Resend my activation email : Register : Log in 
BCF: Bike Chat Forums


Learning how to hack without breaking the law?

Reply to topic
Bike Chat Forums Index -> The Geek Zone
View previous topic : View next topic  
Author Message

5v3d3b0
World Chat Champion



Joined: 24 Sep 2006
Karma :

PostPosted: 18:53 - 21 May 2013    Post subject: Learning how to hack without breaking the law? Reply with quote

I'm interested in pursuing a security related job in IT after uni (penetration testing, network security or something like that).
Recently I've been learning about SQL Injection a bit, and trying to expand my knowledge in my free time.
I think it would be useful for me to learn at least basic to intermediate techniques to be aware of the potential threats and vulnerabilities that I'm oblivious to now, but I can't just go on a trial and error around random websites trying to break in to their databases Laughing
I'm doing it purely for educational purposes but I don't know where/how to do it without getting in trouble.
Any ideas?
 Back to top
View user's profile Send private message Send e-mail You must be logged in to rate posts

Zen Dog
World Chat Champion



Joined: 11 Aug 2004
Karma :

PostPosted: 18:57 - 21 May 2013    Post subject: Reply with quote

Setup your own servers. Hack away.

Zen Dog
____________________
Current - '94 VFR750FR (Dead), '00 VFR800FI, '11 600 Hornet - Previous - '11 CBF125, '10 Street Triple R, '92 MZ ETZ301, '05 TTR250, NSR125R, KMX125, "Honda" Win
My bike trip around S.E. Asia 2010/2011
 Back to top
View user's profile Send private message You must be logged in to rate posts

herulach
World Chat Champion



Joined: 19 Apr 2010
Karma :

PostPosted: 19:09 - 21 May 2013    Post subject: Reply with quote

Zen Dog wrote:
Setup your own servers. Hack away.

Zen Dog

This, although you probably want to explore virtualisation and learn how to administer (and secure) at the bare minimum a lamp stack, an ISS implementation etc.

The problem you'lll have doing it without breaking the law will be licence fees.
____________________
YBR 125>FZS600
 Back to top
View user's profile Send private message You must be logged in to rate posts

J.M.
World Chat Champion



Joined: 27 Mar 2011
Karma :

PostPosted: 19:48 - 21 May 2013    Post subject: Reply with quote

https://www.hackthissite.org

Quite cool. Haven't been on it in 5 years... my profile: https://www.hackthissite.org/user/view/EpicFailer/
____________________
2004 R1 & 2018 XSR900
 Back to top
View user's profile Send private message You must be logged in to rate posts

toshpot
Scooby Slapper



Joined: 12 Aug 2012
Karma :

PostPosted: 19:58 - 21 May 2013    Post subject: Reply with quote

Install something like damn vulnerable linux in a VM, or install anything, and install/configure known exploitable software versions locally, and you can hack away as you see fit. If you just want web based stuff, maybe Mutillidae may be more suitable?

You can grab a VPS or similar, however, the host may not appreciate that kind of thing on their networks, read the AUS and TOS if you go this route.

Keep track of software vulnerabilities using security advisories, etc.

If you also want a windows specific thing, you can probably avoid licensing issues/fees with something like NT4 or other discontinued products.
____________________
Sometimes, I touch myself and smell my fingers.
 Back to top
View user's profile Send private message You must be logged in to rate posts

Frost
World Chat Champion



Joined: 26 May 2004
Karma :

PostPosted: 20:03 - 21 May 2013    Post subject: Reply with quote

almost all sites are now protected from SQL injection. Well all the proper sites anyway. Cross site scripting still works here and there, but the best attacks are usually man in the middle attacks.
 Back to top
View user's profile Send private message Send e-mail You must be logged in to rate posts

SQL
World Chat Champion



Joined: 09 Aug 2012
Karma :

PostPosted: 20:26 - 21 May 2013    Post subject: Reply with quote

https://www.hellboundhackers.org/
 Back to top
View user's profile Send private message Visit poster's website You must be logged in to rate posts

bazza
World Chat Champion



Joined: 27 Aug 2004
Karma :

PostPosted: 23:02 - 21 May 2013    Post subject: Reply with quote

Start with the essentials:

https://www.youtube.com/watch?v=zixpms1oo40
____________________
"That's it. You people have stood in my way long enough. I'm going to clown college."
'98 Ducati 750SS, '08 Suzuki GSX650F ©2004-2014, Bazza's Harmless Banter
 Back to top
View user's profile Send private message You must be logged in to rate posts

Rogerborg
nimbA



Joined: 26 Oct 2010
Karma :

PostPosted: 08:11 - 22 May 2013    Post subject: Reply with quote

<Geezer>I remember when hacking was just programming</Geezer>

As well as system penetration and SQL injection, I'd suggest that you take a look at application network protocol analysis as well.

We had a chap in who quite comprehensively reverse engineered our app's communication protocol by sending it sequences of data until he triggered a response, then hammered on those. He found a fair number of the holes that we already knew were in there, and also flushed out a few new ones.

Even I was moderately impressed, although in essence he was running a Very Small Shell Script and then applying some experience to the results.
____________________
Biking is 1/20th as dangerous as horse riding.
GONE: HN125-8, LF-250B, GPz 305, GPZ 500S, Burgman 400 // RIDING: F650GS (800 twin), Royal Enfield Bullet Electra 500 AVL, Ninja 250R because racebike
 Back to top
View user's profile Send private message You must be logged in to rate posts

J.M.
World Chat Champion



Joined: 27 Mar 2011
Karma :

PostPosted: 10:03 - 22 May 2013    Post subject: Reply with quote

Rogerborg wrote:
<Geezer>I remember when hacking was just messy programming</Geezer>


Very Happy
____________________
2004 R1 & 2018 XSR900
 Back to top
View user's profile Send private message You must be logged in to rate posts

Rogerborg
nimbA



Joined: 26 Oct 2010
Karma :

PostPosted: 12:18 - 22 May 2013    Post subject: Reply with quote

J.M. wrote:
Rogerborg wrote:
<Geezer>I remember when hacking was just messy programming</Geezer>

Very Happy

There 10 kinds of coder.

0 Messy ones who get paid for their results.
1 People who make their living writing books about the evils of messy code.
____________________
Biking is 1/20th as dangerous as horse riding.
GONE: HN125-8, LF-250B, GPz 305, GPZ 500S, Burgman 400 // RIDING: F650GS (800 twin), Royal Enfield Bullet Electra 500 AVL, Ninja 250R because racebike
 Back to top
View user's profile Send private message You must be logged in to rate posts

J.M.
World Chat Champion



Joined: 27 Mar 2011
Karma :

PostPosted: 12:32 - 22 May 2013    Post subject: Reply with quote

There needs to be some structure to the mess though. Very Happy

But no. Uni exams are done now. Need to spend my time doing something. Thinking about building an app/website. Totally going to hack it.
____________________
2004 R1 & 2018 XSR900
 Back to top
View user's profile Send private message You must be logged in to rate posts

Rogerborg
nimbA



Joined: 26 Oct 2010
Karma :

PostPosted: 12:38 - 22 May 2013    Post subject: Reply with quote

J.M. wrote:
There needs to be some structure to the mess though. Very Happy

"Need" is a strong word.

I like to plait the spaghetti, but it's surprising how far you can stretch it just by spooning more cheese on top.
____________________
Biking is 1/20th as dangerous as horse riding.
GONE: HN125-8, LF-250B, GPz 305, GPZ 500S, Burgman 400 // RIDING: F650GS (800 twin), Royal Enfield Bullet Electra 500 AVL, Ninja 250R because racebike
 Back to top
View user's profile Send private message You must be logged in to rate posts

J.M.
World Chat Champion



Joined: 27 Mar 2011
Karma :

PostPosted: 12:46 - 22 May 2013    Post subject: Reply with quote

I can work with messy providing that I don't stop. If I come back to a messy project after a week or two break I just stare at it, lost as to what is going on. Laughing

That said, now I've been coding for years, structure comes easily whilst hacking. Apply a tiny bit of refactoring here and there, good enough!

I feel sorry for my Robot Programming lecturer though. My final assignment was a mess. GUI with a graphical map and bluetooth communication protocol, implementing A* search and some voodoo localisation code... all messy as hell. Implemented on a robot I programmed to implement the bluetooth protocol I designed and just act as a droid. I think I can count the number of comments I used on one hand... which isn't usually a bad thing except the code was hard to follow to a 3rd party! I was going to refactor it but it worked better than 99% of the classes stuff so I figured I had nothing to lose. Laughing Scored 100%. 96% in the module overall Dance!
____________________
2004 R1 & 2018 XSR900
 Back to top
View user's profile Send private message You must be logged in to rate posts

The Shaggy D.A.
Super Spammer



Joined: 12 Sep 2008
Karma :

PostPosted: 13:14 - 22 May 2013    Post subject: Reply with quote

https://www.smbc-comics.com/comics/20120220.gif
____________________
Chances are quite high you are not in my Monkeysphere, and I don't care about you. Don't take it personally.
Currently : Royal Enfield 350 Meteor
Previously : CB100N > CB250RS > XJ900F > GT550 > GPZ750R/1000RX > AJS M16 > R100RT > Bullet 500 > CB500 > LS650P > Bullet Electra X & YBR125 > Bullet 350 "Superstar" & YBR125 Custom > Royal Enfield Classic 500 Despatch Limited Edition (28 of 200) & CB Two-Fifty Nighthawk > ER5
 Back to top
View user's profile Send private message You must be logged in to rate posts

Ste
Not Work Safe



Joined: 01 Sep 2002
Karma :

PostPosted: 15:08 - 22 May 2013    Post subject: Re: Learning how to hack without breaking the law? Reply with quote

Hack BCF, replace logo with nobcat. Thumbs Up
 Back to top
View user's profile Send private message Visit poster's website You must be logged in to rate posts

supZ
World Chat Champion



Joined: 03 Feb 2009
Karma :

PostPosted: 15:15 - 22 May 2013    Post subject: Reply with quote

The Shaggy D.A. wrote:
https://www.smbc-comics.com/comics/20120220.gif


backdoor handshake

fnrr fnrr

https://amodernmilitarymother.com/wp-content/uploads/2010/08/finbarr-saunders.jpg
____________________
CBR954RR - Daily toy
CBR600RR - Trackbike
 Back to top
View user's profile Send private message You must be logged in to rate posts

Alpha-9
Super Spammer



Joined: 19 Jan 2012
Karma :

PostPosted: 15:22 - 22 May 2013    Post subject: Reply with quote

The Shaggy D.A. wrote:
https://www.smbc-comics.com/comics/20120220.gif

Sounds like Die Hard 3 to me
WE NEED TO HACK ALL IPS SIMULTANEOUSLY
They've penetrated our code walls. They're stealing the internet!
____________________
Fzr-600 1999
 Back to top
View user's profile Send private message Send e-mail You must be logged in to rate posts

J.M.
World Chat Champion



Joined: 27 Mar 2011
Karma :

PostPosted: 15:32 - 22 May 2013    Post subject: Reply with quote

Alpha-9 wrote:
The Shaggy D.A. wrote:
https://www.smbc-comics.com/comics/20120220.gif

Sounds like Die Hard 3 to me
WE NEED TO HACK ALL IPS SIMULTANEOUSLY
They've penetrated our code walls. They're stealing the internet!


https://www.youtube.com/watch?v=u8qgehH3kEQ

One of my favourites: https://www.youtube.com/watch?v=hkDD03yeLnU
____________________
2004 R1 & 2018 XSR900
 Back to top
View user's profile Send private message You must be logged in to rate posts

Alpha-9
Super Spammer



Joined: 19 Jan 2012
Karma :

PostPosted: 15:46 - 22 May 2013    Post subject: Reply with quote

That's amazing lmao, thank you
____________________
Fzr-600 1999
 Back to top
View user's profile Send private message Send e-mail You must be logged in to rate posts

Going
Nearly there...



Joined: 26 Feb 2012
Karma :

PostPosted: 19:42 - 22 May 2013    Post subject: Reply with quote

J.M. wrote:


Had to watch that second one a few times just to make sure I wasn't hearing things.
 Back to top
View user's profile Send private message You must be logged in to rate posts

J.M.
World Chat Champion



Joined: 27 Mar 2011
Karma :

PostPosted: 20:26 - 22 May 2013    Post subject: Reply with quote

Don't underestimate the network capabilities of a Visual Basic GUI, my good sir! Laughing
____________________
2004 R1 & 2018 XSR900
 Back to top
View user's profile Send private message You must be logged in to rate posts
Old Thread Alert!

The last post was made 13 years, 28 days ago. Instead of replying here, would creating a new thread be more useful?
  Display posts from previous:   
This page may contain affiliate links, which means we may earn a small commission if a visitor clicks through and makes a purchase. By clicking on an affiliate link, you accept that third-party cookies will be set.

Post new topic   Reply to topic    Bike Chat Forums Index -> The Geek Zone All times are GMT + 1 Hour
Page 1 of 1

 
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum
You cannot attach files in this forum
You cannot download files in this forum

Read the Terms of Use! - Powered by phpBB © phpBB Group
 

Debug Mode: ON - Server: birks (www) - Page Generation Time: 0.11 Sec - Server Load: 1.21 - MySQL Queries: 13 - Page Size: 116.29 Kb