Showing posts with label Video Training. Show all posts
Wireshark University Network Training ( 4 DVD )
Wireshark University Network Training
This course focuses on network forensics including capture locations, stealth-mode capture, optimal capture and display filters, validating encrypted logins, identifying reconnaissance processes, locating header and payload signatures, catching penetration tests, malware ehavior, backdoor communications and virus traffic.
Download Links :-
Wireshark University Network Training.Part02
Wireshark University Network Training.Part03
Wireshark University Network Training.Part04
Wireshark University Network Training.Part05
Wireshark University Network Training.Part06
Wireshark University Network Training.Part07
VMware vSphere v5-ZWTiSO
VMware vSphere v5-ZWTiSO
VMware vSphere, the most trusted, most widely deployed virtualization platform in the world, forms the foundation of VMware’s cloud infrastructure suite. Architected to support the broadest range of virtual and cloud infrastructure needs, VMware vSphere is broadly utilized by enterprises, small and midsized businesses (SMBs), public cloud service providers and as the foundation for the growing virtual desktop infrastructure (VDI) market. An increasing number of customers are standardizing on VMware vSphere as their strategic IT platform.
Turn your datacenter into a secure private cloud without throwing away existing applications, hardware and know-how. Support any application workload by bridging on-demand to a public cloud from the VMware broad ecosystem of leading cloud service providers. This hybrid cloud lets you choose the most efficient infrastructure for any application—public on-demand pay-as-you-go clouds or your internal private cloud, both built on the most trusted virtualization platform. Gain visibility into pooled resources and the elasticity you need to react to changing business requirements, as you deliver IT as a Service (ITaaS) with policy-driven automation.
Turn your datacenter into a secure private cloud without throwing away existing applications, hardware and know-how. Support any application workload by bridging on-demand to a public cloud from the VMware broad ecosystem of leading cloud service providers. This hybrid cloud lets you choose the most efficient infrastructure for any application—public on-demand pay-as-you-go clouds or your internal private cloud, both built on the most trusted virtualization platform. Gain visibility into pooled resources and the elasticity you need to react to changing business requirements, as you deliver IT as a Service (ITaaS) with policy-driven automation.
With vSphere and our virtualization and cloud management products, you can:
Maximize efficiency and ensure service levels with capacity management
Automate disaster recovery plans with disaster recovery management
Ensure performance SLAs are met with performance management
Get accurate costs for delivering IT services with cost reporting management
Reduce your capital and operating costs and increase control over IT infrastructures while preserving the flexibility to choose any OS, application and hardware with VMware vSphere.
Maximize efficiency and ensure service levels with capacity management
Automate disaster recovery plans with disaster recovery management
Ensure performance SLAs are met with performance management
Get accurate costs for delivering IT services with cost reporting management
Reduce your capital and operating costs and increase control over IT infrastructures while preserving the flexibility to choose any OS, application and hardware with VMware vSphere.
Shift your IT staff’s energies toward creating transformative business solutions with built-in automation and resource elasticity
Get more from your existing IT assets and reduce capital expenses of the datacenter by up to 60%
Significantly lower power, cooling and real estate needs and cut your energy costs by up to 80%
Get more from your existing IT assets and reduce capital expenses of the datacenter by up to 60%
Significantly lower power, cooling and real estate needs and cut your energy costs by up to 80%
Download Links :-
VMware vSphere v5-ZWTiSO.part1
VMware vSphere v5-ZWTiSO.part2
Download Torrent :-
Implementing Cisco IOS Unified Communications IIUC
Implementing Cisco IOS Unified Communications IIUC
In this IIUC Self-Paced e-Learning course, you will gain the knowledge necessary to implement a Cisco IOS Unified Communications solution. You will learn the basics of traditional telephony as well as Voice over IP (VoIP) fundamentals, including various VoIP protocols. This course will also prepare your for your CCNA Voice Certification.
Download Links :-
Collection of Premium NETTUTS+ Tutorials [ISO]
Collection of Premium NETTUTS+ Tutorials
In this tutorial, you are going to be designing a website for the mobile Safari browser (found on the iPhone and the iPod Touch). you will start from scratch in Photoshop and work our way, step-by-step, to a finished product complete with an animated jQuery image slider.
Easy Pagination with CodeIgniter and jQuery
In this Nettuts+ Premium tutorial, you are going to learn how to use CodeIgniter’s Pagination Class to paginate your blogs. Once you have firm understanding of how to load, configure and use CodeIgniter’s Pagination Class, you will learn how to use jQuery to make page navigation dynamic. You will examine part of jQuery’s AJAX functionality and demonstrate how to use it in conjunction with CodeIgniter’s Pagination Class. At the end of this tutorial you should have a solid fundamental understanding of how to paginate data in CodeIgniter using jQuery. You should also be able to implement these techniques into your own CI blog system with ease.
From PSD to HTML to WordPress
Over the course of fourteen videos, you will learn how to take a PSD design and convert first to HTML, and then to a dynamic WordPress site.
CSS: The Very First Steps
This one is for those who are hoping to take their first steps into web design. This 70 minute video tutorial will assume that you have zero knowledge of CSS. Over the course of the screencast, you’ll learn about the basic syntax, a plethora of different properties, and how to create the beginnings of your very first website.
How to Wireframe in Photoshop :-
Just as you wouldn’t build a house without a blue-print, the same is true for web design. This in depth video tutorial will teach you about the advantages of properly using wire-framing when designing in Photoshop.
Download Links :-
Collection of Premium NETTUTS.Part01
Collection of Premium NETTUTS.Part03
Collection of Premium NETTUTS.Part04
Collection of Premium NETTUTS.Part05
Collection of Premium NETTUTS.Part06
Password Hacking Techniques
Password Hacking Techniques
Summary:
Attacks on a company or organization's computer systems take many different forms, such as spoofing, smurfing, and other types of Denial of Service (DoS) attacks. These attacks are designed to harm or interrupt the use of your operational systems. This article deals with a single wide-spread form of attack known as password cracking.Password cracking is a term used to describe the penetration of a network, system, or resource with or without the use of tools to unlock a resource that has been secured with a password. In this article I will take a look at what password cracking is, why attackers do it, how they achieve their goals, and what you can do to do to protect yourself. I will briefly take a look at the attackers themselves: their psychological makeup and their motives. Through an examination of several scenarios, I will describe some of the techniques they deploy and the tools that aid them in their assaults, and how password crackers work both internally and externally to violate a company's infrastructure. Finally, the article provides a checklist to help protect you from password cracking.
