OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
From: dreamwvrdreamwvr.com
Date: Thu Sep 27 2001 - 10:10:36 CDT

  • Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]

    hi,
      Would agree as well. Perhaps one might consider labeling the
    chapter as "Passive Recon*"? As well there might provide best
    practices inserted as measured response to the issue. (Layered defenses
    that do not hinge on any_1 technology.) IMHO FWIW anyhow.
    Best Regards
    dreamwvrdreamwvr.com
    On Wed, Sep 26, 2001 at 10:50:48PM -0600, Kurt Seifried wrote:
    > I would make a chapter about sniffing, most people think it's hard. it's
    > not. dsniff for example will do arp cache poisoning, dns poisoning/etc to
    > make the victim send the information your way. Ditto for people's
    > over-reliance on SSL.
    >
    > Kurt Seifried, kurtseifried.org
    > A15B BEE5 B391 B9AD B0EF
    > AEB0 AD63 0B4E AD56 E574
    > http://www.seifried.org/security/