<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>ethicalhack.org</title>
	<atom:link href="http://ethicalhack.org/hack_blog/?feed=rss2" rel="self" type="application/rss+xml" />
	<link>http://ethicalhack.org/hack_blog</link>
	<description>ethicalhack.org Weblog</description>
	<lastBuildDate>Tue, 12 Jan 2010 23:25:59 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.0.1</generator>
		<item>
		<title>Wireless Cracking Videos</title>
		<link>http://ethicalhack.org/hack_blog/?p=61</link>
		<comments>http://ethicalhack.org/hack_blog/?p=61#comments</comments>
		<pubDate>Tue, 12 Jan 2010 23:19:58 +0000</pubDate>
		<dc:creator>goatmaster</dc:creator>
				<category><![CDATA[Hacking]]></category>

		<guid isPermaLink="false">http://ethicalhack.org/hack_blog/?p=61</guid>
		<description><![CDATA[Here are a couple of videos I put together for my employer Assurance.com.au. The first one is cracking WEP using the AirCrack Suite on Linux. The second one is cracking WPA PSK using the AirCrack Suite on Linux. Thanks to Snare (Loukas) from Rex Banner for allowing me to use a couple of their tracks [...]]]></description>
			<content:encoded><![CDATA[<p>Here are a couple of videos I put together for my employer Assurance.com.au. The first one is cracking WEP using the AirCrack Suite on Linux.</p>
<p><object width="425" height="344"><param name="movie" value="http://www.youtube.com/v/TZX6Fsgj5dA&#038;hl=en_US&#038;fs=1&#038;"></param><param name="allowFullScreen" value="true"></param><param name="allowscriptaccess" value="always"></param><embed src="http://www.youtube.com/v/TZX6Fsgj5dA&#038;hl=en_US&#038;fs=1&#038;" type="application/x-shockwave-flash" allowscriptaccess="always" allowfullscreen="true" width="425" height="344"></embed></object></p>
<p>The second one is cracking WPA PSK using the AirCrack Suite on Linux.</p>
<p><object width="425" height="344"><param name="movie" value="http://www.youtube.com/v/ZeCVkWMUSzE&#038;hl=en_US&#038;fs=1&#038;"></param><param name="allowFullScreen" value="true"></param><param name="allowscriptaccess" value="always"></param><embed src="http://www.youtube.com/v/ZeCVkWMUSzE&#038;hl=en_US&#038;fs=1&#038;" type="application/x-shockwave-flash" allowscriptaccess="always" allowfullscreen="true" width="425" height="344"></embed></object></p>
<p>Thanks to Snare (Loukas) from Rex Banner for allowing me to use a couple of their tracks in the vidz.</p>
]]></content:encoded>
			<wfw:commentRss>http://ethicalhack.org/hack_blog/?feed=rss2&amp;p=61</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>wfuzz</title>
		<link>http://ethicalhack.org/hack_blog/?p=60</link>
		<comments>http://ethicalhack.org/hack_blog/?p=60#comments</comments>
		<pubDate>Thu, 12 Jun 2008 23:22:32 +0000</pubDate>
		<dc:creator>goatmaster</dc:creator>
				<category><![CDATA[Hacking]]></category>

		<guid isPermaLink="false">http://ethicalhack.org/hack_blog/?p=60</guid>
		<description><![CDATA[It&#8217;s been a while since I did some sharing, so here you go&#8230;I&#8217;ve started using this web application fuzzing tool recently called wfuzz: http://www.edge-security.com/wfuzz.php It is a cool application for fuzzing parameters in web applications, including login forms. An example of of wfuzz syntax attempting to brute force a web application login form (in this [...]]]></description>
			<content:encoded><![CDATA[<p>It&#8217;s been a while since I did some sharing, so here you go&#8230;I&#8217;ve started using this web application fuzzing tool recently called wfuzz:</p>
<p><a href="http://www.edge-security.com/wfuzz.php"></p>
<p>http://www.edge-security.com/wfuzz.php</a></p>
<p>It is a cool application for fuzzing parameters in web applications, including login forms. An example of of wfuzz syntax attempting to brute force a web application login form (in this case a Cisco VPN admin page (wishful thinking : P)):</p>
<p>wfuzz -c -z file -f /wordlists/big.txt &#8211;hc 404 &#8211;html -d &#8220;login=admin&#038;password=FUZZ&#038;ok=Login&#8221; https://10.10.10.10/admin.html 2 > cisco_vpn_admin.txt</p>
<p>You enter FUZZ in the parameter you wish to fuzz. Pretty simple once you get the hang of it&#8230;</p>
]]></content:encoded>
			<wfw:commentRss>http://ethicalhack.org/hack_blog/?feed=rss2&amp;p=60</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>ethicalhack.org &#8211; Site Stats</title>
		<link>http://ethicalhack.org/hack_blog/?p=59</link>
		<comments>http://ethicalhack.org/hack_blog/?p=59#comments</comments>
		<pubDate>Thu, 07 Feb 2008 05:50:55 +0000</pubDate>
		<dc:creator>goatmaster</dc:creator>
				<category><![CDATA[General Shite]]></category>

		<guid isPermaLink="false">http://ethicalhack.org/hack_blog/?p=59</guid>
		<description><![CDATA[It&#8217;s been a while since my last update, I don&#8217;t really have an excuse, but my current job is keeping very busy and I&#8217;m also studying for the CISSP exam. I just thought I would post a lame blog entry with some site stats for the past two years&#8230;So here goes: For the year of [...]]]></description>
			<content:encoded><![CDATA[<p>It&#8217;s been a while since my last update, I don&#8217;t really have an excuse, but my current job is keeping very busy and I&#8217;m also studying for the CISSP exam. I just thought I would post a lame blog entry with some site stats for the past two years&#8230;So here goes:</p>
<ul>
<p>For the year of 2006:</ul>
<ul>
<li>62,000 Unique Visitors</li>
<li>800,000 Hits</li>
<li>145 GB Bandwidth</li>
</ul>
<ul>
<p>For the year of 2007:</ul>
<ul>
<li>100,000 Unique Visitors</li>
<li>1,125,000 Hits</li>
<li>220 GB Bandwidth</li>
</ul>
<p>Thank you to all those who <a href="http://www.ethicalhack.org/about.php">donated via PayPal</a>. As you can see the site is quite bandwidth hungry, so even the small donations are greatly appreciated.</p>
<p>All the best for 2008!</p>
]]></content:encoded>
			<wfw:commentRss>http://ethicalhack.org/hack_blog/?feed=rss2&amp;p=59</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>It&#8217;s Movember!!!</title>
		<link>http://ethicalhack.org/hack_blog/?p=58</link>
		<comments>http://ethicalhack.org/hack_blog/?p=58#comments</comments>
		<pubDate>Thu, 01 Nov 2007 02:57:17 +0000</pubDate>
		<dc:creator>goatmaster</dc:creator>
				<category><![CDATA[General Shite]]></category>

		<guid isPermaLink="false">http://ethicalhack.org/hack_blog/?p=58</guid>
		<description><![CDATA[Movember is an annual, month-long November charity event involving the growing of moustaches. It is held primarily in Australia, New Zealand and is being launched this year in the United Kingdom, United States, Spain and Canada. I am taking part&#8230;]]></description>
			<content:encoded><![CDATA[<p>Movember is an annual, month-long November charity event involving the growing of moustaches. It is held primarily in Australia, New Zealand and is being launched this year in the United Kingdom, United States, Spain and Canada.</p>
<p>I am taking part&#8230;</p>
<p align="center">
<a href="http://www.movember.com/au/donate/donate-details.php?action=showrego&#038;rego=110008&#038;country=au"><img align=middle src="http://static-live.movember.com/assets/images/members/widgets/widget_black_final.png" alt="Movember - Sponsor Me" /></a></p>
]]></content:encoded>
			<wfw:commentRss>http://ethicalhack.org/hack_blog/?feed=rss2&amp;p=58</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Poor old Johny Howard got hacked&#8230;</title>
		<link>http://ethicalhack.org/hack_blog/?p=56</link>
		<comments>http://ethicalhack.org/hack_blog/?p=56#comments</comments>
		<pubDate>Wed, 10 Oct 2007 01:04:01 +0000</pubDate>
		<dc:creator>goatmaster</dc:creator>
				<category><![CDATA[Hacking]]></category>

		<guid isPermaLink="false">http://ethicalhack.org/hack_blog/?p=56</guid>
		<description><![CDATA[It looks like the Liberal Party&#8217;s official website has been hacked to make it look like Prime Minister John Howard enjoys &#8220;smoking the bone&#8221;. In the image below it reads, &#8220;The Liberal Party of Australia, John Howard Says &#8220;I like to suck dick!&#8221;. This has been achieved through the use of XSS. A spokesman for [...]]]></description>
			<content:encoded><![CDATA[<p>It looks like the Liberal Party&#8217;s official website has been hacked to make it look like Prime Minister John Howard enjoys &#8220;smoking the bone&#8221;. In the image below it reads, &#8220;The Liberal Party of Australia, John Howard Says &#8220;I like to suck dick!&#8221;. This has been achieved through the use of XSS.</p>
<p>A spokesman for the Liberal Party&#8217;s federal secretariat said that officials were investigating the matter.&#8221;It appears to be a hoax, but we&#8217;re checking it out,&#8221; the spokesman said.<br />
<center><br />
<img src="/pics/suckdick.jpg" alt="Suck Dick!" /></center><br />
Has the truth finally come out???  ; )</p>
]]></content:encoded>
			<wfw:commentRss>http://ethicalhack.org/hack_blog/?feed=rss2&amp;p=56</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Wanted: This man photographed sexually abusing children</title>
		<link>http://ethicalhack.org/hack_blog/?p=55</link>
		<comments>http://ethicalhack.org/hack_blog/?p=55#comments</comments>
		<pubDate>Wed, 10 Oct 2007 00:32:57 +0000</pubDate>
		<dc:creator>goatmaster</dc:creator>
				<category><![CDATA[General Shite]]></category>

