Category: Super GEEK

  • Some feeling on Windows

    Windows Vista is the next version of the Windows operatings system. 

    I must admit, Microsoft has evolved greatly from one operation system
    to the next from a security and functional perspective.  Many
    geeks complain about Windows and say that Linux is way better or that
    the HATE Microsoft and Bill Gates (the Anti Christ), but 98% of those
    geeks use Windows and many of those use it as their main box.

    I like Windows 2000 on up.  Sure there are issues but I can't use
    a Linux box to play Age of Empires (or at least I don't think you can).

    I love Linux but many times when I come home from work I just don't
    feel like messing around with a computer for anything except
    entertainment.  I use my *nix OSes for testing, trouble shooting,
    hacking and pentesting.  My biggest issue with Windows (besides
    Microsoft) is Internet Explorer… I really don't use it so I guess its
    not that big of an issue.  Hopefully, IE7 will be as good as
    Firefox. 

  • VMware for Security Training

    VMware or Virtual Machine Software is an excellent tool to use for penetration training. 

    I went to an ethical hacking course with New Horizons and that is what
    they used to train us.  Each student was able to operate three or
    more environments (windows 2000, Knoppix STD, and Window XP) and attack
    either our own virtual network or the Instructors firewall to
    demonstrate the use of Netcat for example.

    It was a very cool way to learn.  Years ago I was in a training
    course created by Global Knowlegde for basic networking, hardware,
    cisco routers and a Microsoft cert.  I recall them bringing a ton
    of equipment with them and having trouble getting on and off planes
    with it.   With a software solution like VMware they could
    have carried much less equipment.

    VMware allows you to operate multiple Operating Systems on one
    computer.  OS's such as Linux, OSX, and Windows 2003, for example
    can be placed on the same system.  VMware gives you the ability to
    switch from one system to another with ease.  My only complaint is
    that it seems to be incompatible with some software you might try to
    install on it.  But it works with the main stuff such as protocol
    suites just fine.

    Vmware is great check out their free trial.

  • Home made Homemonkey: HoneySpider

    In my quest to find more viruses, trojans, and worms (which I find fastinating)  I started building my own HoneyMonkey server which I call a “HoneySpider.”

    What the hell is a HoneyMonkey?

    You've heard of HoneyPots, right?  A server that is set up to trick and track potential malicious hackers who think they have found the goods but have in fact been seduced by a decoy.  Brilliant defense however it is very passive as you must wait for the bastard hackers to come to your decoy system.  The HoneyMonkey is active in that it actively locates sites, pages and weblinks that seek to exploit systems.  The Microsoft's Strider HoneyMonkey Exploit Detection system is great evolutionary step for a proactive method of Internet security (something I've been waiting for a while).  It actually crawls the web to locate these evil boxes and maps out there location on the Web.

    I thought the concept seems pretty self explanatory:  set up a server that crawls the web specifically looking for offending sites.  This can be down with and old box you happen to have laying around and a web crawler like Zeus.

     

    I'm still working on it.  I'll keep you posted.

     

  • The Domain Name Gold Rush

    Written by: Lois S.

    The views expressed by Lois do not necessarily reflect the views of elamb.org/elamb.blogharbor.com.

    All the good ones are taken. The really good ones, that is. But they don’t always stay taken.

    Domain names often come back onto the market. Even before they do, domain name prospectors are sifting through them to find the gold domains among them.

    Why domain names become available again

    Thousands of domain names expire every day. Other domains are offered for sale. The reasons are varied:

    Carelessness

    The webmaster forgets to renew the domain by the expiry date.

    The email address that the domain is registered with becomes invalid, and the domain name registrant doesn’t receive the renewal notices.

    – Lack of need or funds

    – The company that had registered the domain goes out of business.

    – The website owner loses interest in or doesn’t have time for the website.

    – The website owner doesn’t have funding to continue the website venture.

    – The domain name registrant registered numerous domains on speculation and couldn’t afford to continue renewing unused domains.

    Profit

    – The domain name registrant may realize how much a domain is worth and decide to sell it.

    – The domain name registrant may have registered the domain because of its potential worth, with the aim of selling it later.

    What makes a previously registered domain name valuable?

    In July 2005, the domain name website.com sold for $750,000, the highest-valued domain name sale this year. Why would anyone pay so much for a domain when they could register a new domain for under $10?

    – Instant traffic

    If the domain name previously pointed to a website, search engines have already indexed that domain name. Other websites probably still have links to that domain. If the domain is listed in directories, these links bring in even more traffic. You register the domain, and the work getting incoming links has already been done for you.

    – Surf value

    Sometimes web surfers search by typing generic words followed by dot com (or other extensions) into their browsers, for example, dogs.com. This particular domain name redirects to the website for a company that sells pet products and services. A domain name like this constantly brings visitors to the website without the cost and effort of advertising and marketing.

    – Easy to remember

    Your company name may not be memorable, but domains such as dogs.com and website.com are. People are more likely to return to a site or pass on the name to their friends when they can easily remember it.

    How to find domains pending expiration

    You decide to join the gold rush for valuable pre-registered domains. Finding expiring domains is the first step, but you also need to research domains that are about to come back on the market.

    Lists of domains pending expiration

    At these websites, among others, you can search for domains containing keywords you enter. At expireddomains.com, the results contain domains that are currently available, soon to expire, on hold, in the Redemption Grace Period (RGP), or for sale by their registrants. Extensions searched: .com, .net, and .org.

    The domainsbot.com database searches .com, .net, .org, .info, and .biz extensions for domains that are available, for sale, or expiring.

