A paper discussing passive OS fingerprinting and spoofing OpenBSD pf "os" rulesets.
76d3abde5584b498d8c1a5bcc06a4495
A paper discussing a race condition vulnerability in a software package called TORQUE Resource Manager.
792c8714f81ff6d2b8612d1b4fa4ec96
An alternative method in format string exploitation - a paper discussing a method of making format string exploits static again on 2.6 with random VA.
3323b524868edd9e4a53cd3146c4d95f
Polluting sys_execve() in kernel space without depending on the sys_call_table[]: A paper discussing design weaknesses in the linux kernel's handling of simply linked lists used to register binary formats.
cbc9e056a14996a9afd144bb757b9ce5
Polluting sys_execve() in kernel space without depending on the sys_call_table[]: A paper discussing design weaknesses in the linux kernel's handling of simply linked lists used to register binary formats. Spanish Version.
ed63f18b799338c8d20d7f13b9c637fe
A paper discussing the various vulnerabilities in DNS: "The vulnerabilities described in this advisory affect implementations of the Domain Name System (DNS) protocol. Many vendors include support for this protocol in their products and may be impacted to varying degrees, if at all."
c8abc61b42b138d3c3d926fb910adcba
A paper discussing the various vulnerabilities in Ad-Aware.
27920d702e57f28ffbd214ea61a49bc2
proof-of-concept tool for performing passive OS fingerprint spoofing to bypass OpenBSD pf firewall rules.
4dda8dd683b1a851a409f5d18f7001da
Increasing Performance in High Speed NIDS is a paper discussing a number of methods to increase performance in Snort and also NIDS in general. Discusses bottlenecks that Snort has, a brief history of snort pattern matching, and the work that Silicon Defense did with Aho-Corasick_Boyer-Moore, discussing the differences between network grep and protocol analysis.
c12ed4958867665a73045b0276cf74d0
Plogd v2 - syn/udp/icmp packet logger (freebsd version).
8acf703296d17b76edc2716398aa9b38
PR09.txt.zip
f3dd4498769b1da00333963bb2471dbd
PR08.txt.zip
0ce948f8c912117fd90a619e2d8b6dab
PR07.txt.zip
77da16cec8c37cbd135647ccbad4be31
PR06.txt.zip
2db8e860aa1f0ba496f1ec03c073c0a4
PR05.txt.zip
05b7e226d46066bc5f37024dae75786c
PR04.txt.zip
7712468359ed26815e08d05c7f875ecd
PR03.txt.zip
6d82b7bd94d290ba2c0b53f45c570a3d
PR02.txt.zip
daaf75e00dd724d144c32e77cd807e04
PR01.txt.zip
9670c08238864cf706da09c36b0118cb
Prevent Current and Future E-Mail Worms.
ccb29df3cab7315b7bbe73ebc5426747
When accepting luser console login, pam_console called by /bin/login tries to be user-friendly, doing several chowns on devices like login tty and corresponding vcs[a] device, as well as other interesting devices: fd*, audio devices (dsp*, mixer*, audio*, midi*, sequencer), cdrom, streamer/zip drive devices, frame buffer devices, kbd*, js*, video*, radio*, winradio*, vtx*, vbi* and so on. Probably it's designed to make console logins more comfortable, but has DEADLY effects on servers with console luser-login ability (and that's quite common).
5e13080a2ceeb2115ba94946dda175b9
Port scanner with a nice interface. Prompts for banner.
3e009f9ae1655421c4bcd80435522a9c
pgp4pine is a script that automatically encrypts and decrypts mail under Pine using PGP. The user is not separated from things that PGP does. The program is compatible with PGP versions 2.6.3, 5.0, 6.5.1 and GNUPG 1.0, has support for an aliases file and signature-rotating programs, and can remember your passphrase for a session if you need.
9f044176ff5ef58ed94c8edd94cac99e
GNU Phantom.Security is a computer-controlled security system. Using the software and a simple circuit board (schematics included) that you build, you can create a good basic security system that is computer controlled. The system can use off-the-shelf security devices like motion sensors, door magnets, and fire/smoke detectors with little to moderate modification. And if the machine the system is running on is connected to a LAN/WAN or the Internet, you can have it send e-mail. If you have a pager or cell phone capable of receiving e-mail, then you will have around the clock intrusion/fire detection for your home or office.
b540be03dd45ee1f463bfc42490b1079
Pocsag v2.05, a popular pager decoding software by default accepts connections on port 8000 with a default password, even remote access is not enabled, allowing anyone to view the decoded data.
b0a2520d22010417074c18d4cc50839f
Handy TCP Portscanner - Simple TCP port scanner. Allows you to choose the range of ports to scan. Tested on slackware.
3b10fb1b76ecd54b31a2a09a796f239c