CEH v9 Question of the Week: CVE-2007-2447

You have found a CVE-2007-2447: Remote Command Injection Vulnerability. This bug was originally reported against the anonymous calls to the SamrChangePassword() MS-RPC function in combination with the “username map script”smb.conf option (which is not enabled by default). The vulnerables version are Samba 3.0.0 – 3.0.25rc3. You want to exploit it and get access to the system. Which exploitation framework will help you with the task?

Read more

Training and Strategy Why Cant We All Get Along

Many companies spend a huge amount of time and resources crafting the next brilliant strategy – only to see it end in failure. The plan is implemented with much fanfare and then it falls flat on its face, and said company spends buckets of more money trying to hit the reset button and go back to way things were before.

Read more

Meet Them On Their Turf The New Face of Corporation Communications is Interactive

Most everyone has received a bad gift in their lifetime. In most instances, it’s not too difficult to react with “it’s the thought that counts,” but what if the sender is someone who’s supposed to know and understand your taste?

Read more