    Domain research

    You can find some (but not all) incoming links to a domain by entering “link:siteURL” (replace ”siteURL” with the domain name) into Google or Yahoo. When you find the links, follow them to see what types of sites link to the domain. How would you feel about having these particular sites linking to your site?

    Also look into any possible problems associated with the domain. Search engines may have banned the domain if the previous site had controversial search engine optimization techniques employed, such as the use of hidden text or links. Check the history of the site at a domain name via the WayBack Machine. If the domain previously pointed to a site with gambling or adult content or a lot of affiliate links, or if it employed questionable search engine optimization techniques, search engines may have banned the domain. Aside from the possibility of a domain being banned, you may not want incoming links from sites associated with these types of content.

    How to register domains pending deletion

    You’ve decided on a domain that you want. How do you maximize your chances on getting it?

    At eNom.com’s Club Drop, you can bid on expiring .com and .net domains the day before they’re available to the public. You can also be notified when domains matching your search criteria become available.

    The NameWinner system places bids on .com, .net, .org, and .info domains for you. It bids only as high as is necessary to maintain your high bid position up to your maximum bid.

    How to profit from your domains

    – Selling domains

    If you have a domain that may be valuable and that you aren’t using, consider selling it at a domain auction. If you already have a buyer for a domain, you can transfer it securely through Escrow.com.

    – Paid parking for domains

    With paid domain parking programs, also called “domain monetization” or “monetize domains,” you can earn pay-per-click revenue via targeted advertisements. These sites offer domain monetization services:

    – DomainSponsor

    – Park Quick

    – Domain Spa

    – Google Adsense for domains

    With the right knowledge, timing, and a bit of luck, you have a chance as a domain name prospector to hit pay dirt.

    Lois S. is a Technical Executive Writer for http://www.websitesource.com and http://www.lowpricedomains.com with experience in the website hosting industry.

  • Alternative Knoppix Bootable CD Distros

    Some lesser known knoppix bootable linux cds. Give them a try!
    Auditor
    WarLinux
    Knoppix MAME
    Elive

    Are all listed and described.

    Also try WHAX/Whoppix

    read more | digg story

  • Using VNC & SSH

    How to use VNC along with SSH to remotely and securely access your computer desktop by way of tunneling.

    VNC is a huge vulnerability on a network without encryption. Particularly on medium to large networks with lots of users. I use it at home but don't see the need for encryption there.

    read more | digg story

  • Use Google To Find Passwords

    Google hackers have been doing this for a while now. Here is a tutorial on finding passwords using google. This could be used to secure your own web server.

    Security Professionals charged with protecting IT infrastrutures would do well to become the most aggressive hacker of their own networks. This would help them to proactively seek out new exploits on their network, webserver, or IS they protect.

    read more | digg story

  • Whax How to (formerly known as whoppix)

    The WHAX Live CD OS (formerly known as WHOPPIX) has a useful knowledgebase of growing information on how to use its very modular features.

    I notice a few people coming to my blog to find tutorials on WHAX/Whoppix, but where you really want to go is here:

    http://iwhax.net/modules/xoopsfaq/

    If there is something you want to know just ask the WHAX gurus on their interactive site.  The Whoppix webpage looked nice but the creators of this incredible tool made a briliant move in this new interactive, blog howto structure.

    If you Whax guys read this, I suggest getting some trackbacks.

    read more | digg story

  • Network Vulnerability tool: AutoScan is a utility for network exploration

    AutoScan is a utility for network exploration.

    I used AutoScan on my home network and found out that my Router has Linux on it.  For my customer's enclave I used Autoscan to quickly locate vulnerabilities.

    Although the network is small the scan was usefull since it has given me a good idea what affect AutoScan will have on my customers larger newtork with more valuable assets and a potentially larger number of risks.

    AutoScan did not alter my customers work as it instantly picked up workstations, internetworking devices and printers.  The built in nmap scripts adds a very nice touch. 

    If you're a mobile White Hat on the go like me, autoscan within the WHAX live CD is a great security tool to add to your “batbelt.”

    The objective of the program is to post the list of all equipment connected to the network. A list of ports preset is scanned for each equipment. You can find many more vulnerability tools with tags at Technorati & Del.icio.us:
    http://del.icio.us/tag/vulnerability+assessment

    read more | digg story

  • Whoppix replaced by WHAX: bootable CD

    Remember Whoppix–White Hat Knoppix? Well, it's now based off of SLAX
    instead of Knoppix, making WHAX. This was done for modularity, making
    it more easily customizable.

    I've made a copy of Whoppix, Knoppix STD and WHAX and each time I've
    had to re-learn how to make a bootable CD and each time I figure it out
    I wonder how the hell could I be so silly as to forget something so
    easy.  It's like having a brain fart and forgeting how to spell
    “of.”

    The key is to burn it as an Image or .ISO NOT BOOTABLE.  Most of the popular burners have this feature.

    Anyway here is how you do it:

    *note: SLAX and Knoppix variations
    often are compressed into an archive file or .rar.  Many systems
    automatically see this as a .ISO or image file.  No need to
    extract it.

    Making a Data CD from a CD Image with Easy CD Creator (Save the Image to your Hard drive) 

        1)  Insert a blank CD in CD Recorder

        2)  Select “Record CD from Image” from the File menu

        3)  Select the image file WHAX-x-beta.iso or whatever
             the .ISO file is named and click Open. 
       
        4)   Once the Record CD Setup dialog box appears, 
              Click Start Recording

    Basically, just look for the burn Image or .ISO feature and your good.