.:[ packet storm ]:.
                         
security in numbers
security in numbers

 Section:  .. / papers / attack  /

Page 1 of 8
<< 1 2 3 4 5 6 7 8 >> Files 1 - 25 of 191
Currently sorted by: File NameSort By: Last Modified, File Size

 ///  File Name: 091021-attacking-magstripe-gift-car..>
Description:
This whitepaper is called Attacking Magstripe Gift Cards. It is based on research conducted on a large number of UK gift cards. The paper also provides a series of guidelines and tips for developers and systems architects who are involved in the process of implementing their own gift card technology.
Author:Adrian Pastor
File Size:1014554
Last Modified:Oct 23 13:30:35 2009
MD5 Checksum:7a46627d717397b46a6c52a07563fe79

 ///  File Name: 10MinSecAudit.zip
Description:
Whitepaper that demonstrates an extremely simple technique to quickly audit a software product in order to infer how trustable and secure it is. Oracle is used as a test case. Proof of concept exploit is included.
Author:Cesar Cerrudo
File Size:554386
Last Modified:Mar 13 20:30:47 2007
MD5 Checksum:f03e3ab2a438557da1a24abb32338a7c

 ///  File Name: 121106.pdf
Description:
The Web Application Security Consortium is proud to present 'MX Injection: Capturing and Exploiting Hidden Mail Servers'. This article discusses how an attacker can inject additional commands into an online web mail application communicating with an IMAP/SMTP server.
Author:Vicente Aguilera Diaz
Homepage:http://www.webappsec.org/
File Size:331876
Last Modified:Dec 12 10:35:04 2006
MD5 Checksum:5b6f52638538c74a8ee08bf0186af7f5

 ///  File Name: 71.pdf
Description:
Whitepaper titled 'Web Application Auditing and Exploitation'. It concentrates on the exploitation of PHP based web applications examining various functions and how they can be manipulated.
Author:ReZEN
File Size:360916
Last Modified:Jul 15 05:24:10 2006
MD5 Checksum:a8c775eb782da2be0d4306672df71510

 ///  File Name: 7a69-PUP.txt
Description:
Pitbull is an example of a system that takes advantage of a process address space in order to execute ELF binaries. It is primarily useful for building post-exploitation frameworks and rootkits.
Author:Pluf
File Size:33793
Last Modified:Mar 31 02:58:54 2006
MD5 Checksum:c55cd694fbc69acf4bb825458c045602

 ///  File Name: 802.11Attacks.pdf
Description:
This paper provides a step by step walk-through of popular wireless attacks. It also describes how to perform the new AP Impersonation attack using FreeRADIUS-WPE, the new EAP-MD5 Brute force attack, and a variety of other not-so documented attacks.
Author:Brad Antoniewicz
File Size:718517
Last Modified:Feb 22 20:29:32 2008
MD5 Checksum:07f06413561d393bebf336a793fce067

 ///  File Name: aawns.pdf
Description:
Whitepaper entitled 'Attacking Automatic Wireless Network Selection'.
Author:Dino A. Dai Zovi,Shane A. Macaulay
File Size:131627
Last Modified:Jan 29 16:29:51 2006
MD5 Checksum:48b6fec3da6c92981ff5f42974cfbfaf

 ///  File Name: activex.pdf
Description:
ActiveX - Active Exploitation. A simple white paper discussing the basic elements of hacking ActiveX.
Author:warlord
Homepage:http://www.nologin.org/
File Size:176620
Last Modified:Feb 5 21:02:27 2008
MD5 Checksum:2c6ead5dc690ea9b53f7a8ee98665bae

 ///  File Name: Advanced_Network_Exploitation_Res_P..>
Description:
Whitepaper called Advanced Network Exploitation Research and Networking Concepts. This publication discusses various methodologies to use for network exploration. It discusses everything from the basics of TCP/IP to firewalking.
Author:Nicholas Lemonias
Homepage:http://www.aisecurityonline.com/
File Size:52082
Last Modified:Sep 26 20:53:50 2009
MD5 Checksum:20e6d8c89f9c12864b1591939f678c8d

 ///  File Name: AdvancedSQLInjectionInOracleDatabas..>
Description:
This presentation explores new methods in exploiting SQL injection vulnerabilities inherent in Oracle Database. It contains a presentation with 37 slides and various exploits that demonstrate examples of flaws.
Author:Esteban Martinez Fayo
Homepage:http://security-papers.globint.com.ar/oracle_security/sql_injection_in_oracle.php
File Size:320041
Last Modified:Feb 5 23:51:53 2005
MD5 Checksum:ca05f9b7e93a0d18ffbf0046f5a4908e

 ///  File Name: ajax-attack.txt
Description:
Brief whitepaper discussing the hacking of AJAX DWR applications.
Author:Guy Karlebach,Amichai Shulman
File Size:5432
Last Modified:Jan 3 23:21:49 2007
MD5 Checksum:192450e37bb2197d03593c0a1b5e72c7

 ///  File Name: altiris.pdf
Description:
Whitepaper discussing privilege escalation vulnerability in the Symantec Altiris Deployment Solution.
Author:Alex Hernandez,SirDarckCat
Related Exploit:symantec-escalate.txt
File Size:818182
Last Modified:May 15 13:09:51 2008
MD5 Checksum:7b154786710db1561e36d1a40d1f30cb