Password and user account exploitation is one of largest issues in network security. In this article Rob Shimonski will look at password cracking: the how and why of it. Rob will explain just how easy it is to penetrate a network, how attackers get in, the tools they use, and ways to combat it.
Before exploring the methods for doing this, let's first peer into the mind of the attacker and learn why they might want access to your network and systems.
Attackers: how and why they attack
There is an on-going debate about the definition of the word hacker. A hacker can be anyone with a deep interest in computer-based technology; it does not necessarily define someone who wants to do harm. The term attacker can be used to describe a malicious hacker. Another term for an attacker is a black hat. Security analysts are often called white hats, and white-hat analysisis the use of hacking for defensive purposes.
Attackers' motivations vary greatly. Some of the most notorious hackers are high school kids in their basements planted in front of their computers looking for ways to exploit computer systems. Other attackers are disgruntled employees seeking revenge on a company. And still other attacks are motivated by the sheer challenge of penetrating a well-secured system.
Methods of attackPassword cracking doesn't always involve sophisticated tools. It can be as simple as finding a sticky note with the password written on it stuck right to the monitor or hidden under a keyboard. Another crude technique is known as "dumpster diving," which basically involves an attacker going through your garbage to find discarded documentation that may contain passwords.
Captured telnet traffic with a protocol analyzer

ASCII decode of plaintext data

Home page replaced by an attacker

Figure 4. Using L0phtCrack to break the Administrator password

.
Of course attacks can involve far greater levels of sophistication. Here are some of the more common techniques used in password cracking:
- Dictionary attack
A simple dictionary attack is by far the fastest way to break into a machine. A dictionary file (a text file full of dictionary words) is loaded into a cracking application (such as L0phtCrack), which is run against user accounts located by the application. Because the majority of passwords are often simplistic, running a dictionary attack is often sufficient to to the job. - Hybrid attack
Another well-known form of attack is the hybrid attack. A hybrid attack will add numbers or symbols to the filename to successfully crack a password. Many people change their passwords by simply adding a number to the end of their current password. The pattern usually takes this form: first month password is "cat"; second month password is "cat1"; third month password is "cat2"; and so on. - Brute force attack
A brute force attack is the most comprehensive form of attack, though it may often take a long time to work depending on the complexity of the password. Some brute force attacks can take a week depending on the complexity of the password. L0phtcrack can also be used in a brute force attack.
Next, take a look at some of the tools attackers use to break into a system.
.
Tools of the trade
One of the most popular tools is L0phtCrack (now called LC4). L0phtCrack is a tool that allows an attacker to take encrypted Windows NT/2000 passwords and convert them to plaintext. NT/2000 passwords are in cryptographic hashes and cannot be read without a tool like L0phtCrack. It works by attempting every alphanumeric combination possible to try to crack passwords.
Another commonly-used tool is a protocol analyzer (better known as a network sniffer, such as Sniffer Pro or Etherpeek), which is capable of capturing every piece of data on the network segment to which it is attached. When such a tool is running inpromiscuous mode, it can "sniff" everything going around on that segment such as logins and data transfers. As you'll see later, this can seriously damage network security allowing attackers to capture passwords and sensitive data.
Let's take a look at a few scenarios and examine how attackers launch their attacks and how they might be stopped or prevented. I'll first describe a couple of scenarios involving internal attacks (that is, attacks that originate within an organization), and then take a look at a couple of scenarios involving external attacks.
.
Internal attacks
Internal attackers are the most common sources of cracking attacks because attackers have direct access to an organization's systems. The first scenario looks at a situation in which a disgruntled employee is the attacker. The attacker, a veteran systems administrator, has a problem with her job and takes it out on the systems she is trusted to administer, manage, and protect.
Example: The disgruntled employee
Jane Smith, a veteran system administrator with impeccable technical credentials, has been hired by your company to run the backup tapes during the late evenings. Your company, an ISP, has a very large data center with roughly 4000+ systems all monitored by a Network Operations Center. Jane works with two other technicians to monitor the overnight backups and rotate the tapes before the morning shift comes in. They all work independently of each other: one technician works on the UNIX Servers, one technician covers the Novell Servers, and Jane has been hired to work on the Windows 2000 Servers.
Jane has been working on the job for six months now and is a rising star. She comes in early, stays late and has asked to transfer to another department within the company. One problem: there are no open positions at the time. During the last month you (security analyst) have noticed a dramatic increase in the number of attempts at Cisco router and UNIX Server logins. You have CiscoSecure ACS implemented so you can audit the attempts and you see that most of them occur at 3 a.m.
Your suspicions are aroused, but as a security analyst, you can't go around pointing fingers without proof.
A good security analyst starts by looking deeper into the situation. You note that the attacks are from someone of high caliber and occur during Jane's shift, right after she is done with her tape rotation assignment and usually has an extra hour to study or read before the day operations team comes in. So you decide to have Jane supervised at night by the night operations manager. After three weeks of heavy supervision, you notice that the attacks have stopped. You were right. Jane was attempting to log into the Cisco routers and UNIX servers.
A good security analyst also needs to employ a good auditing tool, such as Tacacs+, to log attacks. Tacacs+ is a protocol used by applications such as CiscoSecure ACS that will force Authorization, Accountability, and Authentication (AAA for short). If you have Authorization, then the person requesting access needs to be authorized to access the system. If you have Authentication, then the user accessing a resource needs to be authenticated with rights and permissions to have access. What happens when you are authorized and also authenticated? You must be held Accountable. Accounting logs alone solve many password cracking problems by forcing an attacker to be held accountable, authenticated and authorized.
Next, I'll give an example of an old (but still widely used) attack, which involves sniffing passwords right off the network. You can see how a network supervisor had his Cisco routers and switches cracked by a help desk technician within the company.
Example: The help desk technician
Tommy is hired for the position of help desk technician to work with the after hours help desk crew. The after hours help desk staff is made up of roughly 10 technicians who provide coverage for eight remote sites that the company needs to support during off hours. Tommy always brings his laptop with him to work. When questioned about the laptop by his manager, Tommy explains that he is using his break time to prepare for a certification test. This seems harmless and is approved, even though there is a company-wide security policy in place about bringing machines from the outside into the corporate network without corporate security looking the device over.
Tommy is eventually caught by a surveillance camera leaving a small wiring closet with something under his arm. But since nothing is reported missing, there is no way to prove that Tommy has done anything wrong. And when questioned by the help desk manager about why he was in the closet, Tommy says that he mistakenly entered it thinking it was a break room.
The company's security manager, Erika, sees the report filed by the guards responsible for the physical security of the building. She wonders what Tommy was doing in that closet and is not satisfied with the answer he gave to the help desk manager. Upon searching the closet, she finds an unplugged patch cable hanging from one of the patch panels and an empty hub port. When she plugs the cable back in, the link light does not come back on suggesting that this is a dead port. Cable management Velcro straps neatly hold all the other cables together. With Erika's years of experience and keen sense of security exploitation, she knows exactly what happened.
Erika assumes that Tommy has brought his laptop in the wiring closet unseen. He most likely looked for a dead port on the hub and plugged his laptop in with a packet sniffer installed on it, which promiscuously picks up traffic on a network segment. He returns later to pick up the laptop, which is caught on the surveillance camera, to take home for analysis after saving the capture file.
Using the company's security policy, she confronts Tommy and explains that all personal property, such as laptops and palm pilots, are subject to search if on the premises illegally. Since Tommy never should have had his laptop there in the first place, he hands it over to Erika. Upon careful examination, Erika finds the following trace decode as seen in Figure 1.
Captured telnet traffic with a protocol analyzer
A close examination of the Hex pane of the Sniffer Pro analyzer in Figure 2 reveals ASCII data in clear view on the right side of the pane. While attached to a switch in the closet, Tommy ran the configuration while connected via a telnet session. Since the telnet protocol is unsecure and sent via cleartext, it is easy to see the password: "cisco."
ASCII decode of plaintext data
This is one of the most basic principles of security: Never use a product name as a password. But in spite of how basic a principle it is, it's remarkable how often it is still done.
Next, turn your attention to some external threats.
.
External attacks
External attackers are those who must traverse your "defense in depth" to try and break into your systems. They don't have it as easy as internal attackers. The first scenario involves a fairly common form of external attack known as Web site defacing. This attack uses password cracking to penetrate the systems that the attacker wants to deface. Another possible password cracking attack is when an attacker tries to obtain passwords via Social Engineering. Social Engineering is the tricking of an unsuspecting administrator into giving the account ID and passwords over to an attacker. Lets take a look at both.
Example: Web site home page defacing
Figure 3 demonstrates a fairly common and simple example of external password cracking: defacing a Web site's home page. It takes little effort and is usually accomplished by simply exploiting an Internet Information Server (IIS) that has its permissions set incorrectly. The attacker simply goes to a workstation and tries to attack the IIS server with an HTML editing tool. When trying to attach over the Internet to the site, the attacker uses a password generator tool, such as L0phtCrack, which launches a brute force attack against the server.
Home page replaced by an attacker
Your company's reputation is on the line. Business vendors and associates will lose faith in you if they perceive that your data is kept on unsecured servers. Make sure you look at inside and outside threats equally.
Example: Social engineering tricks
Non-tool related tricks to crack passwords are called social engineering attacks. Read this a scenario to learn more.
Jon is the new security analyst for a large company. His first job is to test his company's security stance. He of course lets management know what he is about to do (so he doesn't get labeled as an attacker himself). He wants to see how hard it is to crack into the network without even touching a single tool. He tries two separate but equally devastating attacks.
As a new employee in a large organization, John isn't known to many people yet, which makes it easy for him to pull off his first social engineering attack. His first target is the help desk. Jon makes a routine call to the help desk and asks for a password reset as a supposed remote user. Jon already has half the information he needs since he knows that the company's naming convention is simply first name and the first initial of the user's last name. The CIO's name is Jeff and his last name is Ronald, so
JeffR is his login ID. This information is readily available from the company's phone directory. Masquerading as the CIO, Jon calls the help desk and asks for a password reset because he has forgotten his password. This is a normal ritual for the help desk technician who resets forgotten passwords 100 times a day and calls the requestor back letting them know what their knew password is. The help desk technician calls Jon back five minutes later and lets him know that his new password is "friday" because it happens to be Friday. Within another 5 minutes, Jon is in the CIO's shared files on the server and in his e-mail.Jon's next social engineering attack involves a good friend of his who works for the local telephone company. Jon borrows some of his gear and his belt and badge on his friend's day off. Jon takes his new gear and heads to another part of the organizations campus where all the disaster recovery routers and servers are located. This hardware contains a working copy of all the company's current data and is considered confidential. Jon walks into the campus security office in his Telco costume and explains that he has been called out by the Local Exchange Carrier (LEC) because a circuit appears to be looped from the Telco. He needs to be let into the data center so he can check out if there are any alarms on the Smart Jack.
The onsite administrator escorts Jon to the data center not even checking his ID. Once inside, the administrator wisely sticks around, so Jon starts his test. After a few minutes, Jon informs the administrator that he will have to call his office and have them run some more tests so he can loop off the Smart Jack and try to troubleshoot. Jon lets the administrator know that this will take about 45 minutes, so the administrator gives Jon his pager number and asks that he page him when he is done to let him out. Jon has now successfully eliminated the only obstacle between him and the 30 servers all lined up in racks along the back wall of the data center.
Jon has a few different opportunities now. He can go to every server and start looking for unlocked consoles, or he can plug his laptop into an open port and start sniffing. Since he really wants to see how far he can go, he decides to look for open consoles. After five minutes of looking through all the KVM slots, he finds a Windows NT server running as the Backup Domain Controller for the Domain. Jon pulls a CD out of his bag and enters it into the CD tray of the server. He installs L0phtCrack onto a BDC for the companies Domain and runs a dictionary attack. Within five minutes produces the following password: Yankees. It turns out the lead administrator is a New York Yankees fan. He now has access to the company's most vital information.
Now look at how this was done.
Figure 4. Using L0phtCrack to break the Administrator password
.
