accept no compromises
Showing 1 - 16 of 16 RSS Feed

Files from Debasis Mohanty

Email addressd3basis.m0hanty at gmail.com
First Active2004-11-05
Last Active2008-11-16
ms08067-2k2k3.txt
Posted Nov 16, 2008
Authored by Debasis Mohanty | Site hackingspirits.com

Microsoft Windows Server Service code execution exploit that takes advantage of the vulnerability listed in MS08-067.

tags | exploit, code execution
systems | windows
MD5 | 38ad68544d42009d2d60dec19915df7a
adobe-printf.txt
Posted Nov 6, 2008
Authored by Debasis Mohanty | Site hackingspirits.com

Adobe Reader Javascript printf buffer overflow exploit that binds a shell to port 4444.

tags | exploit, overflow, shell, javascript
advisories | CVE-2008-2992
MD5 | 9ccd8cf03255dc1fba32b9c38ae011bf
adwords-crlf-injection.pdf
Posted Dec 15, 2006
Authored by Debasis Mohanty | Site hackingspirits.com

Multiple CRLF injection aka HTTP response splitting vulnerabilities have been identified in Google AdWords which may be exploited to inject arbitrary HTTP headers.

tags | exploit, web, arbitrary, vulnerability
MD5 | 489827dac405b8f825bc0e35c68a8d75
Shop-Script.txt
Posted Oct 27, 2006
Authored by Debasis Mohanty | Site hackingspirits.com

Shop-Script suffers from multiple HTTP response splitting vulnerabilities. POC included.

tags | exploit, web, vulnerability
MD5 | f565a066d8e81f16f2237b9b1f1f1f40
vuln-rnd.txt
Posted Jun 27, 2006
Authored by Debasis Mohanty | Site hackingspirits.com

Malicious Flash files with explicit java scripts can be embedded within Excel spreadsheets using a "Shockwave Flash Object" which can be made to run once the file is opened by the user.

tags | advisory, java
MD5 | 21cd8db536d702939f5c714b8569730b
firenull.txt
Posted May 22, 2006
Authored by Debasis Mohanty | Site hackingspirits.com

Firefox version 1.5.0.3 with IE Tab version 1.0.9 on Windows XP/2k suffers from a null pointer dereference bug.

tags | advisory
systems | windows, xp
MD5 | 6a1ec33bcff61a4236d16d3dbce68615
google-reader.txt
Posted Apr 14, 2006
Authored by Debasis Mohanty | Site hackingspirits.com

Google reader is supposed to display only those contents which the user has subscribed to however two vulnerabilities has been identified which may allow an attacker to entice it's victim (using google reader service) to view unwanted web contents carrying malicious payloads.

tags | advisory, web, vulnerability
MD5 | b00754e81d529b49b6a488d82a1630a6
w3wp-remote-dos.zip
Posted Apr 6, 2006
Authored by Debasis Mohanty | Site hackingspirits.com

w3wp remote DoS exploit due to improper reference of STA COM components in ASP.NET.

tags | exploit, remote, asp
MD5 | 237a0e4e08ad63aef0158acf40a477ae
w3wp-dos.txt
Posted Mar 23, 2006
Authored by Debasis Mohanty | Site hackingspirits.com

It is possible to DOS the IIS Worker Process (w3wp) due to improper reference of STA COM components in ASP.NET. POC Exploit included.

tags | exploit, denial of service, asp
MD5 | dd860826bc02148450205e7f9da1643c
googleReader.txt
Posted Feb 26, 2006
Authored by Debasis Mohanty | Site hackingspirits.com

Google reader is supposed to display only content that the user has subscribed to however two vulnerabilities has been identified which may allow an attacker to entice it's victim (using the Google reader service) to view unwanted web content carrying malicious payloads.

tags | advisory, web, vulnerability
MD5 | b24de84c45fd97304d6aa1b792ccb041
phpmychatBypass.txt
Posted Feb 25, 2006
Authored by Debasis Mohanty | Site hackingspirits.com

PHPMyChat version 0.14.5 is susceptible to an authentication bypass flaw.

tags | advisory
MD5 | a24e0729ecd737b6fa2eb248475612fe
zone.labs-fw.txt
Posted Nov 8, 2005
Authored by Debasis Mohanty | Site hackingspirits.com

Zone Alarm products with Advance Program Control or OS Firewall Technology enabled, detects and blocks almost all APIs which are commonly used by malicious programs to send data via http by piggybacking over other trusted programs. However, it is still possible for a malicious programs to make outbound connections to the evil site by piggybacking over trusted Internet browser using "HTML Modal Dialog" in conjunction with simple JavaScript. POC code provided.

tags | advisory, web, javascript
MD5 | fd1ebbab40430943178e3241e7a03352
wga.txt
Posted Aug 14, 2005
Authored by Debasis Mohanty | Site hackingspirits.com

This proof of concept explains how Microsoft WGA validation check can be defeated and any Microsoft product with the WGA validation feature can be run and installed on machines running a pirated copy of Windows XP.

tags | advisory, proof of concept
systems | windows, xp
MD5 | b4e9f1c17f10829ac5c238db056b55e3
citiBypass.txt
Posted Aug 6, 2005
Authored by Debasis Mohanty | Site hackingspirits.com

Write up discussing a methodology to bypass Citibank Virtual Keyboard Protection, a mechanism to help protect against keyloggers and spyware.

tags | advisory
MD5 | 0a0fc32310b4f8008dbd71a646345c0f
ieCache.txt
Posted Dec 30, 2004
Authored by Debasis Mohanty | Site hackingspirits.com

When IE is configured to access internet using proxy, the user's authentication details are cached locally without IE prompting the user. Even though the 'save my password' option is not checked, the user's proxy authentication details are cached locally without the user's knowledge.

tags | advisory
MD5 | 5ddedaff2b7e51abc9ab0678dd8c3d05
msISAauthbypass.txt
Posted Nov 5, 2004
Authored by Debasis Mohanty | Site hackingspirits.com

Methods exist to allow for Microsoft ISA authentication bypass when the server is configured as a proxy.

tags | advisory
MD5 | da0d366ebc0b3b7b38a77a637ae9c66c
Page 1 of 1
Back1Next

File Archive:

May 2012

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    May 1st
    37 Files
  • 2
    May 2nd
    53 Files
  • 3
    May 3rd
    33 Files
  • 4
    May 4th
    4 Files
  • 5
    May 5th
    10 Files
  • 6
    May 6th
    17 Files
  • 7
    May 7th
    19 Files
  • 8
    May 8th
    36 Files
  • 9
    May 9th
    34 Files
  • 10
    May 10th
    35 Files
  • 11
    May 11th
    20 Files
  • 12
    May 12th
    18 Files
  • 13
    May 13th
    11 Files
  • 14
    May 14th
    27 Files
  • 15
    May 15th
    58 Files
  • 16
    May 16th
    54 Files
  • 17
    May 17th
    25 Files
  • 18
    May 18th
    53 Files
  • 19
    May 19th
    9 Files
  • 20
    May 20th
    15 Files
  • 21
    May 21st
    25 Files
  • 22
    May 22nd
    32 Files
  • 23
    May 23rd
    35 Files
  • 24
    May 24th
    26 Files
  • 25
    May 25th
    25 Files
  • 26
    May 26th
    11 Files
  • 27
    May 27th
    8 Files
  • 28
    May 28th
    0 Files
  • 29
    May 29th
    0 Files
  • 30
    May 30th
    0 Files
  • 31
    May 31st
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2012 Packet Storm. All rights reserved.

close