.security-database.com/toolswatch/log2timeline-v0-40-released.html&lt;/a&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;** Websecurify v0.4 released **
&lt;br&gt;by &amp;nbsp;ToolsTracker
&lt;br&gt;- 26 November 2009
&lt;br&gt;&lt;br&gt;Websecurify Security Testing Framework identifies web security
&lt;br&gt;vulnerabilities by using advanced browser automation, discovery and fuzzing
&lt;br&gt;technologies. The framework is written in JavaScript and successfully
&lt;br&gt;executes in numerous platforms including modern browsers with support for
&lt;br&gt;HTML5, xulrunner, xpcshell, Java, V8 and others.
&lt;br&gt;&lt;br&gt;What's New in Websecurify
&lt;br&gt;&lt;br&gt;better, more responsive UI
&lt;br&gt;&lt;br&gt;support for Workspaces
&lt;br&gt;&lt;br&gt;nicer looking tasks
&lt;br&gt;&lt;br&gt;netter reporting with ability to export to various formats (...)
&lt;br&gt;&lt;br&gt;-&amp;gt;
&lt;br&gt;&lt;a href=&quot;http://www.security-database.com/toolswatch/Websecurify-v0-4-released.html&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.security-database.com/toolswatch/Websecurify-v0-4-released.html&lt;/a&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;** SAINT v7.2.1 released **
&lt;br&gt;by &amp;nbsp;ToolsTracker
&lt;br&gt;- 26 November 2009
&lt;br&gt;&lt;br&gt;SAINT is the Security Administrators Integrated Network Tool. It is
&lt;br&gt;used to non-intrusively detect security vulnerabilities on any remote
&lt;br&gt;target, including servers, workstations, networking devices, and other
&lt;br&gt;types of nodes. It will also gather information such as operating system
&lt;br&gt;types and open ports. The SAINT graphical user interface provides access to
&lt;br&gt;SAINTs data management, scan configuration, scan scheduling, and data
&lt;br&gt;analysis capabilities through a web browser. Different aspects of (...)
&lt;br&gt;&lt;br&gt;-&amp;gt; &lt;a href=&quot;http://www.security-database.com/toolswatch/SAINT-v7-2-1-released.html&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.security-database.com/toolswatch/SAINT-v7-2-1-released.html&lt;/a&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;** Graudit v1.4 released **
&lt;br&gt;by &amp;nbsp;ToolsTracker
&lt;br&gt;- 25 November 2009
&lt;br&gt;&lt;br&gt;Graudit is a simple script and signature sets that allows you to find
&lt;br&gt;potential security flaws in source code using the GNU utility grep. It's
&lt;br&gt;comparable to other static analysis applications like RATS, SWAAT and
&lt;br&gt;flaw-finder while keeping the technical requirements to a minimum and being
&lt;br&gt;very flexible.
&lt;br&gt;&lt;br&gt;Version 1.4
&lt;br&gt;&lt;br&gt;New and improved signatures
&lt;br&gt;&lt;br&gt;Graceful detection of grep version graudit /path/to/scan
&lt;br&gt;&lt;br&gt;The following options are available:
&lt;br&gt;&lt;br&gt;-h prints a short help text
&lt;br&gt;&lt;br&gt;-v prints version number (...)
&lt;br&gt;&lt;br&gt;-&amp;gt; &lt;a href=&quot;http://www.security-database.com/toolswatch/Graudit-v1-4-released.html&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.security-database.com/toolswatch/Graudit-v1-4-released.html&lt;/a&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;** (updated) SHODAN - Computer Search Engine released **
&lt;br&gt;by &amp;nbsp;Tools Tracker Team
&lt;br&gt;- 25 November 2009
&lt;br&gt;&lt;br&gt;SHODAN lets you find servers/ routers/ etc. by using the simple search bar
&lt;br&gt;up above. Most of the data in the index covers web servers at the moment,
&lt;br&gt;but there is some data on FTP, Telnet and SSH services as well.
&lt;br&gt;&lt;br&gt;I've just looked upon the new search engine. My first impression was :
&lt;br&gt;Holy s.., it could find a lot of buggy servers, websites, devices and so
&lt;br&gt;on.
&lt;br&gt;&lt;br&gt;But when playing again with google dorks (GHDB), it happens to look (hope
&lt;br&gt;i'm not mistaken), that Shodan is a kind of GUI for (...)
&lt;br&gt;&lt;br&gt;-&amp;gt;
&lt;br&gt;&lt;a href=&quot;http://www.security-database.com/toolswatch/SHODAN-Computer-Search-Engine.html&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.security-database.com/toolswatch/SHODAN-Computer-Search-Engine.html&lt;/a&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;** Acunetix WVS Version 6.5 build 20091124 released **
&lt;br&gt;by &amp;nbsp;Tools Tracker Team
&lt;br&gt;- 24 November 2009
&lt;br&gt;&lt;br&gt;Acunetix Web Vulnerability Scanner (WVS) is an automated web application
&lt;br&gt;security testing tool that audits your web applications by checking for
&lt;br&gt;exploitable hacking vulnerabilities. Automated scans may be supplemented
&lt;br&gt;and cross-checked with the variety of manual tools to allow for
&lt;br&gt;comprehensive web site and web application penetration testing
&lt;br&gt;&lt;br&gt;An updated build for Acunetix WVS Version 6.5 has been released with a
&lt;br&gt;number of improvements, bug fixes, and most important of all, a good number
&lt;br&gt;of (...)
&lt;br&gt;&lt;br&gt;-&amp;gt;
&lt;br&gt;&lt;a href=&quot;http://www.security-database.com/toolswatch/Acunetix-WVS-Version-6-5-build,879.html&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.security-database.com/toolswatch/Acunetix-WVS-Version-6-5-build,879.html&lt;/a&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;** Focus on Pangolin SQL Injection Tool **
&lt;br&gt;by &amp;nbsp;Tools Tracker Team
&lt;br&gt;- 24 November 2009
&lt;br&gt;&lt;br&gt;Pangolin is an automatic SQL injection penetration testing tool developed
&lt;br&gt;by NOSEC. Its goal is to detect and take advantage of SQL injection
&lt;br&gt;vulnerabilities on web applications.
&lt;br&gt;&lt;br&gt;Once it detects one or more SQL injections on the target host, the user
&lt;br&gt;can choose among a variety of options to perform an extensive back-end
&lt;br&gt;database management system fingerprint, retrieve DBMS session user and
&lt;br&gt;database, enumerate users, password hashes, privileges, databases, dump
&lt;br&gt;entire or user's specific (...)
&lt;br&gt;&lt;br&gt;-&amp;gt;
&lt;br&gt;&lt;a href=&quot;http://www.security-database.com/toolswatch/Focus-on-Pangolin-SQL-Injection.html&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.security-database.com/toolswatch/Focus-on-Pangolin-SQL-Injection.html&lt;/a&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;** OSSEC v2.3 BETA available &amp;nbsp;**
&lt;br&gt;by &amp;nbsp;Tools Tracker Team
&lt;br&gt;- 24 November 2009
&lt;br&gt;&lt;br&gt;OSSEC is a scalable, multi-platform, open source Host-based Intrusion
&lt;br&gt;Detection System (HIDS). It has a powerful correlation and analysis engine,
&lt;br&gt;integrating log analysis, file integrity checking, Windows registry
&lt;br&gt;monitoring, centralized policy enforcement, rootkit detection, real-time
&lt;br&gt;alerting and active respons
&lt;br&gt;&lt;br&gt;New features - v2.3
&lt;br&gt;&lt;br&gt;Added support for the Nginx web server.
&lt;br&gt;&lt;br&gt;Added support for Suhosin (Hardened PHP).
&lt;br&gt;&lt;br&gt;Added support for real time integrity monitoring on Windows systems
&lt;br&gt;&lt;br&gt;Added (...)
&lt;br&gt;&lt;br&gt;-&amp;gt;
&lt;br&gt;&lt;a href=&quot;http://www.security-database.com/toolswatch/OSSEC-v2-3-BETA-available.html&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.security-database.com/toolswatch/OSSEC-v2-3-BETA-available.html&lt;/a&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;** Nmap 5.10BETA1 released &amp;nbsp;**
&lt;br&gt;by &amp;nbsp;Tools Tracker Team
&lt;br&gt;- 24 November 2009
&lt;br&gt;&lt;br&gt;Nmap (&amp;quot;Network Mapper&amp;quot;) is a free open source utility for network
&lt;br&gt;exploration or security auditing. It was designed to rapidly scan large
&lt;br&gt;networks, although it works fine against single hosts. Nmap uses raw IP
&lt;br&gt;packets in novel ways to determine what hosts are available on the network,
&lt;br&gt;what services (application name and version) those hosts are offering, what
&lt;br&gt;operating systems (and OS versions) they are running, what type of packet
&lt;br&gt;filters/firewalls are in use, and dozens of other (...)
&lt;br&gt;&lt;br&gt;-&amp;gt;
&lt;br&gt;&lt;a href=&quot;http://www.security-database.com/toolswatch/Nmap-5-10BETA1-released.html&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.security-database.com/toolswatch/Nmap-5-10BETA1-released.html&lt;/a&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;** Security-Database integrates OSVDB &amp;nbsp;**
&lt;br&gt;by &amp;nbsp;Tools Tracker Team
&lt;br&gt;- 23 November 2009
&lt;br&gt;&lt;br&gt;Security-Database provides a continuous IT vulnerability XML feed based on
&lt;br&gt;open security standards for classification, scoring, enumeration and
&lt;br&gt;exploitation. It also provides a well maintained repository for latest
&lt;br&gt;security and auditing tools and utilities.
&lt;br&gt;&lt;br&gt;We are happy (again) to announce that we have fully integrated the OSVDB
&lt;br&gt;API with our Vulnerability Crosslinker Engine.
&lt;br&gt;&lt;br&gt;Now with each CVE comes its appropriate OSVDB entry.
&lt;br&gt;&lt;br&gt;Here is an example. For this MS09-68 Microsoft bulletin, you (...)
&lt;br&gt;&lt;br&gt;-&amp;gt;
&lt;br&gt;&lt;a href=&quot;http://www.security-database.com/toolswatch/Security-Database-integrates-OSVDB.html&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.security-database.com/toolswatch/Security-Database-integrates-OSVDB.html&lt;/a&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;** RISK IT Framework and Practitioner Guide published **
&lt;br&gt;by &amp;nbsp;Tools Tracker Team
&lt;br&gt;- 23 November 2009
&lt;br&gt;&lt;br&gt;The Risk IT Framework fills the gap between generic risk management
&lt;br&gt;frameworks and detailed (primarily security-related) IT risk management
&lt;br&gt;frameworks. It provides an end-to-end, comprehensive view of all risks
&lt;br&gt;related to the use of IT and a similarly thorough treatment of risk
&lt;br&gt;management, from the tone and culture at the top, to operational issues. In
&lt;br&gt;summary, the framework will enable enterprises to understand and manage all
&lt;br&gt;significant IT risk types, building upon the existing risk (...)
&lt;br&gt;&lt;br&gt;-&amp;gt;
&lt;br&gt;&lt;a href=&quot;http://www.security-database.com/toolswatch/RISK-IT-Framework-and-Practitioner.html&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.security-database.com/toolswatch/RISK-IT-Framework-and-Practitioner.html&lt;/a&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;** &amp;quot;Compliance Mandates&amp;quot; feature added to ToolsWatch Process **
&lt;br&gt;by &amp;nbsp;Tools Tracker Team
&lt;br&gt;- 22 November 2009
&lt;br&gt;&lt;br&gt;ToolsWatch Process is a free service started by Security-Database in Sept
&lt;br&gt;2006. ToolsWatch is tracking hundreds of software and utilities divided
&lt;br&gt;into different categories.
&lt;br&gt;&lt;br&gt;We are happy to announce that we've just implemented a new feature called
&lt;br&gt;&amp;quot;Compliance Mandatory&amp;quot;. In fact, we took as basis for our work the
&lt;br&gt;excellent reference SANS WhatWorks.
&lt;br&gt;&lt;br&gt;Now along with a category, we provide a mapping to the appropriate
&lt;br&gt;standard or regulation as well as PCI DSS, GLBA, HIPAA, ISO 27001/27002,
&lt;br&gt;SOX, (...)
&lt;br&gt;&lt;br&gt;-&amp;gt;
&lt;br&gt;&lt;a href=&quot;http://www.security-database.com/toolswatch/Compliance-Mandates-feature-added.html&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.security-database.com/toolswatch/Compliance-Mandates-feature-added.html&lt;/a&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;** NetworkMiner updated to v0.91 **
&lt;br&gt;by &amp;nbsp;Tools Tracker Team
&lt;br&gt;- 22 November 2009
&lt;br&gt;&lt;br&gt;NetworkMiner is a Network Forensic Analysis Tool (NFAT) for Windows.
&lt;br&gt;NetworkMiner can be used as a passive network sniffer/packet capturing tool
&lt;br&gt;in order to detect operating systems, sessions, hostnames, open ports etc.
&lt;br&gt;without putting any traffic on the network.
&lt;br&gt;&lt;br&gt;NetworkMiner can also parse PCAP files for off-line analysis and to
&lt;br&gt;regenerate/reassemble transmitted files and certificates from PCAP files.
&lt;br&gt;&lt;br&gt;The purpose of NetworkMiner is to collect data (such as forensic evidence)
&lt;br&gt;about (...)
&lt;br&gt;&lt;br&gt;-&amp;gt;
&lt;br&gt;&lt;a href=&quot;http://www.security-database.com/toolswatch/NetworkMiner-updated-to-v0-91.html&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.security-database.com/toolswatch/NetworkMiner-updated-to-v0-91.html&lt;/a&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;** ISO 31000:2009 risk management standard released **
&lt;br&gt;by &amp;nbsp;Tools Tracker Team
&lt;br&gt;- 22 November 2009
&lt;br&gt;&lt;br&gt;ISO 31000:2009 provides principles and generic guidelines on risk
&lt;br&gt;management.
&lt;br&gt;&lt;br&gt;ISO 31000:2009 can be used by any public, private or community enterprise,
&lt;br&gt;association, group or individual. Therefore, ISO 31000:2009 is not specific
&lt;br&gt;to any industry or sector.
&lt;br&gt;&lt;br&gt;ISO 31000:2009 can be applied throughout the life of an organization, and
&lt;br&gt;to a wide range of activities, including strategies and decisions,
&lt;br&gt;operations, processes, functions, projects, products, services and assets.
&lt;br&gt;&lt;br&gt;ISO 31000:2009 can be (...)
&lt;br&gt;&lt;br&gt;-&amp;gt;
&lt;br&gt;&lt;a href=&quot;http://www.security-database.com/toolswatch/ISO-31000-2009-risk-management.html&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.security-database.com/toolswatch/ISO-31000-2009-risk-management.html&lt;/a&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;** Process Hacker v1.7 released **
&lt;br&gt;by &amp;nbsp;ToolsTracker
&lt;br&gt;- 21 November 2009
&lt;br&gt;&lt;br&gt;Process Hacker is a free and open source process viewer and memory editor
&lt;br&gt;with unique features such as powerful process termination and a Regex
&lt;br&gt;memory searcher. It can show services, processes and their threads,
&lt;br&gt;modules, handles and memory regions.
&lt;br&gt;&lt;br&gt;Version 1.7
&lt;br&gt;&lt;br&gt;NEW/IMPROVED
&lt;br&gt;&lt;br&gt;#2873973 - &amp;quot;Columns window improvements&amp;quot;
&lt;br&gt;&lt;br&gt;New settings system - settings can now be saved anywhere
&lt;br&gt;&lt;br&gt;Decreased memory and CPU usage
&lt;br&gt;&lt;br&gt;Process Hacker probably runs on Windows 2000 now
&lt;br&gt;&lt;br&gt;FIXED
&lt;br&gt;&lt;br&gt;#2880368 - &amp;quot;Highlight Option (...)
&lt;br&gt;&lt;br&gt;-&amp;gt;
&lt;br&gt;&lt;a href=&quot;http://www.security-database.com/toolswatch/Process-Hacker-v1-7-released.html&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.security-database.com/toolswatch/Process-Hacker-v1-7-released.html&lt;/a&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;** Hyena v8.0 32-bit &amp; 64-bit released **
&lt;br&gt;by &amp;nbsp;ToolsTracker
&lt;br&gt;- 21 November 2009
&lt;br&gt;&lt;br&gt;Hyena is a tool for day-to-day administration of Windows NT and Windows
&lt;br&gt;XP/2000/2003 systems. Now Windows 7 too.
&lt;br&gt;&lt;br&gt;Hyena brings together all of the administrative tools from Windows NT such
&lt;br&gt;as User Manager, Server Manager, and File Manager/Explorer, and many of the
&lt;br&gt;MMC components from Windows 2000/2003 into a single, easy-to-use,
&lt;br&gt;centralized program. Hyena arranges all system objects, such as users,
&lt;br&gt;servers, and groups, in a hierarchical tree for easy and logical system
&lt;br&gt;administration. (...)
&lt;br&gt;&lt;br&gt;-&amp;gt;
&lt;br&gt;&lt;a href=&quot;http://www.security-database.com/toolswatch/Hyena-v8-32-bit-64-bit-released.html&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.security-database.com/toolswatch/Hyena-v8-32-bit-64-bit-released.html&lt;/a&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;New news items
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;--------------------------
&lt;br&gt;&lt;br&gt;&lt;br&gt;* Security-Database integrates OSVDB &amp;nbsp;*
&lt;br&gt;- 23 November 2009
&lt;br&gt;&lt;br&gt;We are happy (again) to announce that we have fully integrated the OSVDB
&lt;br&gt;API with our Vulnerability Crosslinker Engine.
&lt;br&gt;&lt;br&gt;Now with each CVE comes its appropriate OSVDB entry.
&lt;br&gt;&lt;br&gt;Here is an example. For this MS09-68 Microsoft bulletin, you have very
&lt;br&gt;nice information:
&lt;br&gt;&lt;br&gt;CVE
&lt;br&gt;&lt;br&gt;CVSS v2.0
&lt;br&gt;&lt;br&gt;CWE
&lt;br&gt;&lt;br&gt;CAPEC (...)
&lt;br&gt;&lt;br&gt;-&amp;gt;
&lt;br&gt;&lt;a href=&quot;http://www.security-database.com/toolswatch/+Security-Database-integrates-OSVDB+.html&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.security-database.com/toolswatch/+Security-Database-integrates-OSVDB+.html&lt;/a&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;* Mapping Tools with Standards and Regulations feature added *
&lt;br&gt;- 22 November 2009
&lt;br&gt;&lt;br&gt;We are happy to announce that we've just implemented a new feature called
&lt;br&gt;&amp;quot;Compliance Mandatory&amp;quot;. In fact, we took as basis for our work the
&lt;br&gt;excellent reference SANS WhatWorks.
&lt;br&gt;&lt;br&gt;Now along with a category, we provide a mapping to the appropriate
&lt;br&gt;standard or regulation as well as PCI DSS, GLBA, (...)
&lt;br&gt;&lt;br&gt;-&amp;gt;
&lt;br&gt;&lt;a href=&quot;http://www.security-database.com/toolswatch/+Mapping-Tools-with-Standards-and+.html&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.security-database.com/toolswatch/+Mapping-Tools-with-Standards-and+.html&lt;/a&gt;&lt;br&gt;&lt;br&gt;Regards
&lt;br&gt;&lt;br&gt;Nabil OUCHN
&lt;br&gt;CEO &amp; Founder
&lt;br&gt;Security-Database
&lt;br&gt;France
&lt;br&gt;&lt;br&gt;Maximiliano Soler
&lt;br&gt;ToolWatch Leader
&lt;br&gt;Security-Database
&lt;br&gt;Argentina
&lt;br&gt;&lt;br&gt;&lt;br&gt;------------------------------------------------------------------------
&lt;br&gt;This list is sponsored by: Information Assurance Certification Review Board
&lt;br&gt;&lt;br&gt;Prove to peers and potential employers without a doubt that you can actually do a proper penetration test. IACRB CPT and CEPT certs require a full practical examination in order to become certified. 
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://www.iacertification.org&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.iacertification.org&lt;/a&gt;&lt;br&gt;------------------------------------------------------------------------
&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/Tools-Update---last-week-of-november-2009-tp26571084p26571084.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26571310</id>
	<title>Re: Different ways to portscan IPS</title>
	<published>2009-11-28T21:29:11Z</published>
	<updated>2009-11-28T21:29:11Z</updated>
	<author>
		<name>Daniel Miessler-2</name>
	</author>
	<content type="html">&lt;br&gt;On Nov 20, 2009, at 6:02 AM, Vimal™ wrote:
&lt;br&gt;&lt;br&gt;&amp;gt; What are the different ways of port scanning the target when an IPS in placed.
&lt;br&gt;&amp;gt; 
&lt;br&gt;&amp;gt; Some of the methods I used are:
&lt;br&gt;&amp;gt; 
&lt;br&gt;&amp;gt; 1. Delay the scan prob (nmap --scan-delay)
&lt;br&gt;&amp;gt; 
&lt;br&gt;&amp;gt; 2. Integrating the scanner with TOR
&lt;br&gt;&lt;br&gt;A couple of things to think about. Look at what normal SYNs look like, and try and emmulate them. Look at what bad SYNs look like, and don't look like those. I posted this a while back: &lt;a href=&quot;http://danielmiessler.com/study/synpackets/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://danielmiessler.com/study/synpackets/&lt;/a&gt;&amp;nbsp;which shows that there are differences in traffic created by regular applications and traffic created by security tools.
&lt;br&gt;&lt;br&gt;Take notice of this, and adjust accordingly.
&lt;br&gt;&lt;br&gt;Also, just for giggles, consider using the decoy option with Nmap and loading in a list of DShield blacklisted addresses (assuming you're not trying to be quiet). It's likely to throw most off your trail.
&lt;br&gt;&lt;br&gt;--
&lt;br&gt;Daniel R. Miessler
&lt;br&gt;W: &lt;a href=&quot;http://danielmiessler.com&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://danielmiessler.com&lt;/a&gt;&lt;br&gt;E: &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26571310&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;daniel@...&lt;/a&gt;
&lt;br&gt;P: 0x4048712D
&lt;br&gt;&lt;br&gt;&lt;br&gt;------------------------------------------------------------------------
&lt;br&gt;This list is sponsored by: Information Assurance Certification Review Board
&lt;br&gt;&lt;br&gt;Prove to peers and potential employers without a doubt that you can actually do a proper penetration test. IACRB CPT and CEPT certs require a full practical examination in order to become certified.
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://www.iacertification.org&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.iacertification.org&lt;/a&gt;&lt;br&gt;------------------------------------------------------------------------
&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/Different-ways-to-portscan-IPS-tp26489415p26571310.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26570881</id>
	<title>Re: Penetrating a MySql Server</title>
	<published>2009-11-26T18:41:46Z</published>
	<updated>2009-11-26T18:41:46Z</updated>
	<author>
		<name>Adriel T. Desautels</name>
	</author>
	<content type="html">If you have read permissions, then you can read the error log. &amp;nbsp;If its &amp;nbsp;
&lt;br&gt;a PHP based application, which it is, then you can inject a one-line &amp;nbsp;
&lt;br&gt;PHP backdoor into the error log by making a &amp;quot;bogus&amp;quot; request against &amp;nbsp;
&lt;br&gt;the server. Then the next time you read the error log, your PHP will &amp;nbsp;
&lt;br&gt;execute if you do it right. &amp;nbsp;We've used that technique on many &amp;nbsp;
&lt;br&gt;occasions to get a shell... works very well. &amp;nbsp;:)
&lt;br&gt;&lt;br&gt;Does that make sense?
&lt;br&gt;&lt;br&gt;&lt;br&gt;On Nov 23, 2009, at 5:27 AM, &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26570881&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;r00fsec@...&lt;/a&gt; wrote:
&lt;br&gt;&lt;div class='shrinkable-quote'&gt;&lt;br&gt;&amp;gt; Hi!!
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; So...I have a home server . It uses apache , php and MySql (5.0.77). &amp;nbsp;
&lt;br&gt;&amp;gt; It doesn't has any site on it but i create a page with a simple sql &amp;nbsp;
&lt;br&gt;&amp;gt; injection Bug.
&lt;br&gt;&amp;gt; MySql server is running as root user. Now the goal is to take a &amp;nbsp;
&lt;br&gt;&amp;gt; shell in this server just for exercise . I know that it is not so &amp;nbsp;
&lt;br&gt;&amp;gt; easy to find out there a server like this but im now starting to &amp;nbsp;
&lt;br&gt;&amp;gt; &amp;quot;play&amp;quot; with these things.
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; I have try some technics but i didnt got the shell yet :p Here is &amp;nbsp;
&lt;br&gt;&amp;gt; what im doing..
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; 1st I &amp;nbsp;use the load_file() function to see any file in the server &amp;nbsp;
&lt;br&gt;&amp;gt; like /etc/passwd
&lt;br&gt;&amp;gt; 2nd i tried to use the technic of into outfile and then use it as &amp;nbsp;
&lt;br&gt;&amp;gt; Remote Code Execution but occurs an error. Because of the permissions.
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; Thats all i had tried in the home server.
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; Do you have any idea on how to continue penetrate this server ? If &amp;nbsp;
&lt;br&gt;&amp;gt; you want give me some hints to continue my exercise.
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; Thanks!
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; ------------------------------------------------------------------------
&lt;br&gt;&amp;gt; This list is sponsored by: Information Assurance Certification &amp;nbsp;
&lt;br&gt;&amp;gt; Review Board
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; Prove to peers and potential employers without a doubt that you can &amp;nbsp;
&lt;br&gt;&amp;gt; actually do a proper penetration test. IACRB CPT and CEPT certs &amp;nbsp;
&lt;br&gt;&amp;gt; require a full practical examination in order to become certified.
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; &lt;a href=&quot;http://www.iacertification.org&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.iacertification.org&lt;/a&gt;&lt;br&gt;&amp;gt; ------------------------------------------------------------------------
&lt;br&gt;&amp;gt;
&lt;/div&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; Adriel T. Desautels
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26570881&amp;i=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;ad_lists@...&lt;/a&gt;
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;--------------------------------------
&lt;br&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; Subscribe to our blog
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;&lt;a href=&quot;http://snosoft.blogspot.com&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://snosoft.blogspot.com&lt;/a&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;------------------------------------------------------------------------
&lt;br&gt;This list is sponsored by: Information Assurance Certification Review Board
&lt;br&gt;&lt;br&gt;Prove to peers and potential employers without a doubt that you can actually do a proper penetration test. IACRB CPT and CEPT certs require a full practical examination in order to become certified. 
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://www.iacertification.org&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.iacertification.org&lt;/a&gt;&lt;br&gt;------------------------------------------------------------------------
&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/Penetrating-a-MySql-Server-tp26489298p26570881.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26571160</id>
	<title>Re: How to write a security vulnerability assessment consulting  project</title>
	<published>2009-11-26T02:00:51Z</published>
	<updated>2009-11-26T02:00:51Z</updated>
	<author>
		<name>Miguel Tubía</name>
	</author>
	<content type="html">Hi!
&lt;br&gt;you can check ISSAF too: &lt;a href=&quot;http://www.oissg.org/downloads/issaf-0.2/index.php&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.oissg.org/downloads/issaf-0.2/index.php&lt;/a&gt;&lt;br&gt;Regards,
&lt;br&gt;Miguel
&lt;br&gt;&lt;br&gt;2009/10/16 Nikhil Wagholikar &amp;lt;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26571160&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;visitnikhil@...&lt;/a&gt;&amp;gt;:
&lt;div class='shrinkable-quote'&gt;&lt;br&gt;&amp;gt; Hello Kai,
&lt;br&gt;&amp;gt; Like OSSTMM, you can also have a look at OWASP.
&lt;br&gt;&amp;gt; Link: &lt;a href=&quot;http://www.owasp.org/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.owasp.org/&lt;/a&gt;&lt;br&gt;&amp;gt; ---
&lt;br&gt;&amp;gt; Nikhil Wagholikar
&lt;br&gt;&amp;gt; Practice Lead | Security Assessments &amp; Digital Forensics
&lt;br&gt;&amp;gt; Network Intelligence India Pvt. Ltd. [NII Consulting]
&lt;br&gt;&amp;gt; Web: &lt;a href=&quot;http://www.niiconsulting.com/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.niiconsulting.com/&lt;/a&gt;&lt;br&gt;&amp;gt; Comprehensive Information Security Training
&lt;br&gt;&amp;gt; &lt;a href=&quot;http://www.iisecurity.in/courses/Training%20Calendar.html&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.iisecurity.in/courses/Training%20Calendar.html&lt;/a&gt;&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; 2009/10/10 Kai &amp;lt;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26571160&amp;i=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;phamtungduong@...&lt;/a&gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; Hi all guys,
&lt;br&gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; Our security team is working in a security vulnerability assessment
&lt;br&gt;&amp;gt;&amp;gt; project. The phase one of this project is security vulnerability
&lt;br&gt;&amp;gt;&amp;gt; assessment consulting. But, it is the first time, our team works as
&lt;br&gt;&amp;gt;&amp;gt; consultant, so it is hard to start this phase. So, we have some some
&lt;br&gt;&amp;gt;&amp;gt; concern:
&lt;br&gt;&amp;gt;&amp;gt; - Which methodology can we use? Because, our customer need us to
&lt;br&gt;&amp;gt;&amp;gt; present our methodology which we use in this project.
&lt;br&gt;&amp;gt;&amp;gt; - Can we build the checklists to make reports? If yes, please give us
&lt;br&gt;&amp;gt;&amp;gt; details about these checklists. Which documents can we read to build
&lt;br&gt;&amp;gt;&amp;gt; these checklists?
&lt;br&gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; --
&lt;br&gt;&amp;gt;&amp;gt; Best regards,
&lt;br&gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; Phạm Tùng Dương
&lt;br&gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; ------------------------------------------------------------------------
&lt;br&gt;&amp;gt;&amp;gt; This list is sponsored by: Information Assurance Certification Review Board
&lt;br&gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; Prove to peers and potential employers without a doubt that you can actually do a proper penetration test. IACRB CPT and CEPT certs require a full practical examination in order to become certified.
&lt;br&gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &lt;a href=&quot;http://www.iacertification.org&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.iacertification.org&lt;/a&gt;&lt;br&gt;&amp;gt;&amp;gt; ------------------------------------------------------------------------
&lt;br&gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; ------------------------------------------------------------------------
&lt;br&gt;&amp;gt; This list is sponsored by: Information Assurance Certification Review Board
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; Prove to peers and potential employers without a doubt that you can actually do a proper penetration test. IACRB CPT and CEPT certs require a full practical examination in order to become certified.
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; &lt;a href=&quot;http://www.iacertification.org&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.iacertification.org&lt;/a&gt;&lt;br&gt;&amp;gt; ------------------------------------------------------------------------
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt;
&lt;/div&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;-- 
&lt;br&gt;Miguel Tubía
&lt;br&gt;www.zero-day.info
&lt;br&gt;&lt;br&gt;------------------------------------------------------------------------
&lt;br&gt;This list is sponsored by: Information Assurance Certification Review Board
&lt;br&gt;&lt;br&gt;Prove to peers and potential employers without a doubt that you can actually do a proper penetration test. IACRB CPT and CEPT certs require a full practical examination in order to become certified.
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://www.iacertification.org&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.iacertification.org&lt;/a&gt;&lt;br&gt;------------------------------------------------------------------------
&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/How-to-write-a-security-vulnerability-assessment-consulting-project-tp25877750p26571160.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26570932</id>
	<title>Re: CEH or OSCP?</title>
	<published>2009-11-25T15:17:12Z</published>
	<updated>2009-11-25T15:17:12Z</updated>
	<author>
		<name>Danux</name>
	</author>
	<content type="html">Ok, is not an advanced course but also not an introductory one.
&lt;br&gt;&lt;br&gt;You are right, you will learn cool stuff like arp|dns spoofing,
&lt;br&gt;crawling, shell programming, basic web attacks (directory traversal,
&lt;br&gt;SQL Injection)
&lt;br&gt;&lt;br&gt;The first modules are basics and definitely you will understand them
&lt;br&gt;without problems, Muts (instructor) has very good skills as a trainer.
&lt;br&gt;The top of this course is Stack Overflows and there is where you could
&lt;br&gt;get lost, specially because there are many topics related.
&lt;br&gt;&lt;br&gt;The think is that the exam is not only about basic stuff.
&lt;br&gt;&lt;br&gt;You can go to training page and download the brochure where you will
&lt;br&gt;find the requirements, if you feel good then go for it!!!!!!
&lt;br&gt;&lt;br&gt;Definitely, any course will give you a new learned experience.
&lt;br&gt;&lt;br&gt;My 1.1 cents
&lt;br&gt;&lt;br&gt;&lt;br&gt;On Wed, Nov 25, 2009 at 2:01 PM, Leandro Quibem Magnabosco
&lt;br&gt;&amp;lt;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26570932&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;leandro.magnabosco@...&lt;/a&gt;&amp;gt; wrote:
&lt;div class='shrinkable-quote'&gt;&lt;br&gt;&amp;gt; Danux escreveu:
&lt;br&gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; Always the same question from newbies!!! Dont feel that, I asked the
&lt;br&gt;&amp;gt;&amp;gt; same long time ago.
&lt;br&gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; If you wanna learn hundred of security tools go for CEH.
&lt;br&gt;&amp;gt;&amp;gt; If you wanna learn how to crete basic hacking tools go for OSCP.
&lt;br&gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; If you are a beginner definitely OSCP is not for you.
&lt;br&gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; I consider myself a beginner.
&lt;br&gt;&amp;gt; Wouldn't I learn something from OSCP anyway?
&lt;br&gt;&amp;gt; Is it *that hard* that beginners would not be able to learn enough to make
&lt;br&gt;&amp;gt; it valuable?
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; What do you guys think?
&lt;br&gt;&amp;gt;
&lt;/div&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;-- 
&lt;br&gt;Daniel Regalado aka Danux
&lt;br&gt;Hacker Wanna Be from Nezahualcoyotl
&lt;br&gt;&lt;br&gt;www.macula-group.com
&lt;br&gt;&lt;br&gt;------------------------------------------------------------------------
&lt;br&gt;This list is sponsored by: Information Assurance Certification Review Board
&lt;br&gt;&lt;br&gt;Prove to peers and potential employers without a doubt that you can actually do a proper penetration test. IACRB CPT and CEPT certs require a full practical examination in order to become certified. 
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://www.iacertification.org&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.iacertification.org&lt;/a&gt;&lt;br&gt;------------------------------------------------------------------------
&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/CEH-or-OSCP--tp26433189p26570932.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26571357</id>
	<title>Re: CEH or OSCP?</title>
	<published>2009-11-25T12:01:25Z</published>
	<updated>2009-11-25T12:01:25Z</updated>
	<author>
		<name>Leandro Quibem Magnabosco</name>
	</author>
	<content type="html">Danux escreveu:
&lt;br&gt;&amp;gt; Always the same question from newbies!!! Dont feel that, I asked the
&lt;br&gt;&amp;gt; same long time ago.
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; If you wanna learn hundred of security tools go for CEH.
&lt;br&gt;&amp;gt; If you wanna learn how to crete basic hacking tools go for OSCP.
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; If you are a beginner definitely OSCP is not for you.
&lt;br&gt;&amp;gt; &amp;nbsp; 
&lt;br&gt;I consider myself a beginner.
&lt;br&gt;Wouldn't I learn something from OSCP anyway?
&lt;br&gt;Is it *that hard* that beginners would not be able to learn enough to 
&lt;br&gt;make it valuable?
&lt;br&gt;&lt;br&gt;&lt;br&gt;What do you guys think?
&lt;br&gt;&lt;br&gt;------------------------------------------------------------------------
&lt;br&gt;This list is sponsored by: Information Assurance Certification Review Board
&lt;br&gt;&lt;br&gt;Prove to peers and potential employers without a doubt that you can actually do a proper penetration test. IACRB CPT and CEPT certs require a full practical examination in order to become certified. 
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://www.iacertification.org&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.iacertification.org&lt;/a&gt;&lt;br&gt;------------------------------------------------------------------------
&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/CEH-or-OSCP--tp26433189p26571357.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26570986</id>
	<title>out of box scanner</title>
	<published>2009-11-25T08:16:26Z</published>
	<updated>2009-11-25T08:16:26Z</updated>
	<author>
		<name>John Bennett-3</name>
	</author>
	<content type="html">I'm currently evaluating some commercial scanners and wanted to get a 
&lt;br&gt;feel for others experiences with appscan/cenzic/webinspect. &amp;nbsp;Any 
&lt;br&gt;gotcha's with any of these products and can anybody recommend one over 
&lt;br&gt;the other?
&lt;br&gt;&lt;br&gt;thanks,
&lt;br&gt;John
&lt;br&gt;&lt;br&gt;------------------------------------------------------------------------
&lt;br&gt;This list is sponsored by: Information Assurance Certification Review Board
&lt;br&gt;&lt;br&gt;Prove to peers and potential employers without a doubt that you can actually do a proper penetration test. IACRB CPT and CEPT certs require a full practical examination in order to become certified. 
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://www.iacertification.org&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.iacertification.org&lt;/a&gt;&lt;br&gt;------------------------------------------------------------------------
&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/out-of-box-scanner-tp26570986p26570986.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26507182</id>
	<title>Re: Web Application Scanners Comparison</title>
	<published>2009-11-24T19:52:47Z</published>
	<updated>2009-11-24T19:52:47Z</updated>
	<author>
		<name>DBAPPSecurity</name>
	</author>
	<content type="html">How about MatriXay 3.0, it is also a commercial web application vulnerability scanner?
&lt;br&gt;&lt;br&gt;&lt;blockquote class=&quot;quote light-black dark-border-color&quot;&gt;&lt;div class=&quot;quote light-border-color&quot;&gt;
&lt;div class=&quot;quote-author&quot; style=&quot;font-weight: bold;&quot;&gt;anantasec wrote:&lt;/div&gt;
&lt;div class=&quot;quote-message shrinkable-quote&quot;&gt;Hi all,
&lt;br&gt;&lt;br&gt;In the past weeks, I've performed an evaluation/comparison of three
&lt;br&gt;popular web vulnerability scanners.This evaluation was ordered by a
&lt;br&gt;penetration testing company that will remain anonymous. The vendors
&lt;br&gt;were not contacted during or after the evaluation.
&lt;br&gt;&lt;br&gt;The applications (web scanners) included in this evaluation are:
&lt;br&gt;- Acunetix WVS version 6.0 (Build 20081217)
&lt;br&gt;- IBM Rational AppScan version 7.7.620 Service Pack 2
&lt;br&gt;- HP WebInspect version 7.7.869
&lt;br&gt;&lt;br&gt;I've tested 13 web applications (some of them containing a lot of
&lt;br&gt;vulnerabilities), 3 demo applications provided by the vendors
&lt;br&gt;(testphp.acunetix.com, demo.testfire.net, zero.webappsecurity.com) and
&lt;br&gt;I've done some tests to verify Javascript execution capabilities.
&lt;br&gt;&lt;br&gt;In total, 16 applications were tested. I've tried to cover all the
&lt;br&gt;major platforms, therefore I have applications in PHP, ASP, ASP.NET
&lt;br&gt;and Java.
&lt;br&gt;&lt;br&gt;The report can be found at &lt;a href=&quot;http://drop.io/anantasecfiles/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://drop.io/anantasecfiles/&lt;/a&gt;&lt;br&gt;The full URL to the PDF document:
&lt;br&gt;&lt;a href=&quot;http://drop.io/download/497f0f4e/c1d8b2966f85fb8549a18cbe2d789224ea665f45/759c3010-ce68-012b-dcee-f407c7ff11c2/9eeb1f00-cea5-012b-aa7b-f219675fa758/report.pdf/report_pdf.pdf&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://drop.io/download/497f0f4e/c1d8b2966f85fb8549a18cbe2d789224ea665f45/759c3010-ce68-012b-dcee-f407c7ff11c2/9eeb1f00-cea5-012b-aa7b-f219675fa758/report.pdf/report_pdf.pdf&lt;/a&gt;&lt;br&gt;&lt;br&gt;I've included enough information in this report (the javascript files
&lt;br&gt;used for testing, exact version and URL for all the tested
&lt;br&gt;applications) so anybody with enough patience can verify and reproduce
&lt;br&gt;the results presented here.
&lt;br&gt;&lt;br&gt;Therefore, I will not respond to emails for vendors. You have the
&lt;br&gt;information, fix your scanners!
&lt;br&gt;&lt;br&gt;Best wishes &amp; regards,
&lt;br&gt;anantasec
&lt;br&gt;&lt;br&gt;-- 
&lt;br&gt;&lt;a href=&quot;http://anantasec.blogspot.com&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://anantasec.blogspot.com&lt;/a&gt;&lt;br&gt;&lt;br&gt;&lt;/div&gt;
&lt;/div&gt;&lt;/blockquote&gt;
</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/Web-Application-Scanners-Comparison-tp21699040p26507182.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26488628</id>
	<title>Re: Pentest lab box 16 gigs of ram</title>
	<published>2009-11-23T10:29:04Z</published>
	<updated>2009-11-23T10:29:04Z</updated>
	<author>
		<name>Yiannis Koukouras-2</name>
	</author>
	<content type="html">Hello jk,
&lt;br&gt;&lt;br&gt;I don't see any added value on going with Win7. Why pay for the license?
&lt;br&gt;&lt;br&gt;After you setup vmware server, &amp;nbsp;you won't have to use the host OS anymore.
&lt;br&gt;&lt;br&gt;Vmware is fully administered remotely through its console, so I think
&lt;br&gt;that you should go for the cheapest and least demanding
&lt;br&gt;(resource-wise) solution.
&lt;br&gt;&lt;br&gt;I do need to get a life! ;)
&lt;br&gt;Ioannis (Yiannis) Koukouras
&lt;br&gt;CISSP, CISA, CISM
&lt;br&gt;MSc in Computer Systems Security
&lt;br&gt;BEng in Electronic Engineering
&lt;br&gt;&lt;a href=&quot;http://www.linkedin.com/in/ikoukouras&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.linkedin.com/in/ikoukouras&lt;/a&gt;&lt;br&gt;---
&lt;br&gt;The information contained in this communication is intended solely
&lt;br&gt;for &amp;nbsp;the &amp;nbsp;use &amp;nbsp;of the individual or entity to whom it is addressed
&lt;br&gt;and others authorized to receive it. &amp;nbsp;It may &amp;nbsp;contain confidential
&lt;br&gt;or legally privileged information. &amp;nbsp;If &amp;nbsp;you &amp;nbsp;are &amp;nbsp;not the intended
&lt;br&gt;recipient you are hereby notified that &amp;nbsp;any &amp;nbsp;disclosure, &amp;nbsp;copying,
&lt;br&gt;distribution &amp;nbsp;or &amp;nbsp;taking any action in reliance on the contents of
&lt;br&gt;this &amp;nbsp;information &amp;nbsp;is &amp;nbsp;strictly &amp;nbsp;prohibited &amp;nbsp;and &amp;nbsp;may be unlawful.
&lt;br&gt;&lt;br&gt;If you have received this communication in error, please notify the
&lt;br&gt;sender immediately &amp;nbsp;by &amp;nbsp;responding &amp;nbsp;to this email and then delete
&lt;br&gt;&amp;nbsp;it from your system.
&lt;br&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;On Thu, Nov 19, 2009 at 1:33 AM, macubergeek &amp;lt;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26488628&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;macubergeek@...&lt;/a&gt;&amp;gt; wrote:
&lt;div class='shrinkable-quote'&gt;&lt;br&gt;&amp;gt; All
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; I'm thinking of building a vmware target box for a pentest practice lab
&lt;br&gt;&amp;gt; consisting of:
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; cheap Dell server with 16 gigs of ram PowerEdge T105
&lt;br&gt;&amp;gt; vmware workstation
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; My question is with the host OS.
&lt;br&gt;&amp;gt; I was contemplating the home version of Windows 7 to give me a 64 bit OS to
&lt;br&gt;&amp;gt; support the amount of ram I'm planning on
&lt;br&gt;&amp;gt; Does anyone have any experience with the latest version of VMware
&lt;br&gt;&amp;gt; workstation and if it will run properly on Windows 7?
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; would 64 bit Ubuntu be a better idea?
&lt;br&gt;&amp;gt; jk
&lt;br&gt;&amp;gt; ------------------------------
&lt;br&gt;&amp;gt; SWYlMjB5b3UlMjBjYW4lMjByZWFkJTIwdGhpcyUyMHlvdSUyMG5lZWQlMjB0byUyMGdldCUyMGElMjBsaWZlLg==
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; ------------------------------------------------------------------------
&lt;br&gt;&amp;gt; This list is sponsored by: Information Assurance Certification Review Board
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; Prove to peers and potential employers without a doubt that you can actually
&lt;br&gt;&amp;gt; do a proper penetration test. IACRB CPT and CEPT certs require a full
&lt;br&gt;&amp;gt; practical examination in order to become certified.
&lt;br&gt;&amp;gt; &lt;a href=&quot;http://www.iacertification.org&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.iacertification.org&lt;/a&gt;&lt;br&gt;&amp;gt; ------------------------------------------------------------------------
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt;
&lt;/div&gt;&lt;br&gt;------------------------------------------------------------------------
&lt;br&gt;This list is sponsored by: Information Assurance Certification Review Board
&lt;br&gt;&lt;br&gt;Prove to peers and potential employers without a doubt that you can actually do a proper penetration test. IACRB CPT and CEPT certs require a full practical examination in order to become certified. 
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://www.iacertification.org&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.iacertification.org&lt;/a&gt;&lt;br&gt;------------------------------------------------------------------------
&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/Pentest-lab-box-16-gigs-of-ram-tp26433869p26488628.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26488406</id>
	<title>CfP DIMVA 2010 - Detection of Intrusions and Malware &amp; Vulnerability Assessment</title>
	<published>2009-11-23T04:18:16Z</published>
	<updated>2009-11-23T04:18:16Z</updated>
	<author>
		<name>Sebastian Schmerl</name>
	</author>
	<content type="html">Hello List-Member,
&lt;br&gt;&lt;br&gt;attached you'll find the Call for Paper for the International Conference
&lt;br&gt;on Detection of Intrusions and Malware &amp; Vulnerability Assessment. The
&lt;br&gt;focus of the conference DIMVA covers topics on this list, so do not
&lt;br&gt;hesitate to submit your research results as a paper or your ongoing work
&lt;br&gt;as an extended abstract.
