El Blog de Seguridad
A place to keep a record of my journey through IT security
  • Home
  • About Me
  • Security Tools

Archive for October, 2008

ping and arp

Windows Command Line No Comments »

Ping is a tool used to check the connectivity of a certain host, using ICMP (Internet Control Message Protocol).  At the command line you can ping an IP address or domain name and see how long the target takes to respond.  When this happens, ARP (Address Resolution Protocol) resolves the domain name or IP address to the target’s MAC (Media Access Control) address.  Displayed below is an example of how this works.  Once an address is pinged, it’s resolved MAC address is written to the ARP cache, which can be displayed using the “arp -a” command.

The tricky part comes in figuring out if that is really the correct MAC address for the target computer.  If you’re trying to identify someone who has tried to access your network illegally, they most likely used ARP spoofing.  More on this later…


October 29th, 2008 |

Tags: arp, ping




Security Tools

Security Tools No Comments »

The following are a few tools of which I am currently aware.  I’ve used some, and plan to dive deeper into each of them, and hopefully discover others along the way.  I’ll republish this list as I get further along.

  1. Backtrack – live CD, combination of Auditor and WHAX, tons of security/forensics tools
  2. Helix – live CD, can also run as an application in Windows, forensic tools
  3. SecurityDistro – more live CD’s with loads of security tools
  4. WebGoat – a tutorial on web security
  5. p0f – OS fingerprinting tool, for profiling your targets
  6. MetaSploit – ” useful information to people who perform penetration testing, IDS signature development, and exploit research”
  7. KeePass – “a free open source password manager, which helps you to manage your passwords in a secure way”
  8. Wigle.net – Wireless Geographic Logging Engine

October 13th, 2008 |

Tags: tools




Purpose of This Security Blog

Uncategorized No Comments »

I’d like to keep track of my experiences and record the knowledge I gain as I start exploring the world of IT security more in depth.  I do not claim to be an expert on any of the topics I introduce here; but welcome any further insights or questions from anyone who takes the time to visit El Blog de Seguridad.

I hope this can become some sort of a digital resume to help display the experience I gain working with and researching IT security.  I’d like to set a public goal of publishing here at least once a week (so bug me if you don’t see anything newer than a week).


October 9th, 2008 |

Tags: overview, this blog




  • Recent Posts

    • Internet/Computer Security Advice
    • Opening Ports in Windows 7 Firewall
    • Setting up Netbook to Dual Boot to Backtrack 4
    • XSS: Cross Site Scripting
    • nessusrc
  • Security Blogs

    • Craig Security
    • DarkNet.org
    • DarkReading.com
    • GNU Citizen
    • Iron Geek
    • Matasano
    • RootSecure.net
  • RSS Security Articles

    • The Inside Scoop on DoD Thinking September 3, 2010 Richard Bejtlich
    • Review of Hacking Exposed: Wireless, 2nd Ed Posted September 2, 2010 Richard Bejtlich
    • Successful Attack Against a Quantum Cryptography System September 2, 2010 schneier
    • CNN: The iPad is for grandparents, not just geeks September 2, 2010 (author unknown)
    • c|net: Twitter plans to record all links clicked September 2, 2010 (author unknown)
    • Network World: Deutsche Post kicks off bug bounty contest "Researchers can make up to $6,400 for finding flaws in German firm's secure message service" September 2, 2010 (author unknown)
    • Cyber-Offence is the New Cyber-Defense September 2, 2010 schneier
    • Threat Post: Google Code Discovered Serving Malware September 2, 2010 (author unknown)
    • CNet: Skyfire promises Flash video playback on its iPhone app September 2, 2010 (author unknown)
    • IT World: China demands real names from mobile phone users September 2, 2010 (author unknown)
  • Categories

    • Nessus
    • network
    • OWASP Top 10
    • Security Advice
    • Security Tools
    • Tutorial
    • Uncategorized
    • Windows Command Line
  • Archives

    • August 2010
    • March 2010
    • January 2010
    • November 2009
    • January 2009
    • November 2008
    • October 2008
Copyright © 2010 El Blog de Seguridad All Rights Reserved
RSS XHTML CSS Log in
Wp Theme by n Graphic Design
Powered by Wordpress