PaulDotCom mailing list archives

Malware / hack lab?


From: amanchester at gmail.com (Alex Manchester)
Date: Wed, 31 Mar 2010 21:24:52 -0400

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

PJ,
 Depending on what nic your laptop has, check out www.vm-help.com
That site was instrumental in me building a vmware ESXi 4.0 whitebox. My
ESXi server consists of an AMD quad-4 2.6 ghz processor ($95 at newegg) with
12 gigs of memory and 2 500 gig HD. The motherboard I used was a gigabyte
ga-ma785gm-us2h. The only component on the motherboard not compatible with
ESXi4.0 was the onboard nic which happened to be a realtek device that isn't
normally supported by esxi. Vm-help.com has an excellent script available
that allows you to import drivers into the esxi iso image. For what I need
this is more than enough machine for my home hack/test lab. Currently, I am
running windows 2003,2008,ubuntu server, centos server, and ubuntu desktop
simultaneously without any issues.  
 
From: pauldotcom-bounces at mail.pauldotcom.com
[mailto:pauldotcom-bounces at mail.pauldotcom.com] On Behalf Of PJ McGarvey
Sent: Wednesday, March 31, 2010 4:07 PM
To: pauldotcom at mail.pauldotcom.com
Subject: Re: [Pauldotcom] Malware / hack lab?
 
I picked up a newish HP Pavilion laptop, dual core, 4GB ram, Gigabit NIC,
esata/firewire ports, but no hdd or ac adapter from Ebay a few months back
for $100 because the screen was broken.  This is currently a TVersity media
server on my network, but I'm working on getting ESX 3.5 on it so I can run
some virtual machines (there were issues with ESX detecting the nic...)
 
Not an ideal box for this purpose, but I picked it so it can fit on a shelf
in my relatively small home office... it's quiet, not power hungry and the
price was right!
 
Also... SANS is offering a free Lenovo laptop if you take their OnDemand
training by 4/15, I'm signing up soon for the Web App course, might be a
good excuse to take some training and get a free laptop for your lab.
 
- -PJ
 
________________________________

Date: Wed, 31 Mar 2010 12:43:14 -0400
From: infolookup at gmail.com
To: pauldotcom at mail.pauldotcom.com
Subject: Re: [Pauldotcom] Malware / hack lab?

In terms of setting up a hack lab if you are looking for hardware the have
some sweet deals on Servers http://www.pacificgeek.com/nooner.asp?P=SS, also
check out http://www.irongeek.com/i.php?page=videos/building-a-hacklab
excellent presentation on setting up a hacklab. 
 
 
On Wed, Mar 31, 2010 at 3:27 AM, k41zen <k41zen at live.co.uk> wrote:
I've just recently built one and found these resources very useful:

       http://www.securityaegis.com/network-pentest-lab/

       http://www.securityaegis.com/pentest-lab-web-application-edition/

       http://pauldotcom.com/2009/12/automating-my-vmware-lab.html

       http://blog.infosanity.co.uk/category/lab/

Also try this:

       http://www.vyatta.com/

Its an Open Source alternative to Cisco networking kit. They have a VM image
too!

On 31 Mar 2010, at 02:13, Ali Emirlioglu wrote:

Hey everyone,

I'm sure this has been covered before but my gmail searches are failing
miserably. I'm re-building my malware / hack lab using vmware to include
more up-to-date OSes, patches, etc. and was wondering what other people's
virtual environments looked like. Which OSes, service packs, patches, etc.
are you running in your lab?

Cheers,
Ali

 
 
 
________________________________

Hotmail: Trusted email with Microsoft's powerful SPAM protection. Sign up
now. <http://clk.atdmt.com/GBL/go/210850552/direct/01/> 
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.9 (MingW32)

iEYEARECAAYFAkuz9dwACgkQbYgPU3padp63rQCgssz9oGxqx5onc2MN7cI2kM3n
guYAnj6F6yy7gnsECvRwWqnyRKBeDbwN
=aNho
-----END PGP SIGNATURE-----
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://mail.pauldotcom.com/pipermail/pauldotcom/attachments/20100331/53793c65/attachment.htm 
-------------- next part --------------
A non-text attachment was scrubbed...
Name: PGPexch.htm.asc
Type: application/pgp-signature
Size: 195 bytes
Desc: not available
Url : http://mail.pauldotcom.com/pipermail/pauldotcom/attachments/20100331/53793c65/attachment.pgp 


Current thread: