Section: .. / papers / attack /
| /// File Name: |
091021-attacking-magstripe-gift-car..> |
Description:
|
This whitepaper is called Attacking Magstripe Gift Cards. It is based on research conducted on a large number of UK gift cards. The paper also provides a series of guidelines and tips for developers and systems architects who are involved in the process of implementing their own gift card technology.
| | Author: | Adrian Pastor | | File Size: | 1014554 | | Last Modified: | Oct 23 13:30:35 2009 |
| MD5 Checksum: | 7a46627d717397b46a6c52a07563fe79 |
|
| /// File Name: |
10MinSecAudit.zip |
Description:
|
Whitepaper that demonstrates an extremely simple technique to quickly audit a software product in order to infer how trustable and secure it is. Oracle is used as a test case. Proof of concept exploit is included.
| | Author: | Cesar Cerrudo | | File Size: | 554386 | | Last Modified: | Mar 13 20:30:47 2007 |
| MD5 Checksum: | f03e3ab2a438557da1a24abb32338a7c |
|
| /// File Name: |
121106.pdf |
Description:
|
The Web Application Security Consortium is proud to present 'MX Injection: Capturing and Exploiting Hidden Mail Servers'. This article discusses how an attacker can inject additional commands into an online web mail application communicating with an IMAP/SMTP server.
| | Author: | Vicente Aguilera Diaz | | Homepage: | http://www.webappsec.org/ | | File Size: | 331876 | | Last Modified: | Dec 12 10:35:04 2006 |
| MD5 Checksum: | 5b6f52638538c74a8ee08bf0186af7f5 |
|
| /// File Name: |
71.pdf |
Description:
|
Whitepaper titled 'Web Application Auditing and Exploitation'. It concentrates on the exploitation of PHP based web applications examining various functions and how they can be manipulated.
| | Author: | ReZEN | | File Size: | 360916 | | Last Modified: | Jul 15 05:24:10 2006 |
| MD5 Checksum: | a8c775eb782da2be0d4306672df71510 |
|
| /// File Name: |
7a69-PUP.txt |
Description:
|
Pitbull is an example of a system that takes advantage of a process address space in order to execute ELF binaries. It is primarily useful for building post-exploitation frameworks and rootkits.
| | Author: | Pluf | | File Size: | 33793 | | Last Modified: | Mar 31 02:58:54 2006 |
| MD5 Checksum: | c55cd694fbc69acf4bb825458c045602 |
|
| /// File Name: |
802.11Attacks.pdf |
Description:
|
This paper provides a step by step walk-through of popular wireless attacks. It also describes how to perform the new AP Impersonation attack using FreeRADIUS-WPE, the new EAP-MD5 Brute force attack, and a variety of other not-so documented attacks.
| | Author: | Brad Antoniewicz | | File Size: | 718517 | | Last Modified: | Feb 22 20:29:32 2008 |
| MD5 Checksum: | 07f06413561d393bebf336a793fce067 |
|
| /// File Name: |
aawns.pdf |
Description:
|
Whitepaper entitled 'Attacking Automatic Wireless Network Selection'.
| | Author: | Dino A. Dai Zovi,Shane A. Macaulay | | File Size: | 131627 | | Last Modified: | Jan 29 16:29:51 2006 |
| MD5 Checksum: | 48b6fec3da6c92981ff5f42974cfbfaf |
|
| /// File Name: |
activex.pdf |
Description:
|
ActiveX - Active Exploitation. A simple white paper discussing the basic elements of hacking ActiveX.
| | Author: | warlord | | Homepage: | http://www.nologin.org/ | | File Size: | 176620 | | Last Modified: | Feb 5 21:02:27 2008 |
| MD5 Checksum: | 2c6ead5dc690ea9b53f7a8ee98665bae |
|
| /// File Name: |
Advanced_Network_Exploitation_Res_P..> |
Description:
|
Whitepaper called Advanced Network Exploitation Research and Networking Concepts. This publication discusses various methodologies to use for network exploration. It discusses everything from the basics of TCP/IP to firewalking.
| | Author: | Nicholas Lemonias | | Homepage: | http://www.aisecurityonline.com/ | | File Size: | 52082 | | Last Modified: | Sep 26 20:53:50 2009 |
| MD5 Checksum: | 20e6d8c89f9c12864b1591939f678c8d |
|
| /// File Name: |
ajax-attack.txt |
Description:
|
Brief whitepaper discussing the hacking of AJAX DWR applications.
