search for: pentest

Displaying 20 results from an estimated 25 matches for "pentest".

Did you mean: zentest
2014 Dec 01
2
[Bug 10977] New: Rsync path spoofing attack vulnerability (rsync 3.1.1 tested)
...he code of the server-side,allows remote servers to write to arbitrary files, and consequently execute arbitrary code . Vulnerability Details : Firstly,i write a following file into the shared folder in rsync:a true folder and a symbolic link are directed to the root directory . [root at pentest rsync]# ls -lh total 8.0K -rw-r--r-- 1 root root 2 Oct 31 03:16 1.txt lrwxrwxrwx 1 root root 6 Oct 31 05:09 fakedir -> /root/ drwxr-xr-x 2 root root 4.0K Oct 31 05:08 truedir Then enter the truedir folder, create a new file name "pwned". [root at pentest rsync]# cd truedir/...
2014 Nov 14
6
[Bug 10936] New: Rsync path hijacking attack vulnerability
...e synchronous all files,An attacker can hijack the file path by modifying the code of the server-side,allows remote servers to write to arbitrary files, and consequently execute arbitrary code . Vulnerability Details : First I shared in the Rsync folder to write the following documents [root at pentest rsync]# ls -lh total 8.0K -rw-r--r-- 1 root root 2 Oct 31 03:16 1.txt drwxr-xr-x 2 root root 4.0K Oct 31 05:17 truedir [root at pentest rsync]# cd truedir/ [root at pentest truedir]# ls pwned [root at pentest truedir]# cat pwned rsync test [root at pentest truedir]# Next I modify the server t...
2015 Mar 13
2
[LLVMdev] Lifting ASM to IR
...ool that could lift a binary (assembly for some >> supported target) to LLVM IR? If there isn't, does this seem like >> something that would be feasible? There's plenty of variations on the idea: Revgen/S2E, Fracture, Dagger (my own), libcpu, several closed-source ones used by pentest shops, some that use another representation before going to IR (say llvm-qemu), and probably others still I forgot about. Are you interested in a specific target / use case? > http://llvm.org/devmtg/2013-04/bougacha-slides.pdf > might be a starting point. Note that after a hiatus I've...
2013 Sep 26
1
Failed FSMO transfer - role naming - samba 4.0.9
...My windows2003server is down. I want transfer all roles for samba 4.0.9. Grato. Jac? Ramos -- *"O homem n?o foi criado para ser feliz nem para vencer, mas para viver para Deus. Quando vive para Deus ? feliz e vence." Isaltino Gomes * * $whoami* - Perito Forense Computacional - Pentester - Esp. em Seguran?a de Redes de Computadores com enf?se a Per?cia Forense Computacional - FACID - Bacharel em Ci?ncia da Computa??o - UESPI - Administrador de Redes de Computadores - CCNA Modulo II - Lattes: *http://lattes.cnpq.br/1591329268136905* Esta mensagem pode conter in...
2013 Sep 29
1
My Clients Windows not update DNS in samba4 DC
...s to domain! But client windows not update DNS in samba4. Any ideas ? Grato. Jac? Ramos -- *"O homem n?o foi criado para ser feliz nem para vencer, mas para viver para Deus. Quando vive para Deus ? feliz e vence." Isaltino Gomes * * $whoami* - Perito Forense Computacional - Pentester - Esp. em Seguran?a de Redes de Computadores com enf?se a Per?cia Forense Computacional - FACID - Bacharel em Ci?ncia da Computa??o - UESPI - Administrador de Redes de Computadores - CCNA Modulo II - Lattes: *http://lattes.cnpq.br/1591329268136905* Esta mensagem pode conter in...
2015 Mar 13
3
[LLVMdev] Lifting ASM to IR
...or some > >> supported target) to LLVM IR? If there isn't, does this seem like > >> something that would be feasible? > > There's plenty of variations on the idea: Revgen/S2E, Fracture, Dagger > (my own), libcpu, several closed-source ones used by pentest shops, > some that use another representation before going to IR (say > llvm-qemu), and probably others still I forgot about. > > Are you interested in a specific target / use case? > > > I was thinking something along the lines of lifting a binary into IR and >...