A protection check list
Here is a checklist of things you can do to make password cracking more difficult:
- Audit your organization! Do a walk through and make sure passwords are not stuck to monitors or under keyboards.
- Set up dummy accounts. Get rid of the administrator (or admin) account or set it up as a trap and audit it for attempts.
- Use strong, difficult to guess passwords, and never leave a console unlocked.
- Backups are necessary in case you are compromised. You need a working set of data, so make sure you have it. Keep the tapes secure too, or the data there will be compromised as well.
- Prevent dumpster diving. Don't throw sensitive information away; shred it or lock it up.
- Check IDs and question people you don't know. When you have visitors, check them out and make sure they belong.
- Educate your end users. Make sure they aren't prone to social engineering and educate and remind internal users of the company's security policies.
.
Summary
In this article I've described some of the psychology behind an attacker's motivation and some of the low-tech and high-tech methods used to crack passwords. You've looked at several attack scenarios, including attacks against major companies by a veteran administrator, a help desk technician, and an outside vandal. You also saw how password crackers use techniques both internally and externally to your infrastructure. Finally, some ideas on how to properly secure yourself and your systems from the possibility of a password cracking attack were offered. Combating these attacks ultimately requires a conscious effort, trained individuals, useful tools, and sound security policies. Hopefully, as a proactive security analyst, you can make a difference in helping to slow down this malicious activity within your organizations as well as outside of them. Otherwise, you may find Jon in your server room with a smirk on his face and your data in his hands.
- Read the developerWorks article Protecting Passwords: authenticating users, this article is a great read to get your mind around how to protect your passwords in the first place.
- See also the developerWorks article Setting up a security policy, also a must read.
- The CERT Coordination Center is a center of Internet security expertise at the Software Engineering Institute, a federally funded research and development center operated by Carnegie Mellon University. They study Internet security vulnerabilities, handle computer security incidents, and publish security alerts.
- Check out the following article available from the CERT organization on Protecting Yourself from Password File Attacks.
- Password Cracking Activity discovered by the CERT organization can be researched athttp://www.cert.org/incident_notes/IN-98.03.html.
- Password cracking tools are available worldwide over the Internet. Check out http://www.pwcrack.com for security and cracking resources available on the Internet.
- Sans.org is the leading source of Internet and Network security administration worldwide. You can research many topics in their extensive library of information.
- General Security information can be found and researched on the Security Focus Web site.
Cracking CISCO Router Passwords
Cracking CISCO Router Passwords
The mass is a C information which demonstrates how to rewrite a CISCO password.
==================================================
#include
#include
char xlat[] = {
0x64, 0x73, 0x66, 0x64, 0x3b, 0x6b, 0x66, 0x6f,
0x41, 0x2c, 0x2e, 0x69, 0x79, 0x65, 0x77, 0x72,
0x6b, 0x6c, 0x64, 0x4a, 0x4b, 0x44
};
char pw_str1[] = "password 7 ";
char pw_str2[] = "enable-password 7 ";
char *pname;
cdecrypt(enc_pw, dec_pw)
char *enc_pw;
char *dec_pw;
{
unsigned int seed, i, val = 0;
if(strlen(enc_pw) & 1)
return(-1);
seed = (enc_pw[0] - '0') * 10 + enc_pw[1] - '0';
if (seed > 15 || !isdigit(enc_pw[0]) || !isdigit(enc_pw[1]))
return(-1);
for (i = 2 ; i <= strlen(enc_pw); i++) { if(i !=2 && !(i & 1)) { dec_pw[i / 2 - 2] = val ^ xlat[seed++]; val = 0; } val *= 16; if(isdigit(enc_pw[i] = toupper(enc_pw[i]))) { val += enc_pw[i] - '0'; continue; } if(enc_pw[i] >= 'A' && enc_pw[i] <= 'F') { val += enc_pw[i] - 'A' + 10; continue; } if(strlen(enc_pw) != i) return(-1); } dec_pw[++i / 2] = 0; return(0); } usage() { fprintf(stdout, "Usage: %s -p \n", pname); fprintf(stdout, " %s \n", pname); return(0); } main(argc,argv) int argc; char **argv; { FILE *in = stdin, *out = stdout; char line[257]; char passwd[65]; unsigned int i, pw_pos; pname = argv[0]; if(argc > 1)
{
if(argc > 3) {
usage();
exit(1);
}
if(argv[1][0] == '-')
{
switch(argv[1][1]) {
case 'h':
usage();
break;
case 'p':
if(cdecrypt(argv[2], passwd)) {
fprintf(stderr, "Error.\n");
exit(1);
}
fprintf(stdout, "password: %s\n", passwd);
break;
default:
fprintf(stderr, "%s: unknow option.", pname);
}
return(0);
}
if((in = fopen(argv[1], "rt")) == NULL)
exit(1);
if(argc > 2)
if((out = fopen(argv[2], "wt")) == NULL)
exit(1);
}
while(1) {
for(i = 0; i < 256; i++) {
if((line[i] = fgetc(in)) == EOF) {
if(i)
break;
fclose(in);
fclose(out);
return(0);
}
if(line[i] == '\r')
i--;
if(line[i] == '\n')
break;
}
pw_pos = 0;
line[i] = 0;
if(!strncmp(line, pw_str1, strlen(pw_str1)))
pw_pos = strlen(pw_str1);
if(!strncmp(line, pw_str2, strlen(pw_str2)))
pw_pos = strlen(pw_str2);
if(!pw_pos) {
fprintf(stdout, "%s\n", line);
continue;
}
if(cdecrypt(&line[pw_pos], passwd)) {
fprintf(stderr, "Error.\n");
exit(1);
}
else {
if(pw_pos == strlen(pw_str1))
fprintf(out, "%s", pw_str1);
else
fprintf(out, "%s", pw_str2);
fprintf(out, "%s\n", passwd);
}
}
}
NOTE:
The above entireness exclusive on a UNIX platform. If you are streaming Windows, then you module hit to ingest some brute obligate countersign cracker.
