Penetration Testing mailing list archives

Juniper Secure Access - Mask hostnames while browsing


From: Agazzini Maurizio <inode () mediaservice net>
Date: Wed, 19 May 2010 12:01:10 +0200

Dear List,

during my last pentest I encountered into a Juniper Secure Access with
"Mask hostnames while browsing" feature enable. I developed a little
tool to encode/decode these kind of parameters (it's a simple circular
queue). You can find the code here:

http://lab.mediaservice.net/code.php#junidec

Cheers,

inode

-- 
Maurizio Agazzini                     CISSP, OPST
Senior Security Advisor
Team Manager
@ Mediaservice.net Srl                Tel: +39-011-32.72.100
Via San Bernardino, 17                Fax: +39-011-32.46.497
10141 Torino - ITALY                  http://mediaservice.net/

------------------------------------------------------------------------
This list is sponsored by: Information Assurance Certification Review Board

Prove to peers and potential employers without a doubt that you can actually do a proper penetration test. IACRB CPT 
and CEPT certs require a full practical examination in order to become certified. 

http://www.iacertification.org
------------------------------------------------------------------------


Current thread: