pen-test
[Top] [All Lists]

Re: nbns spoofer

To: PenTest <pen-test@securityfocus.com>
Subject: Re: nbns spoofer
From: jmk <jmk@foofus.net>
Date: Fri, 30 Mar 2007 09:00:07 -0500
Cc: Robin Wood <dninja@gmail.com>
Delivered-to: sp-com-lists@consult.net
Delivered-to: pentest-list2@consult.net
Delivered-to: mailing list pen-test@securityfocus.com
Delivered-to: moderator for pen-test@securityfocus.com
In-reply-to: <2cf3b3170703291250m5026f9aat1b0e125ba57df110@mail.gmail.com>
List-help: <mailto:pen-test-help@securityfocus.com>
List-id: <pen-test.list-id.securityfocus.com>
List-post: <mailto:pen-test@securityfocus.com>
List-subscribe: <mailto:pen-test-subscribe@securityfocus.com>
List-unsubscribe: <mailto:pen-test-unsubscribe@securityfocus.com>
Mailing-list: contact pen-test-help@securityfocus.com; run by ezmlm
Organization: Foofus Networks
References: <2cf3b3170702270116r3b30c6c8w8467e79bc8fd0887@mail.gmail.com> <45F3D591.5080209@gmail.com> <2cf3b3170703120315r554ad579r6116f9d3365cd3f8@mail.gmail.com> <dd3cefac0703140734u17fae14ar861fe6375946e2b8@mail.gmail.com> <2cf3b3170703140820o3ec3705an80acc875002e0425@mail.gmail.com> <da15e23f0703290724q7ca5d990ob9827b85b6dfb34c@mail.gmail.com> <2cf3b3170703291250m5026f9aat1b0e125ba57df110@mail.gmail.com>
Reply-to: jmk@foofus.net
Resent-date: Fri, 30 Mar 2007 11:10:25 -0700 (MST)
Resent-from: pen-test-return-1078483852@securityfocus.com
Resent-message-id: <20070330181025.6F50F143DFE@outgoing2.securityfocus.com>
Resent-sender: listbounce@securityfocus.com
Sender: listbounce@securityfocus.com
On Thu, 2007-03-29 at 20:50 +0100, Robin Wood wrote:
> You beat me to it! I got distracted from finishing my version by going
> to shmoocon but I'll get it finished anyway and release it.

Heh. Here's yet another implementation of this fun:

http://www.foofus.net/~jmk/smbchallenge.html

The patch is against Samba 3.0.24 and also includes using a fixed
challenge for the LM/NTLM challenge/response process.

Enjoy,
Joe


------------------------------------------------------------------------
This List Sponsored by: Cenzic

Need to secure your web apps?
Cenzic Hailstorm finds vulnerabilities fast.
Click the link to buy it, try it or download Hailstorm for FREE.

http://www.cenzic.com/products_services/download_hailstorm.php?camp=701600000008bOW
------------------------------------------------------------------------


<Prev in Thread] Current Thread [Next in Thread>