iExploit
Recent
Activity
Sign up
Have an account?
Sign in
Howdy, Stranger!
It looks like you're new here. If you want to get involved, click one of these buttons!
Sign In
Apply for Membership
About
Username
mandi
Joined
July 2010
Visits
0
Last Active
February 20
Roles
Member
Posts
207
Top Posters
Xin
3251
Sh3llc0d3
1910
chroniccommand
1389
undead
822
George
707
GameOver
675
Bursihido
406
m0rph
332
Mr. P-teo
269
D0WNGRADE
220
Who's Online (4)
m0rph
12:16PM
mma
10:12AM
Phage
11:25AM
Xin
12:41PM
Powered by
Vanilla.
Made with
Bootstrap.
Looking to introduce yourself? Look no further, and click here! We also have IRC! [irc.evilzone.org #iexploit]
mandi
Activity
Discussions
79
Comments
128
[help]Attack vectors for Attacking a remotely closed port?
maybe i am not reading this right, but how does one \"open\" a closed port? to open a port would mean to initiate a running SERVICE. i don't believe one can just force a service to magically start running if it is not there t…
Comment by
mandi
January 2011
permalink
[help]Attack vectors for Attacking a remotely closed port?
Yeah, it's for bypassing firewall. Isn't that what you mean? I am well Aware that fragmentation can be used to bypass the restrictions on the IPS AND firewalls,but i am not looking for that,i am much interested in achieving th…
Comment by
mandi
January 2011
permalink
"Hacking In A Domain Environment"
Bro make it clear you want to break the encrypted traffic being transmitted from the windows domain?am i right?
Comment by
mandi
January 2011
permalink
SOMEONE EXPLAIN THIS
if one was to somehow control your local ISPs gateway that managed your entire subnet, would you see all the data that passed through it? If you have control over the ISP's gate-way you definitely can see the data,not sure about the encrypte…
Comment by
mandi
January 2011
permalink
[help]Attack vectors for Attacking a remotely closed port?
isn't there a method called packet fragmentation? I have been looking for papers on this method a long time, but no success. In this method you just connect to the open port (eg. 80) and by messing with the data in the packets …
Comment by
mandi
January 2011
permalink
Would you Say this is Web Application Security or Network Security?
As cookie is associated with Layer 7 i.e Web-Application,i would say this belongs to "Web Application Security"...
Comment by
mandi
January 2011
permalink
"ISA Server/PIX firewall"
Even tough I haven't used any of those above devices,Like you i do readed a lot about those 2,especially PIX,i once asked a similar question to some networking folks,they had said PIX is best when compared to ISA,But a kind of draw-back is PIX …
Comment by
mandi
January 2011
permalink
"What Encryption Standard Has Yet To Be Cracked"?
RIMS encryption used in blackberry is yet to be cracked as of now...
Comment by
mandi
January 2011
permalink
Can some one explain the logic behind this?
No bro just think,you can see those headers between you and your vpn server,not between the vpn servers and the destination servers,hope you got my point,...
Comment by
mandi
January 2011
permalink
Can some one explain the logic behind this?
ok bro,how about detecting vpns? possible or not?
Comment by
mandi
January 2011
permalink
Vote Rep System
I voted for option "B",Because i am tired of the hf skids -ve repping each other and always causing issues to staff,So in my point of view it would be better to go for "B",Also making such an option will also involve lot of staff…
Comment by
mandi
January 2011
permalink
Congratulations to Semtex-Primed!
Ahhh ,Good to hear this !!! Congrats bro,have a good year :)
Comment by
mandi
January 2011
permalink
YOUR THOUGHTS ON THESE METHODS?
a while back when i was still involved in this stuff heavily i had read about a new way to send data by tunneling it over ICMP. people would have chats to and fro simply by putting whatever they wanted to say into an ICMP packet hoping it w…
Comment by
mandi
December 2010
permalink
[Help]Hosting a Intranet web-server for practicing pen-testing
Ok bro ,how to Assign a name to the site? Because I am looking to set-up a site like target.com inside my intranet, I recommend using the de-ice pentest discs although there very basic, or the Damn Vulnerable Linux disc, or the OWASP challenges fo…
Comment by
mandi
December 2010
permalink
SSH backdoor
Yes the idea is good,but you need to Fine tune your ways of implementing it, Here are some of my toughts on your project 1)The ssh back-door should support for multiple ports(i.e like port 443,80) other than 22,because to escape Networks firewalls…
Comment by
mandi
December 2010
permalink
Best way to Understand and starting my pen testing carrer?
You seem to have a good grasp of a lot of concepts in networking and can argue cases as well as question them too. I'f your working in a networking role at the moment there's two options, carry on and hope you end up being offered…
Comment by
mandi
December 2010
permalink
Vpn chaining and Other ways for anonimization?
\"Between what else thing can i do to get some super duper anonimization?\" i believe i mentioned one method above Before reading deeply about GRE tunnels,I want to ask u 1 thing,even tough you can use this technique to escape the log…
Comment by
mandi
December 2010
permalink
Need some e-books/videos for understanding Various types of encryptions and hashing
cryptography has always been my achiles heel. i hate math as well, maybe that's why! since it was brought up, are there any encryption methods out there that have yet to be cracked? everytime i read something it seems nothing is safe …
Comment by
mandi
December 2010
permalink
Vpn chaining and Other ways for anonimization?
the thing about your idea above; you would have to have control over every point you wish to tunnel--not an easy task Doesn't matter,it can be done by hacking some web-servers and we can have host some softwares on them.. Between what else…
Comment by
mandi
December 2010
permalink
Need some e-books/videos for understanding Various types of encryptions and hashing
wow web-site is amazing,thanks for the news bro...
Comment by
mandi
December 2010
permalink
More Comments