Results 1 to 6 of 6

Thread: Script Kiddie Noobsauce

  1. #1
    Senior Member phernandez's Avatar
    Join Date
    Aug 2003
    Location
    NYC
    Posts
    246

    Script Kiddie Noobsauce

    Script Kiddie Tactics (or the Lack Thereof) -McGrew Security Blog

    From the "you're not kidding anyone" file:

    The real bottom-of-the-barrel here is the attacker that tries to compromise a site with a tool meant for vulnerability assessments. These are tools that are not built for any sort of stealth or finesse, because they are meant to be run in the course of a vulnerability assessment by a pentester (using the term loosely here) or systems administrators that want the scan over with quickly. In this case, it doesn’t matter if it leaves a huge signature in the logs or if the IDS screams bloody murder, because the person responsible for tending to those alerts is the person who ran the tool, or is at least aware of the test. This is not as desirable for an attacker who is trying to avoid getting caught or alerting admin/security staff of a breach.
    Robert Wesley McGrew of U3 drive hacking fame adds to the discussion with some telling log dumps. Enjoy!

  2. #2
    Check out his blog, it's made of all sorts of win, particularly the "Epic Failure" entry.

  3. #3
    Senior Member
    Join Date
    Nov 2007
    Location
    Phoenix, Arizona
    Posts
    102
    Quote Originally Posted by AngelicKnight
    Check out his blog, it's made of all sorts of win, particularly the "Epic Failure" entry.

    This is one of the funniest websites I've come across in a long time. Couldn't stop laughing
    LOGIN: yes
    PASSWORD: I dont have one
    "Login Failed"

  4. #4
    Yeah, I'm addicted. I've now worked my way back into the December archives.

  5. #5
    Senior Member phernandez's Avatar
    Join Date
    Aug 2003
    Location
    NYC
    Posts
    246
    LOL - epic find! Had to back out of that site or my productivity would have plummeted to zero today

  6. #6

Similar Threads

  1. Script Kiddie Appreciation Thread
    By mjk in forum AntiOnline's General Chit Chat
    Replies: 8
    Last Post: June 14th, 2004, 03:42 AM
  2. "White Hat" Script Kiddie?
    By tyger_claw in forum Cosmos
    Replies: 8
    Last Post: December 11th, 2002, 09:15 AM
  3. Who is Script Kiddie?
    By jonesjones123 in forum AntiOnline's General Chit Chat
    Replies: 14
    Last Post: August 1st, 2002, 07:35 AM
  4. Definition of Script Kiddie..In the dictionary now.
    By {P²P}Apocalypse in forum AntiOnline's General Chit Chat
    Replies: 4
    Last Post: February 20th, 2002, 08:12 AM
  5. A new view on the script kiddie issue.
    By autumn regret in forum Non-Security Archives
    Replies: 32
    Last Post: December 6th, 2001, 02:25 AM

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •