<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>Penetration Testing</title>
    <link>http://seclists.org/#pen-test</link>
    <atom:link href="http://seclists.org/rss/pen-test.rss" rel="self" type="application/rss+xml" />
    <language>en-us</language>
    <description>While this list is intended for &quot;professionals&quot;, participants frequenly disclose techniques and strategies that would be useful to anyone with a practical interest in security and network auditing.</description>
    <pubDate>Thu, 09 Sep 2010 01:15:02 GMT</pubDate>
    <lastBuildDate>Thu, 09 Sep 2010 01:15:02 GMT</lastBuildDate>
<!-- MHonArc v2.6.16 -->

 

  <item>
    <title>Re: Pentest Criteria</title>
    <link>http://seclists.org/pen-test/2010/Sep/27</link>
    <description>&lt;p&gt;Posted by Pete Herzog on Sep 08&lt;/p&gt;Wim,&lt;br&gt;
&lt;br&gt;
You misunderstand. ISO isn't reviewing the OSSTMM 3 to better the &lt;br&gt;
OSSTMM- they are doing it to see how it fits in the ISO family. The &lt;br&gt;
PEER REVIEW of the OSSTMM happens by anyone who can and will review &lt;br&gt;
it. We put out calls for reviewers and people show up to review it. &lt;br&gt;
Most people never respond back but some do and we go on from there. &lt;br&gt;
Some of the best reviews though come from people who just take that &lt;br&gt;
which we put out there and start...&lt;br&gt;</description>
    <pubDate>Thu, 09 Sep 2010 01:06:41 GMT</pubDate>
    <guid isPermaLink="true">http://seclists.org/pen-test/2010/Sep/27</guid>
  </item>
  <item>
    <title>Re: Pentest Criteria</title>
    <link>http://seclists.org/pen-test/2010/Sep/26</link>
    <description>&lt;p&gt;Posted by Wim Remes on Sep 08&lt;/p&gt;Pete, &lt;br&gt;
&lt;br&gt;
&amp;quot;OSSTMM 3 does exactly that. Currently it's being reviewed to either &lt;br&gt;
include in the ISO27000 series or be its own ISO.&amp;quot;&lt;br&gt;
&lt;br&gt;
vs &lt;br&gt;
&lt;br&gt;
&amp;quot;the &amp;quot;written manual&amp;quot; OSSTMM 3 does not exist yet.&lt;br&gt;
 It is merely a book still being written. &amp;quot;&lt;br&gt;
&amp;quot;it's merely a concept.&amp;quot;&lt;br&gt;
&lt;br&gt;
can you explain how exactly an ISO committee is reviewing a &amp;quot;written manual&amp;quot; that does not exist yet ? And do you &lt;br&gt;
believe more in the feedback...&lt;br&gt;</description>
    <pubDate>Thu, 09 Sep 2010 00:58:27 GMT</pubDate>
    <guid isPermaLink="true">http://seclists.org/pen-test/2010/Sep/26</guid>
  </item>
  <item>
    <title>Re: Attack Server</title>
    <link>http://seclists.org/pen-test/2010/Sep/25</link>
    <description>&lt;p&gt;Posted by Terry M on Sep 08&lt;/p&gt;Another good vm for pre-configured web apps is the OWASPBWA (it&lt;br&gt;
includes DVWA). You might check that out.&lt;br&gt;
&lt;br&gt;
&lt;a  rel=&quot;nofollow&quot; href=&quot;http://code.google.com/p/owaspbwa/&quot;&gt;http://code.google.com/p/owaspbwa/&lt;/a&gt;&lt;br&gt;
&lt;br&gt;
-Terry&lt;br&gt;
&lt;br&gt;
------------------------------------------------------------------------&lt;br&gt;
This list is sponsored by: Information Assurance Certification Review Board&lt;br&gt;
&lt;br&gt;
Prove to peers and potential employers without a doubt that you can actually do a proper penetration test. IACRB CPT &lt;br&gt;
and CEPT certs require a full...&lt;br&gt;</description>
    <pubDate>Thu, 09 Sep 2010 00:55:12 GMT</pubDate>
    <guid isPermaLink="true">http://seclists.org/pen-test/2010/Sep/25</guid>
  </item>


  <item>
    <title>RE: Attack Server</title>
    <link>http://seclists.org/pen-test/2010/Sep/24</link>
    <description>&lt;p&gt;Posted by Kettlewell, Nate (Kansas City) on Sep 08&lt;/p&gt;I used VmWare ESXi, PfSense as the Internet-facing VM with OpenVPN for remote access, it has 3 virtual&lt;br&gt;
NICs configured for Internet, Attack, and Victim network, with the attack VM's on one segment that can&lt;br&gt;
access the Internet and the victim subnet, the victim VM's are isolated and can only talk to the&lt;br&gt;
attacker subnet.&lt;br&gt;
&lt;br&gt;
It's worked nice for me so far, and I can route my attack machines out to the real world for the&lt;br&gt;
one-off audit.&lt;br&gt;
&lt;br&gt;
Cheers,&lt;br&gt;
&lt;br&gt;
Nate...&lt;br&gt;</description>
    <pubDate>Wed, 08 Sep 2010 19:02:38 GMT</pubDate>
    <guid isPermaLink="true">http://seclists.org/pen-test/2010/Sep/24</guid>
  </item>
  <item>
    <title>Re: Pentest Criteria</title>
    <link>http://seclists.org/pen-test/2010/Sep/23</link>
    <description>&lt;p&gt;Posted by Pete Herzog on Sep 08&lt;/p&gt;Ulisses,&lt;br&gt;
&lt;br&gt;
Because it is. For one, OSSTMM 2.2 is there, free and available around &lt;br&gt;
the world. I can Google for it and it's there and always has been. &lt;br&gt;
Anybody can take it and read it and use it and distribute it.&lt;br&gt;
&lt;br&gt;
Where I think you get confused is with OSSTMM 3. So I'll make this a &lt;br&gt;
bit clearer for you- as far as the world is concerned, the &amp;quot;written &lt;br&gt;
manual&amp;quot; OSSTMM 3 does not exist yet. It is merely a book still being &lt;br&gt;
written. Much like...&lt;br&gt;</description>
    <pubDate>Wed, 08 Sep 2010 19:02:38 GMT</pubDate>
    <guid isPermaLink="true">http://seclists.org/pen-test/2010/Sep/23</guid>
  </item>
  <item>
    <title>Re: Attack Server</title>
    <link>http://seclists.org/pen-test/2010/Sep/22</link>
    <description>&lt;p&gt;Posted by phillip () bailey st on Sep 08&lt;/p&gt;Check this,&lt;br&gt;
&lt;br&gt;
&lt;a  rel=&quot;nofollow&quot; href=&quot;http://blog.metasploit.com/2010/05/introducing-metasploitable.html&quot;&gt;http://blog.metasploit.com/2010/05/introducing-metasploitable.html&lt;/a&gt;&lt;br&gt;
&lt;br&gt;
Phillip&lt;br&gt;</description>
    <pubDate>Wed, 08 Sep 2010 18:58:58 GMT</pubDate>
    <guid isPermaLink="true">http://seclists.org/pen-test/2010/Sep/22</guid>
  </item>
  <item>
    <title>Re: Attack Server</title>
    <link>http://seclists.org/pen-test/2010/Sep/21</link>
    <description>&lt;p&gt;Posted by TAS on Sep 08&lt;/p&gt;Hey Kurt,&lt;br&gt;
&lt;br&gt;
I end up responding to most of your emails :)&lt;br&gt;
&lt;br&gt;
If you are also looking at setting up vulnerable web applications in the lab then have a look at a comprehensive list &lt;br&gt;
complied at&lt;br&gt;
&lt;br&gt;
Http://securitythoughts.wordpress.com&lt;br&gt;
&lt;br&gt;
TASQ&lt;br&gt;
&lt;br&gt;
------------------------------------------------------------------------&lt;br&gt;
This list is sponsored by: Information Assurance Certification Review Board&lt;br&gt;
&lt;br&gt;
Prove to peers and potential employers without a doubt that you...&lt;br&gt;</description>
    <pubDate>Wed, 08 Sep 2010 18:55:50 GMT</pubDate>
    <guid isPermaLink="true">http://seclists.org/pen-test/2010/Sep/21</guid>
  </item>
  <item>
    <title>Re: Attack Server</title>
    <link>http://seclists.org/pen-test/2010/Sep/20</link>
    <description>&lt;p&gt;Posted by Robin Wood on Sep 08&lt;/p&gt;I'd personally do it as separate machines. You don't want vulnerable&lt;br&gt;
apps on your testing machines and to get some vulnerable apps working&lt;br&gt;
you might need older libraries which stop new tools from working.&lt;br&gt;
&lt;br&gt;
install everything into VMs, your attack machine into one then the&lt;br&gt;
rest into others. That way you keep them distinct.&lt;br&gt;
&lt;br&gt;
I've been at an airport and seen someone running Karma to try to lure&lt;br&gt;
people to his machine but he had left some vulnerable...&lt;br&gt;</description>
    <pubDate>Wed, 08 Sep 2010 17:05:49 GMT</pubDate>
    <guid isPermaLink="true">http://seclists.org/pen-test/2010/Sep/20</guid>
  </item>
  <item>
    <title>Attack Server</title>
    <link>http://seclists.org/pen-test/2010/Sep/19</link>
    <description>&lt;p&gt;Posted by Kurt M. John on Sep 08&lt;/p&gt;Hey Guys,&lt;br&gt;
&lt;br&gt;
I got another one for you. I'm looking to create a combination&lt;br&gt;
attack/testing server. The idea here is to have a server than can&lt;br&gt;
perform remote analysis and attacks (and perform such services as tftp).&lt;br&gt;
The server will also double as a testing server. Ideally I'd like to&lt;br&gt;
have a few VMs on there such as Damn Vulnerable Linux (for training) and&lt;br&gt;
Windows Server 2003 (for fine-tuning attacks before launching it against&lt;br&gt;
client systems)....&lt;br&gt;</description>
    <pubDate>Wed, 08 Sep 2010 16:07:14 GMT</pubDate>
    <guid isPermaLink="true">http://seclists.org/pen-test/2010/Sep/19</guid>
  </item>
  <item>
    <title>Re: WAF Testing..suggestions??</title>
    <link>http://seclists.org/pen-test/2010/Sep/18</link>
    <description>&lt;p&gt;Posted by Dotzero on Sep 08&lt;/p&gt;Joe McCray gave a presentation at DC18 that had a section on WAFs -&lt;br&gt;
slides are available online&lt;br&gt;
&lt;a  rel=&quot;nofollow&quot; href=&quot;http://defcon.org/images/defcon-18/dc-18-presentations/McCray/DEFCON-18-McCray-Still-Got-Owned.pdf&quot;&gt;http://defcon.org/images/defcon-18/dc-18-presentations/McCray/DEFCON-18-McCray-Still-Got-Owned.pdf&lt;/a&gt;&lt;br&gt;
&lt;br&gt;
WAF section starts at slide 22.&lt;br&gt;
&lt;br&gt;
&lt;a  rel=&quot;nofollow&quot; href=&quot;http://defcon.org/images/defcon-18/dc-18-presentations/McCray/DEFCON-18-McCray-Still-Got-Owned.pdf&quot;&gt;http://defcon.org/images/defcon-18/dc-18-presentations/McCray/DEFCON-18-McCray-Still-Got-Owned.pdf&lt;/a&gt;&lt;br&gt;
&lt;br&gt;
------------------------------------------------------------------------&lt;br&gt;
This list is sponsored by: Information Assurance...&lt;br&gt;</description>
    <pubDate>Wed, 08 Sep 2010 16:00:44 GMT</pubDate>
    <guid isPermaLink="true">http://seclists.org/pen-test/2010/Sep/18</guid>
  </item>
  <item>
    <title>Re: Pentest Criteria</title>
    <link>http://seclists.org/pen-test/2010/Sep/17</link>
    <description>&lt;p&gt;Posted by Pete Herzog on Sep 08&lt;/p&gt;Wim,&lt;br&gt;
&lt;br&gt;
Your opinion is duly respected. I doubt I can say anything to you &lt;br&gt;
which I haven't said before. OSSTMM 3 is not done. It's been a lot of &lt;br&gt;
work. It's close to being done. Even I don't have a finished version. &lt;br&gt;
I'm sorry.&lt;br&gt;
&lt;br&gt;
But you know I disagree with you about open source. The OSSTMM is &lt;br&gt;
&amp;quot;open source&amp;quot; because it doesn't hide the method inside some tool or &lt;br&gt;
checklist. All concepts, ideas, processes, formulas and methods are &lt;br&gt;
openly...&lt;br&gt;</description>
    <pubDate>Wed, 08 Sep 2010 15:53:49 GMT</pubDate>
    <guid isPermaLink="true">http://seclists.org/pen-test/2010/Sep/17</guid>
  </item>
  <item>
    <title>Re: Pentest Criteria</title>
    <link>http://seclists.org/pen-test/2010/Sep/16</link>
    <description>&lt;p&gt;Posted by Wim Remes on Sep 08&lt;/p&gt;Pete,&lt;br&gt;
&lt;br&gt;
with all due respect but don't you think you have abused the open source predicament long enough for something that &lt;br&gt;
will never be open nor free?&lt;br&gt;
I know companies that got involved with v2, that invested in getting resources trained in v3, or the subset of it that &lt;br&gt;
was available at the moment of the trianing, and now have the &lt;br&gt;
outlook that they'll be pointing their customers to another ISO standard instead of an open source standard and....&lt;br&gt;</description>
    <pubDate>Wed, 08 Sep 2010 15:50:44 GMT</pubDate>
    <guid isPermaLink="true">http://seclists.org/pen-test/2010/Sep/16</guid>
  </item>
  <item>
    <title>Re: Released DllHijackAuditor v2 with New Debugger based Interception Engine</title>
    <link>http://seclists.org/pen-test/2010/Sep/15</link>
    <description>&lt;p&gt;Posted by Nagareshwar Talekar on Sep 08&lt;/p&gt;Welcome, Hopefully in the next version, we will support 64 bit as well.&lt;br&gt;
&lt;br&gt;
Cheers&lt;br&gt;
Nagareshwar&lt;br&gt;</description>
    <pubDate>Wed, 08 Sep 2010 15:47:08 GMT</pubDate>
    <guid isPermaLink="true">http://seclists.org/pen-test/2010/Sep/15</guid>
  </item>
  <item>
    <title>Re: Released DllHijackAuditor v2 with New Debugger based Interception Engine</title>
    <link>http://seclists.org/pen-test/2010/Sep/14</link>
    <description>&lt;p&gt;Posted by Jacky Jack on Sep 08&lt;/p&gt;Thanks for the update.&lt;br&gt;
Support auditing on 64 bit applications is desired as nowadays' Home&lt;br&gt;
users are on Vista/Seven.&lt;br&gt;
&lt;br&gt;
------------------------------------------------------------------------&lt;br&gt;
This list is sponsored by: Information Assurance Certification Review Board&lt;br&gt;
&lt;br&gt;
Prove to peers and potential employers without a doubt that you can actually do a proper penetration test. IACRB CPT &lt;br&gt;
and CEPT certs require a full practical examination in order to...&lt;br&gt;</description>
    <pubDate>Wed, 08 Sep 2010 15:43:16 GMT</pubDate>
    <guid isPermaLink="true">http://seclists.org/pen-test/2010/Sep/14</guid>
  </item>
  <item>
    <title>Released DllHijackAuditor v2 with New Debugger based Interception Engine</title>
    <link>http://seclists.org/pen-test/2010/Sep/13</link>
    <description>&lt;p&gt;Posted by Nagareshwar Talekar on Sep 07&lt;/p&gt;Hi,&lt;br&gt;
&lt;br&gt;
The new version v2 of DllHijackAuditor is available now.&lt;br&gt;
DllHijackAuditor is the FREE tool to audit against the recently&lt;br&gt;
discovered Dll Hijack Vulnerability.&lt;br&gt;
&lt;br&gt;
Current version brings in following changes&lt;br&gt;
   *  Smart Debugger based 'Interception Engine' for consistent and&lt;br&gt;
efficient performance without intrusion.&lt;br&gt;
   *  Support for specifying as well as auditing of application with&lt;br&gt;
custom &amp;amp; multiple Extensions.&lt;br&gt;
   *  Timeout Configuration to...&lt;br&gt;</description>
    <pubDate>Wed, 08 Sep 2010 00:10:53 GMT</pubDate>
    <guid isPermaLink="true">http://seclists.org/pen-test/2010/Sep/13</guid>
  </item>

 

<!-- MHonArc v2.6.16 -->
  </channel>
</rss>
