Is there any other system security enthusiasts out there? I haven't found anyone interested in the black arts of exploitation in my classes, thought this might be a good place to find some like minded individuals.
I am NOT looking for people for malicious activities, just others who are interested in pentesting and vulnerability assessment, wireless hacking, malware and virus analysis, etc.
I am not out to cause trouble, or break the law. The only way to stop the bad guys is to understand them and their ways. That is my interest.
I'd be interested to learn,
I'd be interested to learn, but as of now I have no such skills.
----------------
Kelvin Lau
2nd Year BAH/CIS
CPES SC Board Member
CPES SC CSA Representative
I did a 4900 on the topic
I did a 4900 on the topic with a few other people a few years back with Stephen Kramer... he might be interested in doing it again.
--
Andrew
Kramer ran it as a 4500
Kramer ran it as a 4500 course last year as well. Some of the things included SQL injection, dictionary attacks, hacking a wireless router and making a root kit. We all really enjoyed the course.
Materials?
Anyone still have the notes/text/assignments material? I'd love to take a gander. Wish I'd known about this pre-graduation.
I know a few people who took
I know a few people who took the course. It's not as cool as I had thought. Basically he gives you a challenge for week, such as hack WEP encryption, then you go find an app that will do it and right a small paper on what the app is and how it works.
I am looking more for people who are interesting in doing their own work, not just using easy to find tools on the web.
Oh well
I can understand why though. It'd be tough to do a course on more than one or two aspects of it if you expected them to do it ground up. WEP cracking is easy anyway, I learned how to do it over a summer in China (out of necessity). What were the other categories/weekly challenges?
Rand486
I'm a little interested.
I'm a little interested. Could be useful for potential employment experience.
___________
Tom Redman
The trouble with computers is that they do what you tell them, not what you want.
The only time we used an app
The only time we used an app of the web was for the WEP assignemnt. For brute force dictionary attack, buffer overflow, SQL injection, DoS attack, root escelation and root kit, we wrote everything from the ground up. No other code or programs were used. I can't remember right now what some of the other assingment were, but I believe WEP was the only one that we didn't do completely on our own. I guess you get out of it what you put into it.
Agreed
That's absolutely true, especially when it comes to Security. It was tough for me to grasp at first that there's no simple "textbook" answer to learning it.