![]() |
|
Building my own pentest distro - Printable Version +- Sinisterly (https://sinister.li) +-- Forum: General (https://sinister.li/Forum-General) +--- Forum: The Lounge (https://sinister.li/Forum-The-Lounge) +--- Thread: Building my own pentest distro (/Thread-Building-my-own-pentest-distro) |
RE: Building my own pentest distro - RogueCoder - 05-31-2013 (05-31-2013, 09:09 PM)noize Wrote:(05-31-2013, 08:32 PM)shp0ngl3 Wrote:(05-31-2013, 08:01 PM)noize Wrote: I'd suggest for adding: Yeah really Burp I've used quite a bit, why wouldn't you add it? What tools would you remove that Burp (free version) can replace?I'll look into Fireforce. Lua is what awasome wm uses for configuration ![]() (05-31-2013, 09:20 PM)Linuxephus™ Wrote:(05-31-2013, 06:14 PM)shp0ngl3 Wrote: Yeah. They are good assets when performing penetration tests where a website is a part of the attack surface.. "pentesting plugins" might be more correct? :lol: ok. I'm still fairly new to all this hacking stuff started in january this year so I try to step a bit carefully still
RE: Building my own pentest distro - RogueCoder - 06-01-2013 @noize I tried hping and for some reason I get 100% packet loss, when I get 0% using regular ping.. RE: Building my own pentest distro - noize - 06-01-2013 (06-01-2013, 08:56 AM)shp0ngl3 Wrote: @noize I tried hping and for some reason I get 100% packet loss, when I get 0% using regular ping.. Well, a filtered port should report 100% packet loss. Might it be the case? I think of hping as a basic DoSer that I would give as default in my own pentesting distro (Backtrack's got hping too). Quote:Yeah really Lua is fucking cool. ![]() To be honest I'm not sure of what I would remove with the entry of Burp, I should think about that. However, mainly, I don't really like Burp. That's a lot of noize for what it can really do. That's also unpratical and not very useful, but that's just my point of view. Quote::lol: ok. I'm still fairly new to all this hacking stuff I'm new too. I started programming in January and hacking with ready-made software a few months ago (maybe February, March...), so that's no excuse.
RE: Building my own pentest distro - RogueCoder - 06-01-2013 (06-01-2013, 10:49 AM)noize Wrote:(06-01-2013, 08:56 AM)shp0ngl3 Wrote: @noize I tried hping and for some reason I get 100% packet loss, when I get 0% using regular ping.. I'm gonna tinker a bit more with it Might be just that I'm missing some stuff ![]() Quote:Quote:Yeah really I see I found Burp Suite really handy. I used that more than addons really. Guess it comes down to personal preference reallyQuote:Quote::lol: ok. I'm still fairly new to all this hacking stuff It wasn't meant as an excuse for not knowing about hping or SciTE Was a response to Linuxephus™ questioning the "firefox pentest tools" where I asked if "addons" was a more appropriate term to use
RE: Building my own pentest distro - noize - 06-01-2013 (06-01-2013, 03:31 PM)shp0ngl3 Wrote: It wasn't meant as an excuse for not knowing about hping or SciTE It wasn't meant as an offense. :angel: So, you're saying hping gives packet loss while port is not filtered? RE: Building my own pentest distro - RogueCoder - 06-01-2013 (06-01-2013, 03:56 PM)noize Wrote:(06-01-2013, 03:31 PM)shp0ngl3 Wrote: It wasn't meant as an excuse for not knowing about hping or SciTE Wasn't taken as an offense ![]() Shoot me if I'm far out on this :whistle: but when I do Code: hping -V --scan 80 oleaass.comRE: Building my own pentest distro - noize - 06-01-2013 (06-01-2013, 06:15 PM)shp0ngl3 Wrote: Wasn't taken as an offense How about "hping oleaass.com -p 80 -V" ? P.S: the above should work with hping2, think should work for hping too. RE: Building my own pentest distro - RogueCoder - 06-01-2013 (06-01-2013, 10:19 PM)noize Wrote:(06-01-2013, 06:15 PM)shp0ngl3 Wrote: Wasn't taken as an offense That returned 100% packet loss, and using hping2 returned the same as hping RE: Building my own pentest distro - noize - 06-01-2013 (06-01-2013, 10:36 PM)shp0ngl3 Wrote:(06-01-2013, 10:19 PM)noize Wrote:(06-01-2013, 06:15 PM)shp0ngl3 Wrote: Wasn't taken as an offense That's weird to me. Try with a different protocol: Code: hping2 www.oleaass.com --udp -p 80RE: Building my own pentest distro - RogueCoder - 06-01-2013 That returned Code: 74 packets tramitted, 8 packets received, 90% packet lossCode: 149 packets tramitted, 0 packets received, 100% packet loss
|