Category archives for: Technique

Ellinikagnosia Via MorphVOX Pro

Being that ‘Ellinika’ is the Greek word for ‘Voice’ and Agnosia is the inability to recognize/identify then Ellinikagnosia is a disorder of voice perception where the ability to recognize voices is impaired, while the ability to recognize other sounds may be relatively intact. As of 2/7/2011 there are zero occurrences of this word on Google. [...]

Directory Enum. Defense

enum

How do you protect against brute force attacks against your web server[s] that will fingerprint most directories and files and give cyber-terrorists the ability to access files directly? – Create a nested directory structure as close to ‘a’ as possible with hundreds of thousands of iterations of directories. – Make all the names dictionary plausible. [...]

Leveraging Google Dorks

g1

Overview Within the framework of security testing, a Google dork is something you can type into Google to return results that can be used to exploit targets. During the information gathering phase of pen-testing we can employ the manual use of Google dork commands. Google dork commands can help us to discover domains, sub-domains, software [...]

Lazy Mans SQL Injection

sql-injection

This lazy mans method is probably for you. It requires: (1) very little thought, (2) a vulnerable site and (3) a few skills at working your command prompt.

Free Online Resources

black

For most security professionals, subscribing to security alerts is a must. These are often subscription services or bulletins that are posted by the makers of commercial security software. A second way to ensure that you are completely up to date with the latest vulnerabilities and exploits is to monitor the web sites of what I [...]

How To: Enumerate Directories and Files

enum

How can a pen-tester identify directories and files that are hidden from the public? This is where it gets easy.

Search Archive

Search by Date
Search by Category
Search with Google
Log in | Designed by Gabfire themes