Re: pentesting and macbook pro

From: Webmilhouse (webmilhouse@gmail.com)
Date: Fri Jul 28 2006 - 06:36:23 EDT


You can get the tools you listed for OS X at
http://darwinports.opendarwin.org/ or by using Fink
http://fink.sourceforge.net/. These projects compile FreeBSD ports of
the linux tools that you mention with an easy "apt-get" like
interface.

As for Parallels/XP using CORE Impact testing, I would suggest you try
it using VMware or such -- it would probably be somewhat similar. I
don't see how it would be that different, although I know of some
problems using peripherals in XP under Parallels.

Hope this helps.

Peter

On 7/27/06, kelly@cliffhanger.com <kelly@cliffhanger.com> wrote:
> I wish I could answer your questions but I can't.
> I'm not experienced enough. I'm looking forward
> to some feedback from those on this list who are.
>
> --
> kelly
> http://home1.gte.net/res0psau/index.html#Hang-Gliding-Stuff
>
> -- --
> \ /
> \/
> /\
> / \
> -- --
>
>
>
> Quoting Kyle Starkey <kstarkey@siegeworks.com>:
> Thanks for the input folks... I am trying to cost justify the $3K for my new
> MBP right now (anyone have any good security/pentest focused reasons to go
> this direction)... Has anyone had any problems compiling/running any of the
> unix flavor tools in OSX (john, nessus, hydra, rainbow crack)? Or has
> anyone had any problems with the windows stack being muddled thru paralles
> and into OSX and as such stopping attack tools from working?
>
> I know, I know... If you have a native *nix OS why would you be messing with
> Windows... My only response is CORE...
>
> Cheers
> -K
>
> -----Original Message-----
> From: DaKahuna [mailto:da.kahuna@gmail.com]
> Sent: Monday, July 24, 2006 6:11 PM
> To: pen-test@securityfocus.com
> Subject: Re: pentesting and macbook pro
>
> Kelly,
>
> I am using a D-Link DWL-122 with my MBP and it works just fine. OS
> X sees it as a Prism 2 chipset and KisMAC uses it natively. I have
> also used it successfully on other systems with both Auditor and
> BackTrack.
>
> Other than having to use Rosetta every once in a while to get a DMG
> to work correctly, I do not see any problems with the MBP. I have
> Windows XP installed under Paralles but have not spent any time with it.
>
>
> On Jul 22, 2006, at 4:45 PM, kelly@cliffhanger.com wrote:
>
> > I just bought a macbook pro. I can still take it
> > back if I want to but, I'm wondering if any of you
> > find the macbook pro (intel proc) useful for pen
> > testing?
> >
> > I'm running an app called parallels. Parallels is
> > like vmware for mac. But I'm not sure if I can
> > build internal networks like vmware tho.
> >
> > My biggest question is ...
> >
> > - What usb wireless cards are available that work
> > with the bootable linux distros (for pen
> > testing)?
> >
> > - Is the macbook pro (intel) useful for pen
> > testing?
> >
> > --
> > kelly
> > http://home1.gte.net/res0psau/index.html#Hang-Gliding-Stuff
> >
> > -- --
> > \ /
> > \/
> > /\
> > / \
> > -- --
> >
> >
> >
> > ----------------------------------------------------------------------
> > --------
> > This List Sponsored by: Cenzic
> >
> > Concerned about Web Application Security?
> > Why not go with the #1 solution - Cenzic, the only one to win the
> > Analyst's
> > Choice Award from eWeek. As attacks through web applications
> > continue to rise,
> > you need to proactively protect your applications from hackers.
> > Cenzic has the
> > most comprehensive solutions to meet your application security
> > penetration
> > testing and vulnerability management needs. You have an option to
> > go with a
> > managed service (Cenzic ClickToSecure) or an enterprise software
> > (Cenzic Hailstorm). Download FREE whitepaper on how a managed
> > service can
> > help you: http://www.cenzic.com/news_events/wpappsec.php
> > And, now for a limited time we can do a FREE audit for you to
> > confirm your
> > results from other product. Contact us at request@cenzic.com for
> > details.
> > ----------------------------------------------------------------------
> > --------
> >
>
>
> ----------------------------------------------------------------------------
> --
> This List Sponsored by: Cenzic
>
> Concerned about Web Application Security?
> Why not go with the #1 solution - Cenzic, the only one to win the Analyst's
> Choice Award from eWeek. As attacks through web applications continue to
> rise,
> you need to proactively protect your applications from hackers. Cenzic has
> the
> most comprehensive solutions to meet your application security penetration
> testing and vulnerability management needs. You have an option to go with a
> managed service (Cenzic ClickToSecure) or an enterprise software
> (Cenzic Hailstorm). Download FREE whitepaper on how a managed service can
> help you: http://www.cenzic.com/news_events/wpappsec.php
> And, now for a limited time we can do a FREE audit for you to confirm your
> results from other product. Contact us at request@cenzic.com for details.
> ----------------------------------------------------------------------------
> --
>
>
> ------------------------------------------------------------------------------
> This List Sponsored by: Cenzic
>
> Concerned about Web Application Security?
> Why not go with the #1 solution - Cenzic, the only one to win the Analyst's
> Choice Award from eWeek. As attacks through web applications continue to rise,
> you need to proactively protect your applications from hackers. Cenzic has the
> most comprehensive solutions to meet your application security penetration
> testing and vulnerability management needs. You have an option to go with a
> managed service (Cenzic ClickToSecure) or an enterprise software
> (Cenzic Hailstorm). Download FREE whitepaper on how a managed service can
> help you: http://www.cenzic.com/news_events/wpappsec.php
> And, now for a limited time we can do a FREE audit for you to confirm your
> results from other product. Contact us at request@cenzic.com for details.
> ------------------------------------------------------------------------------
>
>
> ------------------------------------------------------------------------------
> This List Sponsored by: Cenzic
>
> Concerned about Web Application Security?
> Why not go with the #1 solution - Cenzic, the only one to win the Analyst's
> Choice Award from eWeek. As attacks through web applications continue to rise,
> you need to proactively protect your applications from hackers. Cenzic has the
> most comprehensive solutions to meet your application security penetration
> testing and vulnerability management needs. You have an option to go with a
> managed service (Cenzic ClickToSecure) or an enterprise software
> (Cenzic Hailstorm). Download FREE whitepaper on how a managed service can
> help you: http://www.cenzic.com/news_events/wpappsec.php
> And, now for a limited time we can do a FREE audit for you to confirm your
> results from other product. Contact us at request@cenzic.com for details.
> ------------------------------------------------------------------------------
>
>

------------------------------------------------------------------------------
This List Sponsored by: Cenzic

Concerned about Web Application Security?
Why not go with the #1 solution - Cenzic, the only one to win the Analyst's
Choice Award from eWeek. As attacks through web applications continue to rise,
you need to proactively protect your applications from hackers. Cenzic has the
most comprehensive solutions to meet your application security penetration
testing and vulnerability management needs. You have an option to go with a
managed service (Cenzic ClickToSecure) or an enterprise software
(Cenzic Hailstorm). Download FREE whitepaper on how a managed service can
help you: http://www.cenzic.com/news_events/wpappsec.php
And, now for a limited time we can do a FREE audit for you to confirm your
results from other product. Contact us at request@cenzic.com for details.
------------------------------------------------------------------------------



This archive was generated by hypermail 2.1.7 : Sat Apr 12 2008 - 10:56:26 EDT