I suppose I should update this site more often... So much to hack; so little time. Here is some of the public stuff I have been working on in 2011, 2012.
Grabbing Usernames, Passwords, Cookies and more from HTTPS websites
Privilege Escalation through VMWare snapshots
Using Windows Resource Monitor to find hackers
A great SCAPY shortcut for TCP Fussing
Put Meterpreter in Python for 100% evasion:
Cool new SQL Injection Tool - It is different!
Volume Shadow Copy, Symbolic Links and directory name craziness
Execute files up to a month after they have been deleted and "cipher /w" wipes them:
Other related stuff:
EAP MD5 Crack - Attack 802.1X
Packet Reassembler for a new IDS ANALYST evasion technique
Convert Iphone Backup to Google Maps & Dump other data
Welcome to In Depth Defense. In Depth Defense LLC is a privately owned Information Security Consulting company owned and operated by Mark Baggett. In Depth Defense specializes in Penetration Testing and Incident Response. At this time In Depth Defense is not accepting any new client work, but we are happy to speak to you and point you to other resources in the community.
Mark Baggett has been active in Information Security for 18+ years. I've served in a variety of roles from software developer to CISO. You can find archives of older blog entries below and read my newer posts on http://www.pauldotcom.com, http://isc.sans.edu and http://pen-testing.sans.org