&lt;br&gt;&lt;br&gt;best regards,
&lt;br&gt;&amp;nbsp;Sebastian Schmerl (&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26488406&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;publicity-chair@...&lt;/a&gt;)
&lt;br&gt;&lt;br&gt;&amp;nbsp; (We apologize if you receive multiple copies of this message.)
&lt;br&gt;----------------------------------------------------------------------
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;CALL FOR PAPERS
&lt;br&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; DIMVA 2010
&lt;br&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;Seventh International Conference on
&lt;br&gt;&amp;nbsp; &amp;nbsp; Detection of Intrusions and Malware &amp; Vulnerability Assessment
&lt;br&gt;&lt;br&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; Organized by GI SIG SIDAR
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;In Cooperation with
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; IEEE Computer Society Task Force on Information Assurance
&lt;br&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; Bonn, Germany
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; July 8-9 2010
&lt;br&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &lt;a href=&quot;http://www.dimva.org/dimva2010&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.dimva.org/dimva2010&lt;/a&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26488406&amp;i=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;info@...&lt;/a&gt;
&lt;br&gt;&lt;br&gt;----------------------------------------------------------------------
&lt;br&gt;&lt;br&gt;The annual &amp;nbsp;DIMVA conference serves &amp;nbsp;as a premier forum &amp;nbsp;for advancing
&lt;br&gt;the state &amp;nbsp;of the art &amp;nbsp;in intrusion detection, malware &amp;nbsp;detection, and
&lt;br&gt;vulnerability &amp;nbsp; assessment. &amp;nbsp; &amp;nbsp;Each &amp;nbsp; year &amp;nbsp; DIMVA &amp;nbsp; brings &amp;nbsp; together
&lt;br&gt;international &amp;nbsp;experts &amp;nbsp;from &amp;nbsp;academia, &amp;nbsp;industry &amp;nbsp;and &amp;nbsp;government &amp;nbsp;to
&lt;br&gt;present and discuss novel research &amp;nbsp;in these areas. DIMVA is organized
&lt;br&gt;by &amp;nbsp;the special &amp;nbsp;interest &amp;nbsp;group Security &amp;nbsp;- &amp;nbsp;Intrusion Detection &amp;nbsp;and
&lt;br&gt;Response &amp;nbsp;(SIDAR) &amp;nbsp;of &amp;nbsp;the &amp;nbsp; German &amp;nbsp;Informatics &amp;nbsp;Society &amp;nbsp;(GI). &amp;nbsp; The
&lt;br&gt;conference &amp;nbsp;proceedings &amp;nbsp;will appear in &amp;nbsp; Springer's &amp;nbsp;Lecture Notes in
&lt;br&gt;Computer Science (LNCS) series.
&lt;br&gt;&lt;br&gt;DIMVA solicits &amp;nbsp;submission of high-quality, &amp;nbsp;original scientific work.
&lt;br&gt;This year we invite two types of paper submissions:
&lt;br&gt;&lt;br&gt;* Full &amp;nbsp;papers, presenting &amp;nbsp;novel and &amp;nbsp;mature research &amp;nbsp;results. &amp;nbsp;Full
&lt;br&gt;&amp;nbsp; papers &amp;nbsp;are &amp;nbsp; limited &amp;nbsp;to &amp;nbsp;20 &amp;nbsp;pages, &amp;nbsp;prepared &amp;nbsp; according &amp;nbsp;to &amp;nbsp;the
&lt;br&gt;&amp;nbsp; instructions provided &amp;nbsp;below. They will &amp;nbsp;be reviewed by &amp;nbsp;the program
&lt;br&gt;&amp;nbsp; committee, and &amp;nbsp;papers accepted &amp;nbsp;for presentation at &amp;nbsp;the conference
&lt;br&gt;&amp;nbsp; will be included in the proceedings.
&lt;br&gt;&lt;br&gt;* Short &amp;nbsp;papers &amp;nbsp;(extended &amp;nbsp; abstracts), &amp;nbsp;presenting &amp;nbsp;original, &amp;nbsp;still
&lt;br&gt;&amp;nbsp; ongoing work &amp;nbsp;that has not yet &amp;nbsp;reached the maturity &amp;nbsp;required for a
&lt;br&gt;&amp;nbsp; full paper. Short papers are limited to 10 pages, prepared according
&lt;br&gt;&amp;nbsp; to the &amp;nbsp;instructions provided below. &amp;nbsp;They will also be &amp;nbsp;reviewed by
&lt;br&gt;&amp;nbsp; the program &amp;nbsp;committee, and papers accepted for &amp;nbsp;presentation at the
&lt;br&gt;&amp;nbsp; conference will be included &amp;nbsp;in the proceedings (containing Extended
&lt;br&gt;&amp;nbsp; Abstract in the title).
&lt;br&gt;&lt;br&gt;DIMVA's scope includes, but is not restricted to the following areas:
&lt;br&gt;&lt;br&gt;* Intrusion Detection
&lt;br&gt;&amp;nbsp; + Novel approaches &amp; new environments
&lt;br&gt;&amp;nbsp; + Insider detection
&lt;br&gt;&amp;nbsp; + Prevention &amp; response
&lt;br&gt;&amp;nbsp; + Data leakage
&lt;br&gt;&amp;nbsp; + Result correlation &amp; cooperation
&lt;br&gt;&amp;nbsp; + Evasion attacks
&lt;br&gt;&amp;nbsp; + Potentials &amp; limitations
&lt;br&gt;&amp;nbsp; + Operational experiences
&lt;br&gt;&amp;nbsp; + Privacy, legal &amp; social aspects
&lt;br&gt;&lt;br&gt;* Malware Detection
&lt;br&gt;&amp;nbsp; + Automated analysis, reversing &amp; execution tracing
&lt;br&gt;&amp;nbsp; + Containment &amp; sandboxed operation
&lt;br&gt;&amp;nbsp; + Acquisition of specimen
&lt;br&gt;&amp;nbsp; + Infiltration
&lt;br&gt;&amp;nbsp; + Behavioral models
&lt;br&gt;&amp;nbsp; + Prevention &amp; containment
&lt;br&gt;&amp;nbsp; + Trends &amp; upcoming risks
&lt;br&gt;&amp;nbsp; + Forensics &amp; recovery
&lt;br&gt;&amp;nbsp; + Economic aspects
&lt;br&gt;&lt;br&gt;* Vulnerability Assessment
&lt;br&gt;&amp;nbsp; + Vulnerability detection &amp; analysis
&lt;br&gt;&amp;nbsp; + Vulnerability prevention
&lt;br&gt;&amp;nbsp; + Web application security
&lt;br&gt;&amp;nbsp; + Fuzzing techniques
&lt;br&gt;&amp;nbsp; + Classification &amp; evaluation
&lt;br&gt;&amp;nbsp; + Situational awareness
&lt;br&gt;&lt;br&gt;Organizing Committee
&lt;br&gt;&lt;br&gt;&amp;nbsp; General Chair: &amp;nbsp; &amp;nbsp; &amp;nbsp;Marko Jahnke, Fraunhofer FKIE, Wachtberg,
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; Germany (&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26488406&amp;i=2&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;info@...&lt;/a&gt;)
&lt;br&gt;&amp;nbsp; Program Chair: &amp;nbsp; &amp;nbsp; &amp;nbsp;Christian Kreibich, International Computer
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; Science Institute, Berkeley, USA
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; (&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26488406&amp;i=3&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;pc-chair@...&lt;/a&gt;)
&lt;br&gt;&amp;nbsp; Local Chair: &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;Jens Toelle, Fraunhofer FKIE, Wachtberg,
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; Germany (&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26488406&amp;i=4&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;info@...&lt;/a&gt;)
&lt;br&gt;&amp;nbsp; Rump Session Chair: Sven Dietrich, Stevens Institute of Technology,
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; USA (&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26488406&amp;i=5&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;rump-chair@...&lt;/a&gt;)
&lt;br&gt;&amp;nbsp; Sponsorship Chair: &amp;nbsp;Felix Leder, University of Bonn, Germany
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; (&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26488406&amp;i=6&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;sponsor-chair@...&lt;/a&gt;)
&lt;br&gt;&amp;nbsp; Publicity Chair: &amp;nbsp; &amp;nbsp;Sebastian Schmerl, Technical University of
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; Cottbus, Germany (&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26488406&amp;i=7&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;publicity-chair@...&lt;/a&gt;)
&lt;br&gt;&lt;br&gt;Program Committee
&lt;br&gt;&lt;br&gt;&amp;nbsp; * Michael Bailey, University of Michigan, USA
&lt;br&gt;&amp;nbsp; * Herbert Bos, Vrije Universiteit Amsterdam, Netherlands
&lt;br&gt;&amp;nbsp; * Juan Caballero, CMU/UC Berkeley, USA
&lt;br&gt;&amp;nbsp; * Herve Debar, Telecom SudParis, France
&lt;br&gt;&amp;nbsp; * Sven Dietrich, Stevens Institute of Technology, USA
&lt;br&gt;&amp;nbsp; * Holger Dreger, Siemens CERT, Germany
&lt;br&gt;&amp;nbsp; * Ulrich Flegel, SAP Research, Germany
&lt;br&gt;&amp;nbsp; * Carrie Gates, CA Labs, Canada
&lt;br&gt;&amp;nbsp; * Chris Grier, University of California, Berkeley, USA
&lt;br&gt;&amp;nbsp; * Guofei Gu, Texas A&amp;M University, USA
&lt;br&gt;&amp;nbsp; * Thorsten Holz, Vienna University of Technology, Austria
&lt;br&gt;&amp;nbsp; * Piotr Kijewski, NASK/CERT Polska, Poland
&lt;br&gt;&amp;nbsp; * Engin Kirda, Eurecom, France
&lt;br&gt;&amp;nbsp; * Christopher Kruegel, University of California, Santa Barbara, USA
&lt;br&gt;&amp;nbsp; * Wenke Lee, Georgia Institute of Technology, USA.
&lt;br&gt;&amp;nbsp; * Corrado Leita, Symantec Research Labs, France
&lt;br&gt;&amp;nbsp; * Kirill Levchenko, University of California, San Diego, USA
&lt;br&gt;&amp;nbsp; * Pavel Laskov, University of Tuebingen, Germany
&lt;br&gt;&amp;nbsp; * Ludovic Me, Supelec, France
&lt;br&gt;&amp;nbsp; * Michael Meier, Technical University of Dortmund, Germany
&lt;br&gt;&amp;nbsp; * Tyler Moore, Harvard University, USA
&lt;br&gt;&amp;nbsp; * Lexi Pimenidis, iDev GmbH, Germany
&lt;br&gt;&amp;nbsp; * Moheeb Rajab, Google/Johns Hopkins University, USA
&lt;br&gt;&amp;nbsp; * Robin Sommer, ICSI/LBNL, USA
&lt;br&gt;&amp;nbsp; * Henry Stern, Cisco/Ironport, USA
&lt;br&gt;&amp;nbsp; * Diego Zamboni, IBM Research, Switzerland
&lt;br&gt;&lt;br&gt;Important Dates
&lt;br&gt;&lt;br&gt;&amp;nbsp; Deadline for paper submission: &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; February 5, 2010
&lt;br&gt;&amp;nbsp; Notification of acceptance/rejection: &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;April &amp;nbsp; &amp;nbsp;5, 2010
&lt;br&gt;&amp;nbsp; Final camera-ready copies due: &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; April &amp;nbsp; 26, 2010
&lt;br&gt;&amp;nbsp; Conference: &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;July &amp;nbsp; 8-9, 2010
&lt;br&gt;&lt;br&gt;Paper Submission
&lt;br&gt;&lt;br&gt;All papers &amp;nbsp;must be &amp;nbsp;submitted electronically in &amp;nbsp;PDF format &amp;nbsp;via the
&lt;br&gt;conference Web site. &amp;nbsp;Submissions must be formatted &amp;nbsp;according to the
&lt;br&gt;instructions provided by Springer Verlag. &amp;nbsp;For instructions, see
&lt;br&gt;&lt;a href=&quot;http://www.springer.de/comp/lncs/authors.html&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.springer.de/comp/lncs/authors.html&lt;/a&gt;&amp;nbsp;.
&lt;br&gt;&lt;br&gt;Submitted &amp;nbsp;papers &amp;nbsp;must be &amp;nbsp;in &amp;nbsp;English &amp;nbsp;and &amp;nbsp;must not &amp;nbsp;substantially
&lt;br&gt;overlap &amp;nbsp; work &amp;nbsp;that &amp;nbsp; has &amp;nbsp;been &amp;nbsp; published &amp;nbsp;before, &amp;nbsp; or &amp;nbsp; that &amp;nbsp;is
&lt;br&gt;simultaneously &amp;nbsp;in &amp;nbsp;submission to &amp;nbsp;a &amp;nbsp;journal &amp;nbsp;or &amp;nbsp;a conference &amp;nbsp;with
&lt;br&gt;proceedings. &amp;nbsp; Simultaneous &amp;nbsp;submission, &amp;nbsp;submission &amp;nbsp; of &amp;nbsp;previously
&lt;br&gt;published work, and plagiarism &amp;nbsp;constitute dishonesty or fraud. DIMVA
&lt;br&gt;prohibits &amp;nbsp;these practices &amp;nbsp;and may &amp;nbsp;take appropriate &amp;nbsp;action against
&lt;br&gt;authors who have committed them.
&lt;br&gt;&lt;br&gt;Authors of accepted papers must ensure that their papers will be pre-
&lt;br&gt;ented at the conference. &amp;nbsp;Presentations must also be held in English.
&lt;br&gt;Details about the electronic submission procedure will be provided on
&lt;br&gt;the conference Web site by the end of &amp;nbsp;December 2009. &amp;nbsp;Authors of ac-
&lt;br&gt;cepted papers must follow the &amp;nbsp;Springer guidelines for preparation of
&lt;br&gt;camera-ready copies. &amp;nbsp;Details of the process will be &amp;nbsp;provided to the
&lt;br&gt;authors in time.
&lt;br&gt;&lt;br&gt;Rump session
&lt;br&gt;&lt;br&gt;As in previous &amp;nbsp;years, DIMVA 2010 will hold a &amp;nbsp;Rump Session: a series
&lt;br&gt;of short &amp;nbsp;and entertaining talks &amp;nbsp;where attendees can &amp;nbsp;present recent
&lt;br&gt;research results, &amp;nbsp;work in progress, &amp;nbsp;or other topics of &amp;nbsp;interest to
&lt;br&gt;the community. &amp;nbsp;Please contact &amp;nbsp;the Rump Session Chair for submission
&lt;br&gt;questions.
&lt;br&gt;&lt;br&gt;Sponsorship Opportunities
&lt;br&gt;&lt;br&gt;We solicit &amp;nbsp;interested organizations to &amp;nbsp;serve as sponsors &amp;nbsp;for DIMVA
&lt;br&gt;2010; please contact the &amp;nbsp;sponsorship chair for information regarding
&lt;br&gt;corporate sponsorship.
&lt;br&gt;&lt;br&gt;Steering Committee
&lt;br&gt;&lt;br&gt;Chairs:
&lt;br&gt;&lt;br&gt;&amp;nbsp; * Ulrich Flegel, SAP Research, Germany
&lt;br&gt;&amp;nbsp; * Michael Meier, Technical University of Dortmund, Germany
&lt;br&gt;&lt;br&gt;Members:
&lt;br&gt;&lt;br&gt;&amp;nbsp; * Roland Bueschkes, RWE, Germany
&lt;br&gt;&amp;nbsp; * Danilo M. Bruschi, Universita degli Studi di Milano, Italy
&lt;br&gt;&amp;nbsp; * Herve Debar, Telecom SudParis, France
&lt;br&gt;&amp;nbsp; * Bernhard Haemmerli, Acris GmbH &amp; HSLU Lucerne, Switzerland
&lt;br&gt;&amp;nbsp; * Marc Heuse, Baseline Security Consulting, Germany
&lt;br&gt;&amp;nbsp; * Klaus Julisch, IBM Zurich Research Lab, Switzerland
&lt;br&gt;&amp;nbsp; * Christopher Kruegel, UC Santa Barbara, USA
&lt;br&gt;&amp;nbsp; * Pavel Laskov, University of Tuebingen, Germany
&lt;br&gt;&amp;nbsp; * Robin Sommer, ICSI/LBNL, USA
&lt;br&gt;&amp;nbsp; * Diego Zamboni, IBM Zurich Research Lab, Switzerland
&lt;br&gt;&lt;br&gt;&lt;br&gt;-- 
&lt;br&gt;_____________________________________________________________________
&lt;br&gt;Sebastian Schmerl &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;Tel: +49 (0) 355 69 20 29
&lt;br&gt;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26488406&amp;i=8&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;sbs@...&lt;/a&gt; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; Fax: +49 (0) 355 69 21 27
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;BTU Cottbus
&lt;br&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;Computer Networks and Communication System
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; P.O.Box 10 13 44, 03013 Cottbus, Germany
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &lt;a href=&quot;http://www-rnks.informatik.tu-cottbus.de&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www-rnks.informatik.tu-cottbus.de&lt;/a&gt;&lt;br&gt;_____________________________________________________________________
&lt;br&gt;&lt;br&gt;------------------------------------------------------------------------
&lt;br&gt;This list is sponsored by: Information Assurance Certification Review Board
&lt;br&gt;&lt;br&gt;Prove to peers and potential employers without a doubt that you can actually do a proper penetration test. IACRB CPT and CEPT certs require a full practical examination in order to become certified. 
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://www.iacertification.org&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.iacertification.org&lt;/a&gt;&lt;br&gt;------------------------------------------------------------------------
&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/CfP-DIMVA-2010---Detection-of-Intrusions-and-Malware---Vulnerability-Assessment-tp26488406p26488406.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26489298</id>
	<title>Penetrating a MySql Server</title>
	<published>2009-11-23T02:27:59Z</published>
	<updated>2009-11-23T02:27:59Z</updated>
	<author>
		<name>r00fsec</name>
	</author>
	<content type="html">Hi!!
&lt;br&gt;&lt;br&gt;So...I have a home server . It uses apache , php and MySql (5.0.77). It doesn't has any site on it but i create a page with a simple sql injection Bug.
&lt;br&gt;MySql server is running as root user. Now the goal is to take a shell in this server just for exercise . I know that it is not so easy to find out there a server like this but im now starting to &amp;quot;play&amp;quot; with these things.
&lt;br&gt;&lt;br&gt;I have try some technics but i didnt got the shell yet :p Here is what im doing..
&lt;br&gt;&lt;br&gt;1st I &amp;nbsp;use the load_file() function to see any file in the server like /etc/passwd
&lt;br&gt;2nd i tried to use the technic of into outfile and then use it as Remote Code Execution but occurs an error. Because of the permissions.
&lt;br&gt;&lt;br&gt;Thats all i had tried in the home server.
&lt;br&gt;&lt;br&gt;Do you have any idea on how to continue penetrate this server ? If you want give me some hints to continue my exercise.
&lt;br&gt;&lt;br&gt;Thanks!
&lt;br&gt;&lt;br&gt;------------------------------------------------------------------------
&lt;br&gt;This list is sponsored by: Information Assurance Certification Review Board
&lt;br&gt;&lt;br&gt;Prove to peers and potential employers without a doubt that you can actually do a proper penetration test. IACRB CPT and CEPT certs require a full practical examination in order to become certified. 
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://www.iacertification.org&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.iacertification.org&lt;/a&gt;&lt;br&gt;------------------------------------------------------------------------
&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/Penetrating-a-MySql-Server-tp26489298p26489298.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26488652</id>
	<title>Tools Update - third week of november 2009</title>
	<published>2009-11-22T02:04:29Z</published>
	<updated>2009-11-22T02:04:29Z</updated>
	<author>
		<name>SD List</name>
	</author>
	<content type="html">Hello
&lt;br&gt;&lt;br&gt;Here is the site's newsletter &amp;quot;Security Database Tools Watch&amp;quot;
&lt;br&gt;(&lt;a href=&quot;http://www.security-database.com/toolswatch&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.security-database.com/toolswatch&lt;/a&gt;).
&lt;br&gt;This letter summarizes the articles and news items published since 7 days.
&lt;br&gt;&lt;br&gt;&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;New articles
&lt;br&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;--------------------------
&lt;br&gt;&lt;br&gt;&lt;br&gt;** Process Hacker v1.7 released **
&lt;br&gt;by &amp;nbsp;ToolsTracker
&lt;br&gt;- 21 November 2009
&lt;br&gt;&lt;br&gt;Process Hacker is a free and open source process viewer and memory editor
&lt;br&gt;with unique features such as powerful process termination and a Regex
&lt;br&gt;memory searcher. It can show services, processes and their threads,
&lt;br&gt;modules, handles and memory regions.
&lt;br&gt;&lt;br&gt;Version 1.7
&lt;br&gt;&lt;br&gt;NEW/IMPROVED
&lt;br&gt;&lt;br&gt;#2873973 - &amp;quot;Columns window improvements&amp;quot;
&lt;br&gt;&lt;br&gt;New settings system - settings can now be saved anywhere
&lt;br&gt;&lt;br&gt;Decreased memory and CPU usage
&lt;br&gt;&lt;br&gt;Process Hacker probably runs on Windows 2000 now
&lt;br&gt;&lt;br&gt;FIXED
&lt;br&gt;&lt;br&gt;#2880368 - &amp;quot;Highlight Option (...)
&lt;br&gt;&lt;br&gt;-&amp;gt;
&lt;br&gt;&lt;a href=&quot;http://www.security-database.com/toolswatch/Process-Hacker-v1-7-released.html&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.security-database.com/toolswatch/Process-Hacker-v1-7-released.html&lt;/a&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;** Hyena v8.0 32-bit &amp; 64-bit released **
&lt;br&gt;by &amp;nbsp;ToolsTracker
&lt;br&gt;- 21 November 2009
&lt;br&gt;&lt;br&gt;Hyena is a tool for day-to-day administration of Windows NT and Windows
&lt;br&gt;XP/2000/2003 systems. Now Windows 7 too.
&lt;br&gt;&lt;br&gt;Hyena brings together all of the administrative tools from Windows NT such
&lt;br&gt;as User Manager, Server Manager, and File Manager/Explorer, and many of the
&lt;br&gt;MMC components from Windows 2000/2003 into a single, easy-to-use,
&lt;br&gt;centralized program. Hyena arranges all system objects, such as users,
&lt;br&gt;servers, and groups, in a hierarchical tree for easy and logical system
&lt;br&gt;administration. (...)
&lt;br&gt;&lt;br&gt;-&amp;gt;
&lt;br&gt;&lt;a href=&quot;http://www.security-database.com/toolswatch/Hyena-v8-32-bit-64-bit-released.html&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.security-database.com/toolswatch/Hyena-v8-32-bit-64-bit-released.html&lt;/a&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;** VideoJak v2.0 - IP Video security assessment tool **
&lt;br&gt;by &amp;nbsp;ToolsTracker
&lt;br&gt;- 20 November 2009
&lt;br&gt;&lt;br&gt;VideoJak is an IP Video security assessment tool that can simulate a proof
&lt;br&gt;of concept video interception or replay test against a targeted,
&lt;br&gt;user-selected video session.
&lt;br&gt;&lt;br&gt;This tool is designed in consideration of todays UC infrastructure
&lt;br&gt;implementions in which QoS requirements dictate the separation of data and
&lt;br&gt;VoIP/Video into discrete networks or VLANs.
&lt;br&gt;&lt;br&gt;VideoJak is a proof of concept security assessment tool that can be used
&lt;br&gt;to test video applications.
&lt;br&gt;&lt;br&gt;VideoJak feature list:
&lt;br&gt;&lt;br&gt;VLAN (...)
&lt;br&gt;&lt;br&gt;-&amp;gt;
&lt;br&gt;&lt;a href=&quot;http://www.security-database.com/toolswatch/VideoJak-v2-IP-Video-security.html&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.security-database.com/toolswatch/VideoJak-v2-IP-Video-security.html&lt;/a&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;** iWatch v0.2.2 - realtime filesystem monitoring program **
&lt;br&gt;by &amp;nbsp;ToolsTracker
&lt;br&gt;- 19 November 2009
&lt;br&gt;&lt;br&gt;iWatch is a realtime filesystem monitoring program. Its purpose is to
&lt;br&gt;monitor any changes in a specific directory or file and send email
&lt;br&gt;notification immediately after the change.
&lt;br&gt;&lt;br&gt;This can be very useful to watch a sensible file or directory against any
&lt;br&gt;changes, like files /etc/passwd, /etc/shadow or directory /bin or to
&lt;br&gt;monitor the root directory of a website against any unwanted changes.
&lt;br&gt;&lt;br&gt;Features
&lt;br&gt;&lt;br&gt;run in command line mode as well as in daemon mode
&lt;br&gt;&lt;br&gt;using an easy xml configuration file (...)
&lt;br&gt;&lt;br&gt;-&amp;gt;
&lt;br&gt;&lt;a href=&quot;http://www.security-database.com/toolswatch/iWatch-v0-2-2-realtime-filesystem.html&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.security-database.com/toolswatch/iWatch-v0-2-2-realtime-filesystem.html&lt;/a&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;** Xplico v0.5.3 released **
&lt;br&gt;by &amp;nbsp;ToolsTracker
&lt;br&gt;- 18 November 2009
&lt;br&gt;&lt;br&gt;The goal of Xplico is extract from an internet traffic capture the
&lt;br&gt;applications data contained. For example, from a pcap file Xplico extracts
&lt;br&gt;each email (POP, IMAP, and SMTP protocols), all HTTP contents, each VoIP
&lt;br&gt;call (SIP), FTP, TFTP, and so on. Xplico isnt a network protocol
&lt;br&gt;analyzer. Xplico is an open source Network Forensic Analysis Tool (NFAT).
&lt;br&gt;&lt;br&gt;Xplico is released under the GNU General Public License.
&lt;br&gt;&lt;br&gt;Version 0.5.3
&lt;br&gt;&lt;br&gt;snoop Packet Capture File Format as input file
&lt;br&gt;&lt;br&gt;DNS (...)
&lt;br&gt;&lt;br&gt;-&amp;gt; &lt;a href=&quot;http://www.security-database.com/toolswatch/Xplico-v0-5-3-released.html&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.security-database.com/toolswatch/Xplico-v0-5-3-released.html&lt;/a&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;** inSSIDer v1.2.3.1014 - Wi-Fi network scanner **
&lt;br&gt;by &amp;nbsp;ToolsTracker
&lt;br&gt;- 18 November 2009
&lt;br&gt;&lt;br&gt;inSSIDer is an award-winning free Wi-Fi network scanner for Windows Vista
&lt;br&gt;and Windows XP. Because NetStumbler doesn't work well with Vista and 64-bit
&lt;br&gt;XP, exits an open-source Wi-Fi network scanner designed for the current
&lt;br&gt;generation of Windows operating systems.
&lt;br&gt;&lt;br&gt;InSSIDer is licensed under the Apache License, Version 2.0.
&lt;br&gt;&lt;br&gt;What's Unique about inSSIDer?
&lt;br&gt;&lt;br&gt;Use Windows Vista and Windows XP 64-bit.
&lt;br&gt;&lt;br&gt;Uses the Native Wi-Fi API.
&lt;br&gt;&lt;br&gt;Group by Mac Address, SSID, Channel, RSSI and &amp;quot;Time Last Seen.&amp;quot; (...)
&lt;br&gt;&lt;br&gt;-&amp;gt;
&lt;br&gt;&lt;a href=&quot;http://www.security-database.com/toolswatch/inSSIDer-v1-2-3-1014-Wi-Fi-network.html&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.security-database.com/toolswatch/inSSIDer-v1-2-3-1014-Wi-Fi-network.html&lt;/a&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;** Knock v1.3b - subdomain bruteforcer scan **
&lt;br&gt;by &amp;nbsp;ToolsTracker
&lt;br&gt;- 18 November 2009
&lt;br&gt;&lt;br&gt;Knock is a python script designed to enumerate subdomains on a target
&lt;br&gt;domain trought a wordlist. This code is released under the GNU / GPL v3.
&lt;br&gt;&lt;br&gt;Knock works on Linux, Windows and MAC OSX with a python version 2.6.x (or
&lt;br&gt;minor).
&lt;br&gt;&lt;br&gt;Usage:
&lt;br&gt;&lt;br&gt;python knock.py [ -url ] [ wordlist ]
&lt;br&gt;&lt;br&gt;View the Demo and the Output
&lt;br&gt;&lt;br&gt;Documentation
&lt;br&gt;&lt;br&gt;Required:
&lt;br&gt;&lt;br&gt;Python version 2.6.x or minor.
&lt;br&gt;&lt;br&gt;A wordlist
&lt;br&gt;&lt;br&gt;Tool Submittted by Gianni Amato, author of this (...)
&lt;br&gt;&lt;br&gt;-&amp;gt;
&lt;br&gt;&lt;a href=&quot;http://www.security-database.com/toolswatch/Knock-v1-3b-subdomain-bruteforcer.html&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.security-database.com/toolswatch/Knock-v1-3b-subdomain-bruteforcer.html&lt;/a&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;** MS CAT.NET v1.1.1.9 - Code Analysis Tool .NET **
&lt;br&gt;by &amp;nbsp;ToolsTracker
&lt;br&gt;- 18 November 2009
&lt;br&gt;&lt;br&gt;CAT.NET is a binary code analysis tool that helps identify common variants
&lt;br&gt;of certain prevailing vulnerabilities that can give rise to common attack
&lt;br&gt;vectors such as Cross-Site Scripting (XSS), SQL Injection and XPath
&lt;br&gt;Injection.
&lt;br&gt;&lt;br&gt;CAT.NET is a snap-in to the Visual Studio IDE that helps you identify
&lt;br&gt;security flaws within a managed code (C#, Visual Basic .NET, J#)
&lt;br&gt;application you are developing. It does so by scanning the binary and/or
&lt;br&gt;assembly of the application, and tracing the data (...)
&lt;br&gt;&lt;br&gt;-&amp;gt;
&lt;br&gt;&lt;a href=&quot;http://www.security-database.com/toolswatch/MS-CAT-NET-v1-1-1-9-Code-Analysis.html&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.security-database.com/toolswatch/MS-CAT-NET-v1-1-1-9-Code-Analysis.html&lt;/a&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;** log2timeline v0.33b - artifact timeline creation and analysis **
&lt;br&gt;by &amp;nbsp;ToolsTracker
&lt;br&gt;- 18 November 2009
&lt;br&gt;&lt;br&gt;log2timeline is a framework for artifact timeline creation and analysis.
&lt;br&gt;The main purpose is to provide a single tool to parse various log files and
&lt;br&gt;artifacts found on suspect systems (and supporting systems, such as network
&lt;br&gt;equipment) and produce a body file that can be used to create a timeline,
&lt;br&gt;using tools such as mactime from TSK, for forensic investigators.
&lt;br&gt;&lt;br&gt;The tool is written in Perl for Linux but has been tested using Mac OS X
&lt;br&gt;(10.5.7+ and 10.6.+). Parts of it should work (...)
