Archive | Adjunct RSS feed for this section
Video

DerbyCon 4: t102 How to Give the Best Pen Test of Your Life by Ed Skoudis

Fierce DNS Enumeration for National Cyber League (NCL) Regular Season Game 2

The “nslookup” command has been altered so that it can no longer perform zone transfers. Instead check out Fierce, one of the best tools available for DNS Analysis.

fierce --dnsserver 54.243.174.22 -dns flag.ncl
Trying zone transfer first...

Unsuccessful in zone transfer (it was worth a shot)
Okay, trying the good old fashioned way... brute force

Checking for wildcard DNS...
Nope. Good.
Now performing 2280 test(s)...
127.44.65.92	admin.flag.ncl
127.1.0.1	secret.flag.ncl
127.79.255.255	termserv.flag.ncl
127.2.114.31	welcome.flag.ncl
127.212.83.111	zeus.flag.ncl

Subnets found (may want to probe here using nmap or unicornscan):
	127.1.0.0-255 : 1 hostnames found.
	127.2.114.0-255 : 1 hostnames found.
	127.212.83.0-255 : 1 hostnames found.
	127.44.65.0-255 : 1 hostnames found.
	127.79.255.0-255 : 1 hostnames found.

Done with Fierce scan: http://ha.ckers.org/fierce/
Found 5 entries.

Have a nice day.

As you can see from output above, the IP Address for the domain “flag.ncl” is missing. An alternative tool to use instead of “dig” would be:

dnsenum --dnsserver 54.243.174.22 --enum flag.ncl
Leave a Comment

How to Change Your Kali Default SSH Keys

Quick guide to changing the already generated SSH keys. To change your Kali default SSH keys, move the default Kali SSH keys to a new folder first:

cd /etc/ssh/
mkdir default_kali_keys
mv ssh_host_* default_kali_keys/

Next, regenerate the SSH keys:

dpkg-reconfigure openssh-server

Lastly, verify SSH key hashes are different:

md5sum ssh_host_*
md5sum default_kali_keys/*
Leave a Comment
Image

Greatest NFL Catch Ever Seen and the Preparation Behind It

Last night receiver Odell Beckham of the NY Giants made what many are calling ‘the best catch anyone has ever made in the history of the NFL’.

As a player, how do you prepare yourself for making the greatest catch in history? It would be easy to dismiss this catch as a lucky fluke… one-handed, fighting off a defender, just gets it by his fingertips. But here’s the thing; Beckham practices exactly this catch:

Luck is what happens when preparation meets opportunity. Preparation, kids. Preparation.

Video

Marcus Ranum: Privacy in the Age of the Police State

Certainly, one of the most thoughtful and scholarly practitioners of security research; behold, as Mr. Ranum holds forth.

via: http://www.cerias.purdue.edu/news_and_events/events/security_seminar/