Close

Page 2 of 2 FirstFirst 12
Results 21 to 26 of 26
  1. #21
    DF VIP Member ivrytwr3's Avatar
    Join Date
    Oct 2010
    Location
    Lincolnshire
    Posts
    817
    Thanks
    756
    Thanked:        470
    Karma Level
    226

    Default Re: Wireshark output file - any uber wireshark users?

    "Fuzz testing or fuzzing is a software testing technique, often automated or semi-automated, that involves providing invalid, unexpected, or random data to the inputs of a computer program. The program is then monitored for exceptions such as crashes, or failing built-in code assertions or for finding potential memory leaks. Fuzzing is commonly used to test for security problems in software or computer systems."

    "SQL injection is a code injection technique, used to attack data driven applications, in which malicious SQL statements are inserted into an entry field for execut1on (e.g. to dump the database contents to the attacker).[1] SQL injection must exploit a security vulnerability in an application's software, for example, when user input is either incorrectly filtered for string literal escape characters embedded in SQL statements or user input is not strongly typed and unexpectedly executed. SQL injection is mostly known as an attack vector for websites but can be used to attack any type of SQL database."

    As the text appears random and is being inputted against logins, p/w, email addys etc; do you think this could be a fuzzing test / SQL injection?

    I haven't seen "&doEditUser=Add+User+Data" before - so not sure what this means!

  2. #22
    DF VIP Member Over Carl's Avatar
    Join Date
    Apr 2006
    Location
    London
    Posts
    13,125
    Thanks
    3,975
    Thanked:        1,690
    Karma Level
    1252

    Default Re: Wireshark output file - any uber wireshark users?

    Quite possibly could be SQL injection, dunno enough to say if it is or isn't tbh.

    Thanks to Over Carl

    ivrytwr3 (27th March 2014)  


  3. #23
    DF VIP Member ivrytwr3's Avatar
    Join Date
    Oct 2010
    Location
    Lincolnshire
    Posts
    817
    Thanks
    756
    Thanked:        470
    Karma Level
    226

    Default Re: Wireshark output file - any uber wireshark users?

    lol - i don't either! We have been told not to be 'wooly' with our answers, yet we will be marked down for factual errors; bah!!! It looks like a possible SQL injection, but i am not sure

  4. #24
    DF VIP Member ivrytwr3's Avatar
    Join Date
    Oct 2010
    Location
    Lincolnshire
    Posts
    817
    Thanks
    756
    Thanked:        470
    Karma Level
    226

    Default Re: Wireshark output file - any uber wireshark users?

    Feedback is in and overall 'very good', however, from the tutor:

    I am also looking for the following:

    a. comment on the structure of the internal network

    b. comment on the external sources accessing the internal network

    c. comment on the resources that are being accessed.
    Carl?! Help?!

    ETA: Just tried to upgrade to VIP, to give something back to the site for all your help, but the link the VIP link takes me to the homepage?
    Last edited by ivrytwr3; 9th May 2014 at 09:56 AM.

  5. #25
    DF Probation Goldberg's Avatar
    Join Date
    Jun 2001
    Location
    Landaaaan!
    Posts
    14,453
    Thanks
    1,325
    Thanked:        1,547
    Karma Level
    1153

    Default Re: Wireshark output file - any uber wireshark users?

    Just had to start using this at work along with tcpdump. Great tool and it really helps with the security testing that they have assigned me.

    I am no doubt going to have some questions soon. I did post one recently about tcpdump but the answer was looking at me square in the face!
    We all make mistakes sometimes

  6. #26
    DF VIP Member ivrytwr3's Avatar
    Join Date
    Oct 2010
    Location
    Lincolnshire
    Posts
    817
    Thanks
    756
    Thanked:        470
    Karma Level
    226

    Default Re: Wireshark output file - any uber wireshark users?

    Another 2 modules down and the results are in; very happy!

    Thanks for your help and advice everyone, but be warned the next 2 modules have already started and i will be back here again with my requests for help and my tales of woe!!

Page 2 of 2 FirstFirst 12

Similar Threads

  1. gta3 save file 4 u all (pc)
    By neilmachin in forum PC Gaming
    Replies: 6
    Last Post: 14th January 2003, 01:52 PM
  2. Wicked Flash File
    By Pegasus in forum The Dog and Duck
    Replies: 11
    Last Post: 13th November 2002, 11:46 PM
  3. Tv output
    By bean_2k1 in forum PC Problems
    Replies: 6
    Last Post: 14th September 2002, 03:19 AM
  4. T100 To T108 Flash File
    By BAZZO69 in forum Unlocking Questions & Solutions
    Replies: 7
    Last Post: 4th September 2002, 07:53 PM
  5. what no more users
    By typhoon68 in forum Introduce Yourself (New Members)
    Replies: 6
    Last Post: 30th August 2002, 05:20 AM

Social Networking Bookmarks

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •