SlideShare a Scribd company logo
1 of 7
2010 Spring
Morten Bo Nielsen
Mon@eal.dk
Servers and network
Penetration testing
2Networks and servers - Mon@eal.dk
Are you secure?
● Bad question
● More correct: Are you
secure enough?
● Use penetration
testing
3Networks and servers - Mon@eal.dk
Penetration test
● Periodic tests
● External consultants
● Test reports
● Example
Don't google for images related to “penetration testing”
4Networks and servers - Mon@eal.dk
Movie time
Go here . ● Questions
● Is this realistic?
● Implied stuff?
● What is no told?
● Easy/difficult?
● Software used?
● Attack traces?
5Networks and servers - Mon@eal.dk
Quick summary, part I
FTP server
● Enumerating
● Proftpd sql injection
vuln.
● Reverse shell
● Locating user
● Database credentials
Database server
● Bypassing non-
routing network
● Firewall hole on port
3306
● Reverse shell
6Networks and servers - Mon@eal.dk
Quick summary, part II
Mail server
● Encrypted tunnel from
target
● Port 445 “SMB over
TCP”
● “Circumvent NX”
● Add privileged user
and login user remote
desktop
7Networks and servers - Mon@eal.dk
SQL injection
Sidetrack:
“This is your son's school..”
Social engineering attempt?

More Related Content

More from Morten Nielsen

Itt1 intro project management
Itt1 intro project managementItt1 intro project management
Itt1 intro project managementMorten Nielsen
 
Itt1 intro knowing and doing
Itt1 intro knowing and doingItt1 intro knowing and doing
Itt1 intro knowing and doingMorten Nielsen
 
Itt2 its pki and certificates
Itt2 its pki and certificatesItt2 its pki and certificates
Itt2 its pki and certificatesMorten Nielsen
 
Itt2 its ssl and services
Itt2 its ssl and servicesItt2 its ssl and services
Itt2 its ssl and servicesMorten Nielsen
 
Itt2 its encrypted storage
Itt2 its encrypted storageItt2 its encrypted storage
Itt2 its encrypted storageMorten Nielsen
 
Itt3 its social engineering
Itt3 its social engineeringItt3 its social engineering
Itt3 its social engineeringMorten Nielsen
 
ITET1 Routing Transport layer.odp
ITET1 Routing Transport layer.odpITET1 Routing Transport layer.odp
ITET1 Routing Transport layer.odpMorten Nielsen
 
ITET1 Routing Application layer.odp
ITET1 Routing Application layer.odpITET1 Routing Application layer.odp
ITET1 Routing Application layer.odpMorten Nielsen
 

More from Morten Nielsen (20)

Itt1 intro project management
Itt1 intro project managementItt1 intro project management
Itt1 intro project management
 
Itt1 intro knowing and doing
Itt1 intro knowing and doingItt1 intro knowing and doing
Itt1 intro knowing and doing
 
Itt2 its pki and certificates
Itt2 its pki and certificatesItt2 its pki and certificates
Itt2 its pki and certificates
 
Itt2 its ssl and services
Itt2 its ssl and servicesItt2 its ssl and services
Itt2 its ssl and services
 
Itt2 its ids
Itt2 its idsItt2 its ids
Itt2 its ids
 
Itt2 its encrypted storage
Itt2 its encrypted storageItt2 its encrypted storage
Itt2 its encrypted storage
 
Itt2 its introduction
Itt2 its introductionItt2 its introduction
Itt2 its introduction
 
Itt2 its introduction
Itt2 its introductionItt2 its introduction
Itt2 its introduction
 
Itt3 virtual machines
Itt3 virtual machinesItt3 virtual machines
Itt3 virtual machines
 
Itt1 sd requirements
Itt1 sd requirementsItt1 sd requirements
Itt1 sd requirements
 
Itt1 sd uml and oo
Itt1 sd uml and ooItt1 sd uml and oo
Itt1 sd uml and oo
 
Itt3 its acl
Itt3 its aclItt3 its acl
Itt3 its acl
 
Itt3 its social engineering
Itt3 its social engineeringItt3 its social engineering
Itt3 its social engineering
 
Itet3 its forensics
Itet3 its forensicsItet3 its forensics
Itet3 its forensics
 
Diagram cookbook
Diagram cookbookDiagram cookbook
Diagram cookbook
 
ITET3 Networking P2P
ITET3 Networking P2PITET3 Networking P2P
ITET3 Networking P2P
 
ITET1 Routing Transport layer.odp
ITET1 Routing Transport layer.odpITET1 Routing Transport layer.odp
ITET1 Routing Transport layer.odp
 
ITET1 Routing Application layer.odp
ITET1 Routing Application layer.odpITET1 Routing Application layer.odp
ITET1 Routing Application layer.odp
 
ITET3 ITS governance
ITET3 ITS governanceITET3 ITS governance
ITET3 ITS governance
 
Routing vlans
Routing vlansRouting vlans
Routing vlans
 

Itet2 its penetration testing

  • 1. 2010 Spring Morten Bo Nielsen Mon@eal.dk Servers and network Penetration testing
  • 2. 2Networks and servers - Mon@eal.dk Are you secure? ● Bad question ● More correct: Are you secure enough? ● Use penetration testing
  • 3. 3Networks and servers - Mon@eal.dk Penetration test ● Periodic tests ● External consultants ● Test reports ● Example Don't google for images related to “penetration testing”
  • 4. 4Networks and servers - Mon@eal.dk Movie time Go here . ● Questions ● Is this realistic? ● Implied stuff? ● What is no told? ● Easy/difficult? ● Software used? ● Attack traces?
  • 5. 5Networks and servers - Mon@eal.dk Quick summary, part I FTP server ● Enumerating ● Proftpd sql injection vuln. ● Reverse shell ● Locating user ● Database credentials Database server ● Bypassing non- routing network ● Firewall hole on port 3306 ● Reverse shell
  • 6. 6Networks and servers - Mon@eal.dk Quick summary, part II Mail server ● Encrypted tunnel from target ● Port 445 “SMB over TCP” ● “Circumvent NX” ● Add privileged user and login user remote desktop
  • 7. 7Networks and servers - Mon@eal.dk SQL injection Sidetrack: “This is your son's school..” Social engineering attempt?