Browsing Category

Hacking


HaveYouEver-sized 2

Have You Ever Seen the Red Spike? (D)DoS: Mitigation Strategies

Executive Summary DDoS, or Distributed Denial of Service, is a cyber-attack in which an attacker tries to bring the functioning of a computer system that

January 28, 2013 Hacking
cainNabel-sized 0

Password Cracking Using Cain & Abel

Introduction According to the official website, Cain & Abel is a password recovery tool for Microsoft Operating Systems. It allows easy recovery of various kinds

January 25, 2013 Hacking
authentication-sized 0

To Trust or Not To Trust?

While taking a knowledge management course in school, one thing that struck me was the common theme among classmates of, “…as long as the knowledge

January 24, 2013 General Security, Hacking
downloads-sized 4

Arbitrary File Download: Breaking into the system

What you will learn: Introduction to Arbitrary File Download Difference between Arbitrary File Download and LFI/ RFI How it is exploited- a real example Countermeasures

January 24, 2013 Hacking
gamestick-sized 0

Handy Devices Revolution: Watch Out for Hackable Gaming Consoles

I have always been a video game console fan and enjoy playing RPG (role-playing games) and “Hack and Slash” games (cheers to God of War

January 23, 2013 Hacking
LUKS-formatting-sized 0

LUKS and Initramfs

Initramfs Introduction Before we can continue with configuring the kernel when installing a new gentoo system, we need to create an initramfs. Since the root

January 22, 2013 Hacking
LUKS-formatting-sized 0

LUKS: Swap, Root and Boot Partitions

The /swap Partition We need to encrypt the swap partition, since we don’t want encryption keys to be swapped to an unencrypted disk. To do

January 18, 2013 Hacking
Aanval-Review-sized 0

AAnval – SIEM by Tactical Flex

Aanval by Tactical Flex is an event correlation tool also known as a SIEM. Many governmental agencies require a centralized login system to retain and

January 18, 2013 Hacking
PenTesting-Tools-sized 4

Which Weapon Should I Choose for Web Penetration Testing? – First Edition

Introduction Here is the first edition of my selection of penetration testing tools for web applications. There will be more editions of this topic so

January 18, 2013 Hacking
wordpress-security-sized 0

WordPress Security for Users

Introduction We all know that WordPress is the primary CMS system used on the Internet. We also know that security in WordPress is not always

January 17, 2013 Application Security, Hacking
LUKS-formatting-sized 0

LUKS: Formatting the Partition

Introduction When writing this tutorial, I’ve referenced the [2] Gentoo Linux guide and added some of my own observations and scripts. This guide should provide

January 16, 2013 Hacking
nmap_logo_sized 0

NMAP Scripting Engine and Categories

1. Introduction We all know what Nmap is and what we can do with it, but for those of you who don’t, here’s a short

January 09, 2013 General Security, Hacking
domain_slamming-sized 3

Domain Name Hijacking – Domain Slamming

Domain slamming – what is it and how did it emerge The term domain slamming is derived from telephone slamming, a dishonest practice which telephone

January 08, 2013 Hacking
Web-App-fingerprint-sized 4

A prototype model for web application fingerprinting: w3 scrape

Introduction: Web application fingerprinting is one of the most important aspects of the information gathering phase of ethical hacking. This allows us to narrow down

January 03, 2013 Application Security, Hacking
SoldierXEye.preview-sized 8

Welcome to the World’s Largest Public Hacker Database

As a security researcher and information security enthusiast, I have always been interested with OSINT (Open Source Intelligence), and the profiles and biographies of white

January 03, 2013 Hacking
BYOD-sized 0

Importance of a BYOD Policy for Companies

Introduction The IT landscape is dominated by the rise of paradigms such as cloud computing, mobile networking, and social networking, three concepts that have totally

January 02, 2013 Hacking
domain-controller-sized 2

Pen Testing Domain Controllers

Introduction When performing a penetration test, we’re constantly stumbling upon various servers that support domain logins into the customers network. We’re allowed to login if

January 02, 2013 Hacking
PHP-risks-sized 4

PHP Session ID’s – The Risks

In today’s article I want to address a very important topic. Namely, I want to talk about PHP session security. I know and understand that

December 31, 2012 Application Security, Hacking
smartphones-sized 0

Handy Devices Revolution: Handy Pentesting and Hacking Part III

And now is the time for the third article of the Handy Devices Revolution series! In the second article we talked about Arduino and Power

December 24, 2012 Hacking
Wireshark-sized 3

Wireshark

A network sniffer or protocol analyzer is a software application or hardware device which is capable of intercepting traffic and logging it for further analysis.

December 14, 2012 Hacking
Back to Top Copyright © 2012 - InfoSec Institute