&lt;br&gt;&lt;br&gt;-&amp;gt;
&lt;br&gt;&lt;a href=&quot;http://www.security-database.com/toolswatch/log2timeline-v0-33b-artifact.html&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.security-database.com/toolswatch/log2timeline-v0-33b-artifact.html&lt;/a&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;** Metasploit Framework v3.3 released (includes support for Windows 7) **
&lt;br&gt;by &amp;nbsp;ToolsTracker
&lt;br&gt;- 17 November 2009
&lt;br&gt;&lt;br&gt;The Metasploit Framework is a development platform for creating security
&lt;br&gt;tools and exploits. The framework is used by network security professionals
&lt;br&gt;to perform penetration tests, system administrators to verify patch
&lt;br&gt;installations, product vendors to perform regression testing, and security
&lt;br&gt;researchers world-wide. The framework is written in the Ruby programming
&lt;br&gt;language and includes components written in C and assembler.
&lt;br&gt;&lt;br&gt;Version 3.3 is the latest stable release of the Metasploit (...)
&lt;br&gt;&lt;br&gt;-&amp;gt;
&lt;br&gt;&lt;a href=&quot;http://www.security-database.com/toolswatch/Metasploit-Framework-v3-3-released.html&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.security-database.com/toolswatch/Metasploit-Framework-v3-3-released.html&lt;/a&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;** PDFResurrect v0.9 released **
&lt;br&gt;by &amp;nbsp;ToolsTracker
&lt;br&gt;- 17 November 2009
&lt;br&gt;&lt;br&gt;PDFResurrect is a tool aimed at analyzing PDF documents. The PDF format
&lt;br&gt;allows for previous document changes to be retained in a more recent
&lt;br&gt;version of the document, thereby creating a running history of changes for
&lt;br&gt;the document. This tool attempts to extract all previous versions while
&lt;br&gt;also producing a summary of changes between versions.
&lt;br&gt;&lt;br&gt;Version 0.9
&lt;br&gt;&lt;br&gt;This is a bug fix release and addresses the gathering of data (within
&lt;br&gt;limit) for the Creator MetaData at the end of a (...)
&lt;br&gt;&lt;br&gt;-&amp;gt;
&lt;br&gt;&lt;a href=&quot;http://www.security-database.com/toolswatch/PDFResurrect-v0-9-released.html&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.security-database.com/toolswatch/PDFResurrect-v0-9-released.html&lt;/a&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;** Metasploit Framework v3.3 Release Candidate 2 released **
&lt;br&gt;by &amp;nbsp;ToolsTracker
&lt;br&gt;- 17 November 2009
&lt;br&gt;&lt;br&gt;The Metasploit Framework is a development platform for creating security
&lt;br&gt;tools and exploits. The framework is used by network security professionals
&lt;br&gt;to perform penetration tests, system administrators to verify patch
&lt;br&gt;installations, product vendors to perform regression testing, and security
&lt;br&gt;researchers world-wide. The framework is written in the Ruby programming
&lt;br&gt;language and includes components written in C and assembler.
&lt;br&gt;&lt;br&gt;This 3.3 release candidate is last minute test release of (...)
&lt;br&gt;&lt;br&gt;-&amp;gt;
&lt;br&gt;&lt;a href=&quot;http://www.security-database.com/toolswatch/Metasploit-Framework-v3-3-Release.html&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.security-database.com/toolswatch/Metasploit-Framework-v3-3-Release.html&lt;/a&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;** Offensive-Security released its Exploit Database **
&lt;br&gt;by &amp;nbsp;Tools Tracker Team
&lt;br&gt;- 16 November 2009
&lt;br&gt;&lt;br&gt;The ultimate archive of exploits and vulnerable software and a great
&lt;br&gt;resource for vulnerability researchers and security addicts alike.
&lt;br&gt;Offensive-Security aim is to collect exploits from submittals and various
&lt;br&gt;mailing lists and concentrate them in one, easy to navigate database. When
&lt;br&gt;possible, we've added the vulnerable software for download. We are still in
&lt;br&gt;the process of organizing the database. You can Download the relevant
&lt;br&gt;exploit by clicking the &amp;quot;D&amp;quot; and when available, download the (...)
&lt;br&gt;&lt;br&gt;-&amp;gt;
&lt;br&gt;&lt;a href=&quot;http://www.security-database.com/toolswatch/Offensive-Security-released-its.html&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.security-database.com/toolswatch/Offensive-Security-released-its.html&lt;/a&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;** (IN)Secure Magazine issue 23 released **
&lt;br&gt;by &amp;nbsp;ToolsTracker
&lt;br&gt;- 16 November 2009
&lt;br&gt;&lt;br&gt;(IN)SECURE Magazine is a free digital security publication discussing some
&lt;br&gt;of the hottest information security topics.
&lt;br&gt;&lt;br&gt;Issue 23
&lt;br&gt;&lt;br&gt;Microsoft's security patches year in review: A malware researcher's
&lt;br&gt;perspective
&lt;br&gt;&lt;br&gt;A closer look at Red Condor Hosted Service
&lt;br&gt;&lt;br&gt;Report: RSA Conference Europe 2009, London
&lt;br&gt;&lt;br&gt;The U.S. Department of Homeland Security has a vision for stronger
&lt;br&gt;information security
&lt;br&gt;&lt;br&gt;Q&amp;A: Didier Stevens on malicious PDFs
&lt;br&gt;&lt;br&gt;Protecting browsers, endpoints and enterprises against new Web-based (...)
&lt;br&gt;&lt;br&gt;&lt;br&gt;-&amp;gt;
&lt;br&gt;&lt;a href=&quot;http://www.security-database.com/toolswatch/IN-Secure-Magazine-issue-23.html&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.security-database.com/toolswatch/IN-Secure-Magazine-issue-23.html&lt;/a&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;** PenTester Scripting Logo Competition (Results) **
&lt;br&gt;by &amp;nbsp;ToolsTracker
&lt;br&gt;- 16 November 2009
&lt;br&gt;&lt;br&gt;PenTester Scripting website is a very handy collection of Scripts (ruby,
&lt;br&gt;shell, perl...) initiated by a group of researchers to make our pentests
&lt;br&gt;journey easier. The scripts are focused into 8 categories (recon, mapping,
&lt;br&gt;discovery, exploitation and so on).
&lt;br&gt;&lt;br&gt;From Security-Database we want to thank to all those that voted for Max's
&lt;br&gt;logo.
&lt;br&gt;&lt;br&gt;Fortunately, Max Soler won the competition!!!
&lt;br&gt;&lt;br&gt;Results
&lt;br&gt;&lt;br&gt;More information: (...)
&lt;br&gt;&lt;br&gt;-&amp;gt;
&lt;br&gt;&lt;a href=&quot;http://www.security-database.com/toolswatch/PenTester-Scripting-Logo,856.html&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.security-database.com/toolswatch/PenTester-Scripting-Logo,856.html&lt;/a&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;** Katana v1.0 (Kyuzo) released - multi-boot security suite **
&lt;br&gt;by &amp;nbsp;ToolsTracker
&lt;br&gt;- 16 November 2009
&lt;br&gt;&lt;br&gt;Katana is a portable multi-boot security suite designed for all your
&lt;br&gt;computer security needs. The idea behind this tool is to bring together all
&lt;br&gt;of the best security distributions to run from one USB drive. Katana
&lt;br&gt;includes distributions which focus on Penetration Testing, Auditing,
&lt;br&gt;Password Cracking, Forensics and Honey Pots.
&lt;br&gt;&lt;br&gt;Katana comes with over 100 portable Windows applications such as
&lt;br&gt;Wireshark, HiJackThis, Unstoppable Copier, and OllyDBG.
&lt;br&gt;&lt;br&gt;Version 1.0
&lt;br&gt;&lt;br&gt;Updated Ophcrack Live, Backtrack (...)
&lt;br&gt;&lt;br&gt;-&amp;gt;
&lt;br&gt;&lt;a href=&quot;http://www.security-database.com/toolswatch/Katana-v1-Kyuzo-released-multi.html&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.security-database.com/toolswatch/Katana-v1-Kyuzo-released-multi.html&lt;/a&gt;&lt;br&gt;&lt;br&gt;Kind Regards
&lt;br&gt;&lt;br&gt;Nabil OUCHN
&lt;br&gt;CEO &amp; Founder
&lt;br&gt;Security-Database
&lt;br&gt;France
&lt;br&gt;&lt;br&gt;Maximiliano Soler
&lt;br&gt;ToolWatch Leader
&lt;br&gt;Security-Database
&lt;br&gt;Argentina
&lt;br&gt;&lt;br&gt;&lt;br&gt;------------------------------------------------------------------------
&lt;br&gt;This list is sponsored by: Information Assurance Certification Review Board
&lt;br&gt;&lt;br&gt;Prove to peers and potential employers without a doubt that you can actually do a proper penetration test. IACRB CPT and CEPT certs require a full practical examination in order to become certified. 
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://www.iacertification.org&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.iacertification.org&lt;/a&gt;&lt;br&gt;------------------------------------------------------------------------
&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/Tools-Update---third-week-of-november-2009-tp26488652p26488652.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26489084</id>
	<title>Re: Malware Analysis</title>
	<published>2009-11-21T22:12:02Z</published>
	<updated>2009-11-21T22:12:02Z</updated>
	<author>
		<name>Panarchy</name>
	</author>
	<content type="html">Hi,
&lt;br&gt;&lt;br&gt;Not sure what happened to my last post, so I'll just reiterate it!
&lt;br&gt;&lt;br&gt;Of many anti-malware software I've tried, MalwareBytes (free) seems to
&lt;br&gt;be the best.
&lt;br&gt;&lt;br&gt;However, I haven't tested the latest ones, so I'd recommend (if you
&lt;br&gt;have the time) to test out as many of the different free/trial malware
&lt;br&gt;detection/removal software as you can, then decide for yourself.
&lt;br&gt;&lt;br&gt;Best of luck,
&lt;br&gt;&lt;br&gt;Panarchy
&lt;br&gt;&lt;br&gt;On Wed, Nov 11, 2009 at 9:35 AM, Murda Mcloud &amp;lt;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26489084&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;murdamcloud@...&lt;/a&gt;&amp;gt; wrote:
&lt;div class='shrinkable-quote'&gt;&lt;br&gt;&amp;gt; Hi JMK,
&lt;br&gt;&amp;gt; I welcome the expansion of the thread to include process as well as tools.
&lt;br&gt;&amp;gt; I guess it just got me thinking about other tools. You're right on the money
&lt;br&gt;&amp;gt; when you say that it is essential to have a framework for the tools to work
&lt;br&gt;&amp;gt; within.
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; As for the IR threads, check out
&lt;br&gt;&amp;gt; &lt;a href=&quot;http://www.securityfocus.com/archive&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.securityfocus.com/archive&lt;/a&gt;&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;-----Original Message-----
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;From: &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26489084&amp;i=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;listbounce@...&lt;/a&gt; [mailto:&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26489084&amp;i=2&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;listbounce@...&lt;/a&gt;]
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;On Behalf Of &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26489084&amp;i=3&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;kmj1268@...&lt;/a&gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;Sent: Wednesday, November 11, 2009 3:55 AM
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;To: &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26489084&amp;i=4&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;murdamcloud@...&lt;/a&gt;; &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26489084&amp;i=5&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;kmj1268@...&lt;/a&gt;; security-
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26489084&amp;i=6&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;basics@...&lt;/a&gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;Subject: RE: Malware Analysis
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;Yes.
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;I did notice the thread was around tools.  However, I just wanted to talk
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;about the process as well so that was my 2 cents worth. I also mentioned
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;the TCPView tool which is great at allowing you to tie process visually
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;to
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;network connections.  Like they say, the devil is in the details. Even if
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;you have the best tools, it's how you use them that makes the biggest
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;difference.
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;I wonder if there is a thread or security focus list around Incidence
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;Response in the event of a breach, virus attack, etc. That would be
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;another
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;good topic to discuss as far as processes.
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;As far as the question, what's in your RAM?
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;You should check out this episode at hak5.org.
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;I am not affiliated with this podcasting group, but they always have
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;great
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;episodes around this kind of thing.
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&lt;a href=&quot;http://www.hak5.org/?s=Cold+boot+attack&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.hak5.org/?s=Cold+boot+attack&lt;/a&gt;&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;Thanks..
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;JMK
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;Original Message:
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;-----------------
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;From: Murda Mcloud &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26489084&amp;i=7&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;murdamcloud@...&lt;/a&gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;Date: Tue, 10 Nov 2009 10:13:50 +1000
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;To: &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26489084&amp;i=8&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;kmj1268@...&lt;/a&gt;, &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26489084&amp;i=9&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;security-basics@...&lt;/a&gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;Subject: RE: Malware Analysis
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;Good points. I know that the OP was asking for straightforward tools for
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;some basic tasks but I began to wonder whether having the ability to
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;capture
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;the physical memory as well might come in useful, especially as the
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;systems
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;may be allowed to stay 'live'. Windd is good for that.
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;-----Original Message-----
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;From: &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26489084&amp;i=10&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;listbounce@...&lt;/a&gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;[mailto:&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26489084&amp;i=11&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;listbounce@...&lt;/a&gt;]
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;On Behalf Of &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26489084&amp;i=12&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;kmj1268@...&lt;/a&gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;Sent: Tuesday, November 10, 2009 5:10 AM
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;To: &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26489084&amp;i=13&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;security-basics@...&lt;/a&gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;Subject: Malware Analysis
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;In relation to the copied thread below, this is some great discussion.
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;I have been fascinated with the science of malware analysis myself,
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;and
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;there is so much to learn.  While I am not an expert, what I generally
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;see
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;happen with a machine is processes (either hidden by rootkits or not
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;hidden) taking over network connections and phoning home to control
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;and
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;command centers to grow the botnet army.  You always have to take the
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;assumption that you could have a rootkit and start from there.  The
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;problem
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;with rootkits is they make everyday programs on the suspect's running
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;OS
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;that should be innocuous operate differently and hide behavior.  What
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;I
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;have always seen as a recommendation is to take a suspect machine's
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;drive
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;out and have it scrubbed and analyzed with a live forensic distro.
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;Better
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;yet, use a Live CD distro such as clonezilla to create a bit for bit
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;clone
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;of the hard drive.  A popular one is Trinity Rescue.  The key is
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;working
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;with something that is not native to the suspect machine.  You cant
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;trust
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;the programs or what kind of response you might get if you run
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;programs
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;on
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;a possibly rootkitted machine or one that is compromised.  What you
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;can
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;trust is the programs on a live CD/DVD and the traffic you see on your
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;network.  Now when the machine is running and I want to do analysis, I
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;usually will carry a hub with me (they are certainly hard to find now
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;adays) and will run wireshark on the traffic for the suspect machine.
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;Have
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;it running with all explorer sessions shut down and the machine
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;started
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;from a reboot - but the machine doesnt need to be connected to the
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;network.
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;If there are rogue processes they will show up in wireshark.    Then
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;after
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;you identify rogue network processes you can use a program like
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;TCPView
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;which will tie back a connection to a program and then you can
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;investigate
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;that program to see if it is malicious.
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;Anyways, I just wanted to chime in and say thanks and offer my two
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;cents
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;for whatever it is worth. There is certainly more than one way to
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;approach
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;the analysis.  I would be interested in learning more about the
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;processes
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;folks on this thread run through in this type of event.
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt; There is some excellent feedback and advice in this thread and I am
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;glad
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;to be able to take away some good advice myself.
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;Thanks so much....
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;JMK
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;J. Mark Kellerman, CISSP, CCSA-NGX
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;Snr Security Engineer.
