PaulDotCom mailing list archives

Blue Team Tactics


From: dphull at trustedsignal.com (Dave Hull)
Date: Wed, 5 Aug 2009 10:48:25 -0500

On Sat, Aug 1, 2009 at 9:30 AM, John Strand<strandjs at gmail.com> wrote:

[snip]

Now I want you to focus on the CLI and the built-in tools you get with a
Windows or Linux system.

How about the route command for null routing the attackers IP address(es)?

route add <att.ack.ers.ip> mask 255.255.255.255 127.0.0.1

I'm not a CTF player (yet), but off the top of my head for native
tools on Windows -- netstat, tasklist, route, net, wmic...


Current thread: