Home page logo

pen-test logo Penetration Testing mailing list archives

Re: [PEN-TEST] War Dialling
From: Steve <steve () SECURESOLUTIONS ORG>
Date: Thu, 16 Nov 2000 09:24:35 -0700

Hi Scott.

I'm not sure you would want to only seek out the numbers that are relevant
to just the IT department as in my experience, it is usually some VP of HR
or CEO that has the rogue modem setup.  Most people war dial to identify
modems that are set to answer and give backdoor access to a workstation on
the network.  You definitely want to cover the whole organization when doing


-----Original Message-----
From: Penetration Testers [mailto:PEN-TEST () SECURITYFOCUS COM]On Behalf
Of Scott, Mick
Sent: Thursday, November 16, 2000 5:00 AM
Subject: [PEN-TEST] War Dialling

Being a new member to this list I am not sure how much this topic has been
aired.  How ever I wonder if anyone has any ideas, or pointers on how they
would eliminate irrelevant numbers on a war dialling exercise.

If acme.com, a global company, has a very wide range of numbers how is it
best to seek out the numbers that are relevant to the IT departments.
Obviously there is the social engineering approach, however I am
in any other ideas.

Apologies if this has been discussed B4


  By Date           By Thread  

Current thread:
[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]