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;Sent from my iPhone
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;Begin forwarded message:
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;From: Murda Mcloud
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;&amp;lt;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26489084&amp;i=14&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;murdamcloud@...&lt;/a&gt;&amp;lt;mailto:&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26489084&amp;i=15&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;murdamcloud@...&lt;/a&gt;&amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;Date: November 4, 2009 11:46:13 PM EST
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;To: 'exzactly' &amp;lt;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26489084&amp;i=16&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;exzactly@...&lt;/a&gt;&amp;lt;mailto:&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26489084&amp;i=17&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;exzactly@...&lt;/a&gt;&amp;gt;&amp;gt;,
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;&amp;quot;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26489084&amp;i=18&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;security-basics@...&lt;/a&gt;&amp;lt;mailto:security-
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26489084&amp;i=19&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;basics@...&lt;/a&gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;&amp;quot;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;&amp;lt;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26489084&amp;i=20&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;security-basics@...&lt;/a&gt;&amp;lt;mailto:security-
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26489084&amp;i=21&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;basics@...&lt;/a&gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;Subject: RE: Security Toolkit for dummies
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;Fport might come in handy.
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;I'm guessing you want 'clean' versions of everything because who knows
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;what
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;is running on the box itself or what has been modified.
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;How will you be able to trust that the cmd window that you run some of
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;these
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;from is legit? Or that it will run at all?
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;Maybe a cmd alternative will help, too.
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;Fciv so you could check hashes?
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;Regalyzer?
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;Will you image the machines before allowing the support guys to do
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;their
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;stuff?
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;-----Original Message-----
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;From:
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26489084&amp;i=22&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;listbounce@...&lt;/a&gt;&amp;lt;mailto:&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26489084&amp;i=23&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;listbounce@...&lt;/a&gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;[mailto:&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26489084&amp;i=24&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;listbounce@...&lt;/a&gt;]
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;On Behalf Of exzactly
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;Sent: Thursday, November 05, 2009 4:27 AM
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;To: &amp;lt;mailto:&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26489084&amp;i=25&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;security-basics@...&lt;/a&gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26489084&amp;i=26&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;security-basics@...&lt;/a&gt;&amp;lt;mailto:security-
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26489084&amp;i=27&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;basics@...&lt;/a&gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;Subject: Security Toolkit for dummies
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;I am currently working on a (free)toolkit to pass down to Tier 3 and
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;Tier
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;2
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;to be used in the event of a breach/infection or suspected
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;breach/infection.
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;In a nutshell I want to give them some tools to use to gain further
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;information about the system and processes and/or malicious tools
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;running
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;on
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;it. This toolkit is designed for a Windows desktop and Server
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;environment. I
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;am looking at building out tools that are fairly easy to use and do
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;not
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;require much training. Currently I have the following tools on it:
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;(SysInternal tools)
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;Autoruns
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;PortMon
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;Process Explorer
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;Process Monitor
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;Ps Tools
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;Logon Sessions
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;Other tools:
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;Adaware
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;Is there anything else folks out there are using to provide their
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;lower
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;level support guys with some tools for informational gathering
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;purposes....the tools have to run offline as systems are removed in
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;the
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;event of a breach or infection...I am not looking for a full blown
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;forensics
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;kit, just something I can train folks unfamiliar with tool fairly
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;quickly...
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;----------------------------------------------------------------------
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;--
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;Securing Apache Web Server with thawte Digital Certificate
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;In this guide we examine the importance of Apache-SSL and who needs an
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;SSL certificate. We look at how SSL works, how it benefits your
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;company
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;and how your customers can tell if a site is secure. You will find out
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;how to test, purchase, install and use a thawte Digital Certificate on
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;your Apache web server. Throughout, best practices for set-up are
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;highlighted to help you ensure efficient ongoing management of your
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;encryption keys and digital certificates.
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt;&lt;a href=&quot;http://www.dinclinx.com/Redirect.aspx?36;4175;25;1371;0;5;946;e13b6be442&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.dinclinx.com/Redirect.aspx?36;4175;25;1371;0;5;946;e13b6be442&lt;/a&gt;&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;f
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;727d1
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;----------------------------------------------------------------------
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;--
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;----------------------------------------------------------------------
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;--
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;Securing Apache Web Server with thawte Digital Certificate
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;In this guide we examine the importance of Apache-SSL and who needs an
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;SSL
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;certificate. We look at how SSL works, how it benefits your company
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;and
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;how
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;your customers can tell if a site is secure. You will find out how to
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;test,
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;purchase, install and use a thawte Digital Certificate on your Apache
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;web
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;server. Throughout, best practices for set-up are highlighted to help
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;you
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;ensure efficient ongoing management of your encryption keys and
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;digital
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;certificates.
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt;&lt;a href=&quot;http://www.dinclinx.com/Redirect.aspx?36;4175;25;1371;0;5;946;e13b6be442&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.dinclinx.com/Redirect.aspx?36;4175;25;1371;0;5;946;e13b6be442&lt;/a&gt;&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;f
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;727
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;d1
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;----------------------------------------------------------------------
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;--
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;--------------------------------------------------------------------
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;mail2web.com - Enhanced email for the mobile individual based on
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;MicrosoftR
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;Exchange - &lt;a href=&quot;http://link.mail2web.com/Personal/EnhancedEmail&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://link.mail2web.com/Personal/EnhancedEmail&lt;/a&gt;&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;----------------------------------------------------------------------
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;--
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;Securing Apache Web Server with thawte Digital Certificate
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;In this guide we examine the importance of Apache-SSL and who needs an
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;SSL certificate.  We look at how SSL works, how it benefits your
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;company
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;and how your customers can tell if a site is secure. You will find out
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;how to test, purchase, install and use a thawte Digital Certificate on
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;your Apache web server. Throughout, best practices for set-up are
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;highlighted to help you ensure efficient ongoing management of your
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;encryption keys and digital certificates.
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt;&lt;a href=&quot;http://www.dinclinx.com/Redirect.aspx?36;4175;25;1371;0;5;946;e13b6be442&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.dinclinx.com/Redirect.aspx?36;4175;25;1371;0;5;946;e13b6be442&lt;/a&gt;&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;f
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;727d1
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&amp;gt; &amp;gt;----------------------------------------------------------------------
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;--
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;------------------------------------------------------------------------
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;Securing Apache Web Server with thawte Digital Certificate
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;In this guide we examine the importance of Apache-SSL and who needs an
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;SSL
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;certificate.  We look at how SSL works, how it benefits your company and
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;how your customers can tell if a site is secure. You will find out how to
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;test, purchase, install and use a thawte Digital Certificate on your
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;Apache
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;web server. Throughout, best practices for set-up are highlighted to help
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;you ensure efficient ongoing management of your encryption keys and
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;digital
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;certificates.
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&lt;a href=&quot;http://www.dinclinx.com/Redirect.aspx?36;4175;25;1371;0;5;946;e13b6be442f&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.dinclinx.com/Redirect.aspx?36;4175;25;1371;0;5;946;e13b6be442f&lt;/a&gt;&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;727
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;d1
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;------------------------------------------------------------------------
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;--------------------------------------------------------------------
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;mail2web LIVE - Free email based on MicrosoftR Exchange technology -
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&lt;a href=&quot;http://link.mail2web.com/LIVE&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://link.mail2web.com/LIVE&lt;/a&gt;&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;------------------------------------------------------------------------
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;Securing Apache Web Server with thawte Digital Certificate
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;In this guide we examine the importance of Apache-SSL and who needs an
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;SSL certificate.  We look at how SSL works, how it benefits your company
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;and how your customers can tell if a site is secure. You will find out
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;how to test, purchase, install and use a thawte Digital Certificate on
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;your Apache web server. Throughout, best practices for set-up are
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;highlighted to help you ensure efficient ongoing management of your
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;encryption keys and digital certificates.
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;&lt;a href=&quot;http://www.dinclinx.com/Redirect.aspx?36;4175;25;1371;0;5;946;e13b6be442f&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.dinclinx.com/Redirect.aspx?36;4175;25;1371;0;5;946;e13b6be442f&lt;/a&gt;&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;727d1
&lt;br&gt;&amp;gt;&amp;gt; &amp;gt;------------------------------------------------------------------------
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; ------------------------------------------------------------------------
&lt;br&gt;&amp;gt; Securing Apache Web Server with thawte Digital Certificate
&lt;br&gt;&amp;gt; In this guide we examine the importance of Apache-SSL and who needs an SSL certificate.  We look at how SSL works, how it benefits your company and how your customers can tell if a site is secure. You will find out how to test, purchase, install and use a thawte Digital Certificate on your Apache web server. Throughout, best practices for set-up are highlighted to help you ensure efficient ongoing management of your encryption keys and digital certificates.
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; &lt;a href=&quot;http://www.dinclinx.com/Redirect.aspx?36;4175;25;1371;0;5;946;e13b6be442f727d1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.dinclinx.com/Redirect.aspx?36;4175;25;1371;0;5;946;e13b6be442f727d1&lt;/a&gt;&lt;br&gt;&amp;gt; ------------------------------------------------------------------------
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt;
&lt;/div&gt;&lt;br&gt;------------------------------------------------------------------------
&lt;br&gt;This list is sponsored by: Information Assurance Certification Review Board
&lt;br&gt;&lt;br&gt;Prove to peers and potential employers without a doubt that you can actually do a proper penetration test. IACRB CPT and CEPT certs require a full practical examination in order to become certified.
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://www.iacertification.org&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.iacertification.org&lt;/a&gt;&lt;br&gt;------------------------------------------------------------------------
&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/Re%3A-Malware-Analysis-tp26489084p26489084.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26489311</id>
	<title>Re: Windows Internationalization?</title>
	<published>2009-11-21T15:34:31Z</published>
	<updated>2009-11-21T15:34:31Z</updated>
	<author>
		<name>Robert Portvliet</name>
	</author>
	<content type="html">It's been a bit, but I used to do work (remotely) on machines in
&lt;br&gt;Singapore sometimes &amp; I seem to recall everything being in (what I
&lt;br&gt;assume was) Chinese.
&lt;br&gt;&lt;br&gt;As far as the internals go, I noticed some exploits in Metasploit have
&lt;br&gt;'Windows XP Chinese' as a target, so I guess there is some difference
&lt;br&gt;in the return addresses &amp; such.
&lt;br&gt;&lt;br&gt;I see mention on foofus.net from 06/21/2007 about Chinese language
&lt;br&gt;packs that states: &amp;quot;I know there is still an issue with some Unicode-
&lt;br&gt;centric versions of XP (specifically, some Chinese language packs). I
&lt;br&gt;started working on this a bit, but have been swamped. Hopefully I'll
&lt;br&gt;get some updates to this soon.&amp;quot;.
&lt;br&gt;&lt;br&gt;Maybe that has been corrected since, if not in pwdump6 than in fgdump...
&lt;br&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;On Wed, Nov 18, 2009 at 4:00 PM, Jon Kibler &amp;lt;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26489311&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;Jon.Kibler@...&lt;/a&gt;&amp;gt; wrote:
&lt;div class='shrinkable-quote'&gt;&lt;br&gt;&amp;gt; -----BEGIN PGP SIGNED MESSAGE-----
&lt;br&gt;&amp;gt; Hash: SHA1
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; Hi,
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; I have been approached about doing a pen test job that would involve a target
&lt;br&gt;&amp;gt; organization whose native character set is not ASCII. So, I have a few questions
&lt;br&gt;&amp;gt; and would appreciate some pointers to help me decide if I really want this
&lt;br&gt;&amp;gt; assignment.
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; Questions that immediately come to mind are:
&lt;br&gt;&amp;gt; 1) On a Windows system that uses a non-ASCII character set (Chinese, Arabic,
&lt;br&gt;&amp;gt; Russian, etc.), how does that effect Windows?
&lt;br&gt;&amp;gt;   -- Are registry key names still ASCII? Key values still ASCII?
&lt;br&gt;&amp;gt;   -- Are Windows directories still ASCII?
&lt;br&gt;&amp;gt;   -- Are Windows file names still ASCII? English language file names?
&lt;br&gt;&amp;gt;   -- Are there any differences in how internationalization works between
&lt;br&gt;&amp;gt; Windows versions, such as W2K3 and XP/Vista?
&lt;br&gt;&amp;gt;   -- Are standard user names such as &amp;quot;administrator&amp;quot; and &amp;quot;guest&amp;quot; still ASCII,
&lt;br&gt;&amp;gt; or have they been internationalized, too?
&lt;br&gt;&amp;gt;   -- Are file extensions (.exe .bat .ini, etc.) still ASCII or have they been
&lt;br&gt;&amp;gt; internationalized?
&lt;br&gt;&amp;gt;   -- Are INI file contents ASCII or internationalized?
&lt;br&gt;&amp;gt;   -- Any changes to the SAM file? (Will pwdump still work against it?)
&lt;br&gt;&amp;gt; I guess the bottom line is, what gets changed and what is left in ASCII on an
&lt;br&gt;&amp;gt; internationalized Windows box?
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; 2) Are there any tools that have been customized for use with non-ASCII
&lt;br&gt;&amp;gt; character sets, such as non-ASCII nikto databases?
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; 3) What are the issues that I should be aware of when pen testing an
&lt;br&gt;&amp;gt; internationalized target? I would be working with a native speaker of the
&lt;br&gt;&amp;gt; language who is a sys admin, but not a security expert. (Unfortunately, I would
&lt;br&gt;&amp;gt; not get to speak to them until after I agree to the assignment!)
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; Most of the stuff I find when googling the subject gives links to old pages that
&lt;br&gt;&amp;gt; really do not give much specific information.
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; Thoughts, comments, suggestions?
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; Thanks in advance for any/all help!
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; Jon
&lt;br&gt;&amp;gt; - --
&lt;br&gt;&amp;gt; Jon R. Kibler
&lt;br&gt;&amp;gt; Chief Technical Officer
&lt;br&gt;&amp;gt; Advanced Systems Engineering Technology, Inc.
&lt;br&gt;&amp;gt; Charleston, SC  USA
&lt;br&gt;&amp;gt; o: 843-849-8214
&lt;br&gt;&amp;gt; c: 843-813-2924
&lt;br&gt;&amp;gt; s: 843-564-4224
&lt;br&gt;&amp;gt; s: JonRKibler
&lt;br&gt;&amp;gt; e: &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26489311&amp;i=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;Jon.Kibler@...&lt;/a&gt;
&lt;br&gt;&amp;gt; e: &lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26489311&amp;i=2&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;Jon.R.Kibler@...&lt;/a&gt;
&lt;br&gt;&amp;gt; &lt;a href=&quot;http://www.linkedin.com/in/jonrkibler&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.linkedin.com/in/jonrkibler&lt;/a&gt;&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; My PGP Fingerprint is:
&lt;br&gt;&amp;gt; BAA2 1F2C 5543 5D25 4636 A392 515C 5045 CF39 4253
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; -----BEGIN PGP SIGNATURE-----
&lt;br&gt;&amp;gt; Version: GnuPG v1.4.8 (Darwin)
&lt;br&gt;&amp;gt; Comment: Using GnuPG with Mozilla - &lt;a href=&quot;http://enigmail.mozdev.org/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://enigmail.mozdev.org/&lt;/a&gt;&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; iEYEARECAAYFAksEYHMACgkQUVxQRc85QlMmUACfeaUvnSiYJBTG4cJ0jSnDKHkd
&lt;br&gt;&amp;gt; zNkAn3SxetV7AV1z4uN/FzD89oaeNo24
&lt;br&gt;&amp;gt; =XVHd
&lt;br&gt;&amp;gt; -----END PGP SIGNATURE-----
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; ==================================================
&lt;br&gt;&amp;gt; Filtered by: TRUSTEM.COM's Email Filtering Service
&lt;br&gt;&amp;gt; &lt;a href=&quot;http://www.trustem.com/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.trustem.com/&lt;/a&gt;&lt;br&gt;&amp;gt; No Spam. No Viruses. Just Good Clean Email.
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; ------------------------------------------------------------------------
&lt;br&gt;&amp;gt; This list is sponsored by: Information Assurance Certification Review Board
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; Prove to peers and potential employers without a doubt that you can actually do a proper penetration test. IACRB CPT and CEPT certs require a full practical examination in order to become certified.
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; &lt;a href=&quot;http://www.iacertification.org&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.iacertification.org&lt;/a&gt;&lt;br&gt;&amp;gt; ------------------------------------------------------------------------
&lt;br&gt;&amp;gt;
&lt;/div&gt;&lt;br&gt;------------------------------------------------------------------------
&lt;br&gt;This list is sponsored by: Information Assurance Certification Review Board
&lt;br&gt;&lt;br&gt;Prove to peers and potential employers without a doubt that you can actually do a proper penetration test. IACRB CPT and CEPT certs require a full practical examination in order to become certified.
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://www.iacertification.org&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.iacertification.org&lt;/a&gt;&lt;br&gt;------------------------------------------------------------------------
&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/Windows-Internationalization--tp26433781p26489311.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26488807</id>
	<title>Re: Firewall Type Fingerprinting</title>
	<published>2009-11-21T13:00:40Z</published>
	<updated>2009-11-21T13:00:40Z</updated>
	<author>
		<name>Edin Dizdarevic</name>
	</author>
	<content type="html">Nmap should be the right tool, it can recognize many target systems. Get 
&lt;br&gt;it at &lt;a href=&quot;http://nmap.org&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://nmap.org&lt;/a&gt;, see the docs for more information.
&lt;br&gt;&lt;br&gt;Regards,
&lt;br&gt;Edin
&lt;br&gt;&lt;br&gt;Zaki Akhmad schrieb:
&lt;br&gt;&amp;gt; Hello,
&lt;br&gt;&amp;gt; 
&lt;br&gt;&amp;gt; Can we do firewall type fingerprinting? With what tools? I want to
&lt;br&gt;&amp;gt; know the type of the firewall in front of the web server.
&lt;br&gt;&amp;gt; 
&lt;br&gt;&lt;br&gt;&lt;br&gt;------------------------------------------------------------------------
&lt;br&gt;This list is sponsored by: Information Assurance Certification Review Board
&lt;br&gt;&lt;br&gt;Prove to peers and potential employers without a doubt that you can actually do a proper penetration test. IACRB CPT and CEPT certs require a full practical examination in order to become certified. 
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://www.iacertification.org&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.iacertification.org&lt;/a&gt;&lt;br&gt;------------------------------------------------------------------------
&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/Firewall-Type-Fingerprinting-tp26433626p26488807.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26452632</id>
	<title>Replicating the Gonzalez Cyber Attacks through Penetration Testing</title>
	<published>2009-11-20T16:07:11Z</published>
	<updated>2009-11-20T16:07:11Z</updated>
	<author>
		<name>Norwich University</name>
	</author>
	<content type="html">--------------------------------------------------------------------------------
&lt;br&gt;YOU'RE INVITED: IT SECURITY ON DEMAND WEBCAST
&lt;br&gt;&amp;nbsp;
&lt;br&gt;&amp;quot;Replicating the Gonzalez Cyber Attacks through Penetration Testing&amp;quot;
&lt;br&gt;Register: &lt;a href=&quot;http://www.coresecurity.com/Form/generic/campaign/SecurityFocusGonzalez&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.coresecurity.com/Form/generic/campaign/SecurityFocusGonzalez&lt;/a&gt;&lt;br&gt;---------------------------------------------------------------------------------
&lt;br&gt;&amp;nbsp;
&lt;br&gt;Recently, we saw the indictment of cybercrime kingpin Albert Gonzalez, one of the accused masterminds behind high-profile data breaches at Heartland Payment Systems, Hannaford Bros. Supermarkets, 7-Eleven, and TJX. Next week, Core Security Technologies will present a hands-on look at the attacks Gonzalez and his co-conspirators are believed to have used in breaching these organizations.
&lt;br&gt;&amp;nbsp;
&lt;br&gt;Leveraging the actual indictment document as a guide, Core Security senior product manager Alex Horan will use CORE IMPACT Pro penetration testing software to demonstrate the techniques by which Gonzales allegedly stole millions of credit card numbers* - showing you how to identify IT exposures in your own environment before cybercriminals do.
&lt;br&gt;&amp;nbsp;
&lt;br&gt;&amp;gt; Register here: &lt;a href=&quot;http://www.coresecurity.com/Form/generic/campaign/SecurityFocusGonzalez&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.coresecurity.com/Form/generic/campaign/SecurityFocusGonzalez&lt;/a&gt;&lt;br&gt;&amp;nbsp;
&lt;br&gt;During the webcast, you'll see a step-by-step depiction of an attack similar to that described in the Gonzalez indictment, including the following critical stages:
&lt;br&gt;&amp;nbsp;
&lt;br&gt;* &amp;nbsp;the initial web application compromise via SQL Injection
&lt;br&gt;* &amp;nbsp;the use of a well-known backend database command to make the attacks even
&lt;br&gt;* &amp;nbsp;more invasive
&lt;br&gt;* &amp;nbsp;the planting of malware on the backend database server
&lt;br&gt;* &amp;nbsp;the collection and transmission of credit card transactions to the
&lt;br&gt;* &amp;nbsp;attackers
&lt;br&gt;&amp;nbsp;
&lt;br&gt;Through the demonstration, you'll also learn how commercial-grade penetration testing software enables you to see your IT systems as an attacker would -- not only by determining if the kinds of issues that Gonzalez reportedly leveraged are present in your environment, but also by ...
&lt;br&gt;&amp;nbsp;
&lt;br&gt;* &amp;nbsp;assessing how deployed defenses react to specific threats
&lt;br&gt;* &amp;nbsp;revealing what systems and data would be exposed by a breach
&lt;br&gt;* &amp;nbsp;depicting how chains of vulnerabilities open paths to mission-critical
&lt;br&gt;* &amp;nbsp;systems and information
&lt;br&gt;* &amp;nbsp;providing actionable data for immediately mitigating critical exposures
&lt;br&gt;* &amp;nbsp;repeating tests to ensure the effectiveness of remediation efforts
&lt;br&gt;&amp;nbsp;
&lt;br&gt;This webcast is ideal for anyone interested in proactively assessing their security posture against real-world cyber threats.
&lt;br&gt;&amp;nbsp;
&lt;br&gt;&amp;gt; Register here: &lt;a href=&quot;http://www.coresecurity.com/Form/generic/campaign/SecurityFocusGonzalez&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.coresecurity.com/Form/generic/campaign/SecurityFocusGonzalez&lt;/a&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;------------------------------------------------------------------------
&lt;br&gt;This list is sponsored by: Information Assurance Certification Review Board
&lt;br&gt;&lt;br&gt;Prove to peers and potential employers without a doubt that you can actually do a proper penetration test. IACRB CPT and CEPT certs require a full practical examination in order to become certified. 
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://www.iacertification.org&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.iacertification.org&lt;/a&gt;&lt;br&gt;------------------------------------------------------------------------
&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/Replicating-the-Gonzalez-Cyber-Attacks-through-Penetration-Testing-tp26452632p26452632.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26488609</id>
	<title>Re: Firewall Type Fingerprinting</title>
	<published>2009-11-20T15:32:08Z</published>
	<updated>2009-11-20T15:32:08Z</updated>
	<author>
		<name>vtlists</name>
	</author>
	<content type="html">Am Thu, 19 Nov 2009 16:09:02 +0700
&lt;br&gt;schrieb Zaki Akhmad &amp;lt;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26488609&amp;i=0&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;zakiakhmad@...&lt;/a&gt;&amp;gt;:
&lt;br&gt;&amp;gt;
&lt;br&gt;&amp;gt; Can we do firewall type fingerprinting? With what tools? I want to
&lt;br&gt;&amp;gt; know the type of the firewall in front of the web server.
&lt;br&gt;&lt;br&gt;Sometimes - if so, a simple portscan can tell things. Sometimes service
&lt;br&gt;gateways / proxies are a giveaway
&lt;br&gt;&lt;br&gt;- There are typical ports for some firewalls 
&lt;br&gt;&amp;nbsp; (services like http-auth, VPN-ports)
&lt;br&gt;&lt;br&gt;- Some FWs tell their name when using a Layer7 protocol filter.
&lt;br&gt;&lt;br&gt;- Some have a very distinct appearance in a portscan 
&lt;br&gt;&amp;nbsp; (esp. Raptor / Symantec Enterprise).
&lt;br&gt;&lt;br&gt;- Some have specific modifications to the IKE protocol (use IKEscan).
&lt;br&gt;&lt;br&gt;- Some can be identified by NMAP / Hping2 OS scan.
&lt;br&gt;&lt;br&gt;Usually: the &amp;quot;tighter&amp;quot; a FW is configured the harder it is to find out
&lt;br&gt;its brand, too...
&lt;br&gt;&lt;br&gt;I don't know any special tools - usually NMAP is sufficient for most of
&lt;br&gt;the tests above. Plus a bit of experience to interpret the results
&lt;br&gt;unless they are blantantly obvious from service names...
&lt;br&gt;&lt;br&gt;Bye
&lt;br&gt;&lt;br&gt;Volker
&lt;br&gt;&lt;br&gt;&lt;br&gt;-- 
&lt;br&gt;&lt;br&gt;Volker Tanger &amp;nbsp; &amp;nbsp;&lt;a href=&quot;http://www.wyae.de/volker.tanger/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.wyae.de/volker.tanger/&lt;/a&gt;&lt;br&gt;--------------------------------------------------
&lt;br&gt;&lt;a href=&quot;http://old.nabble.com/user/SendEmail.jtp?type=post&amp;post=26488609&amp;i=1&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;vtlists@...&lt;/a&gt; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;PGP Fingerprint
&lt;br&gt;378A 7DA7 4F20 C2F3 5BCC &amp;nbsp;8340 7424 6122 BB83 B8CB
&lt;br&gt;&lt;br&gt;------------------------------------------------------------------------
&lt;br&gt;This list is sponsored by: Information Assurance Certification Review Board
&lt;br&gt;&lt;br&gt;Prove to peers and potential employers without a doubt that you can actually do a proper penetration test. IACRB CPT and CEPT certs require a full practical examination in order to become certified. 
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://www.iacertification.org&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.iacertification.org&lt;/a&gt;&lt;br&gt;------------------------------------------------------------------------
&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/Firewall-Type-Fingerprinting-tp26433626p26488609.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26489226</id>
	<title>Using linux firewalls for PCI compliant infrastructure</title>
	<published>2009-11-20T09:05:48Z</published>
	<updated>2009-11-20T09:05:48Z</updated>
	<author>
		<name>Siim Põder-3</name>
	</author>
	<content type="html">Hi
&lt;br&gt;&lt;br&gt;We are using linux-based servers as firewalls for PCI compliant
&lt;br&gt;infrastructure. During audits it has been AOK so far but security
&lt;br&gt;people internally have suggested that maybe a commercial product would
&lt;br&gt;be better suited for PCI infrastructure (as it is pretty critical).
&lt;br&gt;&lt;br&gt;I'm personally very happy with the iptables firewalls - we can use all
&lt;br&gt;the standard components for firewalls that we use for everything else
&lt;br&gt;(including standard administration methods, patching and so forth).
&lt;br&gt;&lt;br&gt;What do you think, would a commercial firewall provide a tangible
&lt;br&gt;improvement in security?
&lt;br&gt;Is anyone else using linux-based firewalls for PCI (or otherwise
&lt;br&gt;sensitive) infrastructure?
&lt;br&gt;&lt;br&gt;Best regards,
&lt;br&gt;Siim
&lt;br&gt;&lt;br&gt;------------------------------------------------------------------------
&lt;br&gt;This list is sponsored by: Information Assurance Certification Review Board
&lt;br&gt;&lt;br&gt;Prove to peers and potential employers without a doubt that you can actually do a proper penetration test. IACRB CPT and CEPT certs require a full practical examination in order to become certified. 
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://www.iacertification.org&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.iacertification.org&lt;/a&gt;&lt;br&gt;------------------------------------------------------------------------
&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/Using-linux-firewalls-for-PCI-compliant-infrastructure-tp26489226p26489226.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26489415</id>
	<title>Different ways to portscan IPS</title>
	<published>2009-11-20T03:02:57Z</published>
	<updated>2009-11-20T03:02:57Z</updated>
	<author>
		<name>Vimal™</name>
	</author>
	<content type="html">What are the different ways of port scanning the target when an IPS in placed.
&lt;br&gt;&lt;br&gt;Some of the methods I used are:
&lt;br&gt;&lt;br&gt;1. Delay the scan prob (nmap --scan-delay)
&lt;br&gt;&lt;br&gt;2. Integrating the scanner with TOR
&lt;br&gt;&lt;br&gt;Regards
&lt;br&gt;Vimal
&lt;br&gt;&lt;br&gt;web   : &lt;a href=&quot;http://www.maestro-sec.com&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.maestro-sec.com&lt;/a&gt;&lt;br&gt;&lt;br&gt;------------------------------------------------------------------------
&lt;br&gt;This list is sponsored by: Information Assurance Certification Review Board
&lt;br&gt;&lt;br&gt;Prove to peers and potential employers without a doubt that you can actually do a proper penetration test. IACRB CPT and CEPT certs require a full practical examination in order to become certified.
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://www.iacertification.org&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.iacertification.org&lt;/a&gt;&lt;br&gt;------------------------------------------------------------------------
&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/Different-ways-to-portscan-IPS-tp26489415p26489415.html" />
</entry>

<entry>
	<id>tag:old.nabble.com,2006:post-26489150</id>
	<title>Re: Firewall Type Fingerprinting</title>
	<published>2009-11-20T02:50:56Z</published>
	<updated>2009-11-20T02:50:56Z</updated>
	<author>
		<name>Chris Brenton</name>
	</author>
	<content type="html">On Thu, 2009-11-19 at 16:09 +0700, Zaki Akhmad wrote:
&lt;br&gt;&amp;gt; Hello,
&lt;br&gt;&amp;gt; 
&lt;br&gt;&amp;gt; Can we do firewall type fingerprinting? With what tools? I want to
&lt;br&gt;&amp;gt; know the type of the firewall in front of the web server.
&lt;br&gt;&lt;br&gt;If you know what to look for, absolutely. I have yet to see an automated
&lt;br&gt;tool beyond what I've scripted myself. Check out question 13 below as
&lt;br&gt;well as the answer, I've documented a portion of the process:
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://www.chrisbrenton.org/2009/07/test-your-network-security-skills/&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.chrisbrenton.org/2009/07/test-your-network-security-skills/&lt;/a&gt;&lt;br&gt;&lt;br&gt;Thought about releasing this as a tool but the potential is a bit
&lt;br&gt;scary. ;-)
&lt;br&gt;&lt;br&gt;HTH,
&lt;br&gt;Chris
&lt;br&gt;-- 
&lt;br&gt;www.chrisbrenton.org
&lt;br&gt;&lt;br&gt;&lt;br&gt;------------------------------------------------------------------------
&lt;br&gt;This list is sponsored by: Information Assurance Certification Review Board
&lt;br&gt;&lt;br&gt;Prove to peers and potential employers without a doubt that you can actually do a proper penetration test. IACRB CPT and CEPT certs require a full practical examination in order to become certified. 
&lt;br&gt;&lt;br&gt;&lt;a href=&quot;http://www.iacertification.org&quot; target=&quot;_top&quot; rel=&quot;nofollow&quot;&gt;http://www.iacertification.org&lt;/a&gt;&lt;br&gt;------------------------------------------------------------------------
&lt;br&gt;&lt;br&gt;</content>
	<link rel="alternate" type="text/html" href="http://old.nabble.com/Firewall-Type-Fingerprinting-tp26433626p26489150.html" />
</entry>

</feed>
