415 Hack Yourself Building A Pentesting Lab David Boyd

Video Statistics and Information

Captions Word Cloud
<font color="#E5E5E5">so go ahead and get started here</font> <font color="#CCCCCC">morning dirty</font><font color="#E5E5E5"> Todd</font><font color="#CCCCCC"> how is our</font><font color="#E5E5E5"> own spawn</font> <font color="#CCCCCC">oh yeah every generously yeah so</font><font color="#E5E5E5"> there's</font> fog is hack yourself<font color="#E5E5E5"> building</font><font color="#CCCCCC"> a pen</font> testing lab<font color="#CCCCCC"> on the</font><font color="#E5E5E5"> Prophet this</font><font color="#CCCCCC"> law</font> <font color="#CCCCCC">honey</font><font color="#E5E5E5"> came out of</font><font color="#CCCCCC"> a</font><font color="#E5E5E5"> couple different</font> <font color="#E5E5E5">veins</font><font color="#CCCCCC"> I had some customers asked me how</font> did<font color="#CCCCCC"> you</font><font color="#E5E5E5"> do that can you</font><font color="#CCCCCC"> show me</font><font color="#E5E5E5"> but not</font> <font color="#CCCCCC">do it to us again right</font><font color="#E5E5E5"> I had sort of</font> co-workers<font color="#E5E5E5"> so friends are pretty go</font><font color="#CCCCCC"> I</font> want<font color="#E5E5E5"> to do what you do but</font><font color="#CCCCCC"> I don't</font><font color="#E5E5E5"> know</font> <font color="#E5E5E5">how to get started</font><font color="#CCCCCC"> so I</font><font color="#E5E5E5"> don't handle</font> build lab<font color="#E5E5E5"> well how do you do that</font> there's not there's there's<font color="#E5E5E5"> you</font><font color="#CCCCCC"> know</font> YouTube videos and<font color="#E5E5E5"> all sorts of stuff</font> <font color="#CCCCCC">but there's not</font><font color="#E5E5E5"> just</font><font color="#CCCCCC"> kind</font><font color="#E5E5E5"> of a</font> <font color="#E5E5E5">ground-level</font><font color="#CCCCCC"> how to so this is kind of</font> what this talks<font color="#CCCCCC"> about so several years</font> <font color="#E5E5E5">ago they were Emily ribbon on a bear or</font> <font color="#CCCCCC">deer assault rifle and</font><font color="#E5E5E5"> as he was writing</font> an award he said<font color="#E5E5E5"> these</font><font color="#CCCCCC"> words</font><font color="#E5E5E5"> maybe six</font> <font color="#E5E5E5">hours to chop</font><font color="#CCCCCC"> down a tree</font><font color="#E5E5E5"> and I will</font> spend the<font color="#CCCCCC"> first four sharpening the axe</font> <font color="#CCCCCC">I don't know if that's</font><font color="#E5E5E5"> necessarily true</font> <font color="#CCCCCC">my story Albert Einstein</font><font color="#E5E5E5"> also</font><font color="#CCCCCC"> had a</font> great quote<font color="#CCCCCC"> that's related</font><font color="#E5E5E5"> to this talk</font> he said anyone can<font color="#E5E5E5"> know but the point is</font> <font color="#E5E5E5">to understand so in our field</font><font color="#CCCCCC"> especially</font> we can know how<font color="#E5E5E5"> to do stuff but</font><font color="#CCCCCC"> the real</font> like a real gumption of<font color="#E5E5E5"> it is to</font> understand why<font color="#E5E5E5"> it is we're doing</font><font color="#CCCCCC"> it</font><font color="#E5E5E5"> and</font> why does you know how things work the <font color="#CCCCCC">way they work</font><font color="#E5E5E5"> so this is</font><font color="#CCCCCC"> good</font><font color="#E5E5E5"> ball</font><font color="#CCCCCC"> scene</font> <font color="#E5E5E5">and burning you my name is David Boyd</font> <font color="#E5E5E5">I'm a pen tester red teamer for sexual</font> security solutions I've worked in every <font color="#E5E5E5">field from spent some time</font><font color="#CCCCCC"> in</font><font color="#E5E5E5"> the</font><font color="#CCCCCC"> Army</font> <font color="#E5E5E5">when I got out I went to did some retail</font> IT I worked for the<font color="#E5E5E5"> government for a</font> while it's<font color="#CCCCCC"> a finance media energy sector</font> I finally<font color="#CCCCCC"> got tired of sitting in a hot</font> cramped cubicles<font color="#E5E5E5"> decided to do some</font> consulting<font color="#CCCCCC"> I am a Christian</font><font color="#E5E5E5"> which means</font> that I'm just<font color="#CCCCCC"> a sinner saved</font><font color="#E5E5E5"> by grace</font> I'm a husband I'm a father of<font color="#E5E5E5"> that</font><font color="#CCCCCC"> 10</font> <font color="#E5E5E5">month old right there</font> I'm a huge geek<font color="#E5E5E5"> and a big gamer and you</font> guys remember<font color="#E5E5E5"> the</font><font color="#CCCCCC"> shellshock</font> vulnerability from<font color="#E5E5E5"> you know what a while</font> back right<font color="#E5E5E5"> so that kid came up with a</font> new vulnerability called<font color="#E5E5E5"> diaper shock</font> <font color="#CCCCCC">Norman</font> maybe it's the shot right<font color="#CCCCCC"> before yet</font> <font color="#CCCCCC">just</font><font color="#E5E5E5"> quick note here</font><font color="#CCCCCC"> about</font><font color="#E5E5E5"> hackers for</font> charity <font color="#E5E5E5">uh you guys</font><font color="#CCCCCC"> have seen the shirts you</font> <font color="#CCCCCC">guys murdered a couple</font><font color="#E5E5E5"> speakers talking</font> <font color="#E5E5E5">about them Johnny I noticed we</font><font color="#CCCCCC"> were</font> doing an<font color="#CCCCCC"> absolutely fantastic job okay</font> if you<font color="#E5E5E5"> haven't gone up and donated</font> <font color="#E5E5E5">please do I mean really</font><font color="#CCCCCC"> really they</font> provide education there's a training center classroom<font color="#CCCCCC"> that go to food for</font> <font color="#CCCCCC">program there is all kinds of</font><font color="#E5E5E5"> stuff</font> going<font color="#E5E5E5"> on over there please go donate</font><font color="#CCCCCC"> I</font> think it's like<font color="#CCCCCC"> ten bucks</font><font color="#E5E5E5"> can get a good</font> <font color="#CCCCCC">for a month or something</font><font color="#E5E5E5"> so you know go</font> up<font color="#E5E5E5"> and check</font><font color="#CCCCCC"> it out there's some cool</font> <font color="#E5E5E5">journals bracelets and stuff</font><font color="#CCCCCC"> the</font><font color="#E5E5E5"> agenda</font> <font color="#E5E5E5">for today we're going to figure out</font><font color="#CCCCCC"> the</font> <font color="#CCCCCC">the why we're sitting</font><font color="#E5E5E5"> abalone and how</font> I'm<font color="#E5E5E5"> going to talk about some finishing</font> distributions that are<font color="#E5E5E5"> out there</font><font color="#CCCCCC"> talk</font> <font color="#E5E5E5">about the various horrible beams you can</font> <font color="#E5E5E5">find out in a while</font><font color="#CCCCCC"> I'm going to give</font> you<font color="#CCCCCC"> just kind</font><font color="#E5E5E5"> of a</font><font color="#CCCCCC"> broad overview some</font> recommended tools to get started playing with I'm<font color="#E5E5E5"> gonna do</font><font color="#CCCCCC"> a short</font><font color="#E5E5E5"> demo and I've</font> got a nice little<font color="#E5E5E5"> rant on my</font><font color="#CCCCCC"> Dewan so</font> let's take<font color="#CCCCCC"> a</font><font color="#E5E5E5"> hold if you don't mind</font> raise your hand who here<font color="#E5E5E5"> looks better by reading</font><font color="#CCCCCC"> about</font> <font color="#E5E5E5">something opening bugs worry about it</font> <font color="#E5E5E5">okay a couple people team and who here</font> learns better by by the<font color="#E5E5E5"> hands-on</font><font color="#CCCCCC"> bite</font> <font color="#CCCCCC">right okay</font> yeah there's a lot more folks<font color="#E5E5E5"> there</font> <font color="#E5E5E5">right it is it's nothing against though</font> you know put guys<font color="#E5E5E5"> either but especially</font> in our industry<font color="#CCCCCC"> networks care team for</font> any<font color="#E5E5E5"> kind of that testing look like</font> there's no<font color="#E5E5E5"> better way read books and</font> books are great<font color="#E5E5E5"> I've</font><font color="#CCCCCC"> got some</font> recommendations at the<font color="#E5E5E5"> end there's no</font> better way of<font color="#E5E5E5"> actually learning it than</font> <font color="#E5E5E5">my duty</font><font color="#CCCCCC"> on</font><font color="#E5E5E5"> right hand drive so what is a</font> hacking lab I'm somebody give up<font color="#E5E5E5"> that to</font> that<font color="#E5E5E5"> today</font><font color="#CCCCCC"> it's nothing more than just a</font> place<font color="#E5E5E5"> that replicates</font><font color="#CCCCCC"> a real-world</font> <font color="#CCCCCC">network it's just a virtual sandbox for</font> <font color="#E5E5E5">you to play in</font> completely<font color="#E5E5E5"> cut off from the outside</font> world<font color="#CCCCCC"> but you do run your tools and do</font> things that<font color="#E5E5E5"> you mean - so why you need</font> to build a lab well to<font color="#E5E5E5"> get good we all</font> need to<font color="#E5E5E5"> get a better elbow with you the</font> bad guys are<font color="#CCCCCC"> getting</font><font color="#E5E5E5"> better so we need</font> to<font color="#E5E5E5"> get better</font><font color="#CCCCCC"> right</font><font color="#E5E5E5"> a couple</font><font color="#CCCCCC"> of reasons</font> skill set<font color="#E5E5E5"> in</font><font color="#CCCCCC"> Bergman you try out</font> something<font color="#E5E5E5"> new so we're here at Derby con</font> <font color="#E5E5E5">we're seeing all these cool tools come</font> out<font color="#CCCCCC"> we've seen all these gold Hawks and</font> <font color="#E5E5E5">I really want to try that thing out that</font> he did but I<font color="#CCCCCC"> don't</font><font color="#E5E5E5"> have a place</font><font color="#CCCCCC"> to do it</font> <font color="#E5E5E5">go home</font> fire up your<font color="#E5E5E5"> lab download that new tool</font> that<font color="#CCCCCC"> he just</font><font color="#E5E5E5"> demoed try there you go</font> brush up on tactics<font color="#E5E5E5"> so if you have been</font> in ite or network security for a while maybe you've moved up maybe<font color="#CCCCCC"> your number</font> <font color="#E5E5E5">management you know project management</font> <font color="#E5E5E5">maybe you're not doing</font><font color="#CCCCCC"> the you know the</font> pen testing stuff anymore this lets you kind of go<font color="#CCCCCC"> back it's</font><font color="#E5E5E5"> like</font> <font color="#E5E5E5">writing by school it comes back to</font><font color="#CCCCCC"> you</font> <font color="#CCCCCC">let's let you go back</font><font color="#E5E5E5"> and try to brush</font> <font color="#E5E5E5">up on some</font><font color="#CCCCCC"> the old tactics you know so</font> <font color="#CCCCCC">that we can kind of</font><font color="#E5E5E5"> stick fresh</font><font color="#CCCCCC"> I put on</font> <font color="#CCCCCC">a proof of</font><font color="#E5E5E5"> concept</font><font color="#CCCCCC"> that's great for</font> <font color="#E5E5E5">customer</font><font color="#CCCCCC"> so if you're in a sales mode or</font> you're just<font color="#E5E5E5"> trying</font><font color="#CCCCCC"> to finalize that</font> contract or<font color="#CCCCCC"> something that's all we need</font> something we need to<font color="#E5E5E5"> know you know what</font> it is you do this is great this is<font color="#E5E5E5"> a you</font> know<font color="#E5E5E5"> we demo this all time for customers</font> <font color="#CCCCCC">we'll throw up</font><font color="#E5E5E5"> the</font><font color="#CCCCCC"> webex</font><font color="#E5E5E5"> we'll throw our</font> lab and<font color="#E5E5E5"> we'll say hey you know this</font><font color="#CCCCCC"> is</font> <font color="#CCCCCC">just a very simple</font><font color="#E5E5E5"> penetration testing</font> attack that can<font color="#E5E5E5"> happen on your network</font> you<font color="#CCCCCC"> know in theory</font><font color="#E5E5E5"> and my times</font><font color="#CCCCCC"> at the</font> time that seals<font color="#E5E5E5"> the deal if any</font> customers ever had any questions or they didn't know what a pentose<font color="#CCCCCC"> plus that's</font> done right and then coding scripting demonstrations for<font color="#E5E5E5"> clumps like</font><font color="#CCCCCC"> Derby con</font> so these guys that you see<font color="#E5E5E5"> stuff up here</font> and far<font color="#E5E5E5"> smarter than me and none of</font> <font color="#E5E5E5">these tools they're doing it in hacking</font> lab so a little<font color="#E5E5E5"> bit of</font><font color="#CCCCCC"> sizes</font><font color="#E5E5E5"> over here</font> some<font color="#E5E5E5"> see shows when there's a pen test</font> going<font color="#E5E5E5"> on or you tell them hey we need to</font> have a pen test<font color="#E5E5E5"> you know this is the</font><font color="#CCCCCC"> AG</font> <font color="#E5E5E5">the yeah it's fine everything's</font><font color="#CCCCCC"> on fire</font> <font color="#E5E5E5">the barns on fire I'm on fire boots on</font> <font color="#E5E5E5">get right</font> right some CISOs<font color="#CCCCCC"> wish they had this the</font> mum you mentioned anything <font color="#CCCCCC">security-related</font> or there's a blip on<font color="#E5E5E5"> the network they</font> wish they had<font color="#E5E5E5"> tax shut down everything</font> kill switch kill it all right<font color="#CCCCCC"> a</font><font color="#E5E5E5"> hag lab</font> can help<font color="#E5E5E5"> I've noticed</font><font color="#CCCCCC"> puts E's some of</font> <font color="#E5E5E5">the questions</font><font color="#CCCCCC"> that some of the</font> <font color="#CCCCCC">upper-level management</font><font color="#E5E5E5"> has about what</font> does it<font color="#E5E5E5"> security test entail</font><font color="#CCCCCC"> and above</font> <font color="#E5E5E5">all else</font> don't be<font color="#E5E5E5"> a script kidding</font> thank you<font color="#E5E5E5"> go to that man</font><font color="#CCCCCC"> so here's the</font> film lab well<font color="#E5E5E5"> anybody really</font><font color="#CCCCCC"> Red Team</font> <font color="#E5E5E5">Blue</font><font color="#CCCCCC"> Team guys any kind of IG personnel</font> if you're not<font color="#CCCCCC"> intend</font><font color="#E5E5E5"> testing you're not</font> in security<font color="#E5E5E5"> if you're just a network guy</font> or sysadmin<font color="#CCCCCC"> you know don't build a lab</font> <font color="#E5E5E5">go build lab at home</font><font color="#CCCCCC"> ask your upper</font> management<font color="#CCCCCC"> so you can build a lab in</font> your environment<font color="#CCCCCC"> or recreate</font><font color="#E5E5E5"> your</font> environment<font color="#CCCCCC"> so that you can troubleshoot</font> some the problems that<font color="#E5E5E5"> you're having</font><font color="#CCCCCC"> I</font> put on<font color="#E5E5E5"> their c-level</font><font color="#CCCCCC"> executive so let's</font> see what<font color="#E5E5E5"> PT looks like this is really</font> easy<font color="#CCCCCC"> to do if you are some kind of</font> sealable guy<font color="#E5E5E5"> and you're in</font><font color="#CCCCCC"> charge of</font><font color="#E5E5E5"> the</font> <font color="#E5E5E5">technical team you need</font><font color="#CCCCCC"> to know what</font> that technical team does really truly I'm<font color="#CCCCCC"> not I'm not</font><font color="#E5E5E5"> being harsh here but you</font> need<font color="#E5E5E5"> to know what they do</font><font color="#CCCCCC"> you need to</font> have<font color="#CCCCCC"> a</font><font color="#E5E5E5"> general understanding of</font><font color="#CCCCCC"> what</font> they do and<font color="#E5E5E5"> you need to be able</font><font color="#CCCCCC"> to try</font> to<font color="#E5E5E5"> do a little bit of yourself it's</font> going to make you a more effective <font color="#CCCCCC">leader and</font><font color="#E5E5E5"> it's going to make it more</font> <font color="#CCCCCC">effective for</font><font color="#E5E5E5"> your customers</font><font color="#CCCCCC"> and it's</font> <font color="#E5E5E5">going to go</font><font color="#CCCCCC"> up my respect routine so</font> just<font color="#E5E5E5"> just about that students any kind</font> of students<font color="#E5E5E5"> you know if you're in some</font> kind of a college course or something<font color="#E5E5E5"> on</font> fire blood and then anyone want<font color="#E5E5E5"> to learn</font> a<font color="#CCCCCC"> new skill</font><font color="#E5E5E5"> essentially so while this</font> <font color="#E5E5E5">talk is more focused on the red team's</font> side<font color="#E5E5E5"> of the house a</font><font color="#CCCCCC"> DEA</font><font color="#E5E5E5"> six six seven on</font> Twitter<font color="#CCCCCC"> actually did release a</font><font color="#E5E5E5"> huge like</font> 135 page PDF on setting up a hack lab for blue team and it's extremely in-depth<font color="#E5E5E5"> you talked about IDs IDs you</font> know all sort of stuff some firewalls and<font color="#E5E5E5"> things so if</font><font color="#CCCCCC"> you want</font><font color="#E5E5E5"> to get into</font> <font color="#CCCCCC">that</font><font color="#E5E5E5"> follow him</font><font color="#CCCCCC"> on Twitter find this</font> <font color="#E5E5E5">this is</font><font color="#CCCCCC"> Brian joy right now</font><font color="#E5E5E5"> he's kind</font><font color="#CCCCCC"> of</font> working<font color="#E5E5E5"> on</font><font color="#CCCCCC"> that</font><font color="#E5E5E5"> will them you know</font><font color="#CCCCCC"> Mike</font> <font color="#CCCCCC">looks</font> you guys so what you need<font color="#E5E5E5"> to build a</font> <font color="#CCCCCC">head lab well</font><font color="#E5E5E5"> you need about you know</font> five<font color="#E5E5E5"> thousand servers on hands on cloud</font> right<font color="#E5E5E5"> back in the day you</font><font color="#CCCCCC"> needed a</font> second<font color="#E5E5E5"> service like</font><font color="#CCCCCC"> that and</font><font color="#E5E5E5"> actually</font> this could<font color="#E5E5E5"> have been my bedroom a few</font> years ago<font color="#E5E5E5"> a stack of servers</font><font color="#CCCCCC"> ponderous</font> <font color="#E5E5E5">things like that it was</font><font color="#CCCCCC"> it</font><font color="#E5E5E5"> was kind of</font> hard to<font color="#CCCCCC"> really build out a decent lab</font> back then because<font color="#E5E5E5"> we didn't have as well</font> <font color="#CCCCCC">virtualization techniques</font><font color="#E5E5E5"> now with the</font> advent of<font color="#E5E5E5"> VMware and VMware</font><font color="#CCCCCC"> fusion and</font> <font color="#CCCCCC">VirtualBox and</font><font color="#E5E5E5"> things like that you can</font> literally<font color="#E5E5E5"> build a lab on</font><font color="#CCCCCC"> your laptop and</font> <font color="#CCCCCC">why I thought that</font><font color="#E5E5E5"> works giving you or</font> on off<font color="#E5E5E5"> the shelf laptop from like Best</font> Buy<font color="#CCCCCC"> or something obviously</font><font color="#E5E5E5"> the more</font> power you throw at it but<font color="#CCCCCC"> it'll be type</font> of that<font color="#E5E5E5"> here in a second but really all</font> <font color="#E5E5E5">you need is a laptop</font><font color="#CCCCCC"> he needs some kind</font> <font color="#E5E5E5">of virtualization</font><font color="#CCCCCC"> software like sit</font> VMware game box something<font color="#E5E5E5"> like that you</font> <font color="#E5E5E5">need a couple of vulnerable</font><font color="#CCCCCC"> discs droves</font> to practice on and then your<font color="#CCCCCC"> laptop</font> <font color="#CCCCCC">spits</font><font color="#E5E5E5"> money at you boffo</font><font color="#CCCCCC"> combined so</font> just some kind of<font color="#CCCCCC"> gentles you know broad</font> specifications<font color="#CCCCCC"> um for a decent lab like</font> on your laptop<font color="#CCCCCC"> you just need like a high</font> <font color="#E5E5E5">five</font> you know<font color="#E5E5E5"> quad core you can get by with</font> <font color="#CCCCCC">nine three but you're going</font><font color="#E5E5E5"> to get</font><font color="#CCCCCC"> a</font> little<font color="#E5E5E5"> bit of choke there so you know</font> try<font color="#CCCCCC"> to get at least an i5 16 gigs of</font><font color="#E5E5E5"> ram</font> each VM<font color="#CCCCCC"> that you fire up some</font><font color="#E5E5E5"> of the</font> ones<font color="#E5E5E5"> that aren't</font><font color="#CCCCCC"> as graphics heavy like</font> most little<font color="#CCCCCC"> things you can</font><font color="#E5E5E5"> get away with</font> just<font color="#E5E5E5"> putting you know half the you know</font> happy<font color="#CCCCCC"> gave or whatever in there</font><font color="#E5E5E5"> but some</font> of the other ones<font color="#E5E5E5"> like Server 2012 you</font> want to put at least<font color="#E5E5E5"> two to four</font><font color="#CCCCCC"> gigs so</font> you know that<font color="#E5E5E5"> 16 gig is you kind of a</font> nice little<font color="#E5E5E5"> tone to play with so you</font> <font color="#CCCCCC">don't get choked up too much and</font><font color="#E5E5E5"> then</font> obviously<font color="#E5E5E5"> you've any hard drive space to</font> <font color="#E5E5E5">carry all these</font><font color="#CCCCCC"> vm's because they are</font> still kind<font color="#CCCCCC"> of big</font><font color="#E5E5E5"> so</font><font color="#CCCCCC"> you need at least</font> <font color="#E5E5E5">250 you know the more hard drive space</font> <font color="#CCCCCC">you have the more games</font><font color="#E5E5E5"> you can make you</font> <font color="#E5E5E5">know the more</font><font color="#CCCCCC"> space now so to build</font><font color="#E5E5E5"> your</font> <font color="#E5E5E5">Mac lab step one you just need a file</font> archive<font color="#CCCCCC"> right all of the VMS out there</font> that I know of anyways are zipped up in some <font color="#CCCCCC">zipped format right</font><font color="#E5E5E5"> so you need</font> <font color="#E5E5E5">something like you know for Windows you</font> have WinRAR or 7-zip<font color="#CCCCCC"> I think wins</font><font color="#E5E5E5"> it</font> might still<font color="#E5E5E5"> be</font><font color="#CCCCCC"> out there you'll</font><font color="#E5E5E5"> need a</font> file<font color="#CCCCCC"> are</font><font color="#E5E5E5"> there free go online download</font> you<font color="#E5E5E5"> know whichever one you want</font> I like<font color="#E5E5E5"> winner are but you get that hey</font> pay us at the 30 days thing<font color="#CCCCCC"> 7 tip is</font> also<font color="#E5E5E5"> good for</font><font color="#CCCCCC"> Mac users</font><font color="#E5E5E5"> you have</font><font color="#CCCCCC"> Kega or</font> the unarmed hacker<font color="#CCCCCC"> I think he</font><font color="#E5E5E5"> goes like</font> 99 cents<font color="#CCCCCC"> but</font><font color="#E5E5E5"> it's great you can</font><font color="#CCCCCC"> sip and</font> <font color="#CCCCCC">I'm zip and choose the you know</font><font color="#E5E5E5"> format</font> that you want<font color="#CCCCCC"> to dip it in</font> once you download install that you know on a step<font color="#CCCCCC"> to step</font><font color="#E5E5E5"> to install your wizard</font> step to go out and get some virtualization software so for PC<font color="#CCCCCC"> users</font> there's a couple<font color="#E5E5E5"> of free</font><font color="#CCCCCC"> options you</font> have VMware Player<font color="#E5E5E5"> kind of</font><font color="#CCCCCC"> stand-alone</font> <font color="#CCCCCC">out</font><font color="#E5E5E5"> of the box works well</font><font color="#CCCCCC"> you'll set</font> VirtualBox again free standalone<font color="#E5E5E5"> or out</font> <font color="#E5E5E5">of box works well pretty easy to install</font> <font color="#CCCCCC">you also have some paid versions</font> <font color="#CCCCCC">unfortunately for</font><font color="#E5E5E5"> Mac</font><font color="#CCCCCC"> users we only get</font> a three day free trial of VMware fusion which is<font color="#E5E5E5"> the</font><font color="#CCCCCC"> Mac version of vampire</font><font color="#E5E5E5"> and</font> for PC users<font color="#CCCCCC"> there's</font><font color="#E5E5E5"> workstation player</font> <font color="#E5E5E5">the only</font><font color="#CCCCCC"> difference between the paid and</font> <font color="#E5E5E5">the free really is the ability to take</font> <font color="#CCCCCC">snapshots so if you're</font><font color="#E5E5E5"> building these</font> VMs and<font color="#E5E5E5"> you're</font><font color="#CCCCCC"> getting them</font><font color="#E5E5E5"> all fired up</font> and<font color="#CCCCCC"> you're getting</font><font color="#E5E5E5"> all working the you</font> <font color="#CCCCCC">can take a</font><font color="#E5E5E5"> snapshot of it once you get</font> <font color="#CCCCCC">it</font><font color="#E5E5E5"> working and</font><font color="#CCCCCC"> then if you crash it you</font> <font color="#E5E5E5">hose that you found this cool exploit</font> you accidentally<font color="#CCCCCC"> knock everything off</font> line and<font color="#E5E5E5"> you</font><font color="#CCCCCC"> just can't recover it or</font> you forget your<font color="#E5E5E5"> password you can revert</font> back to<font color="#E5E5E5"> that snapshot come back to life</font> <font color="#CCCCCC">right so you've got your on our driver</font> <font color="#CCCCCC">you've got your virtualization software</font> <font color="#E5E5E5">step</font><font color="#CCCCCC"> three you need a pen testing</font> history there's several of them<font color="#CCCCCC"> out</font> there<font color="#CCCCCC"> you do what you want you know pick</font> what you like <font color="#CCCCCC">I like Kali Linux but</font><font color="#E5E5E5"> there's also pen -</font> there's back box<font color="#CCCCCC"> for web app testing</font> there's samurai WTF<font color="#E5E5E5"> for utility hacking</font> there's Samurai STFU<font color="#CCCCCC"> I think it's going</font> to<font color="#CCCCCC"> be reverted to the control things</font> platform but I'm not<font color="#E5E5E5"> sure what's going</font> <font color="#CCCCCC">on</font><font color="#E5E5E5"> with that</font><font color="#CCCCCC"> and then join just</font> forensics work and can you depth links for forensics<font color="#CCCCCC"> by</font><font color="#E5E5E5"> the day</font><font color="#CCCCCC"> you</font><font color="#E5E5E5"> had like</font> <font color="#E5E5E5">whoopings and I wax and then moved on</font> and<font color="#E5E5E5"> you had backtrack for a while and</font> <font color="#CCCCCC">the new thing that was Cali</font> so<font color="#CCCCCC"> black Hertz is another opportunity</font><font color="#E5E5E5"> I</font> have a<font color="#E5E5E5"> person a little bit yeah that's</font> another option<font color="#CCCCCC"> right and there's a path</font> <font color="#CCCCCC">on</font><font color="#E5E5E5"> a dish goes or if you really want to</font> go out<font color="#E5E5E5"> and build your own downloaded it</font> you know UNIX flavor of your choice and <font color="#CCCCCC">personal</font><font color="#E5E5E5"> tools line</font><font color="#CCCCCC"> if that's you know</font> that's your thing that's a challenge <font color="#CCCCCC">that you want</font><font color="#E5E5E5"> to temp go for it um a lot</font> <font color="#CCCCCC">of us a lot</font><font color="#E5E5E5"> of</font><font color="#CCCCCC"> folks</font><font color="#E5E5E5"> and I know roller</font> <font color="#E5E5E5">on distros I don't mind</font><font color="#CCCCCC"> using the three</font> loud bang as a totally unrelated<font color="#E5E5E5"> side</font> note<font color="#CCCCCC"> you guys know there's a lot</font><font color="#E5E5E5"> of</font> really<font color="#CCCCCC"> bad crap going on the world</font><font color="#E5E5E5"> right</font> now<font color="#E5E5E5"> yeah I mean it's you know I'm tired</font> <font color="#E5E5E5">of seeing</font><font color="#CCCCCC"> it on the news if we can all</font> find a<font color="#CCCCCC"> way to be as happy as the kids in</font> <font color="#CCCCCC">that picture</font><font color="#E5E5E5"> I think the world</font><font color="#CCCCCC"> would be</font> <font color="#E5E5E5">a much better</font><font color="#CCCCCC"> place and if that takes</font> <font color="#E5E5E5">dumping Legos on the world I'm on board</font> it would take a lot of<font color="#E5E5E5"> labels but you</font> know<font color="#E5E5E5"> yeah</font> again I'm related you guys chose to be here and I sincerely appreciate that if you don't mind this is totally off<font color="#CCCCCC"> I</font><font color="#E5E5E5"> just</font><font color="#CCCCCC"> slotted it's</font> <font color="#E5E5E5">okay if you don't mind and you turn the</font> person<font color="#CCCCCC"> next to you shake their hand up</font> their neck whatever<font color="#E5E5E5"> they're comfortable</font> <font color="#CCCCCC">and say I appreciate</font><font color="#E5E5E5"> you and I</font> appreciate you<font color="#E5E5E5"> gonna wait</font> pewter sets of hand guys that's a dirty cop y'all that warms my heart now that<font color="#E5E5E5"> really does that</font><font color="#CCCCCC"> really does</font> <font color="#E5E5E5">thank you guys seriously thank you okay</font> huh<font color="#CCCCCC"> it</font><font color="#E5E5E5"> shipped up a little bit all</font><font color="#CCCCCC"> right</font> <font color="#E5E5E5">so this</font><font color="#CCCCCC"> was a</font><font color="#E5E5E5"> question that I had as I</font> was developing it since it<font color="#CCCCCC"> okay so I've</font> <font color="#E5E5E5">got my eye on</font><font color="#CCCCCC"> archiver I've got my</font> <font color="#CCCCCC">virtualization software I'm not too</font> comfortable<font color="#CCCCCC"> you</font><font color="#E5E5E5"> know Roy</font><font color="#CCCCCC"> my ISO we're</font> <font color="#E5E5E5">trying to download nicely the kind of</font> folks<font color="#E5E5E5"> over at offensive security have</font> <font color="#CCCCCC">pre-compile</font><font color="#E5E5E5"> Linux distros that you can</font> roll right out<font color="#E5E5E5"> of the box right</font><font color="#CCCCCC"> I said</font> well where are<font color="#E5E5E5"> they how to</font><font color="#CCCCCC"> win stolen so</font> in a quick little video he's gonna be <font color="#E5E5E5">Holly</font><font color="#CCCCCC"> go to work the go to</font><font color="#E5E5E5"> your</font> downloads page click download<font color="#E5E5E5"> Kali Linux</font> right you've got<font color="#E5E5E5"> Isis there if you want</font> to<font color="#E5E5E5"> try to roll your own</font><font color="#CCCCCC"> excel you can</font> also torn them well if that's your <font color="#CCCCCC">reflective thing you got