/nsg/ Network Security General

/netsec/ is dedicated to everything about computer security, networks, exploits, reverse engineering, malware research, etc

What are you learning, /netsec/?

>Learning
cybrary.it/
n0where.net/
offensive-security.com/metasploit-unleashed
resources.infosecinstitute.com/
windowsecurity.com/articles-tutorials/
sans.org/reading-room/
allitebooks.com/
github.com/vhf/free-programming-books/blob/master/free-programming-books.md
learncodethehardway.org/c/
corelan.be/index.php/articles/
opensecuritytraining.info/Training.html
blackhat.com/html/archives.html
securitytube.net/
opensecuritytraining.info/Welcome.html
beginners.re/
phrack.org/
phrack.org/archives/issues/49/14.txt -- Smashing The Stack For Fun And Profit
howto.hackallthethings.com/
pastebin.com/raw/cRYvK4jb -- Phineas Phisher Gamma
pastebin.com/raw/0SNSvyjJ -- Phineas Phisher HackingTeam
pastebin.com/pm1WLXQj -- AnonSec OpNasaDrones
archive.org/stream/pdfy-rJnW-pPgiHK61dok/Black Hat Python, Python Programming for Hackers_djvu.txt
github.com/rpisec/mbe
reverse engineering
microcorruption.com/
github.com/dennis714/RE-for-beginners

>News/CVE releases
threatpost.com/
deepdotweb.com/
packetstormsecurity.com/
cvedetails.com/
routerpwn.com/
exploit-db.com/
rapid7.com/db/
0day.today/

>CTF/Wargames
overthewire.org/wargames/
pentesterlab.com/
itsecgames.com/
exploit-exercises.com/
enigmagroup.org/
smashthestack.org/
3564020356.org/
hackthissite.org/
hackertest.net/
0x0539.net/
vulnhub.com

Attached: 1542975632096.jpg (250x220, 11K)

Other urls found in this thread:

microcorruption.com/login
github.com/kgretzky/evilginx2/
kaspersky.com/blog/equation-hdd-malware/7623/
github.com/secgroundzero/warberry
docs.kali.org/kali-on-arm/install-kali-linux-arm-raspberry-pi
github.com/BastilleResearch/mousejack
youtube.com/watch?v=vU3zJqUktH0
twitter.com/NSFWRedditImage

Bump.

Right now I'm learning RE for my job. It's a unique combination of fun and tedious.

Request to add microcorruption.com/login to the CTFs, it's great for embedded RE.

Do i need a degree user? Or just a meme

sup /netsec/
I'm a red teamer working on a gig and i have a very busy week ahead of me.

Done a good bit of recon on our target the last week. Turns out somebody hijacked some DNS records and was using them to do some SEO spam. I haven't found how they hijacked them. Too bad, it would be cool to host my phishing pages on their domain.

I will be attempting to phish their Google credentials with a man-in-the-middle proxy this week. This is ready to go; just need to send some email. This framework can capture session tokens too, bypassing any 2FA in place. See github.com/kgretzky/evilginx2/

I also found that their lax SPF records allow me to spoof mail as coming from their domain. Tip; don't blanket allow transnational SMTP relays like Sendgrid or Mailgun in your SPF config. By sending my phishing mail through Sendgrid, it shouldn't hit any spam filters, even though i'm going to spoof admin@target.com or it@target.com

I don't yet know what their wireless network looks like, but I am prepared for any scenario. If i'm lucky here it should be game over.

Their on the 14th floor of an office building. Very small company. Entry during business hours probably won't fly unless I can get an appointment with somebody. Most likely will try after hours entry if all else fails.

happy to answer questions about my techniques

pic related, it's my gear.

Attached: gear.jpg (2814x1953, 2.33M)

If I were to look for an NSA firmware-type malware, how should I check the disk? I'm aware of dumping the bios chip contents, but how do I know if something is written to the "dedicated hard drive area" of the hard disk? What is the formal name for that "dedicated hard drive area" anyways?

kaspersky.com/blog/equation-hdd-malware/7623/

That's really cool. I hope I can transition from vulnerability research into red team operations some day. But I still have a lot to learn on the VR side.

What's that clear tube with the metal inside?

Very high-powered, directional antenna. This particular one is called a cantenna. I've been able to pick up on WLAN frames a mile away with this baby. Might not use it for this gig because i'll be in the city.

Looks like a directional antenna.