<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:creativeCommons="http://backend.userland.com/creativeCommonsRssModule"
	>
<channel>
	<title>Comments on: BackTrack 3: Demos of selected tools</title>
	<atom:link href="http://isisblogs.poly.edu/2008/04/08/backtrack-3-demos-of-selected-tools/feed/" rel="self" type="application/rss+xml" />
	<link>http://isisblogs.poly.edu/2008/04/08/backtrack-3-demos-of-selected-tools/</link>
	<description>Information Systems and Internet Security</description>
	<lastBuildDate>Sat, 26 Sep 2009 11:11:21 -0400</lastBuildDate>
	<generator>http://wordpress.org/?v=2.8.5</generator>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
		<item>
		<title>By: fuzion</title>
		<link>http://isisblogs.poly.edu/2008/04/08/backtrack-3-demos-of-selected-tools/comment-page-1/#comment-459</link>
		<dc:creator>fuzion</dc:creator>
		<pubDate>Wed, 27 Aug 2008 00:40:31 +0000</pubDate>
		<guid isPermaLink="false">http://isisblogs.poly.edu/?p=83#comment-459</guid>
		<description>Hi,
I have written several howtos for w3af on my new site:
http://nukeit.org/category/tools/</description>
		<content:encoded><![CDATA[<p>Hi,<br />
I have written several howtos for w3af on my new site:<br />
<a href="http://nukeit.org/category/tools/" rel="nofollow">http://nukeit.org/category/tools/</a></p>
]]></content:encoded>
	</item>
	<item>
		<title>By: fuzion</title>
		<link>http://isisblogs.poly.edu/2008/04/08/backtrack-3-demos-of-selected-tools/comment-page-1/#comment-393</link>
		<dc:creator>fuzion</dc:creator>
		<pubDate>Wed, 30 Jul 2008 20:30:46 +0000</pubDate>
		<guid isPermaLink="false">http://isisblogs.poly.edu/?p=83#comment-393</guid>
		<description>I wrote a script to update w3af and install the new prerequisites to use its new gtkUI:
http://fuzion.rootmybox.org/2008/07/30/w3af-on-backtrack-3-final-svn-style/</description>
		<content:encoded><![CDATA[<p>I wrote a script to update w3af and install the new prerequisites to use its new gtkUI:<br />
<a href="http://fuzion.rootmybox.org/2008/07/30/w3af-on-backtrack-3-final-svn-style/" rel="nofollow">http://fuzion.rootmybox.org/2008/07/30/w3af-on-backtrack-3-final-svn-style/</a></p>
]]></content:encoded>
	</item>
	<item>
		<title>By: KING SABRI</title>
		<link>http://isisblogs.poly.edu/2008/04/08/backtrack-3-demos-of-selected-tools/comment-page-1/#comment-375</link>
		<dc:creator>KING SABRI</dc:creator>
		<pubDate>Mon, 14 Jul 2008 23:45:29 +0000</pubDate>
		<guid isPermaLink="false">http://isisblogs.poly.edu/?p=83#comment-375</guid>
		<description>Thanks man</description>
		<content:encoded><![CDATA[<p>Thanks man</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: n1teshad3</title>
		<link>http://isisblogs.poly.edu/2008/04/08/backtrack-3-demos-of-selected-tools/comment-page-1/#comment-357</link>
		<dc:creator>n1teshad3</dc:creator>
		<pubDate>Wed, 18 Jun 2008 23:55:05 +0000</pubDate>
		<guid isPermaLink="false">http://isisblogs.poly.edu/?p=83#comment-357</guid>
		<description>Awesome article, there are other sites that explain what these tools do, however none as indepth as yours. As a novice Backtrack user I plan to research and use this more effectively - Thanks for your help</description>
		<content:encoded><![CDATA[<p>Awesome article, there are other sites that explain what these tools do, however none as indepth as yours. As a novice Backtrack user I plan to research and use this more effectively &#8211; Thanks for your help</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Aleksey</title>
		<link>http://isisblogs.poly.edu/2008/04/08/backtrack-3-demos-of-selected-tools/comment-page-1/#comment-356</link>
		<dc:creator>Aleksey</dc:creator>
		<pubDate>Wed, 18 Jun 2008 22:11:39 +0000</pubDate>
		<guid isPermaLink="false">http://isisblogs.poly.edu/?p=83#comment-356</guid>
		<description>No, it should work without joining the domain, perhaps its a bit flaky? I remember I had to disable SMB on the framework machine plus some other services before I got it working.

I think that yes, you can do a mitm attack on a target when it is accessing a share on the network. First you would have to become the man in the middle. Then, you would wait for the target to try to connect to a share on the network (some other legit machine). Intercept that first challenge request and proceed same as the reflection attack except you are now also masquerading as that legit network share. Don&#039;t think metasploit module will do this.</description>
		<content:encoded><![CDATA[<p>No, it should work without joining the domain, perhaps its a bit flaky? I remember I had to disable SMB on the framework machine plus some other services before I got it working.</p>
<p>I think that yes, you can do a mitm attack on a target when it is accessing a share on the network. First you would have to become the man in the middle. Then, you would wait for the target to try to connect to a share on the network (some other legit machine). Intercept that first challenge request and proceed same as the reflection attack except you are now also masquerading as that legit network share. Don&#8217;t think metasploit module will do this.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Jorge L. Vazquez</title>
		<link>http://isisblogs.poly.edu/2008/04/08/backtrack-3-demos-of-selected-tools/comment-page-1/#comment-355</link>
		<dc:creator>Jorge L. Vazquez</dc:creator>
		<pubDate>Wed, 18 Jun 2008 08:06:51 +0000</pubDate>
		<guid isPermaLink="false">http://isisblogs.poly.edu/?p=83#comment-355</guid>
		<description>I finally got it going, nice exploit...in my case it didn&#039;t work until I joined the target machine to a domain, is that the case..this exploit only works for machine that are part of a domain?...also is it possible to pull a mitm attack on a target when is accessing a share on the network instead of opening an email or web page with the UNC name embedded?
thanks</description>
		<content:encoded><![CDATA[<p>I finally got it going, nice exploit&#8230;in my case it didn&#8217;t work until I joined the target machine to a domain, is that the case..this exploit only works for machine that are part of a domain?&#8230;also is it possible to pull a mitm attack on a target when is accessing a share on the network instead of opening an email or web page with the UNC name embedded?<br />
thanks</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Aleksey</title>
		<link>http://isisblogs.poly.edu/2008/04/08/backtrack-3-demos-of-selected-tools/comment-page-1/#comment-353</link>
		<dc:creator>Aleksey</dc:creator>
		<pubDate>Tue, 17 Jun 2008 20:50:33 +0000</pubDate>
		<guid isPermaLink="false">http://isisblogs.poly.edu/?p=83#comment-353</guid>
		<description>Jorge, the version I have is &quot;Metasploit Framework v3.1-release&quot; for Windows (downloaded from &quot;http://www.metasploit.com/framework/&quot;). The exploit is in exploits &gt; windows &gt; smb &gt; smb_relay (use any of web, console, or gui version). Not sure about the Unix version. The machine I had the framework on was XPSP2 and the test machine was Windows 2000 random service pack. I have just installed the latest 3.1 version of framework and the smb module is still there.</description>
		<content:encoded><![CDATA[<p>Jorge, the version I have is &#8220;Metasploit Framework v3.1-release&#8221; for Windows (downloaded from &#8220;http://www.metasploit.com/framework/&#8221;). The exploit is in exploits &gt; windows &gt; smb &gt; smb_relay (use any of web, console, or gui version). Not sure about the Unix version. The machine I had the framework on was XPSP2 and the test machine was Windows 2000 random service pack. I have just installed the latest 3.1 version of framework and the smb module is still there.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: jorge l. vazquez</title>
		<link>http://isisblogs.poly.edu/2008/04/08/backtrack-3-demos-of-selected-tools/comment-page-1/#comment-352</link>
		<dc:creator>jorge l. vazquez</dc:creator>
		<pubDate>Tue, 17 Jun 2008 19:07:26 +0000</pubDate>
		<guid isPermaLink="false">http://isisblogs.poly.edu/?p=83#comment-352</guid>
		<description>after watching the metasploit video, I&#039;ve tried the smb relay exploit on mine, but I didn&#039;t find that specific exploit, you mention that it was just showcase last year, but after doing an update of my metasploit still no luck, my question is where did you get your version of metasploit?

thanks</description>
		<content:encoded><![CDATA[<p>after watching the metasploit video, I&#8217;ve tried the smb relay exploit on mine, but I didn&#8217;t find that specific exploit, you mention that it was just showcase last year, but after doing an update of my metasploit still no luck, my question is where did you get your version of metasploit?</p>
<p>thanks</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: taromaru</title>
		<link>http://isisblogs.poly.edu/2008/04/08/backtrack-3-demos-of-selected-tools/comment-page-1/#comment-349</link>
		<dc:creator>taromaru</dc:creator>
		<pubDate>Thu, 12 Jun 2008 13:21:22 +0000</pubDate>
		<guid isPermaLink="false">http://isisblogs.poly.edu/?p=83#comment-349</guid>
		<description>Really nice article to start playing with BT3.

Cheers!</description>
		<content:encoded><![CDATA[<p>Really nice article to start playing with BT3.</p>
<p>Cheers!</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: targeted website traffic</title>
		<link>http://isisblogs.poly.edu/2008/04/08/backtrack-3-demos-of-selected-tools/comment-page-1/#comment-343</link>
		<dc:creator>targeted website traffic</dc:creator>
		<pubDate>Fri, 23 May 2008 17:45:50 +0000</pubDate>
		<guid isPermaLink="false">http://isisblogs.poly.edu/?p=83#comment-343</guid>
		<description>&lt;strong&gt;targeted website traffic...&lt;/strong&gt;

Hello,...</description>
		<content:encoded><![CDATA[<p><strong>targeted website traffic&#8230;</strong></p>
<p>Hello,&#8230;</p>
]]></content:encoded>
	</item>
</channel>
</rss>
