Revision3.com Shows Schedule Inside Revision3 Store


Go Back   Revision3 Forums > Shows > HAK5

Reply
 
Thread Tools Search this Thread Display Modes

  #1  
Old 11-04-2009, 06:01 PM
mari1ee's Avatar
mari1ee
Revision3 Pixel Princess
 
Join Date: Sep 2007
Posts: 386
Status: Offline
Default Episode 612: Hacking PPTP VPNs with ASLEAP [Discussion]

Continuing with the VPN Series, Darren discusses the inherent weaknesses in Microsoft's PPTP authentication protocol, MS-CHAPv2, and demos a Linux tool that exploits these weaknesses.

Watch or download this episode now
__________________
twitter.com/marilee
Reply With Quote
  #2  
Old 11-05-2009, 03:58 AM
BuddhaChu's Avatar
BuddhaChu
Newbie
 
Join Date: Sep 2006
Posts: 29
Status: Offline
Default HD 30FPS version jacked up

Verified by multiple download to different computers on both WinXP and OSX.

kthxbye!
Reply With Quote
  #3  
Old 11-05-2009, 03:59 PM
ksboyintx
Member
 
Join Date: Apr 2007
Posts: 37
Status: Offline
Default Great Episode

I deal with VPNs all day long. While MAN in the Middle is not easy to establish, the proof of concept does provide the team some speaking points.
Have you tried capturing the MS-CHAPS2 session between the workstation and server using TCPdump to create your pcap file? Does this still give the error in Challenge length?

very interesting, great episode, thank you!!!
Reply With Quote
  #4  
Old 11-06-2009, 02:34 AM
chuckles's Avatar
chuckles
Nameless Nobody
 
Join Date: Dec 2006
Location: San Francisco
Posts: 2,297
Status: Online
Default

Quote:
Originally Posted by BuddhaChu View Post
Verified by multiple download to different computers on both WinXP and OSX.

kthxbye!
What problems are you experiencing. Not seeing any issues with the file.

What is the md5 hash for the file you downloaded. It should be:

MD5 (hak5--0612--asleap--hd720p30.h264.mp4) = e827310a0d40600648ebd3e6d13a07c8

-chuckles-
Reply With Quote
  #5  
Old 11-10-2009, 12:33 AM
dirkdiggler's Avatar
dirkdiggler
Newbie
 
Join Date: Nov 2009
Posts: 2
Status: Offline
Default Yay

Cream of the crop. Keep up the good works! All i can afford is... a thank you your greatly appreciated.
Reply With Quote
  #6  
Old 11-14-2009, 12:54 AM
lundiex
Newbie
 
Join Date: Nov 2009
Posts: 1
Status: Offline
Default asleap issues

Hi,

Whilst watching Ep612 I had a little idea.

What would happen if you commented out that length trap and recompiled? Would this mess up the algorithm or would it still produce sane results?
Reply With Quote
Reply


Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts
vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Forum Jump



All times are GMT. The time now is 04:25 PM.

Rev3 Forum RSS


(c) 2005-2009 Revision3 Corporation