Local vulnerability in Solaris mailtool(1) - /usr/openwin/bin/mailtool on Solaris 8 (x86 and sparc) contains a local buffer overflow vulnerability. By specifying a long environment buffer containing machine executable code, it is possible to execute arbitrary command(s) as gid mail.
1e5e671cf9f5a6ad579331d3e7053810Dc20ctrlex.perl is a FreeBSD 3.x/4.X /usr/local/bin/dc20ctrl local exploit which gives egid=dialer or root on non-freebsd systems. Tested against FreeBSD 4.2.
9d658bc02da0498ea3f0146d905dd9afExamining port scan methods - Analyzing Audible Techniques. This paper attempts to enumerate a variety of ways to discover and map internal/external networks using signature-based packet replies and known protocol responses when scanning. Specifically, this document presents all known techniques used to determine open/closed ports on a host and ways an attacker may identify the network services running on arbitrary servers. Text version available here.
aa639e684a8e7913186faa5b0f7081b9Examining port scan methods - Analyzing Audible Techniques. This paper attempts to enumerate a variety of ways to discover and map internal/external networks using signature-based packet replies and known protocol responses when scanning. Specifically, this document presents all known techniques used to determine open/closed ports on a host and ways an attacker may identify the network services running on arbitrary servers.
4608dc43a219fc1243b13e3e1ca6f75dOverwriting the .dtors section - This paper presents a concise explanation of a technique to gain control of a C program's flow of execution given that it has been compiled with gcc. This exploit technique has several advantages over changing the stack pointer, including ease of determining the exact position where we want to write and point to our shellcode, and is simpler than a GOT patch.
f693cc32d668324c2205e77036aa3fd1The Importance of Bug Testing - Includes discussion of alpha / beta releases, the importance of bug testing, software development goals, software testing strategies, functional prototypes, designing test sets, defect testing, acceptance testing, and structural prototypes.
93ccf43ca9128f73447bd47fe1fa89f1Bandmon monitors the bandwidth usage on your network.
f428ce70692dfa952d10c6d16f3727ceSynnergy Networks msadc scanner - This is just a basic string scanner that happens to scan for the msadc module string.
848292758ce51eeecb718dea80503411Sends message to everyone on unix system via syslog().
03de4874a8f333ee6918dd99448e08b1Sadmind exploit stack pointer brute forcer, just ./sadmindex-brute-lux [arch] <host> and it will brute force the stack pointer, it'll output a message on success and open ingreslock (1524) on the remote computer. This brute forcer requires sadmind exploit by Cheez Whiz.
7588b1cbff18bd6bcdb5fe10b4e85adaRemote buffer overflow exploit in perl for QPOP 3.0b<=20 running on Linux.
5ea48ff2b2dd6aaac4f0fcef8bc4b30eSynnergy Logo
2e2bbb3a163530be6d329e216d48adecRemote unix shell backdoor written in perl.
e7a347c80e9c5df1b8d3232f4848e7f4Test for catching the SIGSEGV or SIGBUS without crashing and combined with try{}catch(){}.
28fb588cdc4a9301765c334bcced53fbTest for catching the SIGSEGV and SIGBUS without crashing and with setjmp()/longjmp().
7c5aa88f30c0b00a54bb354774a011b6This will fill up all available memory, if no ulimit is set in the kernel.
ab91d1a729380a300941349a99beb7edIP Aliasing - How to set it up on a unix host.
1706c80b88ef4ca447e374cb28492d5eA tcp relay. For more details, read the source.
57a2f14ae29f21cd565b1dd88240d638Remote buffer overflow exploit for ftpd from AIX 4.3.2 running on an RS6000. (power).
fc17c2f69566bc0213c21821b8da3b09