Wheatley builds</font> and they've also<font color="#E5E5E5"> got pre-built Kali</font> Linux VM ware and VirtualBox<font color="#CCCCCC"> footages so</font> you<font color="#E5E5E5"> just click</font><font color="#CCCCCC"> that link down bottom</font> there<font color="#CCCCCC"> and it will</font><font color="#E5E5E5"> take</font><font color="#CCCCCC"> you</font><font color="#E5E5E5"> to the</font> offensive security<font color="#E5E5E5"> side these are you</font> <font color="#CCCCCC">know</font><font color="#E5E5E5"> owned and operated maintained by</font> <font color="#CCCCCC">offensive security but the totally free</font> <font color="#E5E5E5">and then literally</font><font color="#CCCCCC"> you can choose VMware</font> or VirtualBox images easy to<font color="#CCCCCC"> download</font> just click them and<font color="#E5E5E5"> start the download</font> <font color="#CCCCCC">they're ready</font><font color="#E5E5E5"> to go right out of the box</font> <font color="#CCCCCC">no crazy setup</font><font color="#E5E5E5"> for anything</font><font color="#CCCCCC"> needed at</font> the most you<font color="#E5E5E5"> might want to change the</font> <font color="#CCCCCC">password</font><font color="#E5E5E5"> home use default passwords</font><font color="#CCCCCC"> if</font> <font color="#E5E5E5">you</font><font color="#CCCCCC"> run your</font><font color="#E5E5E5"> VM</font><font color="#CCCCCC"> you can</font><font color="#E5E5E5"> I've noticed</font> there's a<font color="#E5E5E5"> lot of choke with that</font><font color="#CCCCCC"> and</font> some<font color="#E5E5E5"> of the older me items USB 3.0</font> there's not a lot of love there<font color="#CCCCCC"> so you</font> can if you can<font color="#E5E5E5"> get it to work right you</font> know<font color="#CCCCCC"> I</font><font color="#E5E5E5"> burned them up just mine you know</font> <font color="#E5E5E5">own hard drive</font><font color="#CCCCCC"> that's just on the</font><font color="#E5E5E5"> laptop</font> I just have a folder<font color="#E5E5E5"> where I store them</font> <font color="#E5E5E5">all and it's good</font> absolutely excellent<font color="#CCCCCC"> yes</font><font color="#E5E5E5"> oh definitely</font> <font color="#CCCCCC">slides online and uh going to</font><font color="#E5E5E5"> be</font> possibly<font color="#CCCCCC"> writing up a blog that's</font><font color="#E5E5E5"> a</font> <font color="#E5E5E5">little more</font><font color="#CCCCCC"> in-depth on how to do it so</font> be on the lookout for<font color="#CCCCCC"> that</font><font color="#E5E5E5"> we generate</font> SSH keys<font color="#CCCCCC"> yes you might wonder</font><font color="#E5E5E5"> generate</font> <font color="#E5E5E5">your SSH keys because especially</font><font color="#CCCCCC"> the</font> <font color="#E5E5E5">pre-built from offensive security comes</font> with some free<font color="#E5E5E5"> generate assess HD</font><font color="#CCCCCC"> once</font> you contracted it installed it there'll be a vmx file in the bowl<font color="#CCCCCC"> of the to</font> extract double-click that DMX file it'll pull up<font color="#E5E5E5"> your</font><font color="#CCCCCC"> VM player</font><font color="#E5E5E5"> you virtual you</font> know player of some<font color="#CCCCCC"> sorts</font><font color="#E5E5E5"> and in VMware</font> <font color="#CCCCCC">and ask you you know did</font><font color="#E5E5E5"> you copies your</font> <font color="#CCCCCC">commitment so</font><font color="#E5E5E5"> you just say I copied it</font> after a few seconds<font color="#CCCCCC"> you've</font><font color="#E5E5E5"> got a login</font> screen and<font color="#E5E5E5"> all attacked because it's</font> <font color="#E5E5E5">really easy right so you got your</font><font color="#CCCCCC"> own</font> <font color="#CCCCCC">archive and you've got your</font> virtualization software now you<font color="#CCCCCC"> got your</font> pen testing<font color="#CCCCCC"> different I need something</font> to attack<font color="#E5E5E5"> right there</font><font color="#CCCCCC"> are several</font> probably hundreds of vulnerable VMs that <font color="#E5E5E5">are out there right there's been a</font> suitable there's morning catch<font color="#CCCCCC"> to learn</font> fishing there's the<font color="#CCCCCC"> Olas broken web apps</font><font color="#E5E5E5"> for web</font> applications there's<font color="#E5E5E5"> also web</font><font color="#CCCCCC"> code</font> there's a website called<font color="#CCCCCC"> Home Hub</font><font color="#E5E5E5"> comm</font> that hosts a lot<font color="#CCCCCC"> of different you know</font> <font color="#CCCCCC">but</font><font color="#E5E5E5"> challenge games and things like</font><font color="#CCCCCC"> that</font> <font color="#CCCCCC">it has like got tricks and pun OS and</font> different things<font color="#E5E5E5"> like that it's more</font> <font color="#CCCCCC">geared towards</font><font color="#E5E5E5"> a beginner</font><font color="#CCCCCC"> I like</font> <font color="#CCCCCC">Metasploit well because it's a it's</font> intentionally vulnerable version of Ubuntu<font color="#E5E5E5"> Linux it has remote logins</font> backdoors <font color="#CCCCCC">Tahoma</font><font color="#E5E5E5"> web services got facility built</font> <font color="#CCCCCC">in default passwords it's got all kinds</font> of<font color="#E5E5E5"> stuff so</font><font color="#CCCCCC"> you can</font><font color="#E5E5E5"> literally just run</font> <font color="#E5E5E5">whatever you want to go crazy good</font> with a lot<font color="#CCCCCC"> of these vulnerable VMs right</font> <font color="#E5E5E5">I actually had a</font><font color="#CCCCCC"> question on</font><font color="#E5E5E5"> the</font><font color="#CCCCCC"> hall</font> well I kind of<font color="#E5E5E5"> wanna begin but they</font> don't want to do with<font color="#E5E5E5"> it there are</font> <font color="#CCCCCC">guides out there written</font><font color="#E5E5E5"> by some of</font><font color="#CCCCCC"> the</font> developers right rabbit<font color="#CCCCCC"> seven without a</font> great guide from<font color="#CCCCCC"> it</font><font color="#E5E5E5"> exploitable written</font> by<font color="#CCCCCC"> HT more in</font><font color="#E5E5E5"> Egypt</font> believe<font color="#E5E5E5"> and</font><font color="#CCCCCC"> it gives you a cool little</font> step-by-step<font color="#E5E5E5"> you</font><font color="#CCCCCC"> know</font><font color="#E5E5E5"> here's some cool</font> things<font color="#E5E5E5"> you can</font><font color="#CCCCCC"> do right</font><font color="#E5E5E5"> it's kind of</font> chichi but if you feel like<font color="#CCCCCC"> you need to follow</font> on with<font color="#E5E5E5"> the guys that's okay everybody</font> <font color="#CCCCCC">has</font><font color="#E5E5E5"> to start somewhere</font><font color="#CCCCCC"> so go ahead and</font> <font color="#E5E5E5">grab the guy</font><font color="#CCCCCC"> the morning catch has</font><font color="#E5E5E5"> a</font> great<font color="#CCCCCC"> startup</font><font color="#E5E5E5"> guide as well if you want</font> <font color="#E5E5E5">to learn fishing</font><font color="#CCCCCC"> download</font><font color="#E5E5E5"> your fishing</font> server<font color="#E5E5E5"> toys download morning catch and</font> she shows guys<font color="#E5E5E5"> it's an actual real</font> working fishing environment<font color="#CCCCCC"> there's also</font> a white paper<font color="#CCCCCC"> in help on utility</font><font color="#E5E5E5"> if</font> you're wanting<font color="#E5E5E5"> to practice web app</font> hacking if when you<font color="#E5E5E5"> get better at you</font> know<font color="#CCCCCC"> sequel injection cross-site</font> scripting<font color="#E5E5E5"> stuff like that there's a</font> whole bunch<font color="#E5E5E5"> of different write-ups and</font> <font color="#CCCCCC">Sam's also</font><font color="#E5E5E5"> get a write-up on on using</font> the tilde some other unintentional<font color="#E5E5E5"> but</font><font color="#CCCCCC"> V</font> <font color="#E5E5E5">atoms</font><font color="#CCCCCC"> that are</font><font color="#E5E5E5"> out there uh when is XP</font> Windows XP is still floating around out there it's<font color="#E5E5E5"> still floating around</font><font color="#CCCCCC"> the</font> customer<font color="#E5E5E5"> sites</font><font color="#CCCCCC"> I can I've lost count</font> this<font color="#E5E5E5"> year of the number of sites I've</font> been to<font color="#E5E5E5"> that still had active Windows XP</font> machines right don't have Windows<font color="#CCCCCC"> XP and</font> <font color="#E5E5E5">their machines</font><font color="#CCCCCC"> guys seriously</font><font color="#E5E5E5"> don't but</font> while it's<font color="#E5E5E5"> still out there go</font><font color="#CCCCCC"> ahead</font><font color="#E5E5E5"> and</font> <font color="#CCCCCC">practice on it</font><font color="#E5E5E5"> because it's really easy</font> <font color="#E5E5E5">it's easy to break it's fun</font><font color="#CCCCCC"> okay it's</font> out there<font color="#E5E5E5"> when</font><font color="#CCCCCC"> it's</font><font color="#E5E5E5"> Server 2012</font><font color="#CCCCCC"> I want</font> to challenge you<font color="#CCCCCC"> to build up your own</font> domain<font color="#CCCCCC"> and you know that</font><font color="#E5E5E5"> takes a few</font> minutes<font color="#CCCCCC"> it's a little bit challenging</font> but<font color="#E5E5E5"> there's write-ups on how to do that</font> <font color="#CCCCCC">you can also get</font><font color="#E5E5E5"> exchange or whatever</font> <font color="#CCCCCC">seven Microsoft has made several of</font> <font color="#CCCCCC">these</font><font color="#E5E5E5"> available</font><font color="#CCCCCC"> for free on a trial</font> basis<font color="#E5E5E5"> so you can download it from a</font> service like<font color="#CCCCCC"> TechNet the developer edge</font> you can<font color="#E5E5E5"> download these evaluations and</font> <font color="#E5E5E5">they even tell you hey go ahead</font><font color="#CCCCCC"> and take</font> a<font color="#CCCCCC"> snapshot of this so that</font><font color="#E5E5E5"> you can refer</font> back<font color="#E5E5E5"> to it</font><font color="#CCCCCC"> because it's an evaluation</font><font color="#E5E5E5"> so</font> you know they're they're<font color="#CCCCCC"> all fourth oh</font> yeah<font color="#CCCCCC"> I use a</font><font color="#E5E5E5"> product for free and and go</font> crazy<font color="#E5E5E5"> like I said Tecna has tech that</font> has the server<font color="#CCCCCC"> valuations the developer</font> studio has<font color="#CCCCCC"> bunch of virtual machines for</font> <font color="#E5E5E5">like</font><font color="#CCCCCC"> ie 8 and 99 and things like</font><font color="#E5E5E5"> that</font> see you guys<font color="#CCCCCC"> in</font><font color="#E5E5E5"> Windows 7 district that</font> way<font color="#CCCCCC"> there's the</font><font color="#E5E5E5"> websites for</font> the<font color="#E5E5E5"> VMS if you want to go you know what</font> form and then totally unrelated<font color="#CCCCCC"> but as I</font> <font color="#E5E5E5">was doing this talk I found this</font> - this exists<font color="#E5E5E5"> and</font><font color="#CCCCCC"> why are</font><font color="#E5E5E5"> there four</font> million people<font color="#CCCCCC"> watching it so as you're</font> <font color="#E5E5E5">setting up all these huh what does it</font> say it<font color="#CCCCCC"> says the Windows</font><font color="#E5E5E5"> XP startup sound</font> slowed down to 24 hours and it has a as a<font color="#E5E5E5"> website</font><font color="#CCCCCC"> ahead</font><font color="#E5E5E5"> over 4 million views yes</font> <font color="#CCCCCC">y7 oh and I actually listened to</font><font color="#E5E5E5"> some</font><font color="#CCCCCC"> of</font> it<font color="#E5E5E5"> it</font><font color="#CCCCCC"> was slow</font><font color="#E5E5E5"> down to 20 bar oh yeah</font> they just slowed it<font color="#CCCCCC"> down low pitch slow</font> pitch just<font color="#E5E5E5"> more that's great</font><font color="#CCCCCC"> as a side</font> note<font color="#E5E5E5"> as you're downloading and</font> installing all these<font color="#CCCCCC"> beans as you're</font> getting<font color="#E5E5E5"> them set up do not expose them</font> to<font color="#E5E5E5"> the</font><font color="#CCCCCC"> internet do not expose mobile</font> games there<font color="#CCCCCC"> and if you expose</font><font color="#E5E5E5"> one what</font> games the<font color="#CCCCCC"> Internet</font> you're gonna have a bad time<font color="#CCCCCC"> if you go</font> out<font color="#E5E5E5"> there and</font><font color="#CCCCCC"> get an unpatched Windows</font> XP machine and you throw it on<font color="#E5E5E5"> your</font> network and<font color="#E5E5E5"> you just go crazy and forget</font> to make it<font color="#CCCCCC"> hosts</font><font color="#E5E5E5"> only you're gonna have</font> a bad time so now you've got<font color="#CCCCCC"> an environment you've</font> got a place<font color="#CCCCCC"> to play you've got so</font><font color="#E5E5E5"> much</font> <font color="#CCCCCC">room for</font><font color="#E5E5E5"> activities</font><font color="#CCCCCC"> man</font><font color="#E5E5E5"> now I can start</font> hacking right well<font color="#CCCCCC"> okay of what tools</font> they<font color="#E5E5E5"> use well there's thousand tools</font> built in the cow and a thousand<font color="#E5E5E5"> scripts</font> of a release<font color="#CCCCCC"> to places like Derby</font> <font color="#CCCCCC">continent</font><font color="#E5E5E5"> DEFCON and east sides and</font> things like that<font color="#E5E5E5"> so this is just</font><font color="#CCCCCC"> kind of</font> a general<font color="#E5E5E5"> recommendation</font><font color="#CCCCCC"> some tools</font> start with gotten map any good penetration test starts with reconnaissance<font color="#E5E5E5"> so you want to do some</font> reconnaissance with like<font color="#CCCCCC"> n map form a</font> scam<font color="#E5E5E5"> right look for</font><font color="#CCCCCC"> open</font><font color="#E5E5E5"> ports verticals</font> <font color="#CCCCCC">the kind of folks are</font><font color="#E5E5E5"> temple</font><font color="#CCCCCC"> but you</font> have a version of<font color="#CCCCCC"> necess called misses</font> home that is free from<font color="#E5E5E5"> two twenties I</font> <font color="#E5E5E5">believe so you can run a full</font><font color="#CCCCCC"> horn</font> ability<font color="#CCCCCC"> stand</font> against your test<font color="#E5E5E5"> network and start</font> <font color="#CCCCCC">looking</font><font color="#E5E5E5"> at vulnerability scan results</font> right<font color="#CCCCCC"> I</font><font color="#E5E5E5"> put on their</font><font color="#CCCCCC"> cane</font><font color="#E5E5E5"> just a few</font> weeks ago I<font color="#E5E5E5"> had a customer gave</font><font color="#CCCCCC"> a</font><font color="#E5E5E5"> report</font> they saw an app of a whole bunch<font color="#CCCCCC"> of</font> clear<font color="#CCCCCC"> timeframes elusive how did you get</font> that<font color="#E5E5E5"> so now my rant old volcano and he</font> literally stood<font color="#E5E5E5"> up should be</font><font color="#CCCCCC"> saying what</font> cane is that<font color="#CCCCCC"> stuff it still works</font><font color="#E5E5E5"> yeah</font> your<font color="#E5E5E5"> money it's it's it is very little</font> it still works great<font color="#CCCCCC"> it works great in</font> all environments that<font color="#E5E5E5"> I've tested you</font> still get credentials and that's because you're still like to click they're very click happy<font color="#CCCCCC"> so go practice with</font><font color="#E5E5E5"> pain go</font> do some<font color="#E5E5E5"> are poisoning</font><font color="#CCCCCC"> text please</font><font color="#E5E5E5"> do not</font> <font color="#CCCCCC">get</font><font color="#E5E5E5"> more poisonous slice 24 you're going</font> to take off some network<font color="#CCCCCC"> path</font><font color="#E5E5E5"> somewhere</font> <font color="#CCCCCC">responders also Graham sure you guys</font> have heard<font color="#CCCCCC"> that</font><font color="#E5E5E5"> spoken of a few times</font> <font color="#E5E5E5">let's you're a man a metal tool since</font> <font color="#E5E5E5">the road wpad top that file so</font><font color="#CCCCCC"> you</font><font color="#E5E5E5"> can</font> practice doing<font color="#E5E5E5"> some animal attacks with</font> that go get those yummy hashes from<font color="#E5E5E5"> the</font> users once you get all those hashes<font color="#E5E5E5"> need</font> something to crack<font color="#E5E5E5"> them with so I</font> recommend practicing<font color="#E5E5E5"> with something like</font> <font color="#CCCCCC">jaw or hash cat copy the hashes to a</font> text file run John<font color="#E5E5E5"> crack</font><font color="#CCCCCC"> up see what you</font> get<font color="#E5E5E5"> uh there's a couple versions of</font> <font color="#CCCCCC">Metasploit up there</font><font color="#E5E5E5"> there's a</font><font color="#CCCCCC"> community</font> <font color="#E5E5E5">edition which is free</font><font color="#CCCCCC"> in</font><font color="#E5E5E5"> the paid</font> attention which is<font color="#E5E5E5"> paid</font><font color="#CCCCCC"> but</font><font color="#E5E5E5"> it's built</font> in account<font color="#E5E5E5"> alright it's built into</font> <font color="#E5E5E5">several these</font><font color="#CCCCCC"> pen testing</font><font color="#E5E5E5"> disproves and</font> the free<font color="#E5E5E5"> version works for me</font><font color="#CCCCCC"> it's got</font> <font color="#E5E5E5">plenty of exploits got plenty stuff</font><font color="#CCCCCC"> to</font> practice on for social<font color="#E5E5E5"> engineering</font> you've got<font color="#E5E5E5"> set the library on date</font> cutting <font color="#E5E5E5">go fish SPF fish meters there's a</font> thousand<font color="#E5E5E5"> different fishing and social</font> engineering tools out there<font color="#CCCCCC"> they're all</font> you know<font color="#CCCCCC"> most of them referring they</font> said coefficient is a bit<font color="#CCCCCC"> roll free</font> so fire<font color="#E5E5E5"> a bed</font><font color="#CCCCCC"> fishing box start</font> <font color="#E5E5E5">practicing some fishing tax figure out</font> <font color="#E5E5E5">the best email layout that</font><font color="#CCCCCC"> you that you</font> like that<font color="#CCCCCC"> you know works it</font><font color="#E5E5E5"> looks good</font> and I can really<font color="#CCCCCC"> pull the users start</font> kind of<font color="#CCCCCC"> fine-tuning</font><font color="#E5E5E5"> that I've seen a lot</font> of<font color="#E5E5E5"> phishing attacks failed because</font> either the email didn't look authentic <font color="#E5E5E5">or it looked too real or</font> you know just something<font color="#E5E5E5"> something was</font> off right<font color="#E5E5E5"> you want to you want to</font><font color="#CCCCCC"> make</font> the user as comfortable as they<font color="#CCCCCC"> can</font><font color="#E5E5E5"> as</font> they're<font color="#E5E5E5"> doing about their day-to-day</font> business and they<font color="#E5E5E5"> just see this email</font><font color="#CCCCCC"> it</font> says<font color="#E5E5E5"> its</font><font color="#CCCCCC"> address from HR and</font><font color="#E5E5E5"> they go oh</font> yeah I'll do that<font color="#E5E5E5"> phone play and then</font> you're in for<font color="#CCCCCC"> open</font><font color="#E5E5E5"> source intelligence</font> gathering<font color="#CCCCCC"> again</font><font color="#E5E5E5"> thousands of other tools</font> <font color="#E5E5E5">out there</font><font color="#CCCCCC"> I really like discover</font><font color="#E5E5E5"> scripts</font> what<font color="#E5E5E5"> written by the</font><font color="#CCCCCC"> lead</font><font color="#E5E5E5"> part</font><font color="#CCCCCC"> bear I</font> believe the same is it is<font color="#E5E5E5"> absolutely</font> fantastic<font color="#CCCCCC"> it will just pull every bit of</font> open source data you can from a website spits it on a nice HTML file<font color="#E5E5E5"> lets you</font> read it's great reconnaissance it's also<font color="#E5E5E5"> great information for the</font> customer if they've<font color="#E5E5E5"> got a couple domains</font> out there and then there's somebody <font color="#E5E5E5">setting up a you know possible</font><font color="#CCCCCC"> pyncheon</font> tag and they're squatting on a domain <font color="#CCCCCC">that</font><font color="#E5E5E5"> looks like that this will pull it</font> and you can look at it and<font color="#E5E5E5"> say hey you</font> know google.com with two