
#287: Passwords: Am i a joke to you?
Passwords: Am i a joke to you? Big thanks to ITPro.TV for sponsoring this video. In future videos, Daniel will show us additional tools. Menu: It's not my fault! 0:00 David - you're dumb and other YouTube comments: 0:49 John quick demo: 1:16 Daniel's favourite hacking tools: 2:50 Script kiddie demo: 4:03 Shadow file: 4:38 Copy hashes to a text file: 7:10 John demo: 10:20 Start John: 11:29 Password complexity discussion: 12:30 You want an 8 hour video? 14:58 People still use bad passwords: 16:30 It's your fault! 17:30 Favourite password manager: 18:20 What is rockyou file? 18:55 True brute foce: 21:55 A long password doesn't help you: 24:09 Mutate the wordlist: 24:31 Custom rules for John the Ripper: 25:35 Humans make the same passwords: 26:37 Where to find wordlists: 27:36 Stupid ones in production: 30:33 Is my password in the rockyou file: 32:19 Have I been pwned: 34:34 Hashcat vs John: 36:19 ophcrack: 37:38 John options: 38:54 Hash types: 39:55 John makes it easy: 40:58 Previous video: https://youtu.be/ES2P2hWuzDo ================ Links: ================ ITProTV Free Training: http://davidbombal.wiki/freeitprotv My ITProTV affiliate link: http://davidbombal.wiki/itprotv ======================== Mentioned in the video: ======================== Darknet Diaries: https://darknetdiaries.com/episode/33/ Custom rules for John the Ripper: https://gracefulsecurity.com/custom-r... have i been pwned: https://haveibeenpwned.com/ ==================== Connect with Daniel: ==================== LinkedIn: https://www.linkedin.com/in/daniellowrie Blog: https://blog.itpro.tv/author/daniello... ================ Connect with me: ================ Discord: https://discord.com/invite/usKSyzb Twitter: https://www.twitter.com/davidbombal Instagram: https://www.instagram.com/davidbombal LinkedIn: https://www.linkedin.com/in/davidbombal Facebook: https://www.facebook.com/davidbombal.co TikTok: http://tiktok.com/@davidbombal YouTube: https://www.youtube.com/davidbombal john john the ripper hash md5 kali kali linux cybersecurity cybersecurity careers ceh oscp itprotv ejpt cissp ceh v10 elearn security oscp certification kali linux wordlists seclists wordlist rockyou wordlists password cracking password hacking comptia ceh oscp hack hacker hacking ethical hacking Please note that links listed may be affiliate links and provide me with a small percentage/kickback should you use them to purchase any of the items listed or recommended. Thank you for supporting me and this channel! #johntheripper #hacking #cybersecurity
27 Mai 202144min

#286: The 1% rule
What are you going to do today to improve your life? 1% can make all the difference! Giveaway: ======== Platinum access to lammle.com (3 winners): http://davidbombal.wiki/lammle5 Todd Lammle's books (6 winners): http://davidbombal.wiki/books5 My courses (lots of winners): Links in video Atomic habits: https://amzn.to/3uN9y4x ================ Connect with Todd: ================ Website: https://www.lammle.com/ LinkedIn: https://www.linkedin.com/in/toddlammle/ Twitter: https://twitter.com/lammle ================ Connect with me: ================ Discord: https://discord.com/invite/usKSyzb Twitter: https://www.twitter.com/davidbombal Instagram: https://www.instagram.com/davidbombal LinkedIn: https://www.linkedin.com/in/davidbombal Facebook: https://www.facebook.com/davidbombal.co TikTok: http://tiktok.com/@davidbombal YouTube: https://www.youtube.com/davidbombal Boson software: 15% discount Link: bit.ly/boson15 Code: DAVF15P ccna ccna 200-301 devnet ccnp ccnp encor linux python todd lammle todd lammle ccna firepower ansible ccie cisco firepower Please note that links listed may be affiliate links and provide me with a small percentage/kickback should you use them to purchase any of the items listed or recommended. Thank you for supporting me and this channel!
