Jump to content

burn

Active Members
  • Posts

    102
  • Joined

  • Last visited

Posts posted by burn

  1. You probably tried this first, but I'm going to ask anyway ...

    Have you tried putting quotes around the directory?

    For example: "C:Documents and SettingsAll UsersStart MenuProgramsStartupprogram.bat"

  2. I heard about some NAS software called FreeNAS but I've never used it and can't comment on how well it works (or doesn't work).

    Folding@Home sounds good.

    As for distros, FreeBSD is good and will give you some really good Unix experience, though I don't know how many businesses run FreeBSD (we run it so there's at least one :)). You can also load Xen on it and run as many different OS's as you want (Debian, Gentoo, Fedora Core, FreeBSD). I hear setting up Xen is a lot easier if you start with a Fedora Core base system.

    Richard Bejtlich (http://taosecurity.blogspot.com) is a huge FreeBSD advocate and has an excellent security blog if you're into that sort of stuff.

    If you've never used Linux (or FreeBSD) before, then you're in for a world full of learning. Everything you need to do is an experience. You'll start off with a specific task in hand and by the time you figure it all out you've learned a lot more than you thought you would. You'll also soon realize that Linux (or FreeBSD) is so much more powerful than Windows (not as pretty, but more powerful :)).

    Good luck with whatever you choose.

  3. I just created an account to see what it was like.

    I'm currently uploading some music (free, legal music, that is (ok it's nerdcore if you must know)) just to see how well it streams. I'm tired of trying to keep my music collection synced between work and home. Maybe this will be a workable solution. If not, the only thing I've lost is my bandwidth.

  4. This discussion is like that Weird Al song

    Only question I

    Ever thought was hard

    Was do I like Kirk

    Or do I like Picard

    And I've never really been a bond guy, but I liked the old school ones way better than the Brosnan versions ... they seem too commercial and far fetched. I'm torn between Moore and Connery but I'm leaning towards Connery just because he's pure pwnage!

  5. yep, ophcrack is it. It comes with a small set of rainbow tables that will crack a lot of passwords 8 characters and under.

    EDIT:

    The Live CD will crack a lot more than 8-character passwords!

    Ophcrack Live CD

    The Ophcrack LiveCD is a bootable Linux CD-ROM containing ophcrack 2.3 and a set of tables (SSTIC04-10k). It allows for testing the strength of passwords on a Windows machine without having to install anything on it. Just put it into the CD-ROM drive, reboot and it will try to find a Windows partition, extract its SAM and start auditing the passwords.

    Rainbow tables

    Ophcrack 2.3 uses the alphanumeric table sets of ophcrack 1.0 as well as new table sets with special characters. This means that it cracks 99.9% of passwords of length 1 to 14 containing uppercase letters, lowercase letters and numbers with the old table sets. With the new table set, it cracks 96% of passwords of length 1 to 14 composed by characters contained in this set:

    0123456789abcdefghijklmnopqrstuvwxyzABCDEFGHIJKLMNOPQRSTUVWXYZ!"#$%&' ()*+,-./:;&<=>?@[]^_`{|}~ (including the space character)

    Ophcrack 2.3 also cracks NTLM hashes using a new tables set called NTHASH. It cracks 99% of:

    * passwords of length 6 or less composed by characters in this set:

    0123456789abcdefghijklmnopqrstuvwxyzABCDEFGHIJKLMNOPQRSTUVWXYZ!"#$%&' ()*+,-./:;&<=>?@[]^_`{|}~ (including the space character)

    * alphanumeric passwords of length 7 (lower- and uppercase)

    * alphanumeric passwords of length 8 (lowercase only)

    SSTIC04-10k is a smaller table set (388MB) for machines having less than 500M of RAM.

    *** This is why it's very important to have 15-character or longer passwords/phrases!! If your password now is 8 characters, just enter it twice. Sentences are easy to remember, something like "i hate long passwords" will beat any rainbow table.

  6. thats the only reason i use windows. to play games

    Have you tried running any of your games with Cedega? It does an awesome job with Half-Life/Counterstrike 1.6. I never tried HL2 on it so I can't say how awesome or sucky it is with Cedega.

