<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>danielmiessler.com &#187; Pentesting</title>
	<atom:link href="http://danielmiessler.com/categories/pentesting/feed" rel="self" type="application/rss+xml" />
	<link>http://danielmiessler.com</link>
	<description>grep understanding</description>
	<lastBuildDate>Sun, 12 Feb 2012 09:25:59 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
		<item>
		<title>New Pentesting TV Show Coming Out</title>
		<link>http://danielmiessler.com/blog/new-pentesting-tv-show-coming-out</link>
		<comments>http://danielmiessler.com/blog/new-pentesting-tv-show-coming-out#comments</comments>
		<pubDate>Fri, 21 Dec 2007 18:00:13 +0000</pubDate>
		<dc:creator>Daniel Miessler</dc:creator>
				<category><![CDATA[Hacking]]></category>
		<category><![CDATA[Pentesting]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[]]></category>

		<guid isPermaLink="false">http://dmiessler.com/blogarchive/new-pentesting-tv-show-coming-out</guid>
		<description><![CDATA[This vérité action series follows Tiger Team – a group of elite professionals hired to infiltrate major business and corporate interests with the objective of exposing weaknesses in the world’s most sophisticated security systems, defeating criminals at their own game. Tiger Team is comprised of Security Audit Specialists Chris Nickerson, Luke McOmie and Ryan Jones [...]]]></description>
			<content:encoded><![CDATA[<blockquote>This vérité action series follows Tiger Team – a group of elite professionals hired to infiltrate major business and corporate interests with the objective of exposing weaknesses in the world’s most sophisticated security systems, defeating criminals at their own game. 
    
<br /><br />Tiger Team is comprised of Security Audit Specialists Chris Nickerson, Luke McOmie and Ryan Jones who employ a variety of covert techniques – electronic, psychological and tactical &#8211; as they take on a new assignment in each episode.</blockquote>

<p>The show will air on <a href="http://www.courttv.com/" title="Primetime Programming Information on Courttv.com">CourtTV</a> Tuesday, December 25 at 11 and 11:30pm E/P. Here&#8217;s a sample:</p>

<p><object width="425" height="373"><param name="movie" value="http://www.youtube.com/v/4Be-ZzcXVLw&#038;rel=1&#038;border=1"></param><param name="wmode" value="transparent"></param><embed src="http://www.youtube.com/v/4Be-ZzcXVLw&#038;rel=1&#038;border=1" type="application/x-shockwave-flash" wmode="transparent" width="425" height="373"></embed></object></p>
<div id="crp_related"><h3>Related Content</h3><ul><li><a href="http://danielmiessler.com/blog/phun-the-most-amazing-science-toy-ive-ever-seen" rel="bookmark" class="crp_title">Phun: The Most Amazing Science Toy I&#8217;ve Ever Seen</a></li><li><a href="http://danielmiessler.com/blog/ron-paul-schools-foxtard-who-asks-him-if-hes-electable" rel="bookmark" class="crp_title">Ron Paul Schools Foxtard Who Asks Him If He&#8217;s Electable</a></li><li><a href="http://danielmiessler.com/blog/hilary-thinks-she-and-mccain-are-excellent-candidates-obama-not-so-much" rel="bookmark" class="crp_title">Hilary Thinks She and McCain Are Excellent Candidates. Obama? Not So Much</a></li><li><a href="http://danielmiessler.com/blog/late-night-banter-with-christopher-hitchens-and-bill-maher" rel="bookmark" class="crp_title">Late-Night Banter With Christopher Hitchens and Bill Maher</a></li><li><a href="http://danielmiessler.com/blog/young-republicans-making-fun-of-themselves-without-their-knowledge" rel="bookmark" class="crp_title">Young Republicans Making Fun of Themselves Without Their Knowledge</a></li></ul></div>]]></content:encoded>
			<wfw:commentRss>http://danielmiessler.com/blog/new-pentesting-tv-show-coming-out/feed</wfw:commentRss>
		<slash:comments>8</slash:comments>
		</item>
		<item>
		<title>You Already Have Admin, Dumbass</title>
		<link>http://danielmiessler.com/blog/you-already-have-admin-dumbass</link>
		<comments>http://danielmiessler.com/blog/you-already-have-admin-dumbass#comments</comments>
		<pubDate>Sat, 29 Sep 2007 02:10:13 +0000</pubDate>
		<dc:creator>Daniel Miessler</dc:creator>
				<category><![CDATA[Information Security]]></category>
		<category><![CDATA[Pentesting]]></category>
		<category><![CDATA[Vulnerability Assessment]]></category>