17 Mai 20215min

#285: Network Myths TCP/IP
Is TCP/IP required in networks? Do switches require that hosts use TCP/IP? Is it possible to run a non-TCP/IP network? Need help for your CCNA exam? Join my Discord here: https://discord.com/invite/usKSyzb Menu: Is TCP/IP required in networks? 0:00 Do PCs need to use TCP/IP? 0:30 Network devices: 1:10 Network Topology: 1:39 IPX/SPX example: 2:00 Protocols enabled in control panel: 2:40 NetBEUI example: 3:02 Protocols enabled in control panel: 3:24 TightVNC controlling Windows 95 laptop: 3:52 Protocols enabled: 4:15 Protocols available: Banyan VINES, DEC, IPX/SPX etc: 4:37 Windows 98: LAN Emulation and other protocols: 5:26 Windows 10: Only TCP/IP v4 and v6 available: 5:38 TCP/IP won the protocol wars: 6:28 Do layer 2 switches care about the layer 3 protocol? 6:37 Switch Putty console connection: 7:08 View mac address table of switch: 7:32 MAC address comparison on Windows 98 and switch: 8:02 Physical computer example: 8:34 Clear MAC address table of switch: 9:35 Ethereal Packet Capture (Wireshark): 10:22 View IPX/SPX packets in Ethereal: 11:22 View IPv4 packets: 12:25 Life repeats: 13:00 CCNA 200-301 Playlist: https://bit.ly/freedbccna Packet Tracer Installation: https://youtu.be/fnQB6cN3UWo Buy the CCNA course and support me: DavidBombal.com: CCNA ($10): http://bit.ly/yt999ccna Udemy CCNA Course: https://bit.ly/ccnafor10dollars GNS3 CCNA Course: CCNA ($10): https://bit.ly/gns3ccna10 Get Packet Tracer here: https://www.netacad.com/courses/packe... ======== ITPro.TV: ======== https://itpro.tv/davidbombal 30% discount off all plans Code: DAVIDBOMBAL Boson software: 15% discount Link: bit.ly/boson15 Code: DAVF15P tcp/ip tcp ip ipx spx netbeui netbios networking myths mac address mac address table putty console cisco cisco 1000 switch cisco 1000 cisco switch cisco router ccna free ccna 200-301 ccna 200-301 free ccna course network networking new ccna david bombal Please note that links listed may be affiliate links and provide me with a small percentage/kickback should you use them to purchase any of the items listed or recommended. Thank you for supporting me and this channel!
17 Mai 202114min

#284: Metasploit
Daniel demonstrates how to gain access to a Windows and Linux server using metasploit. This is one of his favourite tools. Big thanks to ITPro.TV for sponsoring this video. In future videos, he will show us additional tools. ====== Menu: ====== Menu: We like win: 0:00 I am administrator: 0:25 Linux access: 0:40 Password hashes: 1:20 Introduction: 1:35 Metasploit framework overview: 1:50 Why is this one of your favourite tools? 2:28 Windows and Linux: 4:05 This is a local lab: 4:43 Windows Metasploit demo: 5:40 Eternal Blue overview: 6:35 Start eternalblue: 7:24 Check attack viability: 8:35 Specify target (RHOSTS): 9:35 Exploit (check hosts): 10:32 Gain access: 10:50 Reverse shell :11:30 Set rhosts: 13:01 Set payload: 13:28 Set lhost: 14:08 Set lport: 14:30 Run exploit: 14:53 Win: 15:58 Shell access gained: 16:10 Full Admin access: 17:20 Summary of what was done: 18:14 This is much easier - use automation: 18:49 Why did this work? 20:35 What about Linux? 21:15 Linux demo example: 21:48 Linux shell bug: 22:29 Use option 5: 23:50 Set header: 24:39 Set rhosts: 25:06 Set targeturi: 25:35 Set lhost: 26:17 Exploit: 26:33 shell created: 26:55 Make pretty: 27:07 Use Linux commands: 28:01 Which user account is used: 28:27 Got a remote shell :28:51 Escalate priv: 29:00 Get admin and root accounts: 30:28 Summary of what we have done: 30:49 What other tools are you going to show us: 33:03 ======================== Download software and VMs: ======================== VM used: https://www.vulnhub.com/entry/bwapp-b... Kali Linux: https://www.kali.org/downloads/ ================ Links: ================ ITProTV Free Training: http://davidbombal.wiki/freeitprotv My ITProTV affiliate link: http://davidbombal.wiki/itprotv ==================== Connect with Daniel: ==================== LinkedIn: https://www.linkedin.com/in/daniellowrie Blog: https://blog.itpro.tv/author/daniello... ================ Connect with me: ================ Discord: https://discord.com/invite/usKSyzb Twitter: https://www.twitter.com/davidbombal Instagram: https://www.instagram.com/davidbombal LinkedIn: https://www.linkedin.com/in/davidbombal Facebook: https://www.facebook.com/davidbombal.co TikTok: http://tiktok.com/@davidbombal YouTube: https://www.youtube.com/davidbombal metasploit metasploit framewaork eternalblue eternal blue ethernal champion smb windows linux linux apache apache kali kali linux cybersecurity cybersecurity careers ceh oscp itprotv ejpt cissp ceh v10 elearn security oscp certification Please note that links listed may be affiliate links and provide me with a small percentage/kickback should you use them to purchase any of the items listed or recommended. Thank you for supporting me and this channel!
17 Mai 202134min

#283: CTF Walkthrough With John Hammon
John Hammond demonstrates a CTF walkthrough and also explains the tools and techniques he uses to be more efficient. Menu: 0:00 ⏩ This stuff helps in your real world job 1:16 ⏩ Introduction 1:48 ⏩ picoCTF site 2:36 ⏩ Labs can be accessed at any time 3:12 ⏩ picoCTF labs 3:33 ⏩ First CTF walkthrough 3:57 ⏩ Favourite distro 4:07 ⏩ Linux natively or in a VM? 4:29 ⏩ First CTF solution 5:50 ⏩ Second CTF 9:51 ⏩ Skills that John recommends you get 12:12 ⏩ Linux and then Python and then CTFs 12:57 ⏩ Ubuntu vs Kali vs Parrot OS etc 14:04 ⏩ Kali in VM? 14:46 ⏩ What about writing reports or e-mail? 15:50 ⏩ Which application do you recommend? 17:05 ⏩ Do you dump knowledge into something? 18:38 ⏩ How do you manage all the data collected? 20:16 ⏩ Don't just do it and forget what you have done 21:10 ⏩ CTFs vs Real World 21:54 ⏩ Base64 and ideas 24:17 ⏩ John's VBscript example 25:58 ⏩ Second CTF solution 26:40 ⏩ CTFs vs Bug Bounty vs Real World Previous video: https://youtu.be/u4u6ob13s2c ================ Connect with me: ================ Discord: https://discord.com/invite/usKSyzb Twitter: https://www.twitter.com/davidbombal Instagram: https://www.instagram.com/davidbombal LinkedIn: https://www.linkedin.com/in/davidbombal Facebook: https://www.facebook.com/davidbombal.co TikTok: http://tiktok.com/@davidbombal YouTube: https://www.youtube.com/davidbombal ================ Connect with John: ================ YouTube: https://www.youtube.com/johnhammond010 Twitter: https://twitter.com/_johnhammond LinkedIn: https://www.linkedin.com/in/johnhammo... ================ Links: ================ picoCTF: https://picoctf.org/ Obsidian: https://obsidian.md/ Hack the box: https://www.hackthebox.eu/ Try Hack Me: https://tryhackme.com/ All-Army CyberStakes: https://www.acictf.com/ CTF Time: https://ctftime.org/ctf-wtf/ eLearn Security: https://elearnsecurity.com OSCP: https://www.offensive-security.com/co... CEH: https://www.eccouncil.org/programs/ce... ================ Support me: ================ DavidBombal.com: CCNA ($10): http://bit.ly/yt999ccna Udemy CCNA Course: https://bit.ly/ccnafor10dollars GNS3 CCNA Course: CCNA ($10): https://bit.ly/gns3ccna10 ctf capture the flag tryhackme hackthebox picoctf picoctf 2021 base64 john hammond cybersecurity hack the box try hack me htb thm incident response incident response cyber security cyber security career cybersecurity cybersecurity careers ceh oscp ine oscp certification ctf for beginners first job cybersecurity job Please note that links listed may be affiliate links and provide me with a small percentage/kickback should you use them to purchase any of the items listed or recommended. Thank you for supporting me and this channel!