    I just bought a new computer from a buddy at work that I'm using as a gaming rig so it's running Windows and so far it hasn't let me down. One of the reasons I kept Windows on it is because it has an ATI video card.

    So back on topic, FEAR is free for multiplayer?

    /me heads off to find the download ....

    EDIT:

    Good Lord, this is a freakin' huge download!!!!

    F.E.A.R. Combat

    Date Added 08/17/2006

    File Size 1.86 GB

  7. Implementing a MAC-based ACL on a wireless AP is akin to locking your car with the windows rolled down.

    Or running WEP. :)

    It keeps the newbies out, but that's about it.

  8. Two of my relatives took a Cisco class in HS and it was a total joke. First, the teacher was clueless as to how networks are connected and the lab was never fully setup for them to use.

    I remember my cousin coming to me asking if what his teacher said was true: "The reason you see some websites using www2 is because we're running out of www addresses."

    Uh, what?!?!

    Now, the class was 4 semesters long and I asked my cousin after it was all said and done a couple of simple subnet questions, just to pick on him, and his response was classic ... "What's a subnet?". This was after he PASSED the class.

    Hopefully your experience is a lot different than theirs.

  9. If he programmed his router to only allow certain MAC address to connect to it, then all it takes is to watch what MAC addresses are connected using a program like airodump (part of the aircrack suite). After that you could try disconnecting them from the router using a deauth attack, reprogramming your MAC address to match theirs, and then connect to the AP. You'll want to add your real MAC address to their whitelist and disconnect yourself. If you do it quick enough maybe the victim won't realize why he was disconnected and won't think to check the router's config for a new entry.

  10. I've got an XBox controller that I cut in half and soldered the end of a USB cable to. It works great on my PC. I like to use the gamepads for driving games, but the keyboard owns on FPSs!

    Be careful, though. I had a friend do the same but he just used electrical tape and would up frying his motherboard. Make sure you use solder and tape it together really tight. You might even spend an extra dollar and get some of that shrinkwrap for cables stuff.

  11. I think the Cisco 1200 AP s offers individual vlans per connection and I think the WRT54G's do as well, unless it was a hacked one I was hearing someone talk about.

    There's a coffee shop here that uses a Cisco 1200 AP. I did an NMAP scan and picked up the coffee shop's public computers, but not any of the other wireless users. I was able to do an HTTP MiTM and get clear-text passwords but all attempts at a SSL MiTM failed. I checked the public computers and their gateway MAC never changed (I didn't look at the gateway MAC during a normal HTTP MiTM). They also have wireless camera's setup there that didn't show up in an ARP scan or a ping sweep.

    If you're looking at a secure way to offer public wifi perhaps you can look at the Cisco APs. I think they're rather expensive, though. Or maybe you can do a captive portal like NoCatAuth and a RADIUS server on a hacked WRT54G.

    I've never heard of the nomadix brand.

  12. Sorry to sound like a noob but is GE: S a stand alone game or is it a mod for an existing game?

    It's a mod for Half-Life 2.

    I downloaded it, too, after seeing it on the LAN list for this month. It's definitely a very cool game but the only server I found was empty (aside from one dude who quit shortly after I started).

  13. I think it's amazing how many people I see wearing shorts and tank tops flying down the interstate on their crotch rockets. Or the ones that have _some_ gear on but their girl's on the back with some short shorts and a t-shirt.

    At least you're smart enough to respect the road and what it can do to you.

    Good to see that you're OK.

  14. It's not a good idea to have your Internet facing servers on your internal network. You'd be better off putting them in a DMZ, separated from your internal machines.

  15. I like it when people use the same password for everything. There's nothing better than sitting at a coffee shop and getting someone's myspace password that also works for their aol mail, yahoo mail ... etc.

    I still can't believe most forums don't have a secure login page. That and whenever you request your password, most sites are able to send you your original password which means it's stored in their database in clear text. Now you have to trust the forum admins, the mail server admins, and anyone listening in between.

×
×
  • Create New...