Security Basics mailing list archives

Re: hax.tor


From: Zimler Attila Tamás <hijaszu () hlfslinux hu>
Date: Mon, 26 Nov 2007 18:28:56 +0100

0x90 wrote:


 Dear List,

let me bring to your attention a site that deals with basic
security issues presented in a hackme-fashion way. You advance
on very easy levels that have hints to them and will teach
you something useful in everyday IT sec. Examples:

- exploiting buggy custom PHP scripts: bugs are taken from real life
- SQL injection
- decoding an MSSQL password from a sniffed login sequence
- decoding wcx_ftp.ini passwords
- googling the smart way
- looking up virtualhosts on a webserver
- spoofing http headers
- exploiting legal usage of web services for misc purposes
- basic mathematics: base. binary, equation
- realistic and (legal) _REALITY_ missions
- recognizing and decoding md5/des/base64/etc
- google word game ( telnet://hax.tor.hu )
- forging a DNS request
- decrypting MS-Word documents
- out-of-the-box thinking

Along the levels, you will find funny pictures to relax with,
music to listen to, maybe even ascii cow art :-)

If you are interested in the above, you may check it out here. (this is a minimalistic site, there are no ads or overcrowded menus)

http://hax.tor.hu/

Have a nice day,
0x90




What do you want to SSH connect to FBI-s homepage?
If this is a game, why don't you provide yourself the target for scanning it?

Attila


Current thread: