Nytro Posted December 17, 2015 Report Posted December 17, 2015 DEF CON 23 - Ionut Popescu - NetRipper: Smart Traffic Sniffing for Penetration Testers Publicat pe 16 dec. 2015The post-exploitation activities in a penetration test can be challenging if the tester has low-privileges on a fully patched, well configured Windows machine. This work presents a technique for helping the tester to find useful information by sniffing network traffic of the applications on the compromised machine, despite his low-privileged rights. Furthermore, the encrypted traffic is also captured before being sent to the encryption layer, thus all traffic (clear-text and encrypted) can be sniffed. The implementation of this technique is a tool called NetRipper which uses API hooking to do the actions mentioned above and which has been especially designed to be used in penetration tests, but the concept can also be used to monitor network traffic of employees or to analyze a malicious application.Speaker BioIonut works as a Senior Security Consultant at KPMG in Romania. He is passionate about ASM, reverse engineering, shellcode and exploit development and he has a MCTS Windows Internals certification.He spoke at various security conferences in Romania like: Defcamp, OWASP local meetings and others and also at the yearly Hacknet KPMG international conference in Helsinki and Berlin.Ionut is also the main administrator of the biggest Romanian IT security community: rstforums.com and he writes technical articles on a blog initiated by a passionate team: securitycafe.ro.Twitter: @NytroRST Quote
TheTime Posted December 17, 2015 Report Posted December 17, 2015 720p, nice!I am (...) the administrator of the biggest, largest security community from Eastern Europe.^ Ha! That's us!?! Quote
albertynos Posted December 17, 2015 Report Posted December 17, 2015 (edited) "...we probablly have the most beautiful girls..." Bravo ! Edited December 17, 2015 by albertynos Quote
N.red.user Posted December 17, 2015 Report Posted December 17, 2015 @wild da-i vip nytro numai de prosti te ?i nice, just great job! Quote
Silviu Posted December 17, 2015 Report Posted December 17, 2015 Felicitari! @SirGodPentru ce il feliciti? Quote
bcman Posted December 17, 2015 Report Posted December 17, 2015 Felicitari! @SirGodSeamana, dar nu rasare Bravo Nytro, foarte fain si util! Quote
aleee Posted December 17, 2015 Report Posted December 17, 2015 Seamana, dar nu rasare Bravo Nytro, foarte fain si util! Well stiu si eu ca nu este Alex si este fratele lui . Quote