Dave Aitel - 0days: How hacking really works
Une jolie presentation de Dave Aitel avec pour titre "0days: How hacking really works" http://www.immunitysec.com/resources-papers.shtml
Blog sur la sécurité, les nouvelles technologies, l'informatique
Une jolie presentation de Dave Aitel avec pour titre "0days: How hacking really works" http://www.immunitysec.com/resources-papers.shtml
Attention, pour ceux qui utilise mysql sous windows , un bot mysql exploitant la "faille" sql udf (http://overflow.over-blog.com/article-64546.html) a ete trouve par le SANS. Le SANS rapporte que le bot utilise un dictionnaire pour trouver le mot de pass...
It's gonna be very simple, but somebody needs to bring it the publicfor the goodness of the mankind... or at least the rootkit community;) When researching some new techniques for files hiding, I came acrossthe very common bug in many (all?) publicly...
/* Search and Replace Compressed File search Local Buffer Overflow Exploit** Discoveried & Coded By [ATmaCA]* Copyright ©2002-2005 AtmacaSoft Inc. All Rights Reserved.* Web: http://www.atmacasoft.com* E-Mail: atmaca@icqmail.com* Greetings to: Tarako**/...
MsnShell - Covert Shell Tunneling Through MSN Protocol------------------------------ ------------------------------------------ SUMMARY DETAILS MsnShell is a kind of covert channel tunneling tool allowing to remotelycontrol a Linux computer protected...
/* HOD-ms05002-ani-expl.c: 2005-01-10: PUBLIC v.0.2** Copyright (c) 2004-2005 houseofdabus.** (MS05-002) Microsoft Internet Explorer .ANI Files Handling Exploit* (CAN-2004-1049)**** .::[ houseofdabus ]::.**** (universal -- for all affected systems)* ---------------------------------------------------------------------*...
F-Secure annonce qu'ils ont trouve un vers se deplacant par msn,Bropia.A, il se propage sous les noms "Drunk_lol.pif", "Webcam_004.pif", "sexy_bedroom.pif", "naked_party.pif" ou "love_me.pif".Le worms installerai aussi une variante de Rbot.
Microsoft AntiSpyware bien que uniquement en versiom beta, inspire deja les codeurs de virus... Trojan-Clicker.Win32.Agent.bm: et Trojan-Dropper.Win32.Agent.ed Kaspersky recommande donc la prudence avec les fichiers inconnus...
Le dernier myDoom en date, se deplacait en se faisant passer pour un site pornographique, et il utilisait donc les images du site reel: la societe f-secure a donc prevenu les administrateurs de worldxxxpass.com pour qu'ils changent les images utilisees...
/** DoS for Darwin Kernel Version < 7.5.0* -(nemo@pulltheplug.org)-* 2005** greetz to awnex, cryp, nt, andrewg, arc, mercy, amnesia ;)* irc.pulltheplug.org (#social)*/ fm-nacho.c