<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments for security.crudtastic.com</title>
	<atom:link href="http://security.crudtastic.com/?feed=comments-rss2" rel="self" type="application/rss+xml" />
	<link>http://security.crudtastic.com</link>
	<description>Security Nerd Stuff</description>
	<lastBuildDate>Thu, 02 Sep 2010 23:28:41 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.0.1</generator>
	<item>
		<title>Comment on Ash&#8217;s mental thoughts going into the OSCP exam by ash</title>
		<link>http://security.crudtastic.com/?p=213&#038;cpage=1#comment-12480</link>
		<dc:creator>ash</dc:creator>
		<pubDate>Thu, 02 Sep 2010 23:28:41 +0000</pubDate>
		<guid isPermaLink="false">http://security.crudtastic.com/?p=213#comment-12480</guid>
		<description>nah ... dont quit!!

Go back to your book and read up on what you can do. it may not be a single exploit or technique, rather multiple exploits or techniques :)

If you can do all the exercises in the manual and get the final machines at the end of the manual, you should be fine. If you cant do them, I would suggest getting more lab time, reading the forums, and asking for some help in the IRC channel.

There&#039;s some awesome people about that will be more than happy to help you (they helped me greatly)

Feel free to contact me if you need to bounce some ideas around.

Think about trying to recreate what you scanned int he lab as virtual images so that you can sit at home and practice hacking them as well</description>
		<content:encoded><![CDATA[<p>nah &#8230; dont quit!!</p>
<p>Go back to your book and read up on what you can do. it may not be a single exploit or technique, rather multiple exploits or techniques <img src='http://security.crudtastic.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
<p>If you can do all the exercises in the manual and get the final machines at the end of the manual, you should be fine. If you cant do them, I would suggest getting more lab time, reading the forums, and asking for some help in the IRC channel.</p>
<p>There&#8217;s some awesome people about that will be more than happy to help you (they helped me greatly)</p>
<p>Feel free to contact me if you need to bounce some ideas around.</p>
<p>Think about trying to recreate what you scanned int he lab as virtual images so that you can sit at home and practice hacking them as well</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Ash&#8217;s mental thoughts going into the OSCP exam by Yaggi</title>
		<link>http://security.crudtastic.com/?p=213&#038;cpage=1#comment-12410</link>
		<dc:creator>Yaggi</dc:creator>
		<pubDate>Thu, 02 Sep 2010 08:50:41 +0000</pubDate>
		<guid isPermaLink="false">http://security.crudtastic.com/?p=213#comment-12410</guid>
		<description>Hi ash,

Maybe I forgot the timing option, instead, I used unicornscan and netcat scan.. When I get the information like banner, software version, open ports, OS, I feel like stuck since I can&#039;t use more on vuln scanner and metasploit. I was completely stuck and i was not able to gain the confidence again.. I feel sorry that with this information at hand I can&#039;t hack a machine. Although I can go to exploit-db, still the process for me is confusing... I pity myself.

I really wanted to know how the 4 machines was hack.. Im not sure to take the exam again coz until now I can&#039;t believe I failed.</description>
		<content:encoded><![CDATA[<p>Hi ash,</p>
<p>Maybe I forgot the timing option, instead, I used unicornscan and netcat scan.. When I get the information like banner, software version, open ports, OS, I feel like stuck since I can&#8217;t use more on vuln scanner and metasploit. I was completely stuck and i was not able to gain the confidence again.. I feel sorry that with this information at hand I can&#8217;t hack a machine. Although I can go to exploit-db, still the process for me is confusing&#8230; I pity myself.</p>
<p>I really wanted to know how the 4 machines was hack.. Im not sure to take the exam again coz until now I can&#8217;t believe I failed.</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Ash&#8217;s mental thoughts going into the OSCP exam by ash</title>
		<link>http://security.crudtastic.com/?p=213&#038;cpage=1#comment-12353</link>
		<dc:creator>ash</dc:creator>
		<pubDate>Wed, 01 Sep 2010 19:30:43 +0000</pubDate>
		<guid isPermaLink="false">http://security.crudtastic.com/?p=213#comment-12353</guid>
		<description>Dont get discouraged :)

You can definitely nmap the machines .. check the timing (-T)

Your first machine you have to write an exploit for .. just remember what happened in the class

The others are the same as machines you should have done at the end of the book ... there is nothing new here.

When I resat the exam I completed it in 3 hours :) Let me know if you need to talk about this more .. good luck .. you can do it!!</description>
		<content:encoded><![CDATA[<p>Dont get discouraged <img src='http://security.crudtastic.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
<p>You can definitely nmap the machines .. check the timing (-T)</p>
<p>Your first machine you have to write an exploit for .. just remember what happened in the class</p>
<p>The others are the same as machines you should have done at the end of the book &#8230; there is nothing new here.</p>
<p>When I resat the exam I completed it in 3 hours <img src='http://security.crudtastic.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' />  Let me know if you need to talk about this more .. good luck .. you can do it!!</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Ash&#8217;s mental thoughts going into the OSCP exam by yaggi</title>
		<link>http://security.crudtastic.com/?p=213&#038;cpage=1#comment-12335</link>
		<dc:creator>yaggi</dc:creator>
		<pubDate>Wed, 01 Sep 2010 16:22:08 +0000</pubDate>
		<guid isPermaLink="false">http://security.crudtastic.com/?p=213#comment-12335</guid>
		<description>Im glad you passed. Me, I failed... I think because of the limitations being set like 1 metasploit and no vuln scan.. I belive we can exploit this but their are tools that are not working during the recon like NMAP... Everytime you do the NMAP it says host is not UP even you will use almost all the options (i.e, -PN)

Also, regarding the 4 machines, the instruction is confusing, it says to gain the root access. I believe the way to get the root of the 4 machines is to get an exploit in the internet and run it against the machine right?

Hope I can pass in the next round..

Hope you can share more information my friend.. Its hard to ask help also..I guess your site give at least an encouraging hints</description>
		<content:encoded><![CDATA[<p>Im glad you passed. Me, I failed&#8230; I think because of the limitations being set like 1 metasploit and no vuln scan.. I belive we can exploit this but their are tools that are not working during the recon like NMAP&#8230; Everytime you do the NMAP it says host is not UP even you will use almost all the options (i.e, -PN)</p>
<p>Also, regarding the 4 machines, the instruction is confusing, it says to gain the root access. I believe the way to get the root of the 4 machines is to get an exploit in the internet and run it against the machine right?</p>
<p>Hope I can pass in the next round..</p>
<p>Hope you can share more information my friend.. Its hard to ask help also..I guess your site give at least an encouraging hints</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Android &#8211; Exchange &#8211; Failed to create account by Tone</title>
		<link>http://security.crudtastic.com/?p=249&#038;cpage=1#comment-11721</link>
		<dc:creator>Tone</dc:creator>
		<pubDate>Sat, 28 Aug 2010 04:54:42 +0000</pubDate>
		<guid isPermaLink="false">http://security.crudtastic.com/?p=249#comment-11721</guid>
		<description>Thanks...you rock!</description>
		<content:encoded><![CDATA[<p>Thanks&#8230;you rock!</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Note To Self &#8211; JMP ESP Locations by matu</title>
		<link>http://security.crudtastic.com/?p=199&#038;cpage=1#comment-11577</link>
		<dc:creator>matu</dc:creator>
		<pubDate>Thu, 26 Aug 2010 15:53:42 +0000</pubDate>
		<guid isPermaLink="false">http://security.crudtastic.com/?p=199#comment-11577</guid>
		<description>Anyone has a working site to look for opcodes,It&#039;s kinda stupid having to install every windows OS in every language just to have this information available...</description>
		<content:encoded><![CDATA[<p>Anyone has a working site to look for opcodes,It&#8217;s kinda stupid having to install every windows OS in every language just to have this information available&#8230;</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Ubuntu Pentest Edition by ash</title>
		<link>http://security.crudtastic.com/?p=278&#038;cpage=1#comment-10984</link>
		<dc:creator>ash</dc:creator>
		<pubDate>Thu, 19 Aug 2010 00:01:03 +0000</pubDate>
		<guid isPermaLink="false">http://security.crudtastic.com/?p=278#comment-10984</guid>
		<description>Haven&#039;t used it yet .. but Backtrack is only as up-to-date as you keep it :) BT4 is pretty good .. its my choice of weapon for sure hahaha. Mines pretty customised now of course though :)</description>
		<content:encoded><![CDATA[<p>Haven&#8217;t used it yet .. but Backtrack is only as up-to-date as you keep it <img src='http://security.crudtastic.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' />  BT4 is pretty good .. its my choice of weapon for sure hahaha. Mines pretty customised now of course though <img src='http://security.crudtastic.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Ubuntu Pentest Edition by Kieran Jacobsen</title>
		<link>http://security.crudtastic.com/?p=278&#038;cpage=1#comment-10920</link>
		<dc:creator>Kieran Jacobsen</dc:creator>
		<pubDate>Wed, 18 Aug 2010 04:47:53 +0000</pubDate>
		<guid isPermaLink="false">http://security.crudtastic.com/?p=278#comment-10920</guid>
		<description>I must admit the idea of using something that is a little friendlier and alittle more up-to-date than the old trust backtrack, sounds interesting.

Have you had a chance to try it yet?</description>
		<content:encoded><![CDATA[<p>I must admit the idea of using something that is a little friendlier and alittle more up-to-date than the old trust backtrack, sounds interesting.</p>
<p>Have you had a chance to try it yet?</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Android &#8211; Exchange &#8211; Failed to create account by Kieran Jacobsen</title>
		<link>http://security.crudtastic.com/?p=249&#038;cpage=1#comment-10841</link>
		<dc:creator>Kieran Jacobsen</dc:creator>
		<pubDate>Tue, 17 Aug 2010 05:19:19 +0000</pubDate>
		<guid isPermaLink="false">http://security.crudtastic.com/?p=249#comment-10841</guid>
		<description>I saw similar things a few months ago when working with a BES server and permissions for the service account not being applied.

Perhaps you should be using a admin account and std user account? :-)</description>
		<content:encoded><![CDATA[<p>I saw similar things a few months ago when working with a BES server and permissions for the service account not being applied.</p>
<p>Perhaps you should be using a admin account and std user account? <img src='http://security.crudtastic.com/wp-includes/images/smilies/icon_smile.gif' alt=':-)' class='wp-smiley' /> </p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Android &#8211; Exchange &#8211; Failed to create account by Mike Russo</title>
		<link>http://security.crudtastic.com/?p=249&#038;cpage=1#comment-9709</link>
		<dc:creator>Mike Russo</dc:creator>
		<pubDate>Tue, 03 Aug 2010 15:58:26 +0000</pubDate>
		<guid isPermaLink="false">http://security.crudtastic.com/?p=249#comment-9709</guid>
		<description>THANK YOU THANK YOU THANK YOU THANK YOU THANK YOU














THANK





YOU!!!!!!!</description>
		<content:encoded><![CDATA[<p>THANK YOU THANK YOU THANK YOU THANK YOU THANK YOU</p>
<p>THANK</p>
<p>YOU!!!!!!!</p>
]]></content:encoded>
	</item>
</channel>
</rss>
