Penetration Testing mailing list archives

Re: pentesting and macbook pro


From: Webmilhouse <webmilhouse () gmail com>
Date: Fri, 28 Jul 2006 06:36:23 -0400

You can get the tools you listed for OS X at
http://darwinports.opendarwin.org/ or by using Fink
http://fink.sourceforge.net/. These projects compile FreeBSD ports of
the linux tools that you mention with an easy "apt-get" like
interface.

As for Parallels/XP using CORE Impact testing, I would suggest you try
it using VMware or such -- it would probably be somewhat similar. I
don't see how it would be that different, although I know of some
problems using peripherals in XP under Parallels.

Hope this helps.

Peter

On 7/27/06, kelly () cliffhanger com <kelly () cliffhanger com> wrote:
I wish I could answer your questions but I can't.
I'm not experienced enough.  I'm looking forward
to some feedback from those on this list who are.

--
kelly
http://home1.gte.net/res0psau/index.html#Hang-Gliding-Stuff

           --    --
             \  /
              \/
              /\
             /  \
           --    --



Quoting Kyle Starkey <kstarkey () siegeworks com>:
        Thanks for the input folks... I am trying to cost justify the $3K for my new
        MBP right now (anyone have any good security/pentest focused reasons to go
        this direction)... Has anyone had any problems compiling/running any of the
        unix flavor tools in OSX (john, nessus, hydra, rainbow crack)?  Or has
        anyone had any problems with the windows stack being muddled thru paralles
        and into OSX and as such stopping attack tools from working?

        I know, I know... If you have a native *nix OS why would you be messing with
        Windows... My only response is CORE...

        Cheers
        -K

        -----Original Message-----
        From: DaKahuna [mailto:da.kahuna () gmail com]
        Sent: Monday, July 24, 2006 6:11 PM
        To: pen-test () securityfocus com
        Subject: Re: pentesting and macbook pro

        Kelly,

          I am using a D-Link DWL-122 with my MBP and it works just fine.  OS
        X sees it as a Prism 2 chipset and KisMAC uses it natively.  I have
        also used it successfully on other systems with both Auditor and
        BackTrack.

        Other than having to use Rosetta every once in a while to get a DMG
        to work correctly, I do not see any problems with the MBP.  I have
        Windows XP installed under Paralles but have not spent any time with it.


        On Jul 22, 2006, at 4:45 PM, kelly () cliffhanger com wrote:

        > I just bought a macbook pro.  I can still take it
        > back if I want to but, I'm wondering if any of you
        > find the macbook pro (intel proc) useful for pen
        > testing?
        >
        > I'm running an app called parallels.  Parallels is
        > like vmware for mac.  But I'm not sure if I can
        > build internal networks like vmware tho.
        >
        > My biggest question is ...
        >
        >  - What usb wireless cards are available that work
        >    with the bootable linux distros (for pen
        >    testing)?
        >
        >  - Is the macbook pro (intel) useful for pen
        >    testing?
        >
        > --
        > kelly
        > http://home1.gte.net/res0psau/index.html#Hang-Gliding-Stuff
        >
        >          --    --
        >            \  /
        >             \/
        >             /\
        >            /  \
        >          --    --
        >
        >
        >
        > ----------------------------------------------------------------------
        > --------
        > This List Sponsored by: Cenzic
        >
        > Concerned about Web Application Security?
        > Why not go with the #1 solution - Cenzic, the only one to win the
        > Analyst's
        > Choice Award from eWeek. As attacks through web applications
        > continue to rise,
        > you need to proactively protect your applications from hackers.
        > Cenzic has the
        > most comprehensive solutions to meet your application security
        > penetration
        > testing and vulnerability management needs. You have an option to
        > go with a
        > managed service (Cenzic ClickToSecure) or an enterprise software
        > (Cenzic Hailstorm). Download FREE whitepaper on how a managed
        > service can
        > help you: http://www.cenzic.com/news_events/wpappsec.php
        > And, now for a limited time we can do a FREE audit for you to
        > confirm your
        > results from other product. Contact us at request () cenzic com for
        > details.
        > ----------------------------------------------------------------------
        > --------
        >


        ----------------------------------------------------------------------------
        --
        This List Sponsored by: Cenzic

        Concerned about Web Application Security?
        Why not go with the #1 solution - Cenzic, the only one to win the Analyst's
        Choice Award from eWeek. As attacks through web applications continue to
        rise,
        you need to proactively protect your applications from hackers. Cenzic has
        the
        most comprehensive solutions to meet your application security penetration
        testing and vulnerability management needs. You have an option to go with a
        managed service (Cenzic ClickToSecure) or an enterprise software
        (Cenzic Hailstorm). Download FREE whitepaper on how a managed service can
        help you: http://www.cenzic.com/news_events/wpappsec.php
        And, now for a limited time we can do a FREE audit for you to confirm your
        results from other product. Contact us at request () cenzic com for details.
        ----------------------------------------------------------------------------
        --


        ------------------------------------------------------------------------------
        This List Sponsored by: Cenzic

        Concerned about Web Application Security?
        Why not go with the #1 solution - Cenzic, the only one to win the Analyst's
        Choice Award from eWeek. As attacks through web applications continue to rise,
        you need to proactively protect your applications from hackers. Cenzic has the
        most comprehensive solutions to meet your application security penetration
        testing and vulnerability management needs. You have an option to go with a
        managed service (Cenzic ClickToSecure) or an enterprise software
        (Cenzic Hailstorm). Download FREE whitepaper on how a managed service can
        help you: http://www.cenzic.com/news_events/wpappsec.php
        And, now for a limited time we can do a FREE audit for you to confirm your
        results from other product. Contact us at request () cenzic com for details.
        ------------------------------------------------------------------------------


------------------------------------------------------------------------------
This List Sponsored by: Cenzic

Concerned about Web Application Security?
Why not go with the #1 solution - Cenzic, the only one to win the Analyst's
Choice Award from eWeek. As attacks through web applications continue to rise,
you need to proactively protect your applications from hackers. Cenzic has the
most comprehensive solutions to meet your application security penetration
testing and vulnerability management needs. You have an option to go with a
managed service (Cenzic ClickToSecure) or an enterprise software
(Cenzic Hailstorm). Download FREE whitepaper on how a managed service can
help you: http://www.cenzic.com/news_events/wpappsec.php
And, now for a limited time we can do a FREE audit for you to confirm your
results from other product. Contact us at request () cenzic com for details.
------------------------------------------------------------------------------



------------------------------------------------------------------------------
This List Sponsored by: Cenzic

Concerned about Web Application Security? Why not go with the #1 solution - Cenzic, the only one to win the Analyst's Choice Award from eWeek. As attacks through web applications continue to rise, you need to proactively protect your applications from hackers. Cenzic has the most comprehensive solutions to meet your application security penetration testing and vulnerability management needs. You have an option to go with a managed service (Cenzic ClickToSecure) or an enterprise software (Cenzic Hailstorm). Download FREE whitepaper on how a managed service can help you: http://www.cenzic.com/news_events/wpappsec.php And, now for a limited time we can do a FREE audit for you to confirm your results from other product. Contact us at request () cenzic com for details.
------------------------------------------------------------------------------


Current thread: