About the IT Security Audit Resource Group Group
Have something to say?
Join LinkedIn for free to participate in the conversation. When you join, you can comment and post your own discussions.
Join LinkedIn-
Setting Up Mutillidae in Ubuntu, BackTrack, BackBox, etc. + Manual... pentestlab.org
Mutillidae is a free and open source web application for website...
-
wifite v.2 has been added in the repository of BackBox 2 Linux pentestlab.org
wifite, a known mass wep/wpa/wpa2 cracker or automated wireless...
-
Hunting Malicious Perl IRC Bots pentestlab.org
my $thumbshell = “http://picasa.com.snap-u.com/yahoo.php”; my...
Most Popular Discussions

COBIT5 standard launch date announced
ISACA has just announced the official global launch date for COBIT5 standard: Tuesday 10/04/2012. COBIT5 contains many updates on IT ...
COBIT 5 is the only business framework for the governance and management of enterprise IT. This evolutionary version incorporates the latest thinking in enterprise governance and management techniques and provides globally...

Where can I find configuration standard/hardening guide documentation for UNIX systems?
I am trying to find documentation of industry standards/benchmarks for configuring and hardening UNIX systems. Doe such documentation ...

Sexual abuse of children as defined by international law is a challenge many humanitarian organizations unfortunately face in war- and...
Understandably, the topic is perceived highly sensitive - nevertheless it is important to enhance the understanding of risks children ...
Box. Simple, secure sharing from anywhere

GooDork as a Vulnerabilitiy scanner theprojectxblog.net
“GooDork is for the few people who enjoy being creative about hacking/information gathering!” Some of you may have heard about Google Dorking/Hacking and even fewer have heard about GooDork.py a new designed to super charge...

Hacking Windows account credentials fast and easy
I've been talking about this in classes for years and decided to finally post an example: How to hack Windows account credentials using ...
# 16 : Hacking Windows User Accounts with Powershell auditcasts.com
Of course, your email address and your username are quite likely one and the same. What good is your username if I don't have your password? Well, there's not much that can be done with a single username in terms of hacking....

Acunetix WVS or Web Vulnerability Scanner is a pentesting tool for Windows users so that they may be able to check for SQL Injection, Cross Site Scripting (XSS), CRLF injection, Code execution, Directory Traversal, File...

# 24 : Extracting Last Logon Times from Active Directory using Powershell A common question in an audit of information resources is whether or not accounts for users are being properly managed. One aspect of that is determining...

What do you think of this article regarding our "Trusted" Certificate Authority??" If we can't trust our Certificate Authority...
How should we police our Certificate Authorities that now hold the "keys to the Kingdom"??
What good is encryption if our certificate ...
Trustwave issued a man-in-the-middle certificate h-online.com
Certificate authority Trustwave issued a CA certificate to a company allowing it to issue certificates for any server, thereby enabling it to listen in on encrypted data sent and received by its...

IT risk in media and entertainment industry
In entertainment industry , IT is seen as a support function and the risks associated with them are often ignored.
Having said that ...

Audit and policy compliance of MSSQL Databases
I am wondering what everyone's thoughts are on a good MSSQL audit and policy compliance tool.
A barrier I am running into is the lack of ...

Active Directory Group Policy Question
Should the audit policies (Audit Account Logon Events, Audit Account Management, Audit Directory Service Access, Audit Logon Events, ...

IBM Mainframe Auditor needed
Anyone here have experience auditing IBM Mainframes? TSO and.. I forget which other OS.. are the targets

Auditors & Scripting
Anyone who's sat through any of my classes (especially my audit classes) in the last four or five years knows that I believe that ...
