Section: .. / papers / general /
| /// File Name: |
phpendangers.txt |
Description:
|
Whitepaper entitled PHP Endangers - Remote Code Execution.
| | Author: | Arham Muhammad | | File Size: | 13748 | | Last Modified: | Aug 16 04:32:46 2007 |
| MD5 Checksum: | 75496cb8ab31fe5ed70fd44ed2edd52e |
|
| /// File Name: |
heap_off_by_one.txt |
Description:
|
A short paper discussing exploitation of vulnerabilities consisting of a null byte written passed the end of a dynamically allocated buffer.
| | Author: | qitest1 | | Homepage: | http://bespin.org/~qitest1/ | | File Size: | 13050 | | Last Modified: | Jun 24 23:48:01 2003 |
| MD5 Checksum: | 34476d3f8b558ed26ed7286d96e42509 |
|
| /// File Name: |
newbackdoor-jm.txt |
Description:
|
Whitepaper entitled "Las nuevas backdoors", discussing new techniques in backdoors and sniffing. Written in Spanish.
| | Author: | MegadetH | | File Size: | 13021 | | Last Modified: | Aug 23 21:22:54 2007 |
| MD5 Checksum: | fabb4b532cbb1a91b4f35df1ff229298 |
|
| /// File Name: |
bash-history.txt |
Description:
|
Hacking Bash History discusses about why the history mechanism of bash cannot be used as a monitoring/logging facility even with the strictest measures applied to secure it. A section of the text is dedicated to hacking the bash source code to interface it with syslog.
| | Author: | ithilgore | | Homepage: | http://sock-raw.homeunix.org/ | | File Size: | 12765 | | Last Modified: | Dec 8 23:31:00 2008 |
| MD5 Checksum: | 8e0335cc29bb88eaeb3fa45c767071f3 |
|
| /// File Name: |
ngreptut.txt |
Description:
|
Simple network grep (ngrep) tutorial that gives a basic overview of some use cases.
| | Author: | d3hydr8 | | Homepage: | http://www.darkc0de.com/ | | File Size: | 12537 | | Last Modified: | Dec 24 18:59:36 2007 |
| MD5 Checksum: | 094f7c35c7872b9e2ffe74ef2b0b9eda |
|
| /// File Name: |
NTLMhttp.txt |
Description:
|
Interesting write up regarding the faulty logic of using NTLM HTTP authentication and how it does not mix well with HTTP proxies.
| | Author: | Amit Klein | | File Size: | 12286 | | Last Modified: | Jul 19 10:43:40 2005 |
| MD5 Checksum: | 0da67587751762cebd0c64d797eaf2ef |
|
| /// File Name: |
appOSfingerprint.txt |
Description:
|
Whitepaper entitled Advanced application-level OS fingerprinting: Practical approaches and examples.
| | Author: | Dan Crowley | | File Size: | 12009 | | Last Modified: | Oct 30 13:13:08 2008 |
| MD5 Checksum: | ae054f97b0ef7a85c7a4e4e57059587f |
|
| /// File Name: |
caching.html |
Description:
|
Speeding Up Your Internet Connection using DNS Caching under Unix and Windows: everything you've always wanted to know about DNS caching but were afraid to ask.
| | Author: | Raven | | Homepage: | http://blacksun.box.sk | | File Size: | 11797 | | Last Modified: | Dec 2 17:55:13 1999 |
| MD5 Checksum: | b43e0b49cb73bf2b1c0bf22467a53465 |
|
| /// File Name: |
overflow.txt |
Description:
|
overflow.txt is a paper written in Spanish which explains buffer overflows and includes sample code.
| | Author: | Venomous | | Homepage: | http://www.rdcrew.com.ar | | File Size: | 11650 | | Last Modified: | Jul 31 18:20:08 2000 |
| MD5 Checksum: | 8fd971431c1591e222406c4440ae125a |
|
| /// File Name: |
jolt2.c-analysis.txt |
Description:
|
Analysis of jolt2.c (Revision 2) - Technical analysis of the recent "IP Fragment Reassembly" Windows remote denial of service vulnerability described in ms00-029 which is effective against Win98, WinNT4/SP5,6, and Win2K. This attack is actually a network layer resource exhaustion attack.
| | Author: | Mikael Olsson | | Homepage: | http://www.enternet.se | | File Size: | 10878 | | Last Modified: | Jun 6 18:28:31 2000 |
| MD5 Checksum: | be284d3d976023be331b8c34be3afc2f |
|
| /// File Name: |
hackers-rfc.txt |
Description:
|
The Hacker's RFC - This document introduces best practices a computer hacker should know about and implement for his own safety.
| | Author: | fckD | | File Size: | 10805 | | Last Modified: | Oct 16 19:43:46 2008 |
| MD5 Checksum: | 7bcf0701c8097dac62f535cb9feb45eb |
|
| /// File Name: |
clickjack-xss.txt |
Description:
|
The Clickjacking Meets XSS: A State Of Art.
| | Author: | Nex | | Homepage: | http://nex.playhack.net/ | | File Size: | 10491 | | Last Modified: | Dec 30 22:20:55 2008 |
| MD5 Checksum: | d40636989e456c08265bc391ca205dc4 |
|
| /// File Name: |
transparency.txt |
Description:
|
This paper discusses full disclosure, the necessity of legitimate network scanning, and the results of criminalizing security research and information. Overreactions to harmless activities not crossing legal boundaries are leading to a scenario where anyone acquiring basic information about a system needs to be afraid about potential consequences.
| | Author: | Mixter | | Homepage: | http://mixter.warrior2k.com | | File Size: | 10257 | | Last Modified: | Nov 13 16:29:15 2000 |
| MD5 Checksum: | 6392ac2ef70447827974be8b88605ec2 |
|
| /// File Name: |
dtors.txt |
Description:
|
Overwriting the .dtors section - This paper presents a concise explanation of a technique to gain control of a C program's flow of execution given that it has been compiled with gcc. This exploit technique has several advantages over changing the stack pointer, including ease of determining the exact position where we want to write and point to our shellcode, and is simpler than a GOT patch.
| | Author: | Juan M. Bello Rivas | | Homepage: | http://www.synnergy.net | | File Size: | 10059 | | Last Modified: | Dec 12 22:53:04 2000 |
| MD5 Checksum: | f693cc32d668324c2205e77036aa3fd1 |
|
| /// File Name: |
SyscalltableAMD64EN.txt |
Description:
|
Whitepaper titled "How to get sys_call_table on amd64 under Linux".
| | Author: | pouik | | File Size: | 9327 | | Last Modified: | Oct 18 19:35:23 2006 |
| MD5 Checksum: | cb8bcc65f01e76177ffea9b98ef6102c |
|
| /// File Name: |
Footprinting-faq-v0_1.txt |
Description:
|
Footprinting FAQ - How to remotely determine the network addresses of a company.
| | Author: | Tag | | Homepage: | http://liun.hektik.org | | File Size: | 9292 | | Last Modified: | Jan 8 20:03:42 2001 |
| MD5 Checksum: | 4799e7a486e8e33828020f8e4a3c0a40 |
|
| /// File Name: |
NetIntro.txt |
Description:
|
Introduction to Internetworking - Inspired by a cisco class, here is some information on how todays high bandwidth network connections work, and how packets get to thier destination.
| | Author: | RatDance | | Homepage: | http://neoerudition.hypermart.net | | File Size: | 9121 | | Last Modified: | Apr 11 16:04:00 2000 |
| MD5 Checksum: | c7d0a9e9d217aa3f5a8db30735432070 |
|
| /// File Name: |
freebsd.org-report.txt |
Description:
|
How Freebsd.org was hacked - By combining insecurities in two CGI scripts, www.freebsd.org was taken over by Nohican and Frank Van Vliet.
| | Author: | Joost Pol aka Nohican,Karin | | File Size: | 8658 | | Last Modified: | Dec 16 22:07:56 2000 |
| MD5 Checksum: | abb904a3dc90dec5904922b683308e4e |
|
| /// File Name: |
igujv-guide.txt |
Description:
|
IGUJV - The Infection Guide Using Java/VbScript.
| | Author: | AnalyseR | | File Size: | 8500 | | Last Modified: | Dec 12 18:17:36 2008 |
| MD5 Checksum: | 5325bfd16a20d8177e616a137beb4bf4 |
|
| /// File Name: |
mime-dos.txt |
Description:
|
Write up discussing denial of service attacks on MIME-capable software via complex MIME emails.
| | Author: | Bernhard Brehm | | Homepage: | http://www.recurity-labs.com/ | | File Size: | 8340 | | Last Modified: | Dec 9 02:02:16 2008 |
| MD5 Checksum: | 8f2e0fba5de9b636f9e96f7393b1eac8 |
|
| /// File Name: |
cw-biometric.txt |
Description:
|
Short paper on biometric authentication, including Finger Print Systems, Voice Systems, Handwriting Systems, Hand Geometry Systems, and Eye/Retina Scanner Systems.
| | Author: | Ashtar | | File Size: | 7906 | | Last Modified: | Jul 5 18:03:31 2000 |
| MD5 Checksum: | e0d7ceeffd63d247b6788d3eac3b3a95 |
|
| /// File Name: |
Secure-Programs-HOWTO.htm |
Description:
|
Secure Programming Howto - This paper provides a set of design and implementation guidelines for writing secure programs for Linux systems. Such programs include application programs used as viewers of remote data, CGI scripts, network servers, and setuid/setgid programs.
| | Author: | David A. Wheeler | | File Size: | 7529 | | Last Modified: | Jan 11 21:00:27 2000 |
| MD5 Checksum: | 24859d444efc55ac3c4fe643fd1ff557 |
|
| /// File Name: |
ZCsocksChainWin.txt |
Description:
|
Guide to Anonymity with MS-Windows. This little tutorial will explain step by step how to add support for socks chains to all your windows programs like telnet, ftp, irc, http, portscanners... (even if they don't support socks).
| | Author: | Zoa_chien | | File Size: | 6483 | | Last Modified: | May 22 18:20:04 2000 |
| MD5 Checksum: | ef3837f013583747982bf3e17bfb73a7 |
|
|
|
|
|