Security Basics mailing list archives

RE: Simulating Attacks


From: "Des Ward" <des.ward () ntlworld com>
Date: Thu, 4 Mar 2004 21:51:52 -0000

Webgoat is a good tool for showing examples of a number of web
vulnerabilities.

It can be found at www.owasp.org and runs on apache server on either win32
or *nix platforms.

Des


-----Original Message-----
From: Bhargav Bhikkaji [mailto:bbhikkaji () yahoo co in] 
Sent: 04 March 2004 15:38
To: security-basics () securityfocus com
Subject: Simulating Attacks



Hello Folks,



I am in need of simulating few attacks as demo to a group of 50. Need your
help/suggestion for choosing the following



1) What attacks should i choose ?

2) How to simulate these attacks? 



I am thinking of few attacks like Buffer Overflow, TCP Hijacking but  don't
know how much effort is needed to simulate these. I am not interested in TCP
or ICMP DOS Attacks.



-Bhargav 

---------------------------------------------------------------------------
Ethical Hacking at the InfoSec Institute. Mention this ad and get $545 off 
any course! All of our class sizes are guaranteed to be 10 students or less 
to facilitate one-on-one interaction with one of our expert instructors. 
Attend a course taught by an expert instructor with years of in-the-field 
pen testing experience in our state of the art hacking lab. Master the
skills 
of an Ethical Hacker to better assess the security of your organization. 
Visit us at: 
http://www.infosecinstitute.com/courses/ethical_hacking_training.html
----------------------------------------------------------------------------


---------------------------------------------------------------------------
Ethical Hacking at the InfoSec Institute. Mention this ad and get $545 off
any course! All of our class sizes are guaranteed to be 10 students or less
to facilitate one-on-one interaction with one of our expert instructors.
Attend a course taught by an expert instructor with years of in-the-field
pen testing experience in our state of the art hacking lab. Master the skills
of an Ethical Hacker to better assess the security of your organization.
Visit us at:
http://www.infosecinstitute.com/courses/ethical_hacking_training.html
----------------------------------------------------------------------------


Current thread: