Xcon 2005: Profiling Malware and Rootkits from Kernel-Mode
6f7198dc3e956818658e718dd87a0e98AOL Instant Messenger (AIM) contains a buffer overflow in the code that is responsible for parsing requests to run external applications. The overflow can be used to remotely penetrate a system and it is not possible to block these requests in the AIM client. No client side fix is currently available.
07123bd01c6abc79b2eef9d8b71c4a4eMultiple Microsoft Products for Mac OS contain serious remote vulnerabilities. Affected software includes IE 5.1, Outlook Express 5.0.2, Microsoft Entourage, Powerpoint 98, 2001, and X, Excel 2001 and X, and Microsoft Word 2001. The problem lies in the handling of a lengthy subdirectory in the file:// directive.
60cb2fd20b289b60302f272973604849AOL Instant Messenger remote buffer overflow exploit. Affects AOL AIM for Windows stable v4.7.2480 and beta v4.8.2616. Over 100,000,000 users affected. Included shellcode shuts down the AIM client.
daec79a085c3cb4e73ec9764785c7471SRS is the largest syslog implementation for Unix (or any operating system). It has its own original protocol to ensure reliability.
5f5e36042cc3ce608b36709113cb63d3ShokDial 4.1, an excellent war dialer for linux. Another great tool from w00w00. (
e5cbe5bcdb5062df878d684e40d83c6dExcellent whitepaper/tutorial on Heap/BSS-based overflows, including very thorough explanation of what heap-based overflows are, several methods of exploitation, demonstrations, and some possible solutions/fixes.
16a1599673933bba444079c72debb2bf