exploit the possibilities
Showing 1 - 14 of 14 RSS Feed

Files from Andy Davis

Email addressiosftpexploit at googlemail.com
First Active2008-07-29
Last Active2014-03-27
USB Attacks Need Physical Access Right? Not Any More...
Posted Mar 27, 2014
Authored by Andy Davis | Site nccgroup.com

NCC Group Research Director Andy Davis presented 'USB Attacks Need Physical Access Right? Not Any More...' at this year's BlackHat Asia in Singapore. Due to recent advances in a number of remoting technologies, USB attacks can now be launched over a network. The talk went into detail about how these technologies work, the resulting impact on the world of USB bugs and included a live demo remotely triggering a USB kernel bug in Windows 2012 server.

tags | paper, kernel
systems | windows
MD5 | ebb4ec5d752ed88d00582c1afc220984
iOS 7 Arbitrary Code Execution
Posted Mar 14, 2014
Authored by Andy Davis | Site nccgroup.com

iOS 7 suffered from an arbitrary code execution vulnerability in kernel mode.

tags | exploit, arbitrary, kernel, code execution
advisories | CVE-2014-1287
MD5 | e104beb46b23cf9a52320b572c270924
Oracle Database 11g NULL Pointer
Posted May 2, 2013
Authored by Andy Davis | Site nccgroup.com

Oracle Database 11g suffers from a null pointer denial of service vulnerability. Unfortunately, as usual, the NCC group are withholding any details for three months.

tags | advisory, denial of service
MD5 | 0e46c993b4973de11b865c94e275eb78
Oracle Database 11g Denial Of Service
Posted May 2, 2013
Authored by Andy Davis | Site nccgroup.com

Oracle Database 11g suffers from a denial of service vulnerability. Unfortunately, as usual, the NCC group are withholding any details for three months.

tags | advisory, denial of service
MD5 | 9aa168aa118d0973123a61e2194b8c66
Microsoft Windows USB RNDIS Overflow
Posted Mar 18, 2013
Authored by Andy Davis | Site nccgroup.com

NCC Group has discovered a USB RNDIS driver kernel pool overflow in Microsoft Windows. Unfortunately, as usual, the NCC group are withholding any details for three months.

tags | advisory, overflow, kernel
systems | windows
MD5 | a644a334daed6736c0096421a13ecea6
Apple Mac OS X Lion Arbitrary Code Execution
Posted Sep 28, 2012
Authored by Andy Davis | Site ngssecure.com

Andy Davis of NCC Group has discovered an arbitrary code execution vulnerability in Apple OS X Lion versions 10.7 to 10.7.4 and OS X Lion Server versions 10.7 to 10.7.4.

tags | advisory, arbitrary, code execution
systems | apple, osx
MD5 | f1b306f0da5b852c4a6a924a5252cbea
Samba Remote Code Execution
Posted Feb 27, 2012
Authored by Andy Davis | Site ngssecure.com

Samba versions up to 3.4.0 suffer from a code execution vulnerability.

tags | advisory, code execution
advisories | CVE-2012-0870
MD5 | be894c278822f200726b365c321058fe
BlackBerry PlayBook Samba Remote Code Execution
Posted Feb 24, 2012
Authored by Andy Davis | Site ngssecure.com

BlackBerry PlayBook suffers from a samba related code execution vulnerability. Tablet versions prior to 2.0.0.7971 are affected.

tags | advisory, code execution
MD5 | 9483265264f97e916e76107af9f59a96
Solaris 11 USB Hub Class Descriptor Kernel Stack Overflow
Posted Nov 2, 2011
Authored by Andy Davis | Site ngssecure.com

It was discovered that a local attacker can send a malformed USB hub class descriptor via a malicious USB device and trigger a kernel stack overflow in Solaris versions 8, 9, 10, and 11 Express.

tags | advisory, overflow, kernel, local
systems | solaris
MD5 | 2dfd7fe080a5502e934ad75a3a6b7405
Lumension Device Control Memory Corruption
Posted Aug 25, 2011
Authored by Andy Davis | Site ngssecure.com

Lumension Device Control (formerly Sanctuary) version 4.4 SR6 suffers from a remote memory corruption vulnerability.

tags | exploit, remote
MD5 | 92adf650a0049fc5f34f7d74525c82ae
ios-shellcode.txt
Posted Aug 22, 2008
Authored by Andy Davis

Version-independent IOS shellcode that does not require hard-coded IOS addresses.

tags | shellcode
systems | cisco
MD5 | e1c47f849c52f04847cf196c0503859f
cisco-iosftp.txt
Posted Aug 13, 2008
Authored by Andy Davis

Cisco IOS FTP server exploit step-by-step instructions which includes information on connecting to a Cisco router using gdb.

tags | paper
systems | cisco
MD5 | fbabf5df1e9915a0851f73610efb30a9
cisco-shellcode.txt
Posted Jul 31, 2008
Authored by Andy Davis

A follow up regarding the shellcode used in the Cisco IOS FTP exploit detailing everything used.

tags | shellcode
systems | cisco
MD5 | 249d63b6a705019f0fa0679b1972c587
Cisco Security Advisory 20070509-iosftp.c
Posted Jul 29, 2008
Authored by Cisco Systems, Andy Davis

Cisco IOS FTP server remote exploit that escalates privileges to level 15. Specific hard-coded addresses are for IOS 12.3(18) on a 2621XM router. Slightly crippled forcing this to only work when the router is connected to a debugger.

tags | exploit, remote
systems | cisco
MD5 | 7aab39aff433bfa1e79a258092b9ca34
Page 1 of 1
Back1Next

File Archive:

July 2021

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Jul 1st
    13 Files
  • 2
    Jul 2nd
    12 Files
  • 3
    Jul 3rd
    1 Files
  • 4
    Jul 4th
    2 Files
  • 5
    Jul 5th
    34 Files
  • 6
    Jul 6th
    21 Files
  • 7
    Jul 7th
    21 Files
  • 8
    Jul 8th
    13 Files
  • 9
    Jul 9th
    6 Files
  • 10
    Jul 10th
    1 Files
  • 11
    Jul 11th
    3 Files
  • 12
    Jul 12th
    15 Files
  • 13
    Jul 13th
    19 Files
  • 14
    Jul 14th
    15 Files
  • 15
    Jul 15th
    15 Files
  • 16
    Jul 16th
    9 Files
  • 17
    Jul 17th
    2 Files
  • 18
    Jul 18th
    2 Files
  • 19
    Jul 19th
    19 Files
  • 20
    Jul 20th
    21 Files
  • 21
    Jul 21st
    53 Files
  • 22
    Jul 22nd
    14 Files
  • 23
    Jul 23rd
    14 Files
  • 24
    Jul 24th
    0 Files
  • 25
    Jul 25th
    0 Files
  • 26
    Jul 26th
    0 Files
  • 27
    Jul 27th
    0 Files
  • 28
    Jul 28th
    0 Files
  • 29
    Jul 29th
    0 Files
  • 30
    Jul 30th
    0 Files
  • 31
    Jul 31st
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2020 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close