|
Colapse all |
Post message
[Tool Update Announcement] inspathx 2010-10-12 YGN Ethical Hacker Group (lists yehg net) Check the update via svn checkout http://inspathx.googlecode.com/svn/trunk/ inspathx Info about inspathx http://inspathx.googlecode.com/ Change Log: -Added "username" and server path display in console and log output that looks like I, [2010-10-14 02:10:08 pid:#6848] INFO -- : ! Username dete [ more ] [ reply ] Re: Information Assessment Legality 2010-10-11 Stephen (stephen greyhat-security com) Thanks Sebastien - that's quite helpful. I assumed option B would be the one that causes the problems. Much appreciated :) On Tue, 2010-10-12 at 01:03 +0200, Sébastien Hénarès wrote: > Hi, option A is legal as you are contracted to do the task, option B > on > the other hand is kind of problemat [ more ] [ reply ] Re: Smart-phone for pentester 2010-10-11 Stefan (netfortius gmail com) Nokia N900 is the most open platform and prone for pentest (and many other tasks) of all smartphones in the market. Example of tools: http://www.metasploit.com/redmine/projects/framework/wiki/Install_N900 and, in fact, you could run an entire distro inside its own Maemo (if you don't feel like twe [ more ] [ reply ] DES (Unix) Hash Cracking Services 2010-10-11 bin4ry (bin4ry theknetgroup org) (1 replies) -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Hey together, i am looking for an online hash cracking service supporting standard DES unix hashes ( generated by crypt() ). Years ago i knew of some inlcuding milw0rm.com/cracker which seems to be down. Nowaydays i can't find any online service (most [ more ] [ reply ] Information Assessment Legality 2010-10-11 Stephen (stephen greyhat-security com) (3 replies) Hi all, we're considering offering 2 new services at Greyhat-Security, but wanted to know quite simply whether they'd be legal or not. I imagine they would be, but I'd appreciate if anyone could offer their views and experiences, or preferably, reference to the relevant laws. The services are: a) A [ more ] [ reply ] Smart-phone for pentester 2010-10-10 Gleb Paharenko (gpaharenko gmail com) (6 replies) Hi! Could you advice a modern smart-phone suitable for pen-tester (wardriving, nmap, metasploit, password crackers, full disk encryption, etc.). I'm looking to nokia n900, but it is a bit old. Nor iphone 4 or android seems suitable :-( -- Best regards. Gleb Pakharenko. http://gpaharenko.livejourna [ more ] [ reply ] [Tool Update Announcement] inspathx - Path Disclosure Finder 2010-10-08 YGN Ethical Hacker Group (lists yehg net) UPDATE Check it out at svn checkout http://inspathx.googlecode.com/svn/trunk/ inspathx-read-only For those who don't know inspathx https://code.google.com/p/inspathx/ _____________________________ WHAT¶ A tool that uses local source tree to make requests to the url and search for path inclu [ more ] [ reply ] IBWAS'10 CfP - Deadline Extension 2010-10-07 Carlos Serrão (carlos j serrao gmail com) Dear all, the deadline for submitting papers for IBWAS'10 has been extended. Please advertise this. (sorry for the span and for receiving multiple copies of this) Best regards, 2nd. OWASP Ibero-American Web-Applications Security conference 2010 (IBWAS?10) ISCTE ? Lisbon University Institute 25th [ more ] [ reply ] OWASP ZAP 2010-10-05 psiinon (psiinon gmail com) I'm pleased to announce that the Zed Attack Proxy has been accepted as an OWASP project. Its new homepage is here: http://www.owasp.org/index.php/OWASP_Zed_Attack_Proxy_Project The next release of OWASP ZAP, planned for later this year, is expected to include: * OWASP rebranding * Improvem [ more ] [ reply ] Re: Evaluating Two Factor Authentication 2010-10-01 M.D.Mufambisi (mufambisi gmail com) i realise i did not ask my question properly. Im sorry. What i need is a primer on the two factor authentication inherent risks or the two factor authentication threat model to the service, processes (user registration, token issuance etc) and infrastructure (HSM etc). Assume the two factor is imple [ more ] [ reply ] Re: Evaluating Two Factor Authentication 2010-10-01 Jeffrey Walton (noloader gmail com) On Thu, Sep 30, 2010 at 8:49 PM, M.D.Mufambisi <mufambisi (at) gmail (dot) com [email concealed]> wrote: > Hi, > > I will be evaluating 2 factor authentication scheme in the next coming days. > Is there anyone who can point me to some good resources on this? > Whitepapers..documents...anything? "Implementing two Factor Authent [ more ] [ reply ] Fwd: Evaluating Two Factor Authentication 2010-10-01 M.D.Mufambisi (mufambisi gmail com) Hi, I will be evaluating 2 factor authentication scheme in the next coming days. Is there anyone who can point me to some good resources on this? Whitepapers..documents...anything? Regards ------------------------------------------------------------------------ This list is sponsored by: Informat [ more ] [ reply ] |
|
Privacy Statement |
     I feel both the services that you have mentioned earlier are
legal. As both of them are related to information gathering phase.
There are some countries, where even the information gathering phase
is DEFINED as illegal.
    It will be good if you stick to some standard m
[ more ] [ reply ]