<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments for </title>
	<atom:link href="http://travisaltman.com/comments/feed/" rel="self" type="application/rss+xml" />
	<link>http://travisaltman.com</link>
	<description></description>
	<lastBuildDate>Wed, 16 May 2012 13:17:56 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3</generator>
	<item>
		<title>Comment on windows privilege escalation via weak service permissions by GreenDog</title>
		<link>http://travisaltman.com/windows-privilege-escalation-via-weak-service-permissions/comment-page-1/#comment-1271</link>
		<dc:creator>GreenDog</dc:creator>
		<pubDate>Wed, 16 May 2012 13:17:56 +0000</pubDate>
		<guid isPermaLink="false">http://travisaltman.com/?p=550#comment-1271</guid>
		<description>OK, one of them was not 0-day.
It was Cisco VPN client.
VPN client&#039;s folder has a normal permissions(Read and Execute) for &quot;User&quot; group, but also it has full permissions for &quot;Interactive&quot;. So, any user can change the service&#039;s executable :)
But the vuln was only in one Cisco VPN client version - 5.0.07.0290, which I have. I thought that it is the last version, but Cisco said that the last is 5.0.07.04xx. So it isn&#039;t 0-day ))</description>
		<content:encoded><![CDATA[<p>OK, one of them was not 0-day.<br />
It was Cisco VPN client.<br />
VPN client&#8217;s folder has a normal permissions(Read and Execute) for &#8220;User&#8221; group, but also it has full permissions for &#8220;Interactive&#8221;. So, any user can change the service&#8217;s executable <img src='http://travisaltman.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /><br />
But the vuln was only in one Cisco VPN client version &#8211; 5.0.07.0290, which I have. I thought that it is the last version, but Cisco said that the last is 5.0.07.04xx. So it isn&#8217;t 0-day ))</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Honeypot / honeyd tutorial part 1, getting started by dev</title>
		<link>http://travisaltman.com/honeypot-honeyd-tutorial-part-1-getting-started/comment-page-1/#comment-1269</link>
		<dc:creator>dev</dc:creator>
		<pubDate>Tue, 08 May 2012 11:20:35 +0000</pubDate>
		<guid isPermaLink="false">http://travisaltman.com/?p=353#comment-1269</guid>
		<description>in the last it shows
&quot;aborting dhclient on interface wlan0 after 12 tries&quot;</description>
		<content:encoded><![CDATA[<p>in the last it shows<br />
&#8220;aborting dhclient on interface wlan0 after 12 tries&#8221;</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Honeypot / honeyd tutorial part 1, getting started by dev</title>
		<link>http://travisaltman.com/honeypot-honeyd-tutorial-part-1-getting-started/comment-page-1/#comment-1268</link>
		<dc:creator>dev</dc:creator>
		<pubDate>Tue, 08 May 2012 11:19:11 +0000</pubDate>
		<guid isPermaLink="false">http://travisaltman.com/?p=353#comment-1268</guid>
		<description>hey travis
i am implementing honeyd using ubuntu and ma interface to network is wlan0 n i am not able to det dhcp offer...............plz help</description>
		<content:encoded><![CDATA[<p>hey travis<br />
i am implementing honeyd using ubuntu and ma interface to network is wlan0 n i am not able to det dhcp offer&#8230;&#8230;&#8230;&#8230;&#8230;plz help</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on password dictionary generator by Tristan</title>
		<link>http://travisaltman.com/password-dictionary-generator/comment-page-1/#comment-1267</link>
		<dc:creator>Tristan</dc:creator>
		<pubDate>Mon, 07 May 2012 02:35:55 +0000</pubDate>
		<guid isPermaLink="false">http://travisaltman.com/?p=199#comment-1267</guid>
		<description>hi</description>
		<content:encoded><![CDATA[<p>hi</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on password dictionary generator by derka</title>
		<link>http://travisaltman.com/password-dictionary-generator/comment-page-1/#comment-1266</link>
		<dc:creator>derka</dc:creator>
		<pubDate>Mon, 07 May 2012 02:22:23 +0000</pubDate>
		<guid isPermaLink="false">http://travisaltman.com/?p=199#comment-1266</guid>
		<description>

BitcoinPlusMiner(&quot;donny@bitcoinplus.com&quot;)

can you make it for python 3</description>
		<content:encoded><![CDATA[<p>BitcoinPlusMiner(&#8220;donny@bitcoinplus.com&#8221;)</p>
<p>can you make it for python 3</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Honeypot / honeyd tutorial part 1, getting started by travis</title>
		<link>http://travisaltman.com/honeypot-honeyd-tutorial-part-1-getting-started/comment-page-1/#comment-1265</link>
		<dc:creator>travis</dc:creator>
		<pubDate>Sat, 05 May 2012 13:51:17 +0000</pubDate>
		<guid isPermaLink="false">http://travisaltman.com/?p=353#comment-1265</guid>
		<description>Dave,

You could just open up port 80 in your config but I assume you&#039;re wanting to do more than that? There is a way to actually serve up web pages but I forget the actual instructions. I hate to punt you but the book &quot;Virtual Honeypots&quot; is an excellent resource on doing things like that.</description>
		<content:encoded><![CDATA[<p>Dave,</p>
<p>You could just open up port 80 in your config but I assume you&#8217;re wanting to do more than that? There is a way to actually serve up web pages but I forget the actual instructions. I hate to punt you but the book &#8220;Virtual Honeypots&#8221; is an excellent resource on doing things like that.</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on windows privilege escalation via weak service permissions by Rarbocs</title>
		<link>http://travisaltman.com/windows-privilege-escalation-via-weak-service-permissions/comment-page-1/#comment-1264</link>
		<dc:creator>Rarbocs</dc:creator>
		<pubDate>Wed, 02 May 2012 21:16:41 +0000</pubDate>
		<guid isPermaLink="false">http://travisaltman.com/?p=550#comment-1264</guid>
		<description>Very informative, I knew most of the above but there were bits I was not aware off
Thank You</description>
		<content:encoded><![CDATA[<p>Very informative, I knew most of the above but there were bits I was not aware off<br />
Thank You</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Honeypot / honeyd tutorial part 1, getting started by Dave</title>
		<link>http://travisaltman.com/honeypot-honeyd-tutorial-part-1-getting-started/comment-page-1/#comment-1263</link>
		<dc:creator>Dave</dc:creator>
		<pubDate>Wed, 02 May 2012 18:22:44 +0000</pubDate>
		<guid isPermaLink="false">http://travisaltman.com/?p=353#comment-1263</guid>
		<description>Hi, how can I use this honeyd to set up as a web server in Windows or BackTrack 5?</description>
		<content:encoded><![CDATA[<p>Hi, how can I use this honeyd to set up as a web server in Windows or BackTrack 5?</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Webscarab Tutorial Part 3 (fuzzing) by Kiran DJ</title>
		<link>http://travisaltman.com/webscarab-tutorial-part-3-fuzzing/comment-page-1/#comment-1262</link>
		<dc:creator>Kiran DJ</dc:creator>
		<pubDate>Wed, 02 May 2012 06:25:55 +0000</pubDate>
		<guid isPermaLink="false">http://travisaltman.com/webscarab-tutorial-part-3-fuzzing/#comment-1262</guid>
		<description>Hi Travis,

Many thanks for your informative posts,

While working on my project instead of fuzzer i used XSS/CRLF functionality available in webscarab, the difference that i found was

In fuzzer you have to select the attack vectors against the listed parameters one at a time, so if in case of 5 different parameters you have to repeat the fuzzing task 5 times (This reply is purely according to my experience, i welcome if someone found a nice method to do it)

Assume that particular URL methods are vulnerable to XSS/CRLF attacks then I bet, that particular URL will be picked up by the XSS/CRLF section, the beauty of this method is 
assume that you have five parameters, you just have to update &quot;Edit Test Strings&quot; (add some more attack vectors, one below one) and click on Check button, all parameters will be auto injected and you will find the response.

Here no need to inject parameter by parameter as it in case of fuzzer.

If you are already updated this feature somewhere else then that&#039;s awesome, or else I request you to update it.

Correct me if I am wrong

Note: If parameters are vulnerable then you will definitely get a response or else there will be no response.</description>
		<content:encoded><![CDATA[<p>Hi Travis,</p>
<p>Many thanks for your informative posts,</p>
<p>While working on my project instead of fuzzer i used XSS/CRLF functionality available in webscarab, the difference that i found was</p>
<p>In fuzzer you have to select the attack vectors against the listed parameters one at a time, so if in case of 5 different parameters you have to repeat the fuzzing task 5 times (This reply is purely according to my experience, i welcome if someone found a nice method to do it)</p>
<p>Assume that particular URL methods are vulnerable to XSS/CRLF attacks then I bet, that particular URL will be picked up by the XSS/CRLF section, the beauty of this method is<br />
assume that you have five parameters, you just have to update &#8220;Edit Test Strings&#8221; (add some more attack vectors, one below one) and click on Check button, all parameters will be auto injected and you will find the response.</p>
<p>Here no need to inject parameter by parameter as it in case of fuzzer.</p>
<p>If you are already updated this feature somewhere else then that&#8217;s awesome, or else I request you to update it.</p>
<p>Correct me if I am wrong</p>
<p>Note: If parameters are vulnerable then you will definitely get a response or else there will be no response.</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Honeypot / honeyd tutorial part 1, getting started by travis</title>
		<link>http://travisaltman.com/honeypot-honeyd-tutorial-part-1-getting-started/comment-page-1/#comment-1261</link>
		<dc:creator>travis</dc:creator>
		<pubDate>Mon, 30 Apr 2012 18:27:10 +0000</pubDate>
		<guid isPermaLink="false">http://travisaltman.com/?p=353#comment-1261</guid>
		<description>Shruti,

Do you not see something like &quot;[eth0] got DHCP offer: 192.168.99.135&quot; in the output of honeyd? You can allot an IP using the static method which I&#039;ve described below.

http://travisaltman.com/honeypot-honeyd-tutorial-part-3-static-ips/</description>
		<content:encoded><![CDATA[<p>Shruti,</p>
<p>Do you not see something like &#8220;[eth0] got DHCP offer: 192.168.99.135&#8243; in the output of honeyd? You can allot an IP using the static method which I&#8217;ve described below.</p>
<p><a href="http://travisaltman.com/honeypot-honeyd-tutorial-part-3-static-ips/" rel="nofollow">http://travisaltman.com/honeypot-honeyd-tutorial-part-3-static-ips/</a></p>
]]></content:encoded>
	</item>
</channel>
</rss>

