Capitalisation is important. It's the difference between "Helping your brother Jack off a horse" and "Helping your brother jack off a horse".
The Forum Rules, Forum FAQ and the BackTrack Wiki... learn them, love them, live them.
In all large corporations, there is a pervasive fear that someone, somewhere is having fun with a computer on company time. Networks help alleviate that fear.
-John C. Dvorak
DiggThis-09-f9-11-02-9d-74-e3-5b-d8-41-56-c5-63-56-88-c0
Not a specific answer to your question, but this is exactly the reason you should turn off unused (Cisco) switch ports. Wifi routers in the least, not to mention the infamous PDA sniffer/server stashed under a desk. Leave an open switch port and someone will plug something into it.
<EeePc 1000HA BT4/W7 USB boot Alfa500 GPS BlueTooth>
I've always been partial to carrying a $20 powered switch and an assortment of colour cables so I can do an ethernet run and the client doesn't need to notice.
5 minutes in a building and I can sit in the carpark later and do my thing. Couple it with automation tools for netdiscover and the like, and it's like a portable attack platform gone wild![]()
Still not underestimating the power...
There is no such thing as bad information - There is truth in the data, so you sift it all, even the crap stuff.
Yes, I should have said "shutdown" the interfaces:
Something along these lines,
S1(config)#interface range fa0/1-24 <-your unused range goes here
S1(config-if-range)#shutdown
<EeePc 1000HA BT4/W7 USB boot Alfa500 GPS BlueTooth>
Which doesn't affect what I was saying. If there is no port security turned on, having the unused interfaces off is a mere slight annoyance as the hub/switch + laptop combo will "intercept" a live cable - letting the active machine operate whilst adding my own attack box to the mix.
Still not underestimating the power...
There is no such thing as bad information - There is truth in the data, so you sift it all, even the crap stuff.
Oh, lol I see where your heading with this Gitsnik! No stopping the determined.
OP, you see even your best efforts can be a slight annoyance to someone like Gitsnik. Even if the switch was locked in the closet Gitsnik will pop a hub inline with a live wire. I don't know who your customers are Gitsnik, but where I normally work everyone is escorted in person. One of those wrt54g's and a tap would work nice. Or even a PDA with a tap. Or a switchblade. Your right man it is true, I don't think anyone will ever be 100% secure. All we can do is our very best effort. And escort everyone in person! I'm really going to miss this place.
<EeePc 1000HA BT4/W7 USB boot Alfa500 GPS BlueTooth>
Weaponizing Apple's iPod Touch
Damn iPod's... Someday they will rule the world.![]()
I've never been to a place that prevented a sparky from working on his own, or an A/C guy.
The few times I've actually been escorted on jobs, simply asking for a glass of water or something is enough for the person to go and get it for you (generally). Often times you can just pop behind a desk while the person sits bored above it and do the work.
Anyway that was an interesting and fun trip down memory lane, now to grab my iPod touch and have a go at setting that one up![]()
Still not underestimating the power...
There is no such thing as bad information - There is truth in the data, so you sift it all, even the crap stuff.