==================================================
#include
#include
char xlat[] = {
0x64, 0x73, 0x66, 0x64, 0x3b, 0x6b, 0x66, 0x6f,
0x41, 0x2c, 0x2e, 0x69, 0x79, 0x65, 0x77, 0x72,
0x6b, 0x6c, 0x64, 0x4a, 0x4b, 0x44
};
char pw_str1[] = "password 7 ";
char pw_str2[] = "enable-password 7 ";
char *pname;
cdecrypt(enc_pw, dec_pw)
char *enc_pw;
char *dec_pw;
{
unsigned int seed, i, val = 0;
if(strlen(enc_pw) & 1)
return(-1);
seed = (enc_pw[0] - '0') * 10 + enc_pw[1] - '0';
if (seed > 15 || !isdigit(enc_pw[0]) || !isdigit(enc_pw[1]))
return(-1);
for (i = 2 ; i <= strlen(enc_pw); i++) { if(i !=2 && !(i & 1)) { dec_pw[i / 2 - 2] = val ^ xlat[seed++]; val = 0; } val *= 16; if(isdigit(enc_pw[i] = toupper(enc_pw[i]))) { val += enc_pw[i] - '0'; continue; } if(enc_pw[i] >= 'A' && enc_pw[i] <= 'F') { val += enc_pw[i] - 'A' + 10; continue; } if(strlen(enc_pw) != i) return(-1); } dec_pw[++i / 2] = 0; return(0); } usage() { fprintf(stdout, "Usage: %s -p \n", pname); fprintf(stdout, " %s \n", pname); return(0); } main(argc,argv) int argc; char **argv; { FILE *in = stdin, *out = stdout; char line[257]; char passwd[65]; unsigned int i, pw_pos; pname = argv[0]; if(argc > 1)
{
if(argc > 3) {
usage();
exit(1);
}
if(argv[1][0] == '-')
{
switch(argv[1][1]) {
case 'h':
usage();
break;
case 'p':
if(cdecrypt(argv[2], passwd)) {
fprintf(stderr, "Error.\n");
exit(1);
}
fprintf(stdout, "password: %s\n", passwd);
break;
default:
fprintf(stderr, "%s: unknow option.", pname);
}
return(0);
}
if((in = fopen(argv[1], "rt")) == NULL)
exit(1);
if(argc > 2)
if((out = fopen(argv[2], "wt")) == NULL)
exit(1);
}
while(1) {
for(i = 0; i < 256; i++) {
if((line[i] = fgetc(in)) == EOF) {
if(i)
break;
fclose(in);
fclose(out);
return(0);
}
if(line[i] == '\r')
i--;
if(line[i] == '\n')
break;
}
pw_pos = 0;
line[i] = 0;
if(!strncmp(line, pw_str1, strlen(pw_str1)))
pw_pos = strlen(pw_str1);
if(!strncmp(line, pw_str2, strlen(pw_str2)))
pw_pos = strlen(pw_str2);
if(!pw_pos) {
fprintf(stdout, "%s\n", line);
continue;
}
if(cdecrypt(&line[pw_pos], passwd)) {
fprintf(stderr, "Error.\n");
exit(1);
}
else {
if(pw_pos == strlen(pw_str1))
fprintf(out, "%s", pw_str1);
else
fprintf(out, "%s", pw_str2);
fprintf(out, "%s\n", passwd);
}
}
}
NOTE:
The above entireness exclusive on a UNIX platform. If you are streaming Windows, then you module hit to ingest some brute obligate countersign cracker.
Tag :
Video Training
CBT - Linux RedHat 10CD IT Video Training
CBT - Linux RedHat 10CD IT Video Training 2.87 GB
CD01 : Linux Basic
CD02 : Client Install
CD03 : Linux RedHat Desktop
CD04 : Linux RedHat Client Admin
CD05 : Linux RedHat Server Install
CD06 : Linux RedHat System Management
CD07 : Linux RedHat Network Admin
CD08 : Linux RedHat Web Services
CD09 : Linux RedHat Messaging
CD10 : Linux RedHat Web Secirity
CD02 : Client Install
CD03 : Linux RedHat Desktop
CD04 : Linux RedHat Client Admin
CD05 : Linux RedHat Server Install
CD06 : Linux RedHat System Management
CD07 : Linux RedHat Network Admin
CD08 : Linux RedHat Web Services
CD09 : Linux RedHat Messaging
CD10 : Linux RedHat Web Secirity
CBT-Linux-RedHat_10CD.part03
CBT-Linux-RedHat_10CD.part04
CBT-Linux-RedHat_10CD.part05
CBT-Linux-RedHat_10CD.part06
CBT-Linux-RedHat_10CD.part07
CBT-Linux-RedHat_10CD.part08
CBT-Linux-RedHat_10CD.part09
CBT-Linux-RedHat_10CD.part10
CBT-Linux-RedHat_10CD.part11
CBT-Linux-RedHat_10CD.part12
CBT-Linux-RedHat_10CD.part13
CBT-Linux-RedHat_10CD.part14
CBT-Linux-RedHat_10CD.part15
CBT-Linux-RedHat_10CD.part16
CBT-Linux-RedHat_10CD.part17
CBT-Linux-RedHat_10CD.part18
CBT-Linux-RedHat_10CD.part19
CBT-Linux-RedHat_10CD.part20
CBT-Linux-RedHat_10CD.part21
CBT-Linux-RedHat_10CD.part22
CBT-Linux-RedHat_10CD.part23
CBT-Linux-RedHat_10CD.part24
CBT-Linux-RedHat_10CD.part25
CBT-Linux-RedHat_10CD.part26
Tag :
Video Training
Network routing Book
Network routing Book Size : 28.26 MB
Network routing can be broadly categorized into Internet routing, PSTN routing, and telecommunication transport network routing. This book systematically considers these routing paradigms, as well as their interoperability. The authors discuss how algorithms, protocols, analysis, and operational deployment impact these approaches. A unique feature of the book is consideration of both macro-state and micro-state in routing; that is, how routing is accomplished at the level of networks and how routers or switches are designed to enable efficient routing.
In reading this book, one will learn about
In reading this book, one will learn about
1) the evolution of network routing,
2) the role of IP and E.164 addressing in routing,
3) the impact on router and switching architectures and their design,
4) deployment of network routing protocols,
5) the role of traffic engineering in routing, and
6) lessons learned from implementation and operational experience
.
This book explores the strengths and weaknesses that should be considered during deployment of future routing schemes as well as actual implementation of these schemes. It allows the reader to understand how different routing strategies work and are employed and the connection between them. This is accomplished in part by the authors' use of numerous real-world examples to bring the material alive.
. Bridges the gap between theory and practice in network routing, including the fine points of implementation and operational experience
. Routing in a multitude of technologies discussed in practical detail, including, IP/MPLS, PSTN, and optical networking
. Routing protocols such as OSPF, IS-IS, BGP presented in detail
. A detailed coverage of various router and switch architectures
. A comprehensive discussion about algorithms on IP-lookup and packet classification
. Accessible to a wide audience due to its vendor-neutral approach
. CD-ROM with bonus chapters on advanced topics
. Bridges the gap between theory and practice in network routing, including the fine points of implementation and operational experience
. Routing in a multitude of technologies discussed in practical detail, including, IP/MPLS, PSTN, and optical networking
. Routing protocols such as OSPF, IS-IS, BGP presented in detail
. A detailed coverage of various router and switch architectures
. A comprehensive discussion about algorithms on IP-lookup and packet classification
. Accessible to a wide audience due to its vendor-neutral approach
. CD-ROM with bonus chapters on advanced topics
Download Link :-
Network.Routing
Tag :
Video Training
Ninja Hacking – Unconventional Penetration Testing Tactics and Techniques
Ninja Hacking – Unconventional Penetration Testing Tactics and Techniques
(8.5MB)
Ever thought of using the time-tested tactics and techniques of the ancient ninja to understand the mind of today’s ninja, the hacker? As a penetration tester or security consultant you no doubt perform tests both externally and internally for your clients that include both physical and technical tests. Throw traditional pen testing methods out the window for now and see how thinking and acting like a ninja can actually grant you quicker and more complete access to a company’s assets. Get in before the hacker does with these unorthodox techniques. Use all of the tools that the ninja has: disguise, espionage, stealth, and concealment. Learn how to benefit from these tools by laying your plans, impersonating employees, infiltrating via alarm system evasion, discovering weak points and timing, spyware and keylogging software, and log manipulation and logic bombs. And, really, don’t you want to be a ninja for a day just because they’re cool? Let this book be your excuse!
* Discusses techniques used by malicious attackers in real-world situations
* Details unorthodox penetration testing techniques by getting inside the mind of a ninja
* Expands upon current penetration testing methodologies including new tactics for hardware and physical attacks
* Discusses techniques used by malicious attackers in real-world situations
* Details unorthodox penetration testing techniques by getting inside the mind of a ninja
* Expands upon current penetration testing methodologies including new tactics for hardware and physical attacks
Download Link :-
Ninja Hacking Unconventional Penetration Testing.pdf.rar
Tag :
Video Training
CBT Nuggets – HDI Desktop Support Technician (DST)-iNKiSO
CBT Nuggets – HDI Desktop Support Technician
580 MB
Do you have the interpersonal helpdesk skills employers want? Desktop Support Technician (DST) certification from the Helpdesk Institute (HDI) says you do.
Desktop support is a fascinating technical challenge, but you’ll need to go beyond the techy details if you want to be a successful support technician.
Employers expect you to have plenty of customer-relation soft skills as well.
Desktop support is a fascinating technical challenge, but you’ll need to go beyond the techy details if you want to be a successful support technician.
Whether you’re new to desktop support or building on other certifications you’ve earned — like Microsoft’s MCDST or MCITP: Desktop Support Technician — DST certification sets you apart as a well-rounded technician with the soft skills employers covet.
Download Links :-
CBT Nuggets – HDI Desktop Support Technician.part3
CBT Nuggets MS ISA Server 2004
MS ISA Server 2004 421.5 MB
The Microsoft exam covered by this training has been retired. If you are still using the equipment covered by this retired exam, however, you’ll find that this training holds significant value as an on the job reference.
This Jeremy Cioara video training for ISA Server 2004 maps to Microsoft Exam 70-350. You”ll be earning elective credit towards both the MCSE and MCSA 2003 certifications, while you gain on-the-job skills for deploying ISA Server 2004 on your network from start-to-finish.
The series also teaches you how to configure the ISA Server firewall to inspect packets down to the application-layer data and filter out hard-to-catch instant messaging and peer-to-peer file sharing applications. It even gives you a side-by-side comparison of ISA Server 2004 to competitors such as Cisco PIX and Checkpoint, so you can determine which firewall will best meet the needs of your network.
The series also teaches you how to configure the ISA Server firewall to inspect packets down to the application-layer data and filter out hard-to-catch instant messaging and peer-to-peer file sharing applications. It even gives you a side-by-side comparison of ISA Server 2004 to competitors such as Cisco PIX and Checkpoint, so you can determine which firewall will best meet the needs of your network.
Tag :
Video Training
CBT Nuggets VBScript to Windows PowerShel
CBT Nuggets VBScript to Windows PowerShel 765MB
English PowerShell is the all-in-one Engine for Windows Servers and Administering applications. If you’re a Windows Administrator accustomed to using VBScript and Want to Quickly Migrate your skills and techniques INTO the Powerful World of Windows PowerShell, this is the Training for you!
Don Jones Shows you How to leverage your existing Quickly VBScript skills and start working in PowerShell. As you learn new Variations on your existing VBScript techniques, you’ll be working faster and efficiently More . By the time you’re done watching, you’ll be Able to do Anything in PowerShell That Could you alone in VBScript. Contents: On The Job Training Series – VBScript to PowerShell
Introduction :-
Windows PowerShell Overview
Objects and their Members
Using PowerShell’s Help
Variables, Arrays, Dictionaries, Operartors, Quotes, and Escaping
Managing Files and Folders
Constructs
Working with WMI and Active Directory
Scripts and Functions
Advanced Scripting Techniques
The PowerShell Way to Write Functions
Understanding Scope
Error Trapping and Handling
Regular Expressions
Functions, Scripts, and Scope
Shell Security
VBScript to PowerShell Language Cross-Reference
Using COM Objects
Graphical Scripts Moving from HTAs
The War on Scripting
Windows PowerShell Overview
Objects and their Members
Using PowerShell’s Help
Variables, Arrays, Dictionaries, Operartors, Quotes, and Escaping
Managing Files and Folders
Constructs
Working with WMI and Active Directory
Scripts and Functions
Advanced Scripting Techniques
The PowerShell Way to Write Functions
Understanding Scope
Error Trapping and Handling
Regular Expressions
Functions, Scripts, and Scope
Shell Security
VBScript to PowerShell Language Cross-Reference
Using COM Objects
Graphical Scripts Moving from HTAs
The War on Scripting
Download Links :-
Tag :
Video Training
Train Signal Hyper-V Training
Train Signal Hyper-V Training | 2.47 GB
If you want to develop hands-on experience with Hyper-V and potentially revolutionize how you think about system administration, then this course is for you!
In this course you will discover the tools and techniques that allow you to quickly provision new servers, create test environments, configure virtualized physical servers, and much more. Plus, this course covers the new features of Hyper-V in Windows Server 2008 R2.
Hyper-V virtualization is a huge leap forward in Windows Server technology, and learning to properly utilize Hyper-V will help you stay competitive in the emerging virtualization market.
Hyper-V Course Outline
Video 1
Welcome to Hyper-V
Of course we have to have an introduction Video to let you know what's in the course, what you can expect, and a little about your instructor.
* About Your Instructor
* What's Covered in this Course
* Hardware used in the course (so you can play along at home)
Video 2
Requirements and Installation
In this Video I provide some virtualization theory and hardware requirements to prepare you for the rest of the course. Then, I turn right around and show you how to get the Hyper-V Server Role installed.
* Virtualization 101
* When Virtualization is a Good Idea
* What Hyper-V Is
* Hyper-V's Many Flavors
* Hardware Requirements
* VM's Licensing
* Globomantic's Scenario
* Getting Hyper-V Installed
Video 3
Creating a Virtual Machine
In this Video I walk you step-by-step through creating your first virtual machine in Hyper-V.
* Integration Services
* Creating a New Virtual Machine (VM)
* Installing OS on VM
* Installing Integration Services
* Using VM Toolbar
* Processor Stuff
* RAM Stuff
* Disk Stuff
* Adding Processor, RAM, & SCSI Drive to Our VM
* Creating a Snapshot
Video 4
Virtual Networks
Before we set up our Virtual Network; I'm going to show you the secrets you need to know to allow your Virtual Machines to talk to each other.
* What Do You Need for a Virtual Network?
* The 3 Kinds of Virtual Networks
* Nifty Options for Your Internal VN
* How Many Networks Can You Have?
* Creating a Private Network
* Creating a Virtual Machine
* Changing Network Connection on VM
* Installing Integration Services
* Checking Network Connectivity
* Can Our Machines Talk to Each Other?
* Renaming Our Virtual Machines
Video 5
Virtual Disk and Snapshot Tricks
In this Video I'll show you some of the advantages of Virtual Hard Disks, including hardware and software flexibility. Plus, I'll reveal the secret to super-fast deployment!
* Types of Virtual Disks
* Differencing Disks
* Creating VM Using Differencing Disk
* Deleting Differencing Disk
* What are Snapshots?
* Using Snapshots
Video 6
Using Windows Deployment Services (WDS) To Deploy Virtual Machines
Since Microsoft has created their own image-based deployment option, Windows Deployment Services, server deployment has become much faster and easier. In this Video I'll show you how using WDS in conjunction with Hyper-V can make migrating a physical server to a virtual environment a simple task.
* WDS in 3 Easy Steps
* Creating a WDS VM Machine
* Configuring WDS
* Creating Capture Image
* Utilizing WDS to Install Server 2008
* Capturing OS
* Re-configuring Our Old Web Server
* Moving Image to Hyper-V Server
* Adding an Image to Installation Folder
* Reconstituting Web Server as Hyper-V Machine
* Finishing Up New Web Server Configuration
Video 7
Making Your Virtual Machines Portable
Being able to export and import your virtual machines allows you to move, back-up, and restore your VM's in a snap.
* Why This is a Good Idea?
* Exporting VM
* Importing VM
Video 8
Providing Access to Hyper-V
In this Video I'll show you how to share the wealth with users who need access to Hyper-V management tools.
* Hyper-V Access From Vista
* Remote Access for Hyper-V
* Using HVRemote
* Changes Made by HVRemote Script
* Firewall Settings
* Checking Our Web Developer Account Access
* Restricting Access with HVRemote
* Additional Thoughts on Hyper-V Security
Video 9
Building a Complete AD Test Environment in Hyper-V
Using Hyper-V to create a testing environment is a great way to create a disposable and easy-to-restore set of machines to play with during the testing and development of new software applications. In this Video we'll take everything you you've learned thus far and put it all to use.
* Deploying Virtual Domain Controller
* Deploying Virtual File Server
* Setting Up Domain Controller and File Server
* Changing Administrative Logon Credentials
* Joining File Server to the New Domain
* Installing DHCP
* Joining DWS Server to V-Globomantics Network
* Creating Virtual Web Server
* Creating a Virtual Client Machine
* Completing Web Server and Vista Installations
* Testing and Troubleshooting the Connectivity
* Creating WebDeveloper Account
Video 10
Server 2008 R2 Upgrade
In this Video I'll show the new features of Hyper-V in Server 2008 R2. Plus, I'll show you how to upgrade your existing machine to R2!
* Server 2008 R2 Enhancements
* Upgrading Server 2008 to R2
Video 11
New Features for Hyper-V in Server 2008 R2
Adding storage in a physical environment can be less then fun. One of the great features of Server 2008 R2 is the ability to add and remove Virtual Hard Disks on a virtual SCSI controller. I will show you some other new “fun features” that the boys and girls over at Microsoft have come up with to make your experience with Hyper-V even easier!
* Dynamic Storage - Easy Swapping of VHD's on SCSI
* Migration Options
* Core Parking
Video 12
Failover Clustering
In this Video I'll give you the low-down on Failover Clustering with Hyper-V. Then, we'll do a “science experiment” to create a Failover Cluster that will allow you to have a highly available virtual machine.
* Primer on Failover Clustering
* Science Time - Building Failover Cluster
* Setting Up for Hyper-V Clustering
* Attaching iSCSI Storage
* Validating Configuration
* Creating a Cluster
* Configuring Cluster Quorum Settings
* Creating Highly Available Virtual Machine
* Live and Quick Migration
In this course you will discover the tools and techniques that allow you to quickly provision new servers, create test environments, configure virtualized physical servers, and much more. Plus, this course covers the new features of Hyper-V in Windows Server 2008 R2.
Hyper-V virtualization is a huge leap forward in Windows Server technology, and learning to properly utilize Hyper-V will help you stay competitive in the emerging virtualization market.
Hyper-V Course Outline
Video 1
Welcome to Hyper-V
Of course we have to have an introduction Video to let you know what's in the course, what you can expect, and a little about your instructor.
* About Your Instructor
* What's Covered in this Course
* Hardware used in the course (so you can play along at home)
Video 2
Requirements and Installation
In this Video I provide some virtualization theory and hardware requirements to prepare you for the rest of the course. Then, I turn right around and show you how to get the Hyper-V Server Role installed.
* Virtualization 101
* When Virtualization is a Good Idea
* What Hyper-V Is
* Hyper-V's Many Flavors
* Hardware Requirements
* VM's Licensing
* Globomantic's Scenario
* Getting Hyper-V Installed
Video 3
Creating a Virtual Machine
In this Video I walk you step-by-step through creating your first virtual machine in Hyper-V.
* Integration Services
* Creating a New Virtual Machine (VM)
* Installing OS on VM
* Installing Integration Services
* Using VM Toolbar
* Processor Stuff
* RAM Stuff
* Disk Stuff
* Adding Processor, RAM, & SCSI Drive to Our VM
* Creating a Snapshot
Video 4
Virtual Networks
Before we set up our Virtual Network; I'm going to show you the secrets you need to know to allow your Virtual Machines to talk to each other.
* What Do You Need for a Virtual Network?
* The 3 Kinds of Virtual Networks
* Nifty Options for Your Internal VN
* How Many Networks Can You Have?
* Creating a Private Network
* Creating a Virtual Machine
* Changing Network Connection on VM
* Installing Integration Services
* Checking Network Connectivity
* Can Our Machines Talk to Each Other?
* Renaming Our Virtual Machines
Video 5
Virtual Disk and Snapshot Tricks
In this Video I'll show you some of the advantages of Virtual Hard Disks, including hardware and software flexibility. Plus, I'll reveal the secret to super-fast deployment!
* Types of Virtual Disks
* Differencing Disks
* Creating VM Using Differencing Disk
* Deleting Differencing Disk
* What are Snapshots?
* Using Snapshots
Video 6
Using Windows Deployment Services (WDS) To Deploy Virtual Machines
Since Microsoft has created their own image-based deployment option, Windows Deployment Services, server deployment has become much faster and easier. In this Video I'll show you how using WDS in conjunction with Hyper-V can make migrating a physical server to a virtual environment a simple task.
* WDS in 3 Easy Steps
* Creating a WDS VM Machine
* Configuring WDS
* Creating Capture Image
* Utilizing WDS to Install Server 2008
* Capturing OS
* Re-configuring Our Old Web Server
* Moving Image to Hyper-V Server
* Adding an Image to Installation Folder
* Reconstituting Web Server as Hyper-V Machine
* Finishing Up New Web Server Configuration
Video 7
Making Your Virtual Machines Portable
Being able to export and import your virtual machines allows you to move, back-up, and restore your VM's in a snap.
* Why This is a Good Idea?
* Exporting VM
* Importing VM
Video 8
Providing Access to Hyper-V
In this Video I'll show you how to share the wealth with users who need access to Hyper-V management tools.
* Hyper-V Access From Vista
* Remote Access for Hyper-V
* Using HVRemote
* Changes Made by HVRemote Script
* Firewall Settings
* Checking Our Web Developer Account Access
* Restricting Access with HVRemote
* Additional Thoughts on Hyper-V Security
Video 9
Building a Complete AD Test Environment in Hyper-V
Using Hyper-V to create a testing environment is a great way to create a disposable and easy-to-restore set of machines to play with during the testing and development of new software applications. In this Video we'll take everything you you've learned thus far and put it all to use.
* Deploying Virtual Domain Controller
* Deploying Virtual File Server
* Setting Up Domain Controller and File Server
* Changing Administrative Logon Credentials
* Joining File Server to the New Domain
* Installing DHCP
* Joining DWS Server to V-Globomantics Network
* Creating Virtual Web Server
* Creating a Virtual Client Machine
* Completing Web Server and Vista Installations
* Testing and Troubleshooting the Connectivity
* Creating WebDeveloper Account
Video 10
Server 2008 R2 Upgrade
In this Video I'll show the new features of Hyper-V in Server 2008 R2. Plus, I'll show you how to upgrade your existing machine to R2!
* Server 2008 R2 Enhancements
* Upgrading Server 2008 to R2
Video 11
New Features for Hyper-V in Server 2008 R2
Adding storage in a physical environment can be less then fun. One of the great features of Server 2008 R2 is the ability to add and remove Virtual Hard Disks on a virtual SCSI controller. I will show you some other new “fun features” that the boys and girls over at Microsoft have come up with to make your experience with Hyper-V even easier!
* Dynamic Storage - Easy Swapping of VHD's on SCSI
* Migration Options
* Core Parking
Video 12
Failover Clustering
In this Video I'll give you the low-down on Failover Clustering with Hyper-V. Then, we'll do a “science experiment” to create a Failover Cluster that will allow you to have a highly available virtual machine.
* Primer on Failover Clustering
* Science Time - Building Failover Cluster
* Setting Up for Hyper-V Clustering
* Attaching iSCSI Storage
* Validating Configuration
* Creating a Cluster
* Configuring Cluster Quorum Settings
* Creating Highly Available Virtual Machine
* Live and Quick Migration
Download Links :-
Train.Signal.Hyper-V.part03.rar
Train.Signal.Hyper-V.part04.rar
Train.Signal.Hyper-V.part05.rar
Train.Signal.Hyper-V.part06.rar
Train.Signal.Hyper-V.part07.rar
Train.Signal.Hyper-V.part08.rar
Train.Signal.Hyper-V.part09.rar
Train.Signal.Hyper-V.part10.rar
Train.Signal.Hyper-V.part11.rar













