| Real Name | haroon meer |
|---|---|
| Email address | private |
| Website | blog.thinkst.com |
| First Active | 2001-05-10 |
| Last Active | 2007-08-11 |
Whitepaper discussing cross site request timing attacks. This was originally presented at Black Hat 2007 and Defcon 15.
bb616960212a61b3ce31fc06cb5dc842squeeza is a tool helps exploits SQL injection vulnerabilities in broken web applications. Its functionality is split into creating data on the database (by executing commands, copying in files, issuing new SQL queries) and extracting that data through various channels (dns, timing, http error messages).
9e7e713bad29eb8ba4bbf1568225ffedCheckpoint Firewall-1's SecureRemote allows any IP to connect and download sensitive network information. This perl script gives a potential attacker a wealth of information including ip addresses, network masks (and even friendly descriptions).
64a69339c5b64edbad5cc889a991464a6thsense is a TCP port scanning technique which allows you to remain completely invisible to the scanned host, as described in a Bugtraq post by Antirez. This perl script automates the tedious process.
b515cb557d2ecee5dd291ab09118c6a8