7 Mai 202128min

#282: How to Connect to a Cisco Router Using Putty (CCNA)
How do you connect to the console of a Cisco router? Do you need a physical router or is Packet Tracer enough for the CCNA exam? This video is part of my Cisco CCNA 200-301 course. Need help for your CCNA exam? Join my Discord here: https://discord.com/invite/usKSyzb This is video #18 of my FREE CCNA Course 200-301 - a complete CCNA course for the new Cisco CCNA exam. I am going to be covering all the topics in the exam blueprint in this course. I want to make this content practical and it will include a lots of labs and demonstrations to help you better understand topics on the exam. The course will contain: - Videos - Labs using Cisco Packet Tracer - Quiz Questions - And more! Menu: 0:00 Introduction 0:32 Connect console to Cisco router 0:56 COM port on Windows computer 1:08 Putty connection to router 1:50 Cisco Router modes 2:34 Use packet tracer 3:01 Physical router vs Cisco Packet Tracer 4:52 How to connect a console cable to a router in Packet Tracer 5:22 Aux port vs console port 5:35 Terminal on PC in Packet Tracer 7:41 Testing real switch vs Packet Tracer switch 10:07 Real switch / router vs Packet Tracer Previous video: https://youtu.be/jIRRsIgfHU8 Packet Tracer Installation: https://youtu.be/fnQB6cN3UWo CCNA 200-301 Playlist: https://bit.ly/freedbccna Buy the CCNA course and support me: DavidBombal.com: CCNA ($10): http://bit.ly/yt999ccna Udemy CCNA Course: https://bit.ly/ccnafor10dollars GNS3 CCNA Course: CCNA ($10): https://bit.ly/gns3ccna10 Get Packet Tracer here: https://www.netacad.com/courses/packe... ======== ITPro.TV: ======== https://itpro.tv/davidbombal 30% discount off all plans Code: DAVIDBOMBAL Boson software: 15% discount Link: bit.ly/boson15 Code: DAVF15P putty console cisco switch cisco router ccna free ccna 200-301 ccna 200-301 free ccna course network networking new ccna david bombal Please note that links listed may be affiliate links and provide me with a small percentage/kickback should you use them to purchase any of the items listed or recommended. Thank you for supporting me and this channel!
5 Mai 202111min

#281: SQL Injection
Daniel demonstrates SQL Injection using sqlmap. This is one of his favourite tools. Big thanks to ITPro.TV for sponsoring this video. In future videos, he will show us additional tools. ====== Menu: ====== SQL Injection Demo: 0:00 Daniel's top 5 hacking tools: 1:40 SQL Injection: sqlmap and DVWA: 2:31 Don't get shiny bracelets: 3:32 Start attack: 5:44 SQL tables: 8:00 SQL dump: 9:35 SQL Hashes: 9:45 DVWA explained: 12:40 sqlmap command: 15:27 url: 16:06 sqlmap uses the website: 17:34 Change URL to handle special characters: 19:21 cookies: 20:04 How to find cookies manually: 21:41 sqlmap switches dbs: 23:55 sqlmap tables: 26:30 sqlmap columns: 27:31 sqlmap dump: 28:29 Login as a user: 29:45 Why is it called sql injection: 30:41 Can you write to the database: 32:45 What do you want to see? 34:48 How to build the same network: 36:23 It is still used in the real world: 37:31 How to stop this: 38:30 ======================== Download software and VMs: ======================== VM used: https://www.vulnhub.com/entry/websplo... Kali Linux: https://www.kali.org/downloads/ ================ Links: ================ ITProTV Free Training: http://davidbombal.wiki/freeitprotv My ITProTV affiliate link: http://davidbombal.wiki/itprotv ==================== Connect with Daniel: ==================== LinkedIn: https://www.linkedin.com/in/daniellowrie Blog: https://blog.itpro.tv/author/daniello... ================ Connect with me: ================ Discord: https://discord.com/invite/usKSyzb Twitter: https://www.twitter.com/davidbombal Instagram: https://www.instagram.com/davidbombal LinkedIn: https://www.linkedin.com/in/davidbombal Facebook: https://www.facebook.com/davidbombal.co TikTok: http://tiktok.com/@davidbombal YouTube: https://www.youtube.com/davidbombal sql sqlmap sql map sql injection sql injection demo kali sql kali linux sql kali linux sql injection kali linux hacker hacking ethical hacking cybersecurity cybersecurity careers ceh oscp itprotv ejpt cissp ceh v10 blind sql injection elearn securtiy try hack me hack the box oscp certification Please note that links listed may be affiliate links and provide me with a small percentage/kickback should you use them to purchase any of the items listed or recommended. Thank you for supporting me and this channel!
3 Mai 202141min

#280: Are Hacking CTFs even real? Featuring John Hammond.
Do you agree with John? Please comment below. Are CTFs worth it? Do they help you get a job? Which are the best? Menu: 0:00 ⏩ Best option for a job interview 0:17 ⏩ John Hammond intro 0:48 ⏩ John's CTFs walkthroughs 1:35 ⏩ What are CTFs? 3:00 ⏩ Why are CTFs good? 4:00 ⏩ Certifications or CTFs? 5:09 ⏩ Recommended first cert? 6:49 ⏩ How to prepare for an exam? Use CTFs. 7:21 ⏩ John's 5 top CTFs 9:33 ⏩ HackTheBox and TryHackMe are not CTFs 10:40 ⏩ First CTF - one to start with? 12:34 ⏩ Training wheels vs flying 13:40 ⏩ Guided vs beat your head against the wall 14:41 ⏩ Lots of free content 15:48 ⏩ PicoCTF overview 17:26 ⏩ CTFs vs real world experience? 19:21 ⏩ Hiring someone: Certs vs CTFs? 21:47 ⏩ Do CTFs help with Blue Team roles? 23:35 ⏩ CTFs help John with his day to day work ================ Connect with me: ================ Discord: https://discord.com/invite/usKSyzb Twitter: https://www.twitter.com/davidbombal Instagram: https://www.instagram.com/davidbombal LinkedIn: https://www.linkedin.com/in/davidbombal Facebook: https://www.facebook.com/davidbombal.co TikTok: http://tiktok.com/@davidbombal YouTube: https://www.youtube.com/davidbombal ================ Connect with John: ================ YouTube: https://www.youtube.com/johnhammond010 Twitter: https://twitter.com/_johnhammond LinkedIn: https://www.linkedin.com/in/johnhammo... ================ Links: ================ Hack the box: https://www.hackthebox.eu/ Try Hack Me: https://tryhackme.com/ PicoCTF: https://picoctf.org/ All-Army CyberStakes: https://www.acictf.com/ CTF Time: https://ctftime.org/ctf-wtf/ eLearn Security: https://elearnsecurity.com OSCP: https://www.offensive-security.com/co... CEH: https://www.eccouncil.org/programs/ce... ================ Support me: ================ DavidBombal.com: CCNA ($10): http://bit.ly/yt999ccna Udemy CCNA Course: https://bit.ly/ccnafor10dollars GNS3 CCNA Course: CCNA ($10): https://bit.ly/gns3ccna10 ctf capture the flag tryhackme hackthebox john hammond cybersecurity hack the box try hack me htb thm incident response incident response cyber security cyber security career cybersecurity cybersecurity careers ceh oscp ine oscp certification ctf for beginners first job cybersecurity job Please note that links listed may be affiliate links and provide me with a small percentage/kickback should you use them to purchase any of the items listed or recommended. Thank you for supporting me and this channel!
29 Apr 202125min