NetsPWN: Assessment Services

Great, you use CA SiteMinder, but you broke it!

View all posts by Steve Kerns

Steve Kerns

June 17, 2013

CA SiteMinder is a secure Single Sign-On (SSO) and Web access management product that is used to authenticate users and control access to web applications and portals. Your company may be considering purchasing SiteMinder or a similar product, or may …
READ POST

NetsPWN: Assessment Services

Cracking Credit Card Hashes with PowerShell

View all posts by Karl Fosaaen

Karl Fosaaen

June 13, 2013

As penetration testers, we are frequently engaged to do penetration tests for PCI compliance. As a part of these penetration tests, we look for cardholder data (Card Numbers, CVV, etc.) in files, network traffic, databases, and anywhere else we might …
READ POST

NetsPWN: Assessment Services

GPU Cracking: Putting It All Together

View all posts by Karl Fosaaen

Karl Fosaaen

June 4, 2013

In the first blog of this series, we showed you how to set up the hardware for your own GPU cracking box. In the second blog of this series, we showed you how to set up the OS, drivers, and …
READ POST

NetsPWN: Assessment Services

Patching Java Executables – The Easy Way

View all posts by Khai Tran

Khai Tran

May 16, 2013

      The process of patching a Java executable (.jar files) without the original source code has been known for a while. As I know of, currently there are two ways of doing it: Decompile the executable > Import …
READ POST

NetsPWN: Assessment Services

GPU Cracking: Setting up a Server

View all posts by Eric Gruber

Eric Gruber

April 15, 2013

Last week Karl Fosaaen described the various trials and tribulations we went through at a hardware level in building a dedicated GPU cracking server. This week I will be doing a complete walkthrough for installing all the software that we use on our box. This includes installing the operating system , AMD drivers, oclHashcat-plus, and John the Ripper with OpenCL support.
READ POST