Sep
11
2012

Optimizing John For Larger Pots

Share

After speaking with @Solardiz over twitter yesterday I’ve decided to share this little tweak to John the Ripper which can help to import larger pot files without having to wait for years for it to load up.

Share
Continue Reading »
Author An article by connection Comments No Comments
Sep
9
2012

Managing Your .pot Files

Share

As a password cracker, I not only know the importance of having a large .pot file, I have quite a large .pot file which has been accumulated over quite some time cracking passwords. Recently I noticed my password cracker taking forever to load up. This article will describe the process I used to not only speed up start up but also the way I’m currently managing my .pot file.

Share
Continue Reading »
Author An article by connection Comments No Comments
Sep
4
2012

Realtek RTL8188CU on Backtrack

Share

Emery over at the HackTalk Forums recently posted a very small tutorial that addresses a specific driver issue in BackTrack. With his permission I’ve cross-posted his tutorial on getting the Realtek RTL8188CU chipset working with BackTrack.

Share
Continue Reading »
Author An article by connection Comments No Comments
Aug
20
2012

Win A Copy Of The Best Of Pentest Magazine

Share

HackTalk Security has partnered with PenTestMag.com to bring you this contest which will get 3 lucky HackTalkers a copy of The Best Of Pentest ( http://pentestmag.com/the-best-of-pentest-012012/ ), over 200 pages of juicy hacking goodness. To enter this contest head on over to the forum: http://hacktalk.net/news-5/%28contest%29win-a-copy-of-the-best-of-pentest-magazine/

Share
Continue Reading »
Author An article by connection Comments No Comments
Aug
20
2012

A Pentester’s Guide To The Galaxy: 0×01 Traveling

Share

I get a lot of questions pertaining to my job as a security consultant as well as the common things I experience as a security consultant. More often than not I’ll talk about (read: complain) the different trials and tribulations attached with being a security consultant before even hitting the client’s site. This guide is [...]

Share
Continue Reading »
Author An article by connection Comments 1 Comment
Jul
25
2012

Block WordPress User Enumeration, Secure WordPress Against Hacking

Share

Alex over at Question-Defense posted an article in March about stopping WordPress User Enumeration. It turns out that in reality, he not only wanted a more formal patch for this vulnerability but I also knew of another user enumeration vulnerability in WordPress. After hanging out for a bit at Blackhat he and I decided to plop down and come up with a formal patch to address these vulnerabilities. If you want to read the full article on this post check out: Block WordPress User Enumeration, Secure WordPress Against Hacking Grab the patch after the fold:

Share
Continue Reading »
Author An article by connection Comments 2 Comments
Jul
16
2012

T-Mobile and Responsible Disclosure

Share

Responsible disclosure is something I firmly believe in and I think it’s something all security researchers should practice. Recently I contacted T-Mobile about multiple vulnerabilities in their website and I’d like to talk about my experience with them to show that not only does responsible disclosure work, it is highly effective.

Share
Continue Reading »
Author An article by connection Comments 1 Comment
Jul
15
2012

HackTalk Episode 0×01

Share

This is the Official podcast for HackTalk.net. In Episode 0×01 we will be discussing why the podcast was formed along with some Do’s and Don’ts of con, why security awareness programs suck, how to protect yourself against getting your DB posted to pastebin and ensuring your user’s credentials are safe even if they do get posted online, a really cool technique for persistence using WMIs and talk about some tips on secure password storage.

Share
Continue Reading »
Author An article by connection Comments 1 Comment
Jul
3
2012

Team GhostShell #ProjectDragonFly

Share

The last time I blogged about Team GhostShell was to talk about the eponymously named #ProjectGhostShell (read more here ). It seems that Team GhostShell is back with one helluva kickoff to #ProjectDragonFly. More information after the fold.

Share
Continue Reading »
Author An article by connection Comments No Comments
Pages:«1234567...77»
Get Adobe Flash player