2013 Oct 11
1
Samba4 join Windows 2003 Server with BIND9_DLZ
...g) root at samba4:~# ----------------------------------------------- Any idea, to resolves? -- *"O homem n?o foi criado para ser feliz nem para vencer, mas para viver para Deus. Quando vive para Deus ? feliz e vence." Isaltino Gomes * * $whoami* - Perito Forense Computacional - Pentester - Esp. em Seguran?a de Redes de Computadores com enf?se a Per?cia Forense Computacional - FACID - Bacharel em Ci?ncia da Computa??o - UESPI - Administrador de Redes de Computadores - CCNA Modulo II - Lattes: *http://lattes.cnpq.br/1591329268136905* Esta mensagem pode conter in...
2013 Oct 14
1
Clients Windows not update record DNS on zone BIND9_DLZ
...net.br ------------------------------------------ Anyone have any ideas? Thanks! Jac? Ramos -- *"O homem n?o foi criado para ser feliz nem para vencer, mas para viver para Deus. Quando vive para Deus ? feliz e vence." Isaltino Gomes * * $whoami* - Perito Forense Computacional - Pentester - Esp. em Seguran?a de Redes de Computadores com enf?se a Per?cia Forense Computacional - FACID - Bacharel em Ci?ncia da Computa??o - UESPI - Administrador de Redes de Computadores - CCNA Modulo II - Lattes: *http://lattes.cnpq.br/1591329268136905* Esta mensagem pode conter in...
2016 Aug 01
1
null session and "restrict anonymous" default value on samba4 AD
...it that way on a samba4 AD? Is it possible to have the default value at 2? I understand that it used to be necessary for NT4 compatibility, and that changing the default value may break existing installation based on classic domain, however having that null session "vulnerability" on pentesting reports is a really a pity (restrict anonymous=2 behavior has been the default since XP). I know that the samba project is reluctant at changing default parameter value, especially when it may break existing installation. I'd say that it may be an option to add "restrict anonymous=2...
2016 May 04
3
Unicast or Multicast?
...x3TB - LUKS Operating Systems - Arch Linux & Ubuntu Studio Programming - C/C++|ASM|php|bash CMS - Drupal - Server 3 Cores|3GB-RAM|75GB-SDHD|10TB Traffic Tor-Exit|Icecast-Stream|Torrent-Stream - Gee Bee Productions Radio IT-Consulting Harware One-Off-Productions Intrusion Detection - Forensic - Pentesting Webdesign - Web-Authoring - Content Management - www.pirate-radio.eu +41/76-7569208 donations (bitcoin) 13aXxBnwBnnJApKhCA9ZYLHqPYfHMY8B1d -----END PUBLIC INFO BLOCK----- -----BEGIN PGP PUBLIC KEY BLOCK----- Version: GnuPG v2 mQINBFbjTrwBEAC7sFgwbSCHUIzxwIhrbkanN0dOBfXHPpDIrfNMjEcsH+Q3HnJz 0U...
2016 May 04
2
Unicast or Multicast?
...x3TB - LUKS Operating Systems - Arch Linux & Ubuntu Studio Programming - C/C++|ASM|php|bash CMS - Drupal - Server 3 Cores|3GB-RAM|75GB-SDHD|10TB Traffic Tor-Exit|Icecast-Stream|Torrent-Stream - Gee Bee Productions Radio IT-Consulting Harware One-Off-Productions Intrusion Detection - Forensic - Pentesting Webdesign - Web-Authoring - Content Management - www.pirate-radio.eu +41/76-7569208 donations (bitcoin) 13aXxBnwBnnJApKhCA9ZYLHqPYfHMY8B1d -----END PUBLIC INFO BLOCK----- -----BEGIN PGP PUBLIC KEY BLOCK----- Version: GnuPG v2 mQINBFbjTrwBEAC7sFgwbSCHUIzxwIhrbkanN0dOBfXHPpDIrfNMjEcsH+Q3HnJz 0U...
2013 Oct 11
2
Samba 4.1.0 join Windows 2003 Server with BIND9_DLZ
...root at samba4:~# ----------------------------------------------- Anyone have any ideas? -- *"O homem n?o foi criado para ser feliz nem para vencer, mas para viver para Deus. Quando vive para Deus ? feliz e vence." Isaltino Gomes * * $whoami* - Perito Forense Computacional - Pentester - Esp. em Seguran?a de Redes de Computadores com enf?se a Per?cia Forense Computacional - FACID - Bacharel em Ci?ncia da Computa??o - UESPI - Administrador de Redes de Computadores - CCNA Modulo II - Lattes: *http://lattes.cnpq.br/1591329268136905* Esta mensagem pode conter in...
2015 Mar 13
2
[LLVMdev] Lifting ASM to IR
Does there exist a tool that could lift a binary (assembly for some supported target) to LLVM IR? If there isn't, does this seem like something that would be feasible? -------------- next part -------------- An HTML attachment was scrubbed... URL: <http://lists.llvm.org/pipermail/llvm-dev/attachments/20150312/36eae2e4/attachment.html>
2013 Sep 26
0
Windows Clients DNS not updating in Samba4
...amba4 udopiaui.net.br @ ALL not list windows client adding Any solution? Grato. Jac? Ramos -- *"O homem n?o foi criado para ser feliz nem para vencer, mas para viver para Deus. Quando vive para Deus ? feliz e vence." Isaltino Gomes * * $whoami* - Perito Forense Computacional - Pentester - Esp. em Seguran?a de Redes de Computadores com enf?se a Per?cia Forense Computacional - FACID - Bacharel em Ci?ncia da Computa??o - UESPI - Administrador de Redes de Computadores - CCNA Modulo II - Lattes: *http://lattes.cnpq.br/1591329268136905* Esta mensagem pode conter in...
2013 Oct 01
0
Samba 4.1rc4 not replicating zone reverse of Windows 2003 Server
..._msdcs.udopiaui.net.br - reverse - ???????????? - no replicate Any Ideas? Grato. Jac? Ramos -- *"O homem n?o foi criado para ser feliz nem para vencer, mas para viver para Deus. Quando vive para Deus ? feliz e vence." Isaltino Gomes * * $whoami* - Perito Forense Computacional - Pentester - Esp. em Seguran?a de Redes de Computadores com enf?se a Per?cia Forense Computacional - FACID - Bacharel em Ci?ncia da Computa??o - UESPI - Administrador de Redes de Computadores - CCNA Modulo II - Lattes: *http://lattes.cnpq.br/1591329268136905* Esta mensagem pode conter in...
2013 Oct 01
0
Update register SOA samba 4.1
Hi, How to update register SOA in samba 4.1rc4 ? Thanks!. Jac? Ramos -- *"O homem n?o foi criado para ser feliz nem para vencer, mas para viver para Deus. Quando vive para Deus ? feliz e vence." Isaltino Gomes * * $whoami* - Perito Forense Computacional - Pentester - Esp. em Seguran?a de Redes de Computadores com enf?se a Per?cia Forense Computacional - FACID - Bacharel em Ci?ncia da Computa??o - UESPI - Administrador de Redes de Computadores - CCNA Modulo II - Lattes: *http://lattes.cnpq.br/1591329268136905* Esta mensagem pode conter in...
2014 Oct 15
1
mget timeout
...timeout that prevents me to download this large file. smbget is a possible solution. Also I'm doing this over an ssh tunnel. So I need to proxify smbget. Yet I cannot specify another port than 445 on smbget. I am stuck. can anyone help me? thanks -- *--* *Mouloud A?t-Kaci * Intrusion testing (pentest) and IT risk management consultant CGI Business Consulting Paris UJF/ENSIMAG @ : mouloud.ait-kaci at cgi.com <mouloud.ait-kaci at logica.com> Mob : +33 671910847 Web : mouloud.aitkaci.com
2016 May 03
6
Unicast or Multicast?
Hi, there! I have a doubt about if this server supports unicast, multicast or both. I was looking for information in the web but I couldn't found anything. Anyone can help me? Thanks -- Fran Delgado (ThinWay) Tumblr: http://thinway.tumblr.com Twitter: http://twitter.com/thinway -------------- next part -------------- An HTML attachment was scrubbed... URL:
2013 Oct 09
3
Windows 2008 Standard SP2 cannot access samba share by hostname but ok with IP
Has anyone seen this situation? My Windows 2008 Standard SP2 x86_64 cannot access my samba share using \\<hostname> but connects properly when connecting to it by \\<host_ip_address>. regards, j
2016 May 04
3
Unicast or Multicast?
On 04/05/2016 03:48 πμ, buddylove wrote: > you have 'a' doubt? > precise your question or do you want to make a quiz here? > > this is f.... icecast and it's a damn good piece of software. > runs like a honey down the nipple, up to 8 streams simultaneously > including shoutcast. > read the docs! > > > > On 04.05.2016 00:15, Fran Delgado wrote: >>