Jump to content

Darkmist!

Active Members
  • Posts

    104
  • Joined

  • Last visited

  • Days Won

    2

Posts posted by Darkmist!

  1. You can keep using Dreamspark licences after your enrollment in the program ends. You just dont get anything new, and you can only use it for educational purposes.

    i have had to re-authorize several times using my school email. if my school deletes my email then i cant re-authorize and get the software/training. or at least thats what i gather from looking at it. i think that if i log in enough i can keep it authorized. the school email is based off of the live.com email sign in.

  2. well you can make your own TCP/IP stack and just open up up listening connections that are reporting that they have room for a connection but not the memory. this will force the connection to stay open and not be dropped by the attacker. this way you can DOS a connection with 1 laptop.

    my explanation is a bit fuzzy. they went into great detail on it on security now under the sockstress podcast.

    im at work so i cant go into much detail. but look into that

  3. I have a cheap dual core box on my desk that I run a headless install of Windows Server 2003 and it is set up as a domain controller. I then use it to host a couple of vm's as clients and another few on my desktop. It helps you get the idea. Make sure you read up on anything you don't understand. Too many people can go click click next next in a wizard but don't understand what they are doing. If you don't know it makes it harder to troubleshoot.

    WORD.

    i also just unlocked free training from the dreamspark website. i only have a quarter left in school so i gotta hurry up and load up as much knowlege as possible. its funny. i took most of my core IS courses in the middle of my 4 years and ive been on gen eds for the last year. my knowlege is getting fuzzy so im trying my best to stay up on it

  4. i want to build a honeypot. i went to the honeynet site and was trying to download the glastopf version but for the life of me i cannot find the download link. it goes to an overview page but no links to the download.

    does anyone have a good setup for a honeypot thats easy to configure?

    i think im going to install a really old copy of windows pre service pack 1 and see how long it takes to get infected just sitting on the web. use wireshark to sniff the packets and record it.

    any suggestions for me?

    part of this is to test various firewall solutions on extremely vulnerable machines. im bored with removing infections and i want to see first hand how viruses and malware can infect a machine with a vulnerability and then see it spread from machine to machine on the network. im thinking of making a few virtual machines for this and have them be in a DMZ on the network.

  5. all you have to do is get a notebook that has a PCMCIA slot and a NIC or WLAN that fits. its individual mac address is attached to the card. you then go to a cofee shop or open wireless network and go to town.

    if the heat comes up just throw away the card.

    remember to pay with cash

  6. Well, you'd need 2 server OS's and 15 client machines, which is a bit to much for that machine. TBH, if you have no experience then it would be better to do the following, Setup 2 sites, create a VPN between them, run a domain controller and dhcp server on each site and learn how to setup AD properly to support this.

    ok thanks. ill be setting it up and letting all know how it goes

  7. ive been perusing the forums for a while now and i havent seen a topic like this one

    i want to get into supporting an enterprise network but i do not have the hardware to do so nor do i feel comfortable going into a job as an admin without some practice behind the wheel. im just graduating college with a bachelors but unfortunately a lot of what ive done is theoretical and learning from books instead of hands on hardware.

    i wish to make several virtual machines with an AD, DNS, DHCP, etc.. and make them secured as well as monitor traffic between them.

    is there any software out there taht will emulate standard users network usage so that i can have, oh lets say 15 or so, users generating data back and forth?

    if so is it free or do i have to pay a fee for it.

    i can get student copies of all the microsoft OS's through dreamspark for free so i dont need to purchase the software

    any advice would be sweet

    my main server will be the basic VMware Os that matt talked about. it will have 8 GB of ram with an intel q6600 quad core processor air overclocked to 3.5 ghz. i have an evga 780i chipset mobo that i believe will handle the virtualization.

    any advice or tips is greatly appreciated

  8. well all i was hoping for was a good start off.. anyone know how to download the vids from security tube. i would like to put them on myipod to listen to.

    any site like keepvid.com would be epic

  9. what happened to the follow-up segments in regards to the reverse engineering of applications?

    i was looking forward to the followups but they have not come. i do really love the VMware topics and am not wishing for them to stop.

    was just curious as to where my segments went to

  10. I know this is an old thread, but I had to remove all the images from my site, as someone was defacing other sites and hotlinking directly to the artwork from my site. If you go here, http://hewiz.com/ you can see what I mean. I replaced the image they used with a little message for them, so anyone who quoted my posts in this thread, please edit and remove the image links so i don't get any more 404's in my server logs.

    If anyone still wants the wallpapers, you can download them here: http://www.twistedpairrecords.com/digip/bt-wallpapers.rar in a rar file.

    Thanks,

    DigiP

    i love the BTwhitetest2 one. with the actual firebreathing. looks amazing.. keep up the great work sir

  11. When the RFID passport was first announced, there was some concern in the community about a scenario far more devious. Consider going to a foreign country and walking out of the airport to be instantly swept up in a van and held for ransom all because some guy was set up with an RFID reader inside the airport scanning for an American passport.

    The more secure people feel about a technology the more damage can be done when it's broken.

    i was in london in early july and they have almost 0 public garbage cans because of this very reason. too likely to plant bombs in them and have the cenario that i proposed happen.

    (carrying around a mcdonalds bag full of garbage for miles kinda sux while touring lol)

  12. From what I heard on the news a few weeks ago was that the new Dutch passport (not sure if it's available yet) will contain an RFID chip.

    I'm actually quite pleased with this, as it would give me a PERFECT testbed for RFID range tests. They claim the passport needs to be pretty much INSIDE the reader for the RFID chip to activate, but I don't believe that for a second. My guess is the news crew didn't buy it either as they were really digging into the guy over it.

    all new US passports have RFID in them and better yet it identifies you as a US citizen. so someone who is smart can make a device that goes boom that has an RFID reader and when you walk by a garbage can and your passport recognizes you as a US citizen bye bye you

    GG USA

    no other passport in the world ID's you like ours does

    best thing to do with new Credit cards that have both mag strips and RFID is to put it in the microwave for 10 sec.

    thinkgeek.com has some great passport wallets that block RFID

  13. i have a Freenas box in a relatives office andi just cannot seem to get everyone setup right. the main boss can access her share and the shares of the other users but the 2 other office workers cannot see their shares. i have a personal share for each of them and a global share so that they can share presentations and such without having to email it to each other and overloading their email system. all of the user names match up right and i have local authentication setup so they log in with their passwords for their local machines to the matching passwords on the NAS.

    i just cannot get the 2 other office workers to see their shares at all.

    they are all running Mac OS X. and there will be 2 windows PCs connected as well but those are just ancient remnants that will just be doing data backups to (financials and other things like that)

  14. The most recent thing that happened to me was this:

    Office guy - "Hey you, IT guy what did you do to my computer?!"

    Me - "What do you mean? I don't even know who you are."

    Office guy - "I know toy IT people did something to my computer. I can't seem to type and numbers, and I was able to yesterday. What did you do?!"

    Me - "I didn't do anything but I would be happy to take a look if you want"

    Dude shows me over to his computer and puts his cursor in a text box and starts hitting numbers on his keypad and nothing is happening.

    Me - "Really? Are you for real?"

    Office guy - "Yeah I'm for real, fix this!"

    Me - *presses Numlock* "Your welcome"

    lol.. classic

    i had a customer bitch me out for 20 min because his mouse didnt work on his brand new computer and he hated our store and everything was my fault

    i pushed the button just above his touchpad and turned it from amber to blue. looked up and said "well thats fixed.. anything else you had an issue with sir or were you leaving?"

×
×
  • Create New...