Thursday, May 13, 2010

practice makes perfect

This is a list of sites and images where you can practice your skills. Enjoy!

http://de-ice.net/hackerpedia/index.php/De-ICE.net_PenTest_Disks

http://www.kioptrix.com/blog/?page_id=135
http://netwars.info/
http://www.dvwa.co.uk/
http://www.damnvulnerablelinux.org/
http://hackerdemia.com/
http://www.badstore.net/
http://www.mavensecurity.com/web_security_dojo/
http://www.fatetek.net/training.shtml
http://www.net-force.nl/challenges/
http://www.enigmagroup.org
http://listbrain.awardspace.biz
http://haxme.org/missions/
http://www.hackquest.de/index.php
http://www.hackthissite.org/
http://challenges.ihtb.org/
http://www.dareyourmind.net/menu.php
http://www.intruded.net/wargames.html
http://www.hellboundhackers.org/
http://www.bright-shadows.net/
http://www.irongeek.com/i.php?page=security/deliberately-insecure-web-applications-for-learning-web-app-security
http://www.makeuseof.com/tag/top-5-websites-to-learn-how-to-hack-like-a-pro/
http://www.try2hack.nl/
http://www.astalavista.com/index.php?app=hackingchallenge
http://www.trythis0ne.com/?page=home
http://www.hackertest.net/
http://hax.tor.hu/warmup1/
http://www.caesum.com/game/
http://crackmes.de/
http://www.hack4u.org/index.php?choices=1&code=level0
http://community.core-sdi.com/~gera/InsecureProgramming/
http://testasp.acunetix.com/Templatize.asp?item=html/about.html
http://test.acunetix.com/disclaimer.php
http://ha.ckers.org/challenge/
http://ha.ckers.org/challenge2/
http://community.core-sdi.com/~gera/InsecureProgramming/LinkedBy.html
http://www.overthewire.org/wargames/
http://www.smashthestack.org/
http://www.wechall.net/index.php
http://hackme.ntobjectives.com/
http://wocares.com/xsstester.php
http://www.osix.net/
http://projecteuler.net/index.php?section=problems
http://uva.onlinejudge.org/index.php?option=com_onlinejudge&Itemid=8&category=3
http://www.rootcontest.com/
http://www.cyber-wars.com/
http://roothack.org/
http://www.mod-x.co.uk/main.php
http://www.introversion.co.uk/uplink/about.html
http://whitewolfsecurity.typepad.com/
https://www.vte.cert.org/vteweb/RequestAccess/GetAccess.aspx
http://lost-chall.org/
http://hax.tor.hu/peek/
http://www.hacker.org/
http://thisislegal.com/
http://www.happyhacker.org/wargame/index.shtml
http://neworder.box.sk/link.php
http://www.webantix.net/hacking/war-games-current-and-past-hacking-simulators-and-challanges/
http://www.lifedork.net/wargames-online-hackers-training.html
http://www.room362.com/blog/2009/5/29/getting-your-fill-of-security.html
http://hack.thebackupbox.net/cgi-bin/pageview.cgi?page=wargames
http://ace.delos.com/usacogate
http://zero.webappsecurity.com/banklogin.asp?serviceName=FreebankCaastAccess&templateName=prod_sel.forte&source=Freebank&AD_REFERRING_URL=http://www.Freebank.com


(if anyone had anything to add to these let me know and I will update the list.)

Tuesday, May 11, 2010

SSH tunnel pivot

Hello everyone. Have some new videos posted about ssh tunneling and pivots.
Let me know what you think and if have any suggestions.

part 1


Part 2


Part3


Link to De-ICE
http://de-ice.net/hackerpedia/index.php/De-ICE.net_PenTest_Disks

core commands
SSH -L localport:targetip:targetport username@pivotmachine
ncat 127.0.0.1 localport
nmap -sV -p[localport] 127.0.0.1

thanks
Myne-us