what you don't know can hurt you
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 1 - 7 of 7 RSS Feed

Files from Matousec - Transparent Security Research

Email addressresearch at matousec.com
First Active2006-10-20
Last Active2010-05-06
KHOBE - 8.0 Earthquake For Windows Desktop Security Software
Posted May 6, 2010
Authored by Matousec - Transparent Security Research | Site matousec.com

Whitepaper called KHOBE - 8.0 Earthquake For Windows Desktop Security Software. It discusses Windows desktop security products that can be exploited to bypass a big portion of security features implemented by the affected products.

tags | advisory
systems | windows
SHA-256 | 2a66fee9335500b174da0687391299c45447f47772a54e8b08e9e8a1a6ae0669
ssdt-multi.txt
Posted Sep 18, 2007
Authored by Matousec - Transparent Security Research | Site matousec.com

It appears that a number of vulnerabilities have been discovered in implementations of SSDT hooks in many different products. Vulnerable products range from BlackICE, Norton Internet Security, Process Monitor, and more.

tags | advisory, vulnerability
SHA-256 | 10cab1f6a9cbfe4aa37ddf1207fd3c8ef40386c2d2758a0eadfeaeb9d168a631
BTP00012P004AO.zip
Posted Dec 6, 2006
Authored by Matousec - Transparent Security Research | Site matousec.com

Demonstration exploit that shows how Outpost Firewall Pro version 4.0 fails to protect against advanced DLL injection.

tags | exploit
SHA-256 | d098e88f484e24499c8384ec307c65852dc1541fe2460675f4823a8e79ba1d12
outpostFP.txt
Posted Dec 6, 2006
Authored by Matousec - Transparent Security Research | Site matousec.com

Outpost Firewall Pro version 4.0 fails to protect against advanced DLL injection.

tags | advisory
SHA-256 | d10c68573c91fa3188e94d699972e536a48599b7f66ade2ce1a96497197376aa
BTP00001P004AO.zip
Posted Nov 3, 2006
Authored by Matousec - Transparent Security Research | Site matousec.com

Testing program that exploits Output Firewall PRO version 4.0 which fails to sufficiently protect the \Device\SandBox driver.

tags | exploit
SHA-256 | bdcf73561116d8bf77ee8404cd2913c8d86fe9b944e74e816cb7c846cb06a98f
outpost40.txt
Posted Nov 3, 2006
Authored by Matousec - Transparent Security Research | Site matousec.com

Outpost Firewall PRO version 4.0 insufficiently protects its driver \Device\SandBox against a manipulation by malicious applications and it fails to validate its input buffer.

tags | advisory
SHA-256 | 313a85811eb28dca28af6a555e600f8a576f88f81c93bd030e0fc939be516c7f
ISSBlackICE-files.txt
Posted Oct 20, 2006
Authored by Matousec - Transparent Security Research | Site matousec.com

BlackICE PC Protection protects its files against manipulation by malicious software. Its critical files like its database of trusted applications or firewall configuration are protected. The list of protected files is stored in filelock.txt in the BlackICE installation directory. If this file is deleted files mentioned in filelock.txt are not protected any more and can be changed by malicious applications. The implemented protection allows malicious applications to delete this file using native API function ZwDeleteFile. This can result in a bypass of all BlackICE protection mechanisms because its internal components can be replaced with fake copies. The situation is even easier for the attacker because the component control fails to recognize fake components in BlackICE processes.

tags | advisory
SHA-256 | cccf062711f391ac57c883f94f44d73929b8862d2542aff36335459be2a9a18d
Page 1 of 1
Back1Next

File Archive:

April 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Apr 1st
    10 Files
  • 2
    Apr 2nd
    26 Files
  • 3
    Apr 3rd
    40 Files
  • 4
    Apr 4th
    6 Files
  • 5
    Apr 5th
    26 Files
  • 6
    Apr 6th
    0 Files
  • 7
    Apr 7th
    0 Files
  • 8
    Apr 8th
    22 Files
  • 9
    Apr 9th
    14 Files
  • 10
    Apr 10th
    10 Files
  • 11
    Apr 11th
    13 Files
  • 12
    Apr 12th
    14 Files
  • 13
    Apr 13th
    0 Files
  • 14
    Apr 14th
    0 Files
  • 15
    Apr 15th
    30 Files
  • 16
    Apr 16th
    10 Files
  • 17
    Apr 17th
    22 Files
  • 18
    Apr 18th
    0 Files
  • 19
    Apr 19th
    0 Files
  • 20
    Apr 20th
    0 Files
  • 21
    Apr 21st
    0 Files
  • 22
    Apr 22nd
    0 Files
  • 23
    Apr 23rd
    0 Files
  • 24
    Apr 24th
    0 Files
  • 25
    Apr 25th
    0 Files
  • 26
    Apr 26th
    0 Files
  • 27
    Apr 27th
    0 Files
  • 28
    Apr 28th
    0 Files
  • 29
    Apr 29th
    0 Files
  • 30
    Apr 30th
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close