		<guid isPermaLink="false">http://dmiessler.com/blogarchive/you-already-have-admin-dumbass</guid>
		<description><![CDATA[There&#8217;s an old saying in Tennessee — I know it&#8217;s in Texas, probably in Tennessee — that says, fool me once, shame on — shame on you. Fool me — you can&#8217;t get fooled again.&#8221; —President George W. Bush, Nashville, Tenn., Sept. 17, 2002 Nothing is more lame than trying to pull Windows hashes off [...]]]></description>
			<content:encoded><![CDATA[<blockquote>There&#8217;s an old saying in Tennessee — I know it&#8217;s in Texas, probably in Tennessee — that says, fool me once, shame on — shame on you. Fool me — you can&#8217;t get fooled again.&#8221; —President George W. Bush, Nashville, Tenn., Sept. 17, 2002</blockquote>

<p>Nothing is more lame than trying to pull Windows hashes off a system in order to break the administrator account&#8217;s password when you are <strong>on</strong> the system because the admin password was blank.</p>

<p>Well, that&#8217;s actually not true. There&#8217;s <em>one</em> thing that&#8217;s more lame, and that&#8217;s doing it more than once.</p>

<blockquote>Here&#8217;s my list of systems that I have admin access to, let me pull the hashes from this one that was wide open&#8230;la la la&#8230;pullng them&#8230;.breaking them&#8230;admin password? Blank! 

Blank? Well what the hell does that get me? Ah, shit, I did it again&#8230;</blockquote>

<p>Retardo the Destructor.</p>
<div id="crp_related"><h3>Related Content</h3><ul><li><a href="http://danielmiessler.com/blog/new-os-x-trojan-in-the-wild" rel="bookmark" class="crp_title">New OS X &#8220;Trojan&#8221; In the Wild</a></li><li><a href="http://danielmiessler.com/blog/lame-online-password-logic" rel="bookmark" class="crp_title">Lame Online Password Logic</a></li><li><a href="http://danielmiessler.com/blog/penetration-testing-is-easy-too-easy" rel="bookmark" class="crp_title">Penetration Testing is Easy &#8212; Too Easy</a></li><li><a href="http://danielmiessler.com/blog/vista-security-a-joke-executables-install-as-administrator-because-its-more-convenient" rel="bookmark" class="crp_title">Vista Security A Joke? : Executables Install As Administrator Because It&#8217;s More Convenient</a></li><li><a href="http://danielmiessler.com/blog/steve-blank-says-microsoft-is-doomed-in-six-quarters" rel="bookmark" class="crp_title">Steve Blank Says Microsoft Is Doomed in Six Quarters</a></li></ul></div>]]></content:encoded>
			<wfw:commentRss>http://danielmiessler.com/blog/you-already-have-admin-dumbass/feed</wfw:commentRss>
		<slash:comments>6</slash:comments>
		</item>
		<item>
		<title>Pentesting: Use Firefox Quicksearches To Lookup Bugtraq IDs From The Address Bar</title>
		<link>http://danielmiessler.com/blog/pentesting-use-firefox-quicksearches-to-lookup-bugtraq-ids-from-the-address-bar</link>
		<comments>http://danielmiessler.com/blog/pentesting-use-firefox-quicksearches-to-lookup-bugtraq-ids-from-the-address-bar#comments</comments>
		<pubDate>Thu, 21 Sep 2006 18:48:17 +0000</pubDate>
		<dc:creator>Daniel Miessler</dc:creator>
				<category><![CDATA[Firefox]]></category>
		<category><![CDATA[Information Security]]></category>
		<category><![CDATA[Pentesting]]></category>
		<category><![CDATA[Productivity]]></category>

		<guid isPermaLink="false">http://dmiessler.com/archives/931</guid>
		<description><![CDATA[Just thought I&#8217;d pass on a little shortcut for looking up Bugtraq IDs: ** Firefox only Go to google.com and right click in the search field Select &#8220;Add a Keyword For This Search&#8230;&#8221; In the name field type, &#8220;Bugtraq Vulnerability Quicksearch&#8221; (or whatever) In the keyword field, enter &#8220;bid&#8221; or &#8220;vuln&#8221; &#8212; again, up to [...]]]></description>
			<content:encoded><![CDATA[<p>Just thought I&#8217;d pass on a little shortcut for looking up Bugtraq IDs:</p>

<p><small>** <a href="http://www.mozilla.com/products/firefox">Firefox</a> only</small></p>

<ol>
    <li>Go to google.com and right click in the search field</li>
    <li>Select &#8220;Add a Keyword For This Search&#8230;&#8221;</li>
    <li>In the name field type, &#8220;Bugtraq Vulnerability Quicksearch&#8221; (or whatever)</li>
    <li>In the keyword field, enter &#8220;bid&#8221; or &#8220;vuln&#8221; &#8212; again, up to you. This is your shortcut.</li>
    <li>Save the bookmark and then go to Bookmarks &#8211;> Organize Bookmarks and edit the properties of the bookmark you just made.</li>
    <li>In the properties field, replace what&#8217;s there with the following URL:

<code> </code><strong>http://search.securityfocus.com/swsearch?query=bid%20%s&#038;sbm=bid&#038;metaname
=alldoc&#038;sort=swishrank </strong>(all one line)</li>
    <li>Save your bookmark again and prepare to be impressed.</li>
</ol>

<p>Now, just go to your address bar (cmd/ctrl-L) and type <code>bid 1499</code> , like so:</p>

<p><img title="BID Qucksearch" alt="BID Qucksearch" src="http://dmiessler.com/images/bidqs.png" /></p>

<p>The results are beautiful:</p>

<p><img title="BID Quicksearch Results" alt="BID Quicksearch Results" src="http://dmiessler.com/images/bidqsr.png" /></p>
<div id="crp_related"><h3>Related Content</h3><ul><li><a href="http://danielmiessler.com/blog/how-to-search-your-site-using-google-from-firefoxs-address-bar-with-code" rel="bookmark" class="crp_title">How To Search Your Site Using Google From Firefox&#8217;s Address Bar (with code)</a></li><li><a href="http://danielmiessler.com/blog/the-power-of-firefox-quicksearches" rel="bookmark" class="crp_title">Productivity: The Power Of Firefox Quicksearches</a></li><li><a href="http://danielmiessler.com/blog/searching-your-google-bookmarks-from-firefoxs-url-field" rel="bookmark" class="crp_title">Searching Your Google Bookmarks From Firefox&#8217;s URL Field</a></li><li><a href="http://danielmiessler.com/blog/get-local-time-from-google" rel="bookmark" class="crp_title">Get Local Time From Google (+QuickSearch)</a></li><li><a href="http://danielmiessler.com/blog/firefox-quicksearches-delicious-godlike-powers" rel="bookmark" class="crp_title">Firefox Quicksearches + Delicious = Godlike Powers</a></li></ul></div>]]></content:encoded>
			<wfw:commentRss>http://danielmiessler.com/blog/pentesting-use-firefox-quicksearches-to-lookup-bugtraq-ids-from-the-address-bar/feed</wfw:commentRss>
		<slash:comments>6</slash:comments>
		</item>
	</channel>
</rss>