		<guid isPermaLink="false">http://ethicalhack.org/hack_blog/?p=55</guid>
		<description><![CDATA[It&#8217;s been all over the news, but I guess it can&#8217;t hurt posting the article here too. INTERPOL is seeking the help of the public to try to identify the man in the photos below. He has appeared in photographs sexually abusing children in a series of images posted on the Internet. According to INTERPOL, [...]]]></description>
			<content:encoded><![CDATA[<p>It&#8217;s been all over the news, but I guess it can&#8217;t hurt posting the article here too. INTERPOL is seeking the help of the public to try to identify the man in the photos below. He has appeared in photographs sexually abusing children in a series of images posted on the Internet.</p>
<p>According to INTERPOL, the photos shown below are from a series of around 200 pictures involving 12 different young boys, believed to have been taken in Vietnam and Cambodia in 2002 or 2003.</p>
<p>These pictures have been produced by specialists from Germany’s federal police force, the Bundeskriminalamt, working from originals found on the Internet, which had been digitally altered to disguise the man’s face.</p>
<p>The images were recovered from pictures taken off the Internet in which the man&#8217;s face had been blurred using something like Photoshop&#8217;s Filter > Distort > Twirl tool.</p>
<div style="text-align: center"><img alt="Masked Scumbag" title="Masked Scumbag" src="/pics/2Gmask.jpg" /></div>
<div style="text-align: center"><img alt="Unmasked Scumbag" title="Unmasked Scumbag" src="/pics/2G.jpg" /></div>
<div style="text-align: center"><img alt="Unmasked Scumbag 2" title="Unmasked Scumbag 2" src="/pics/4G.jpg" /></div>
<p>If you know this piece of shit, you should contact your local police or INTERPOL’s Trafficking in Human Beings Unit via <a target="_blank" title="INTERPOL Email" href="http://www.interpol.com/public/mail/mail3.asp?id=vico">email</a>.</p>
]]></content:encoded>
			<wfw:commentRss>http://ethicalhack.org/hack_blog/?feed=rss2&amp;p=55</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Windows XP SP3 Build 3205 released to beta testers</title>
		<link>http://ethicalhack.org/hack_blog/?p=54</link>
		<comments>http://ethicalhack.org/hack_blog/?p=54#comments</comments>
		<pubDate>Mon, 08 Oct 2007 00:23:30 +0000</pubDate>
		<dc:creator>goatmaster</dc:creator>
				<category><![CDATA[Hacking]]></category>

		<guid isPermaLink="false">http://ethicalhack.org/hack_blog/?p=54</guid>
		<description><![CDATA[Microsoft has officially released a build of Windows XP SP3. It is reported to have 1073 patches/hotfixes and several new features. Windows XP SP3 does ship with a few new features, the majority of which have been backported from Windows Vista.]]></description>
			<content:encoded><![CDATA[<p>Microsoft has officially released a build of Windows XP SP3. It is reported to have <a target="_blank" href="http://neosmart.net/blog/2007/windows-xp-sp3-beta-build-3205-released-analysis-included/">1073 patches/hotfixes and several new features</a>.  Windows XP SP3 does ship with a few new features, the majority of which have been backported from Windows Vista.</p>
]]></content:encoded>
			<wfw:commentRss>http://ethicalhack.org/hack_blog/?feed=rss2&amp;p=54</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>GFI Endpoint Security</title>
		<link>http://ethicalhack.org/hack_blog/?p=52</link>
		<comments>http://ethicalhack.org/hack_blog/?p=52#comments</comments>
		<pubDate>Fri, 01 Jun 2007 08:10:31 +0000</pubDate>
		<dc:creator>goatmaster</dc:creator>
				<category><![CDATA[General Shite]]></category>

		<guid isPermaLink="false">http://ethicalhack.org/hack_blog/?p=52</guid>
		<description><![CDATA[We all know how much time and effort is invested into keeping an organisation&#8217;s network secure. Then someone brings a USB device into the organisation with a virus or some illegal software and it is the organisation that pays (and sometimes the end user ; ) ). GFI EndPointSecurity allows administrators to actively manage user [...]]]></description>
			<content:encoded><![CDATA[<p>We all know how much time and effort is invested into keeping an organisation&#8217;s network secure. Then someone brings a USB device into the organisation with a virus or some illegal software and it is the organisation that pays (and sometimes the end user ; ) ).</p>
<p><a target="_blank" title="GFI" href="http://www.gfi.com/endpointsecurity/">GFI EndPointSecurity</a> allows administrators to actively manage user access and log the activity of these portable USB devices. It&#8217;s well worth a look.</p>
]]></content:encoded>
			<wfw:commentRss>http://ethicalhack.org/hack_blog/?feed=rss2&amp;p=52</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>0day was the case that they gave me</title>
		<link>http://ethicalhack.org/hack_blog/?p=51</link>
		<comments>http://ethicalhack.org/hack_blog/?p=51#comments</comments>
		<pubDate>Sun, 11 Feb 2007 11:23:38 +0000</pubDate>
		<dc:creator>goatmaster</dc:creator>
				<category><![CDATA[Hacking]]></category>

		<guid isPermaLink="false">http://ethicalhack.org/hack_blog/?p=51</guid>
		<description><![CDATA[Oh dear! The Solaris 10/11 telnet daemon has been exploited. Kcope posted the exploit to Full-Discloser (local mirror) this morning, and the worst part about it is that it doesn&#8217;t require any skill. If you can execute a command on the command line, you can exploit this vulnerability, which also means that it can easily [...]]]></description>
			<content:encoded><![CDATA[<p>Oh dear! The Solaris 10/11 telnet daemon has been exploited. Kcope posted <a title="0day was the case" target="_blank" href="http://www.com-winner.com/0day_was_the_case_that_they_gave_me.pdf">the exploit</a> to <a title="Full Discloser" target="_blank" href="http://seclists.org/fulldisclosure/2007/Feb/0217.html">Full-Discloser</a> (<a title="0day was the case" target="_blank" href="http://ethicalhack.org/files/0day_was_the_case_that_they_gave_me.pdf">local mirror</a>) this morning, and the worst part about it is that it doesn&#8217;t require any skill. If you can execute a command on the command line, you can exploit this vulnerability, which also means that it can easily be scripted. All you need to do is pass a &#8216;-f<em>username</em>&#8216; as an argument to the –l option you get full access to the OS as the user specified except &#8216;root&#8217;. Here is a command line example:</p>
<p><em>telnet -l &#8220;-fbin&#8221; target_address</em></p>
<p>In my experience, I have seen the telnet daemon enabled on a lot of hosts that I have reviewed even if ssh is used.</p>
<p>I hear the sound of system administrators frantically disabling the telnet daemons throughout their Solaris environments. : )</p>
]]></content:encoded>
			<wfw:commentRss>http://ethicalhack.org/hack_blog/?feed=rss2&amp;p=51</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Apple Releases the iPhone</title>
		<link>http://ethicalhack.org/hack_blog/?p=50</link>
		<comments>http://ethicalhack.org/hack_blog/?p=50#comments</comments>
		<pubDate>Wed, 10 Jan 2007 00:27:28 +0000</pubDate>
		<dc:creator>goatmaster</dc:creator>
				<category><![CDATA[General Shite]]></category>
		<category><![CDATA[Mac OS X]]></category>

		<guid isPermaLink="false">http://ethicalhack.org/hack_blog/?p=50</guid>
		<description><![CDATA[At Macworld this year, Apple has released the iPhone. There has been a lot of hype around this release, but it seems that reality has out done the hype for a change. A couple of the highlights are: The device runs on OS X. No stylus is used. The iPhone is designed for the user [...]]]></description>
			<content:encoded><![CDATA[<p>At Macworld this year, Apple has released the iPhone. There has been a lot of hype around this release, but it seems that reality has out done the hype for a change.</p>
<div style="text-align: center"><img title="iPhone" alt="iPhone" src="http://ethicalhack.org/pics/iPhone.jpg" /></div>
<p>A couple of the highlights are:</p>
<ul>
<li>The device runs on OS X.</li>
<li>No stylus is used. The iPhone is designed for the user to use their finger as a pointer.</li>
<li>One button (The Home button) all the rest of the functions are controlled via the touch screen.</li>
<li>iPod built in.</li>
<li>Internet capable (with Safari Browser).</li>
<li>Last but not least, there is a phone in there somewhere too!</li>
</ul>
<p>Check out the full write up on <a target="_blank" title="ZDNet article on iPhone" href="http://blogs.zdnet.com/Burnette/?p=233">ZDNet</a>.<br />
As I thought, Apple has joined Google and Microsoft in the race for world domination&#8230;</p>
]]></content:encoded>
			<wfw:commentRss>http://ethicalhack.org/hack_blog/?feed=rss2&amp;p=50</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
