Forums: Own Vuln Test Box - Forums

Jump to content

Page 1 of 1
  • You cannot start a new topic
  • You cannot reply to this topic

Own Vuln Test Box

#1 User is offline   r00t 

  • Private First Class
  • Icon
  • Group: Members
  • Posts: 85
  • Joined: 17-June 03

Posted 22 July 2005 - 08:23 PM

Hi

Im not por @ security but on my way. still learning. ( These Forum helps alot )

So my question once more.
All over the world exploits gets released. I wanne test them an look how they work. But not at external victims ! I want maybe set up a box here @ home to test all these stuff.

Now have anybody expiriences in thtese way. I have open questions like. Where to get exploits ? Where to get the vuln software ( maybe dumb question sry).

Biggest problem is how to go on with unix based exploits? Im Unix (Linux) beginner installed soon.

Im wanna change job and go to it - security. School way is going on but ist more for IT generally not security specific and theorie isn't like when you do it in real.

THX
0

#2 User is offline   beardednose 

  • Forum Moderator
  • Icon
  • Group: First Lieutenant
  • Posts: 1,834
  • Joined: 23-May 03

Posted 22 July 2005 - 09:16 PM

google
Don't post just a THANKS! Here's why...

Forum Rules you need to know...RuLeS
0

#3 User is offline   belgther 

  • Master Sergeant
  • Icon
  • Group: Specialist
  • Posts: 650
  • Joined: 06-October 04

Posted 23 July 2005 - 02:55 AM

for testing ddos exploits, don't use your own box, use vmware or virtual pc. They are both commercial for windows, but AFAIK, vmware is free for linux users.
Same can be used for UNIX based exploits, also I mean vmware. If you don't want to use vmware for it, use live CDs like knoppix or auditor. They have everything you need to compile, and allow you to test. Auditor also includes some server apps to test exploits on it (Apache and some others).
"The wisest one is the one who knows himself/herself." Quote of the life
belgther... aka... belgther
0

#4 User is offline   click 

  • Private First Class
  • Icon
  • Group: Members
  • Posts: 76
  • Joined: 15-March 04

Posted 23 July 2005 - 08:47 AM

Good advice all around!

I personally love using VMWare: can run linux in one window to exploit the windows env. running in the second window. perfection!

Additionally, these forums contain a lot of exploits that can be found through a little bit of simple searching. But, here are a few places to go that I always found very valuable:

h**p://www.securitytracker.com/ -- very basic site, catalogues all vuln, is very up-to-date, and pulls data from numerous sources.
h**p://www.metasploit.com/ -- tried, tested, and true exploit testing/developing environment. Extremely simple to use, and a great tool to learn the inner workings of exploits

Additionally, if you really want to learn how buffer overflows work, you might want to brush up on ASM and play around with live-debuggers.

Good luck!
0

#5 User is offline   genxweb 

  • Corporal
  • Icon
  • Group: Members
  • Posts: 189
  • Joined: 14-December 03

Posted 26 July 2005 - 07:35 AM

a simple google for index of exploits or a varient of that will trigger many finds for you.
0

#6 User is offline   easternerd 

  • Sergeant
  • Icon
  • Group: Members
  • Posts: 226
  • Joined: 23-December 03

Posted 27 July 2005 - 07:37 AM

I would suggest the best way to set up a test environment is VMWare method,
But if you want a really ruggard testing and are looking forward to check the exploit offsets in memory and such you would go for a really good Internet In a Box Environment.

Ist Method:

1. The Best bet would be to set up an isolated network with all the required networking services like DNS,DHCP,WINS,SMB,NFS on a couple of server of *Nix and Win environment and their respective services.

2. Setup each of those systems with Integrity Checking tools like Tripwire to check for modified files and folders and service entries.

3. Setup a system with IDS and Sniffer to monitor all the traffic and capture it and send the logs to another firewall protected sytem.

4. Fire Live exploits on the system ( protect this system with a firewall, logs can also be stored in this system )

IInd Method

1. Setup an environment with exactly same settings.. and use tools like Metasploit etc.. to exploit.

0

#7 User is offline   click 

  • Private First Class
  • Icon
  • Group: Members
  • Posts: 76
  • Joined: 15-March 04

Posted 27 July 2005 - 01:42 PM

easternerd, on Jul 27 2005, 03:37 PM, said:

1. The Best bet would be to set up an isolated network with all the required networking services like DNS,DHCP,WINS,SMB,NFS on a couple of server of *Nix and Win environment and their respective services.


*drool* It would be so hot to have a live test lab at home with real equipment, let alone dedicated access to a real test lab of any type!

The last company I worked for had a nice setup: it even an emulated "Internet" connecting multiple intranets. Problem was everyone would be trying to configure it "their way" all the time :rolleyes:
0

#8 User is offline   Buluemoon 

  • Private First Class
  • Icon
  • Group: Members
  • Posts: 116
  • Joined: 18-December 03

Posted 27 July 2005 - 11:21 PM

easternerd, I am glad I happened upon this thread, I just got a hold of a couple older boxes and was going to trash them but after reading your response to r00t's question, I can see a very good use for these old computers. Would you mind if I contacted you about particulars of setting these up if I run into any snags?
0

#9 User is offline   easternerd 

  • Sergeant
  • Icon
  • Group: Members
  • Posts: 226
  • Joined: 23-December 03

Posted 29 July 2005 - 01:42 AM

Buluemoon, on Jul 28 2005, 07:21 AM, said:

easternerd, I am glad I happened upon this thread,  I just got a hold of a couple older boxes and was going to trash them but after reading your response to r00t's question, I can see a very good use for these old computers. Would you mind if I contacted you about particulars of setting these up if I run into any snags?


Sure , I do this all the time,Ill sure help you set it up, add me to ICQ
0

#10 User is offline   hks3207 

  • Private First Class
  • Icon
  • Group: Members
  • Posts: 58
  • Joined: 21-October 05

Posted 23 October 2005 - 08:43 AM

Well actually in my home network i got 2 windows computers and 3 linux computers to test the exploits just like that.... so yeah i have some experience on that because i like my boxes to be the more stable than it could be so i play with them :)

PS. Contact me if you need some help with it...
0

Page 1 of 1
  • You cannot start a new topic
  • You cannot reply to this topic

1 User(s) are reading this topic
0 members, 1 guests, 0 anonymous users

  • Share



Our Sponsors:


SwiftLayer Affiliate Web Hosting