RealSecure by ISS v5.0 fails to detect attacks using the year old IIS 5 RDS bug and the recent UNICODE hole.
453d10fa616c5ee68f11a6790756532a25384881a2177d18253ce60f36c2c773
ManTrap, a commercial honeypot, can easily be identified and subverted. The process hiding can be detected by sending a signal to each PID, there are /proc inconsistancies, the first 4 processes always get hidden, the inode number is off, and the chroot can be broken via raw device access. Includes mantrap.c, a exploit which checks for the first 3 issues.
54a333746c7dc4826ba17db0df51fcbfc4a52dc1ecfb81630351161e213ceac9
USSR Advisory #57 - An buffer overflow vulnerability has been discovered in the Microsoft System Monitor ActiveX control which can be exploited in Internet Explorer, Outlook, or Outlook Express running on Windows 2000. Demonstration available ms00-085 addresses this issue.
c71292dab678f51dff02c9fab692eea15a88b7bff9c00d978d2b4b25d8893ba2
Weekly Newsletter from Help Net Security - Covers weekly roundups of security events that were in the news the past week. In this issue: ActiveX Parameter Validation vullnerability in Wndows 2000, and much more.
dde907123b07e3d74e0b1c341846b45e4bcd8609276ed0b212a872a1e87bbb2a
secure rm (srm) is a command-line compatible rm(1) which completely destroys file contents before unlinking. The goal is to provide drop in security for users who wish to prevent command line recovery of deleted information, even if the machine is compromised.
d8e6bf6515ac5ddc552cad5ae55d0336241657703aac59dece5a670d59b5fd4b