| | Author: | Guy Karlebach,Amichai Shulman | | File Size: | 5432 | | Last Modified: | Jan 3 23:21:49 2007 |
| MD5 Checksum: | 192450e37bb2197d03593c0a1b5e72c7 |
|
| /// File Name: |
altiris.pdf |
Description:
|
Whitepaper discussing privilege escalation vulnerability in the Symantec Altiris Deployment Solution.
| | Author: | Alex Hernandez,SirDarckCat | | Related Exploit: | symantec-escalate.txt | | File Size: | 818182 | | Last Modified: | May 15 13:09:51 2008 |
| MD5 Checksum: | 7b154786710db1561e36d1a40d1f30cb |
|
| /// File Name: |
amenizando-servico.txt |
Description:
|
Whitepaper called Amenizando Recusa de Servico Remota. Written in Portuguese.
| | Author: | 6_Bl4ck9_f0x6 | | File Size: | 26290 | | Last Modified: | Mar 6 14:45:27 2009 |
| MD5 Checksum: | 31459f93500629922b93139b3dafed7f |
|
| /// File Name: |
Aspect_File_Download_Injection.pdf |
Description:
|
Whitepaper discussing the topic of File Download Injection.
| | Author: | Jeff Williams | | File Size: | 190185 | | Last Modified: | Apr 8 01:36:25 2008 |
| MD5 Checksum: | ed5f285a070085286a4b5d40df7619ac |
|
| /// File Name: |
assault-php.pdf |
Description:
|
Whitepaper called Assault on PHP Applications.
| | Author: | Aelphaeis Mangarae | | File Size: | 3040255 | | Last Modified: | Jun 16 20:26:49 2009 |
| MD5 Checksum: | ee9257590ede5a32328e567f8a22e82c |
|
| /// File Name: |
Attack_5250_terminal_em.pdf |
Description:
|
Attacking PC based 5250 terminal emulations from an iSeries server. Paper describing how insertion of commands inside an AS/400 application allows them to be executed as a command on the connected PC.
| | Author: | Shalom Carmel | | File Size: | 244309 | | Last Modified: | Mar 24 01:06:05 2005 |
| MD5 Checksum: | aa3631c9ab82c8e8bbbb04089d368f08 |
|
| /// File Name: |
auth-bypass.pdf |
Description:
|
Brief whitepaper detail authentication bypass using SQL injection. The paper also discusses how to get around magic_quotes.
| | Author: | novacaine | | File Size: | 92480 | | Last Modified: | Mar 31 23:05:26 2010 |
| MD5 Checksum: | 8b7426c46294a555553d124048e7a3c2 |
|
| /// File Name: |
Basics_Buffer_overflow_Exploitation..> |
Description:
|
Whitepaper called Basic Buffer Overflow Exploitation. Written in Arabic.
| | Author: | SkuLL-HacKeR | | File Size: | 392643 | | Last Modified: | Apr 9 23:54:40 2010 |
| MD5 Checksum: | f89e2184ac1f9d27cee2d8e08a1cab06 |
|
| /// File Name: |
BB_Final2.pdf |
Description:
|
SMobile's Global Threat Center (GTC) has released a research study on proof of concept malicious applications for BlackBerry platform. This research exposes the weakened security posture of BlackBerry device that operate under the BlackBerry Internet Service environment. The proof of concept applications discussed in this research are developed to examine the response of BlackBerry inbuilt security framework. Through this research, SMobile concludes that there are certain instances of attacks that may be successful in bypassing the security framework of BlackBerry and poses a significant threat to privacy and confidentiality of the user.
| | Author: | Mayank Aggarwal,Troy Vennon | | File Size: | 1319752 | | Last Modified: | Jan 18 12:22:44 2010 |
| MD5 Checksum: | 5df9cd813a946f5becf0b3e6c4846df4 |
|
| /// File Name: |
begincrack.txt |
Description:
|
Beginning cracking of Window's software and software protection on x86 systems.
| | File Size: | 50749 | | Last Modified: | Dec 29 21:08:47 2006 |
| MD5 Checksum: | b7d0773a3a2c91bcc98c3bcd11500539 |
|
| /// File Name: |
benchmarking-attacks.txt |
Description:
|
Short whitepaper discussing the Benchmarking Attacks and major security weaknesses on all recent Windows versions up to Windows 2008.
| | Author: | Fabien KERBOUCI | | File Size: | 11242 | | Last Modified: | Jan 26 16:49:04 2009 |
| MD5 Checksum: | fdd88f7af7d333510dda733daf3ba57c |
|
|
|
|
|