M's<font color="#CCCCCC"> has been</font> you know<font color="#E5E5E5"> squatting</font><font color="#CCCCCC"> for a while is that</font> <font color="#E5E5E5">you guys or do you want to go</font> <font color="#E5E5E5">investigate that</font><font color="#CCCCCC"> another</font><font color="#E5E5E5"> great tool for</font> <font color="#E5E5E5">PowerShell scripting is PowerShell</font> <font color="#CCCCCC">empire</font><font color="#E5E5E5"> forming</font><font color="#CCCCCC"> powershell scripts and</font> <font color="#CCCCCC">things like that</font> do<font color="#E5E5E5"> talk about it this weekend I mean it</font> is blows me away<font color="#E5E5E5"> the stuff you look at</font> <font color="#E5E5E5">this and then</font><font color="#CCCCCC"> pragmatic sack</font><font color="#E5E5E5"> that is</font><font color="#CCCCCC"> a</font> post exploitation<font color="#E5E5E5"> framework it's really</font> easy<font color="#E5E5E5"> to use</font><font color="#CCCCCC"> it</font><font color="#E5E5E5"> release it</font><font color="#CCCCCC"> a set up and</font> install and you can run PowerShell scripts<font color="#E5E5E5"> with it as well as the deep</font> reconnaissance and<font color="#E5E5E5"> all sorts of stuff</font> <font color="#E5E5E5">it's kind</font><font color="#CCCCCC"> of a good all</font><font color="#E5E5E5"> in one utility</font> <font color="#E5E5E5">belt toolkit</font><font color="#CCCCCC"> I really</font><font color="#E5E5E5"> like it</font> <font color="#CCCCCC">and there are probably better</font><font color="#E5E5E5"> ways of</font> doing things <font color="#E5E5E5">there's thousand new tools out</font><font color="#CCCCCC"> there</font> these<font color="#E5E5E5"> are</font><font color="#CCCCCC"> just an</font><font color="#E5E5E5"> example of a handful</font> <font color="#E5E5E5">some that I like that I use</font><font color="#CCCCCC"> that I read</font> <font color="#CCCCCC">completely as an optional as you're</font> building<font color="#CCCCCC"> out</font><font color="#E5E5E5"> your lab try to build a</font> domain so go out get<font color="#CCCCCC"> a version of Server</font> 2012<font color="#E5E5E5"> build it a main controller</font><font color="#CCCCCC"> out add</font> a bunch of users<font color="#CCCCCC"> to it make it as</font> realistic environment as you<font color="#E5E5E5"> can little</font> <font color="#CCCCCC">bit of a</font><font color="#E5E5E5"> challenge but you know it's</font> nothing<font color="#E5E5E5"> we</font><font color="#CCCCCC"> can't handle right Peter Kim</font> did it quick right up on his website <font color="#CCCCCC">microphone book calm and he's got a you</font> know<font color="#E5E5E5"> a nice little write-up about how to</font> <font color="#E5E5E5">build up</font><font color="#CCCCCC"> your</font><font color="#E5E5E5"> own Medusa vein so you</font> figured<font color="#E5E5E5"> out how to go out and get it</font> install<font color="#E5E5E5"> it here's how to build it up</font> <font color="#CCCCCC">get it all figured out</font><font color="#E5E5E5"> once you get it</font> all installed<font color="#E5E5E5"> once you said everything's</font> not<font color="#E5E5E5"> host-only you want to make</font><font color="#CCCCCC"> sure that</font> it<font color="#E5E5E5"> all works right to go through and</font> <font color="#CCCCCC">well as home um what I'm</font><font color="#E5E5E5"> doing here is</font> <font color="#E5E5E5">I'm just checking on all my VM are set</font> to host all mine so that they are<font color="#E5E5E5"> completely</font><font color="#CCCCCC"> segregated</font> <font color="#E5E5E5">from</font><font color="#CCCCCC"> the internet everything is offline</font> it's all hosed<font color="#E5E5E5"> and housed within my own</font> system here I'm going<font color="#E5E5E5"> to go on your</font> <font color="#CCCCCC">attacker platform and you</font><font color="#E5E5E5"> just want to</font> ping all your systems make sure they're up and they're<font color="#CCCCCC"> working and you know make</font> sure<font color="#E5E5E5"> you can talk to them so that's just</font> a pain through make<font color="#CCCCCC"> sure they work make</font> sure<font color="#CCCCCC"> they all talk yeah</font><font color="#E5E5E5"> you don't want</font> <font color="#E5E5E5">to throw</font><font color="#CCCCCC"> in</font><font color="#E5E5E5"> a timeout and then Amanda</font> you know<font color="#CCCCCC"> Liam's not</font><font color="#E5E5E5"> on</font><font color="#CCCCCC"> our VMs I'm</font> working<font color="#E5E5E5"> where it's not talking so well</font> <font color="#CCCCCC">let me see there no worse</font><font color="#E5E5E5"> cool if it all</font> works congratulations<font color="#E5E5E5"> you have it working</font><font color="#CCCCCC"> my</font> <font color="#CCCCCC">self-contained working hard</font><font color="#E5E5E5"> life right</font> so all<font color="#CCCCCC"> will go as well I'm</font><font color="#E5E5E5"> going to show</font> <font color="#E5E5E5">you guys my hacking lab right</font><font color="#CCCCCC"> we'll</font><font color="#E5E5E5"> see</font> how this works<font color="#CCCCCC"> so this is my hacking lab</font> this<font color="#CCCCCC"> is Wayne Enterprises</font> <font color="#E5E5E5">I've got</font><font color="#CCCCCC"> Callie one Xbox one up that's</font> my type of<font color="#E5E5E5"> machine I've got the</font><font color="#CCCCCC"> go fish</font> morning catch fishing server<font color="#E5E5E5"> I've got a</font> Windows XP<font color="#CCCCCC"> box</font><font color="#E5E5E5"> I've got I've gotten best</font> local<font color="#CCCCCC"> to I've built out of</font><font color="#E5E5E5"> the main</font> controller with Windows Server<font color="#E5E5E5"> 2012 I've</font> got another<font color="#E5E5E5"> type of platform several</font> tools are<font color="#E5E5E5"> only available on Windows they</font> aren't available<font color="#E5E5E5"> on a disco so it's good</font> <font color="#CCCCCC">to have you know a little</font><font color="#E5E5E5"> bit</font><font color="#CCCCCC"> outside</font> the box out there so I'm<font color="#E5E5E5"> going</font><font color="#CCCCCC"> to</font><font color="#E5E5E5"> run</font> <font color="#CCCCCC">you guys</font><font color="#E5E5E5"> through just a really quick</font> penetration test this is something that <font color="#CCCCCC">I've done at the customer</font><font color="#E5E5E5"> site</font> and it went almost exactly<font color="#E5E5E5"> like this</font> right we login<font color="#CCCCCC"> yes</font><font color="#E5E5E5"> I'm using me fulcrum</font> <font color="#E5E5E5">tools so you log in and get your IDs</font> here<font color="#E5E5E5"> of your typing machines you</font><font color="#CCCCCC"> go okay</font> <font color="#E5E5E5">all right well</font><font color="#CCCCCC"> let</font><font color="#E5E5E5"> me see what's open on</font> my<font color="#E5E5E5"> Windows 16 box for instance</font><font color="#CCCCCC"> right so</font> you should run a quick<font color="#CCCCCC"> eye match</font><font color="#E5E5E5"> you can</font> see<font color="#E5E5E5"> that's going</font><font color="#CCCCCC"> to 0 K up cool</font> <font color="#E5E5E5">this</font><font color="#CCCCCC"> is pretty</font><font color="#E5E5E5"> quick</font><font color="#CCCCCC"> mmm scan</font><font color="#E5E5E5"> Windows XP</font> box and see what's<font color="#E5E5E5"> up long</font><font color="#CCCCCC"> pretend like</font> we don't know it's when it's actually <font color="#E5E5E5">lives by the way this is</font><font color="#CCCCCC"> we're having a</font> little<font color="#CCCCCC"> more memory on your</font><font color="#E5E5E5"> host machine</font> allows you<font color="#E5E5E5"> to run these things</font><font color="#CCCCCC"> a little</font> bit better<font color="#E5E5E5"> so we'll remember you have</font> what's normal you're going to get<font color="#CCCCCC"> the</font> <font color="#CCCCCC">list it's going to be choked</font><font color="#E5E5E5"> up</font><font color="#CCCCCC"> and it's</font> great so<font color="#CCCCCC"> oh man</font><font color="#E5E5E5"> you know I found in I'm</font> looking<font color="#E5E5E5"> okay well we've got</font><font color="#CCCCCC"> to tell Matt</font> open and you<font color="#E5E5E5"> know looks like</font><font color="#CCCCCC"> a 3 3</font> <font color="#E5E5E5">denied RDP there so you know might be a</font> Windows box<font color="#CCCCCC"> bushes let's</font><font color="#E5E5E5"> just</font><font color="#CCCCCC"> double</font> <font color="#CCCCCC">check here</font><font color="#E5E5E5"> make sure it is some windows</font> <font color="#CCCCCC">XP box</font><font color="#E5E5E5"> how about that right when is XP</font> professional service<font color="#CCCCCC"> pack 2 or</font><font color="#E5E5E5"> possibly</font> <font color="#E5E5E5">what a server 2003 so we know that what</font> is XP unpatched<font color="#E5E5E5"> was a highly vulnerable</font> to<font color="#E5E5E5"> MSOE</font><font color="#CCCCCC"> dosuk 7 right</font><font color="#E5E5E5"> so this is where</font> we can load up a mess<font color="#E5E5E5"> point she just</font> <font color="#CCCCCC">loaded</font><font color="#E5E5E5"> up with MSF console window click</font> second<font color="#CCCCCC"> the run</font> so we've done a reconnaissance<font color="#E5E5E5"> as is</font> this is<font color="#CCCCCC"> loading so first up we've done</font> our reconnaissance<font color="#CCCCCC"> we found a Volvo</font> machine<font color="#CCCCCC"> companies XP on it hmm</font> check it<font color="#E5E5E5"> out just</font><font color="#CCCCCC"> played</font><font color="#E5E5E5"> seven or</font> something<font color="#CCCCCC"> I</font><font color="#E5E5E5"> love it</font><font color="#CCCCCC"> I love this guy so</font> we're<font color="#CCCCCC"> gonna go ahead and just do a</font> <font color="#CCCCCC">search for MS and Oh ate their promises</font> <font color="#CCCCCC">gets</font><font color="#E5E5E5"> more exciting</font><font color="#CCCCCC"> alright so you just</font> use<font color="#CCCCCC"> that exploit right there so you just</font> <font color="#CCCCCC">hit</font><font color="#E5E5E5"> use copy paste now you've loaded up</font> so you've loaded up that exploit you're going to prepare for attack<font color="#E5E5E5"> so we</font><font color="#CCCCCC"> know</font> that<font color="#CCCCCC"> our</font><font color="#E5E5E5"> host was this one ninety one</font> six eight one seven<font color="#E5E5E5"> one three six and</font><font color="#CCCCCC"> we</font> know what's up<font color="#E5E5E5"> so let's go ahead and</font> just try<font color="#E5E5E5"> here so we're going to show</font> options says<font color="#E5E5E5"> all we need</font><font color="#CCCCCC"> in our hosts</font> we're going to set our<font color="#CCCCCC"> hose literally</font> we're set I'm going<font color="#E5E5E5"> to say</font><font color="#CCCCCC"> explain</font> so this was a real thing<font color="#CCCCCC"> so quick story</font> <font color="#CCCCCC">loses window quick story balls</font><font color="#E5E5E5"> while</font> <font color="#CCCCCC">blowing us up the was</font><font color="#E5E5E5"> that a customer</font> site<font color="#E5E5E5"> just you know a little while ago</font> <font color="#E5E5E5">and the customer said oh man yeah we're</font> good you know we don't have<font color="#CCCCCC"> any</font> vulnerabilities know how many things<font color="#E5E5E5"> I</font> got the right<font color="#E5E5E5"> I got the they had several</font> domains in<font color="#CCCCCC"> a first time a in a</font><font color="#E5E5E5"> few hours</font> <font color="#CCCCCC">ii mean few</font><font color="#E5E5E5"> hours third event was</font><font color="#CCCCCC"> taking</font> <font color="#CCCCCC">I was</font><font color="#E5E5E5"> killing me I couldn't figure out</font> what's going on<font color="#E5E5E5"> so I did some more</font> reconnaissance couldn't find anything I was like we would get<font color="#E5E5E5"> this</font><font color="#CCCCCC"> I did some</font> reconnaissance on some IDs that I knew were<font color="#CCCCCC"> in that range before necessarily</font> <font color="#E5E5E5">mentioned five</font><font color="#CCCCCC"> I found this</font><font color="#E5E5E5"> box that's</font> floating<font color="#E5E5E5"> around out there they</font><font color="#CCCCCC"> set his</font> own<font color="#E5E5E5"> EBR box that they totally</font><font color="#CCCCCC"> forgot</font> <font color="#CCCCCC">about</font><font color="#E5E5E5"> right</font><font color="#CCCCCC"> so I</font><font color="#E5E5E5"> think I am but okay</font> well let me just<font color="#CCCCCC"> kind of exploit that to</font> autonomy so I ran<font color="#E5E5E5"> a semi so</font><font color="#CCCCCC"> 806 of them</font> found out that the domain<font color="#E5E5E5"> administrator</font> <font color="#E5E5E5">had logged into it recently right and</font> for whatever reason<font color="#E5E5E5"> they're using sugar</font> credentials so I got those credentials and pass along<font color="#E5E5E5"> with Craig</font><font color="#CCCCCC"> mappings egg</font> <font color="#CCCCCC">dump the domain controller</font><font color="#E5E5E5"> all their</font> passwords<font color="#CCCCCC"> it's great uh minutes alright</font> <font color="#CCCCCC">so run your tag let's assume that we got</font> some hatches<font color="#CCCCCC"> let me need to load up some</font> <font color="#CCCCCC">of my crack</font><font color="#E5E5E5"> map you know</font> gives you holistic commands here<font color="#E5E5E5"> once</font> you've got<font color="#E5E5E5"> some patches you can pass it</font> with crack map<font color="#E5E5E5"> fired off check the</font> <font color="#CCCCCC">domain controller - man right so this is</font> <font color="#CCCCCC">standard</font><font color="#E5E5E5"> attack if you wanted to do</font> something<font color="#E5E5E5"> like a fishing server you can</font> <font color="#E5E5E5">load up something like</font><font color="#CCCCCC"> go fish right</font> it's free it's easy to download<font color="#CCCCCC"> once you</font> download and install it <font color="#CCCCCC">here's your fishing server</font><font color="#E5E5E5"> right it set</font> it up add your users<font color="#E5E5E5"> make a campaign all</font> this within your VM right<font color="#E5E5E5"> we</font><font color="#CCCCCC"> point it</font><font color="#E5E5E5"> at</font> your<font color="#CCCCCC"> morning</font><font color="#E5E5E5"> catch fishing server with</font> <font color="#CCCCCC">boy genious you're</font><font color="#E5E5E5"> going there let's</font> <font color="#E5E5E5">start fishing those guys and you can</font> <font color="#CCCCCC">look and</font><font color="#E5E5E5"> see if it's</font><font color="#CCCCCC"> actually working</font> <font color="#E5E5E5">are they getting them click them and see</font> what happens it's great<font color="#CCCCCC"> right</font><font color="#E5E5E5"> and then if you want</font><font color="#CCCCCC"> to</font> <font color="#E5E5E5">even attack your exploitable box so</font> we're going<font color="#E5E5E5"> to see what's open on that</font> again<font color="#CCCCCC"> good reconnaissance right let me</font> see it's got a whole<font color="#E5E5E5"> bunch of stuff open</font> it's got tell mine<font color="#CCCCCC"> SSA</font><font color="#E5E5E5"> just to be show</font> or<font color="#CCCCCC"> version</font><font color="#E5E5E5"> it's got all sorts</font><font color="#CCCCCC"> of stuff</font> <font color="#CCCCCC">right</font><font color="#E5E5E5"> we go okay well what can</font><font color="#CCCCCC"> I do with</font> all that<font color="#E5E5E5"> so as I said the kind folks</font> wrote up a good little how to find it either<font color="#CCCCCC"> on</font><font color="#E5E5E5"> their website</font><font color="#CCCCCC"> about exploiting</font> <font color="#E5E5E5">exploitable so it's got you know here's</font> how to log in right there's couple services<font color="#E5E5E5"> are fun running on it which</font> <font color="#E5E5E5">command to run find all those some UNIX</font> basics<font color="#E5E5E5"> so you can like our</font><font color="#CCCCCC"> login with</font> them get a root right<font color="#CCCCCC"> and it's all</font> written<font color="#E5E5E5"> up to kind of follow step by</font> step so<font color="#E5E5E5"> you can</font><font color="#CCCCCC"> practice with that</font> this walls morning<font color="#CCCCCC"> Fitch</font><font color="#E5E5E5"> guys they got a</font> good little setup for<font color="#E5E5E5"> messing with</font> morning fish there so yeah several bad puns later<font color="#CCCCCC"> you know okay</font> yeah so you catch a lab you figured it out<font color="#CCCCCC"> get everything worked in</font><font color="#E5E5E5"> you're</font> practicing<font color="#E5E5E5"> if you want to do some</font> <font color="#E5E5E5">additional training there's a bunch of</font> free tools<font color="#E5E5E5"> out there as well</font><font color="#CCCCCC"> again the</font> guys over defensive security did a kind <font color="#E5E5E5">of a course online that's free call them</font> <font color="#CCCCCC">and split Unleashed</font><font color="#E5E5E5"> that will get you</font> <font color="#CCCCCC">through everything you</font><font color="#E5E5E5"> want to</font><font color="#CCCCCC"> know</font> <font color="#E5E5E5">about running</font><font color="#CCCCCC"> Metasploit how to do it</font> some cool<font color="#E5E5E5"> secrets back ends and bangs</font> and they didn't<font color="#CCCCCC"> kind of give you a</font> <font color="#E5E5E5">little bit of help in building your</font><font color="#CCCCCC"> own</font> line <font color="#CCCCCC">hack the</font><font color="#E5E5E5"> site</font><font color="#CCCCCC"> it's still relevant it's</font> kind of an older site but it's good for training<font color="#CCCCCC"> it's good for web app it's good</font> for you know just<font color="#E5E5E5"> general hacking stuff</font> <font color="#CCCCCC">there's also plenty of YouTube videos</font> all<font color="#CCCCCC"> of the Derby con Def</font><font color="#E5E5E5"> Con b-sides is</font> a all these organizations have their videos out there<font color="#CCCCCC"> right go out and find</font> <font color="#E5E5E5">them go out and see</font><font color="#CCCCCC"> that talk</font><font color="#E5E5E5"> build out</font> that's all of that guy just<font color="#E5E5E5"> released in</font> your<font color="#E5E5E5"> labs right now there's also the</font> sand cyber<font color="#CCCCCC"> aces the info seconds to</font> their cyber<font color="#E5E5E5"> area there's a whole bunch</font> of other you know<font color="#E5E5E5"> various training and</font> things<font color="#E5E5E5"> that you can</font><font color="#CCCCCC"> find online</font> <font color="#E5E5E5">let's go forth and conquer so quick</font> story<font color="#CCCCCC"> for you guys</font><font color="#E5E5E5"> right back</font><font color="#CCCCCC"> in 1995</font> movie hackers was released right<font color="#E5E5E5"> great</font> living<font color="#CCCCCC"> I love it still to this day I saw</font> that as<font color="#E5E5E5"> a young tyke and I wanted to be</font> those guys<font color="#CCCCCC"> man I went to be</font><font color="#E5E5E5"> zero cool I</font> wanted<font color="#E5E5E5"> to be lured by</font><font color="#CCCCCC"> Tom's like man</font> what do I need<font color="#E5E5E5"> to do how do I get there</font> <font color="#E5E5E5">right and now here I am speaking to</font> <font color="#E5E5E5">every Tom so that's that's pretty cool</font> um you can't get where you want to go if you<font color="#E5E5E5"> don't have the drive</font><font color="#CCCCCC"> and motivation</font> to<font color="#E5E5E5"> get there right</font><font color="#CCCCCC"> you got to put in</font> <font color="#CCCCCC">some work</font><font color="#E5E5E5"> you've got to have the drive</font> <font color="#CCCCCC">you have the motivation you also need to</font> <font color="#CCCCCC">find a mental work okay a lot</font><font color="#E5E5E5"> of this</font> stuff<font color="#CCCCCC"> you</font><font color="#E5E5E5"> can learn on</font><font color="#CCCCCC"> your own but</font> mentoring is so ridiculously important <font color="#E5E5E5">wasn't</font><font color="#CCCCCC"> they already</font> <font color="#E5E5E5">a couple things several things but a</font> health place<font color="#E5E5E5"> is stuck out where you</font> train like<font color="#CCCCCC"> you fight and you know</font><font color="#E5E5E5"> the</font> person on the job above you<font color="#E5E5E5"> in person</font> the job below you so if you're a sysadmin<font color="#CCCCCC"> and there's the</font><font color="#E5E5E5"> sock team learn</font> those jobs<font color="#CCCCCC"> if</font><font color="#E5E5E5"> your network guy and</font> there's a sis Evan<font color="#E5E5E5"> learn his job figure</font> it<font color="#E5E5E5"> out</font> build it out in the lab right<font color="#E5E5E5"> you're</font> <font color="#E5E5E5">only going to get better</font><font color="#CCCCCC"> by</font><font color="#E5E5E5"> improving</font> <font color="#E5E5E5">your</font><font color="#CCCCCC"> skillset</font><font color="#E5E5E5"> learning and dropping and</font> part of that is<font color="#E5E5E5"> through mentoring right</font> <font color="#E5E5E5">if you have an advanced skill set</font><font color="#CCCCCC"> so</font> you're really really<font color="#E5E5E5"> good</font><font color="#CCCCCC"> a</font><font color="#E5E5E5"> web app</font> testing and you see some guys that<font color="#CCCCCC"> are</font> go help<font color="#CCCCCC"> them out</font> offer<font color="#CCCCCC"> to hey man let</font><font color="#E5E5E5"> me show you some</font> cool<font color="#CCCCCC"> things</font><font color="#E5E5E5"> about web app testing</font><font color="#CCCCCC"> if</font> you're a new guy or gal<font color="#CCCCCC"> if you're new</font> person<font color="#CCCCCC"> to security go out and find</font> <font color="#CCCCCC">somebody that's really really good at</font> <font color="#E5E5E5">something that you were to</font><font color="#CCCCCC"> learn</font><font color="#E5E5E5"> reach</font> out say hey<font color="#E5E5E5"> I wanted to do what you do</font> can<font color="#E5E5E5"> you show me I've been paying my</font> <font color="#E5E5E5">lunch whatever it takes right we can't</font> get better<font color="#E5E5E5"> by ourselves</font><font color="#CCCCCC"> as well</font><font color="#E5E5E5"> as we</font> can getting better with each other<font color="#E5E5E5"> right</font> <font color="#E5E5E5">that's why we come to places like their</font> house<font color="#CCCCCC"> 1 counting</font><font color="#E5E5E5"> things like that kawaii</font> we come to<font color="#CCCCCC"> always</font><font color="#E5E5E5"> talks because we want</font> <font color="#CCCCCC">to get better the bad guys are out</font><font color="#E5E5E5"> there</font> and they're getting better<font color="#CCCCCC"> I promise you</font> that they're trying<font color="#E5E5E5"> to</font><font color="#CCCCCC"> kill your</font> customers networks<font color="#CCCCCC"> they're trying to</font> steal sensitive<font color="#CCCCCC"> data</font><font color="#E5E5E5"> they're trying to</font> destroy<font color="#E5E5E5"> whatever they can</font><font color="#CCCCCC"> right</font><font color="#E5E5E5"> and</font> they're<font color="#E5E5E5"> getting better and they're</font> training<font color="#E5E5E5"> all the time in order for</font><font color="#CCCCCC"> us to</font> better<font color="#E5E5E5"> protect our customers in order</font> <font color="#E5E5E5">for</font><font color="#CCCCCC"> us</font><font color="#E5E5E5"> to better serve</font><font color="#CCCCCC"> ourselves in</font> <font color="#E5E5E5">order for</font><font color="#CCCCCC"> us to better serve our</font> <font color="#E5E5E5">customers and our companies we have to</font> get better we have<font color="#E5E5E5"> to help each other</font> <font color="#E5E5E5">get better right so find a mentor or be</font> a mentor don't keep your<font color="#CCCCCC"> skillsets to yourself</font> <font color="#CCCCCC">too</font><font color="#E5E5E5"> often and too</font><font color="#CCCCCC"> many companies</font><font color="#E5E5E5"> I've</font> gone<font color="#E5E5E5"> to</font><font color="#CCCCCC"> places where man we can't do a B</font> <font color="#CCCCCC">and C because</font><font color="#E5E5E5"> Jeff that was there for 30</font> years never<font color="#E5E5E5"> taught</font><font color="#CCCCCC"> us right</font><font color="#E5E5E5"> and we don't</font> know how it<font color="#E5E5E5"> works that's unacceptable</font> <font color="#CCCCCC">that is that is beyond unacceptable</font><font color="#E5E5E5"> if</font> you're<font color="#E5E5E5"> getting ready to go out throw</font> <font color="#E5E5E5">your skill set down sit down</font><font color="#CCCCCC"> with</font> somebody<font color="#E5E5E5"> for a few weeks let me teach</font> <font color="#CCCCCC">you everything I do let me make you the</font> <font color="#CCCCCC">subject-matter</font><font color="#E5E5E5"> expert right if you're</font> coming in go find that<font color="#E5E5E5"> guy</font><font color="#CCCCCC"> that's been</font> there for<font color="#E5E5E5"> 30 years ago</font><font color="#CCCCCC"> you get you by</font> <font color="#E5E5E5">itself go find and talk to him say hey</font> man I want<font color="#CCCCCC"> to know</font> everything you do<font color="#CCCCCC"> teach me you make me</font> you<font color="#CCCCCC"> right just</font><font color="#E5E5E5"> go out fundamental</font> <font color="#CCCCCC">recommended reading</font><font color="#E5E5E5"> again like I said</font> <font color="#E5E5E5">there</font><font color="#CCCCCC"> are some</font><font color="#E5E5E5"> great books out there</font><font color="#CCCCCC"> I</font> have a massive<font color="#E5E5E5"> library</font><font color="#CCCCCC"> and this is just</font> <font color="#E5E5E5">a small sampling the hatch playbook</font><font color="#CCCCCC"> and</font> head<font color="#E5E5E5"> flavo</font><font color="#CCCCCC"> - absolutely invaluable I</font> love those<font color="#E5E5E5"> books</font><font color="#CCCCCC"> it's in a little bit</font><font color="#E5E5E5"> of</font> lab building<font color="#E5E5E5"> but he also gets in a lot</font> of<font color="#E5E5E5"> tool development</font><font color="#CCCCCC"> how to hack you know</font> it's it's fantastic Georgia Wyman wrote a book about <font color="#E5E5E5">penetration testing kind of a</font><font color="#CCCCCC"> beginner's</font> manual<font color="#E5E5E5"> as it were that's also a</font><font color="#CCCCCC"> great</font> book<font color="#CCCCCC"> Dave Kennedy wrote</font><font color="#E5E5E5"> Metasploit you</font> know kind of<font color="#CCCCCC"> immense boy</font><font color="#E5E5E5"> Bible so I</font> think this<font color="#E5E5E5"> large</font><font color="#CCCCCC"> breast gas company you</font> don't<font color="#E5E5E5"> get that there's also hacking</font> there of exploitation <font color="#E5E5E5">Sanders puts out a whole bunch</font><font color="#CCCCCC"> of books</font> <font color="#CCCCCC">blowing this professional penetration</font> testing that goes<font color="#E5E5E5"> more</font><font color="#CCCCCC"> in-depth of</font> building<font color="#E5E5E5"> the lab a little bit</font> <font color="#CCCCCC">differently but</font><font color="#E5E5E5"> also still works if</font> you're looking at<font color="#E5E5E5"> doing some more social</font> engineering<font color="#E5E5E5"> gigs more social engineering</font> gauges<font color="#CCCCCC"> Kevin bending</font><font color="#E5E5E5"> it's kind of the</font> Godfather of<font color="#E5E5E5"> all that he wrote a bunch</font> of books<font color="#E5E5E5"> art of intrusion deception and</font> gifts<font color="#CCCCCC"> on</font><font color="#E5E5E5"> the wires</font> those are great<font color="#E5E5E5"> as reference material</font><font color="#CCCCCC"> to</font> kind of go<font color="#CCCCCC"> back and go okay well that's</font> a different<font color="#E5E5E5"> way to</font><font color="#CCCCCC"> think about</font><font color="#E5E5E5"> things if</font> I'm<font color="#E5E5E5"> trying to pretext a customer if I'm</font> <font color="#E5E5E5">trying to you know work my way into the</font> customer<font color="#CCCCCC"> side you know if I want to be</font> the you<font color="#CCCCCC"> know that guy</font><font color="#E5E5E5"> we read some books</font> <font color="#E5E5E5">we</font><font color="#CCCCCC"> read about what other</font><font color="#E5E5E5"> guys have done</font> I'm going to be<font color="#CCCCCC"> in the next</font><font color="#E5E5E5"> adjacent</font> Street revalidation<font color="#CCCCCC"> Street is done watch</font> them<font color="#CCCCCC"> - hiss talk</font><font color="#E5E5E5"> right I mean if you</font> want<font color="#E5E5E5"> to get</font><font color="#CCCCCC"> into</font><font color="#E5E5E5"> coding</font><font color="#CCCCCC"> and development</font> <font color="#E5E5E5">you'll get</font><font color="#CCCCCC"> blackhat Python</font><font color="#E5E5E5"> I can't say</font> enough<font color="#CCCCCC"> good things about this book</font><font color="#E5E5E5"> it's</font> <font color="#E5E5E5">fantastic yes these</font><font color="#CCCCCC"> are available at the</font> <font color="#CCCCCC">hydrophone correct yes most of these are</font> <font color="#E5E5E5">no starch press</font><font color="#CCCCCC"> blurbs</font> <font color="#CCCCCC">some of them are not some other</font> publishers<font color="#E5E5E5"> I think like the other</font> infusion stuff and then<font color="#CCCCCC"> there syngress</font> <font color="#E5E5E5">you know I don't know if</font><font color="#CCCCCC"> they're</font> <font color="#E5E5E5">partners they're like competing or</font> whatever but you<font color="#CCCCCC"> know singers make some</font> great books - yeah I like<font color="#CCCCCC"> books I</font><font color="#E5E5E5"> like</font> everybody<font color="#E5E5E5"> that's</font><font color="#CCCCCC"> all good so with</font><font color="#E5E5E5"> that</font> <font color="#E5E5E5">ladies and gentlemen</font><font color="#CCCCCC"> oh man thank you</font> <font color="#E5E5E5">for</font><font color="#CCCCCC"> coming I appreciate you guys</font><font color="#E5E5E5"> coming</font> I am<font color="#CCCCCC"> that fire dog on Twitter and</font> there's my email address appreciate<font color="#CCCCCC"> it</font> you guys have a risk wonderful<font color="#E5E5E5"> Russia</font> <font color="#CCCCCC">terrific on</font>
Channel: Adrian Crenshaw
Views: 47,844
Rating: 4.9197168 out of 5
Keywords: hacking, security, infosec, irongeek, louisville, derbycon
Id: b8_sOoQtALs
Channel Id: undefined
Length: 43min 43sec (2623 seconds)
Published: Sun Sep 25 2016
Reddit Comments
Related Videos
Please note that this website is currently a work in progress! Lots of interesting data and statistics to come.