 ///  File Name: amenizando-servico.txt
Description:
Whitepaper called Amenizando Recusa de Servico Remota. Written in Portuguese.
Author:6_Bl4ck9_f0x6
File Size:26290
Last Modified:Mar 6 14:45:27 2009
MD5 Checksum:31459f93500629922b93139b3dafed7f

 ///  File Name: and_more_sql_injection.pdf
Description:
White paper discussing SQL injection attacks from different angles.
Author:Stefano Di Paola
Homepage:http://www.wisec.it
File Size:608229
Last Modified:Sep 28 23:50:04 2004
MD5 Checksum:511eb4419912cb8f6c4821f1de3d0f4a

 ///  File Name: ApplicationLevelDoSAttacksv06.pdf
Description:
Corsaire White Paper: Application Level Denial Of Service Attacks. Discusses root causes, attack vectors, classes, and more.
Author:Stephen de Vries
Homepage:http://www.corsaire.com
File Size:115186
Last Modified:May 19 21:14:09 2004
MD5 Checksum:3cfdfceff8ebbe00d928e4b91a4004e8

 ///  File Name: Aspect_File_Download_Injection.pdf
Description:
Whitepaper discussing the topic of File Download Injection.
Author:Jeff Williams
File Size:190185
Last Modified:Apr 8 01:36:25 2008
MD5 Checksum:ed5f285a070085286a4b5d40df7619ac

 ///  File Name: assault-php.pdf
Description:
Whitepaper called Assault on PHP Applications.
Author:Aelphaeis Mangarae
File Size:3040255
Last Modified:Jun 16 20:26:49 2009
MD5 Checksum:ee9257590ede5a32328e567f8a22e82c

 ///  File Name: Attack_5250_terminal_em.pdf
Description:
Attacking PC based 5250 terminal emulations from an iSeries server. Paper describing how insertion of commands inside an AS/400 application allows them to be executed as a command on the connected PC.
Author:Shalom Carmel
File Size:244309
Last Modified:Mar 24 01:06:05 2005
MD5 Checksum:aa3631c9ab82c8e8bbbb04089d368f08

 ///  File Name: auth-bypass.pdf
Description:
Brief whitepaper detail authentication bypass using SQL injection. The paper also discusses how to get around magic_quotes.
Author:novacaine
File Size:92480
Last Modified:Mar 31 23:05:26 2010
MD5 Checksum:8b7426c46294a555553d124048e7a3c2

 ///  File Name: Basics_Buffer_overflow_Exploitation..>
Description:
Whitepaper called Basic Buffer Overflow Exploitation. Written in Arabic.
Author:SkuLL-HacKeR
File Size:392643
Last Modified:Apr 9 23:54:40 2010
MD5 Checksum:f89e2184ac1f9d27cee2d8e08a1cab06

 ///  File Name: BB_Final2.pdf
Description:
SMobile's Global Threat Center (GTC) has released a research study on proof of concept malicious applications for BlackBerry platform. This research exposes the weakened security posture of BlackBerry device that operate under the BlackBerry Internet Service environment. The proof of concept applications discussed in this research are developed to examine the response of BlackBerry inbuilt security framework. Through this research, SMobile concludes that there are certain instances of attacks that may be successful in bypassing the security framework of BlackBerry and poses a significant threat to privacy and confidentiality of the user.
Author:Mayank Aggarwal,Troy Vennon
File Size:1319752
Last Modified:Jan 18 12:22:44 2010
MD5 Checksum:5df9cd813a946f5becf0b3e6c4846df4

 ///  File Name: begincrack.txt
Description:
Beginning cracking of Window's software and software protection on x86 systems.
File Size:50749
Last Modified:Dec 29 21:08:47 2006
MD5 Checksum:b7d0773a3a2c91bcc98c3bcd11500539

 ///  File Name: benchmarking-attacks.txt
Description:
Short whitepaper discussing the Benchmarking Attacks and major security weaknesses on all recent Windows versions up to Windows 2008.
Author:Fabien KERBOUCI
File Size:11242
Last Modified:Jan 26 16:49:04 2009
MD5 Checksum:fdd88f7af7d333510dda733daf3ba57c

 ///  File Name: BIND_8_DNS_Cache_Poisoning.pdf
Description:
The paper shows that BIND 8 DNS queries are predictable, allowing for cache poisoning attacks.
Author:Amit Klein
Homepage:http://www.trusteer.com/
File Size:237750
Last Modified:Aug 27 22:37:19 2007
MD5 Checksum:afa7cbe1cff10408511bad6d1f436a51

 ///  File Name: BluePIMped.txt
Description:
Interesting write up on the exploitation of the Widcomm BTStackServer used for Bluetooth connectivity.
Author:Kevin Finisterre
Homepage:http://www.digitalmunition.com
Related Exploit:BluePIMped.diff
File Size:18191
Last Modified:Dec 7 01:21:10 2005
MD5 Checksum:7bc9219487703ca7b434229947ce2d1a