<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Lifedork &#187; LDAP</title>
	<atom:link href="http://www.lifedork.net/tag/ldap/feed" rel="self" type="application/rss+xml" />
	<link>http://www.lifedork.net</link>
	<description>still GeeX? still SuX!</description>
	<lastBuildDate>Sat, 04 Sep 2010 22:23:12 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.9.1</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<image>
  <link>http://www.lifedork.net</link>
  <url>http://www.lifedork.com/favicon.ico</url>
  <title>Lifedork</title>
</image>
		<item>
		<title>backtrack ldap</title>
		<link>http://www.lifedork.net/backtrack-ldap.html</link>
		<comments>http://www.lifedork.net/backtrack-ldap.html#comments</comments>
		<pubDate>Mon, 16 Aug 2010 23:22:54 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Miscs]]></category>
		<category><![CDATA[BackTrack]]></category>
		<category><![CDATA[backtrack ldap]]></category>
		<category><![CDATA[LDAP]]></category>

		<guid isPermaLink="false">http://www.lifedork.net/backtrack-ldap.html</guid>
		<description><![CDATA[A lot of people coming through search engine to search backtrack ldap , in this post i will show you some blog post that talk about backtrack , backtrack , ldap , backtrack ldap at most. So if you enjoy backtrack ldap , just read this post.
Go here:
backtrack ldap
]]></description>
			<content:encoded><![CDATA[<p>A lot of people coming through search engine to search <b>backtrack ldap</b> , in this post i will show you some blog post that talk about <b>backtrack , backtrack , ldap , backtrack ldap</b> at most. So if you enjoy <b>backtrack ldap</b> , just read this post.<br />
Go here:<br />
<a href="http://www.google.com/#q=backtrack ldap">backtrack ldap</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.lifedork.net/backtrack-ldap.html/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>ldapuserenum &#8211; Active Directory LDAP Server Information Disclosure Vulnerability</title>
		<link>http://www.lifedork.net/ldapuserenum-active-directory-ldap-server-information-disclosure-vulnerability.html</link>
		<comments>http://www.lifedork.net/ldapuserenum-active-directory-ldap-server-information-disclosure-vulnerability.html#comments</comments>
		<pubDate>Fri, 14 Nov 2008 14:33:19 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Sectools]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Active Directory]]></category>
		<category><![CDATA[backtrack and ldap]]></category>
		<category><![CDATA[backtrack ldap]]></category>
		<category><![CDATA[Client]]></category>
		<category><![CDATA[Elastra]]></category>
		<category><![CDATA[friendster password]]></category>
		<category><![CDATA[information gathering active directory]]></category>
		<category><![CDATA[LDAP]]></category>
		<category><![CDATA[ldap backtrack]]></category>
		<category><![CDATA[ldap exploit back track]]></category>
		<category><![CDATA[ldap username backtrack]]></category>
		<category><![CDATA[ldapuserenum]]></category>
		<category><![CDATA[ldapuserenum backtrack]]></category>
		<category><![CDATA[Lightweight Directory Access Protocol]]></category>
		<category><![CDATA[PHP]]></category>
		<category><![CDATA[Protocols]]></category>
		<category><![CDATA[User]]></category>

		<guid isPermaLink="false">http://www.lifedork.com/?p=426</guid>
		<description><![CDATA[

Information disclosure vulnerability could be exist in the microsoft ldap server responds when it&#8217;s binding to the ldap server. When an invalid password is provided, the server will respond with result code 49 (invalidCredentials) and an error message.  A different error message is returned if an invalid username is provided. Here&#8217;s the usage of [...]]]></description>
			<content:encoded><![CDATA[<div class="zemanta-img zemanta-action-dragged">
<div class="wp-caption alignleft" style="width: 250px"><a href="http://www.flickr.com/photos/34114814@N00/142685185"><img title="server tools" src="http://farm1.static.flickr.com/54/142685185_bd9c6ee6b8_m.jpg" alt="server tools" width="240" height="180" /></a><p class="wp-caption-text">Image by somefool (MatthewM) via Flickr</p></div>
</div>
<p>Information disclosure vulnerability could be exist in the microsoft <a class="zem_slink" title="Lightweight Directory Access Protocol" rel="wikipedia" href="http://en.wikipedia.org/wiki/Lightweight_Directory_Access_Protocol">ldap</a> server responds when it&#8217;s binding to the ldap server. When an invalid password is provided, the server will respond with <a class="zem_slink" title="Result code" rel="wikipedia" href="http://en.wikipedia.org/wiki/Result_code">result code</a> 49 (invalidCredentials) and an <a class="zem_slink" title="Error message" rel="wikipedia" href="http://en.wikipedia.org/wiki/Error_message">error message</a>.  A different error message is returned if an invalid <a class="zem_slink" title="User (computing)" rel="wikipedia" href="http://en.wikipedia.org/wiki/User_%28computing%29">username</a> is provided. Here&#8217;s the usage of the ldapuserenum : (taken from http://labs.portcullis.co.uk/application/ldapuserenum/)</p>
<blockquote><p>Usage</p>
<p>$ python ldapuserenum-0.1.py -h<br />
Usage: ldapuserenum-0.1.py [-i] -t</p>
<p>Options:<br />
&#8211;version   show program&#8217;s version number and exit<br />
-h, &#8211;help  show this help message and exit<br />
-d          show description and exit<br />
-t <a class="zem_slink" title="TARGET" rel="wikipedia" href="http://en.wikipedia.org/wiki/TARGET">TARGET</a> target <a class="zem_slink" title="Internet Protocol" rel="wikipedia" href="http://en.wikipedia.org/wiki/Internet_Protocol">IP</a> or <a class="zem_slink" title="Hostname" rel="wikipedia" href="http://en.wikipedia.org/wiki/Hostname">hostname</a><br />
-i, &#8211;info  show LDAP information gathering results</p>
<p>Example</p>
<p>$ python ldapuserenum-0.1.py -t 192.168.123.32</p>
<p>Going to enumerate users taking &#8216;./users.txt&#8217; file as input</p>
<p>[*] Enumerated users:<br />
[*] User: testuser<br />
[*] LDAP <a class="zem_slink" title="Error code" rel="wikipedia" href="http://en.wikipedia.org/wiki/Error_code">error code</a>: 52e<br />
[*] LDAP message: invalid credentials<br />
[*] User: administrator<br />
[*] LDAP error code: 52e<br />
[*] LDAP message: invalid credentials<br />
[*] User: guest<br />
[*] LDAP error code: 52e<br />
[*] LDAP message: invalid credentials<br />
[*] User: aspnet<br />
[*] LDAP error code: 52e<br />
[*] LDAP message: invalid credentials</p></blockquote>
<h6 class="zemanta-related-title" style="font-size: 1em;">Related articles :</h6>
<ul class="zemanta-article-ul">
<li class="zemanta-article-ul-li"><a href="http://www.linux.com/feature/120616">LDAP browsing with Luma</a></li>
<li class="zemanta-article-ul-li"><a href="http://www.linux.com/feature/147977">Devil-Linux distro bundles router/firewall and server in one live CD</a></li>
<li class="zemanta-article-ul-li"><a href="http://www.linux.com/feature/147795">Get thin client benefits for free with openThinClient</a></li>
<li class="zemanta-article-ul-li"><a href="http://blog.workaround.org/2008/08/23/bad-idea-of-the-day-upgrading-to-lenny-with-aptitude/">Bad idea of the day: upgrading to Lenny with aptitude</a></li>
</ul>
<p>Please explore this blog to obtain more informations about sql inject tutorial , cara ngehack fs , webgoat tutorials , friendster password cracker , and so on</p>
<div class="zemanta-pixie" style="margin-top: 10px; height: 15px;"><a class="zemanta-pixie-a" title="Zemified by Zemanta" href="http://reblog.zemanta.com/zemified/69f910e4-677d-410f-bc7a-f67ca3cfbe05/"><br />
</a></div>
]]></content:encoded>
			<wfw:commentRss>http://www.lifedork.net/ldapuserenum-active-directory-ldap-server-information-disclosure-vulnerability.html/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
