Penetration Testing mailing list archives

Re: Firebird pentesting


From: Christian Eric Edjenguele <christian.edjenguele () owasp org>
Date: Wed, 30 Sep 2009 08:50:14 +0200

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Hi,
there are a lot of libraries to do that!
KinterbasDB for example! or try google search.
good luck.

Best

Taras wrote:
Hello, all!

In one of last pentests I found network accessible Firebird DB with DBA
default account. But I can't found any clients for Linux for
FB/Interbase :( Couuld you advice something to connect and make query to
FB from Linux? What pentesters point of view will be interesting in such
access? 

Thanks!




- --
Christian Eric Edjenguele
IT Security Engineer
PGP KeyID: 0xB1654498

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.9 (GNU/Linux)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org/

iQEcBAEBAgAGBQJKwv+gAAoJENETScWxZUSYzZ8H/1OySW+84CEhdwRcA1UHT/WN
hIMwSF8GGFG5A0srJ2vRomYnPbwkgW8f9T0pBvF5fX5SmGst+gaX5MqrsLwwNdwH
zyd1Cqik+HOOBvXgOCLfaO2Cgu5jyctyA8gVbKjUSgLxYg6Z/1kHGJVM/lAQJ7uJ
0d6Tm8T3pJlviJsQ+/T+bcNnLSGeqDxseSV8GUd7NB8JVVvs/NDQ+XBdRzMEf0w3
+FNQXVuvTeKU4tL74az9N7uzab+f6wENwYtGpLYCDmKw8EL7QVIY2obuAISQWJUE
pbml9buA58WcXCmFY/mN77X82XTBAZd0zYE0+VGz7Bv88E4aGMqoOBQCaH2zpX0=
=j6Ip
-----END PGP SIGNATURE-----

------------------------------------------------------------------------
This list is sponsored by: Information Assurance Certification Review Board

Prove to peers and potential employers without a doubt that you can actually do a proper penetration test. IACRB CPT 
and CEPT certs require a full practical examination in order to become certified. 

http://www.iacertification.org
------------------------------------------------------------------------


Current thread: