网络安全
-
Trend Micro OfficeScan ObjRemoveCtrl ActiveX Control BOF Exploit
<!-- Trend Micro OfficeScan ObjRemoveCtrl ActiveX Control Buffer Overflow Exploitwritten by e.b.Tested on Windows XP SP2(fully patched) English, IE6 IE7, OfficeScan 7.3 patch 4, OfficeScanRemoveCtrl.dll version 7.3.0.1020The cont...
-
Simple DNS Plus
#!/usr/bin/perl# Simple DNS Plus 5.0/4.1 < remote Denial of Service exploit## usage: sdns-dos.pl <dns server> <dns source port> <num of packets># Exploit written by Exodus.# http://www.blackhat.org.iluse IO...
-
Facebook Newsroom CMS 0.5.0 Beta 1 Remote File Inclusion Vulnerability
####################################################################### Facebook Newsroom Application Remote File Inclusion Vulnerability######################################################################## Discovered by :...
-
NCTsoft AudFile.dll ActiveX Control Remote Buffer Overflow Exploit
-----------------------------------------------------------------------------NCTsoft AudFile.dll ActiveX Control Remote Buffer Overflowurl: http://www.nctsoft.com Author: shinnaimail: shinnai[at]autistici[dot]orgsite: http://www.shi...
-
BIND 9.x Remote DNS Cache Poisoning Flaw Exploit (c)
/** Exploit for CVE-2008-1447 - Kaminsky DNS Cache Poisoning Attack** Compilation:* $ gcc -o kaminsky-attack kaminsky-attack.c `dnet-config --libs` -lm** Dependency: libdnet (aka libdumbnet-dev under Ubuntu)** Author:...
-
Wysi Wiki Wyg 1.0 (index.php c) Local File Inclusion Vulnerability
--== ========================================================= ==----== Wizi Wiki Wig Local File Inclusion Vulnerability ==----== ========================================================= ==--[*] Discovered By: StAkeR ~ StAkeR@...
-
Apache mod_jk 1.2.19 Remote Buffer Overflow Exploit (win32)
#!/usr/bin/python## _____ _ _ _____ _____ _____ _____# / ___| |_| | _ | _ | _ |_ _|# | (___| _ | [_)_/| (_) | (_) | | |# _____|_| |_|_| |_||_____|_____| |_|# C. H. R. O. O. T. SECURITY GROUP#...
-
File Store PRO 3.2 Multiple Blind SQL Injection Vulnerabilities
| File Store PRO 3.2 Blind SQL Injection ||________________________________________|Download from: http://upoint.info/cgi/demo/fs/filestore.zip- Need admin rights:/confirm.php:[code]if(isset($_GET["folder&...
-
Microsoft Access (Snapview.ocx 10.0.5529.0) ActiveX Remote Exploit
/* Microsoft Access Snapshot Viewer ActiveX Control Exploit Ms-Acees SnapShot Exploit Snapview.ocx v 10.0.5529.0 Download nice binaries into an arbitrary box Vulnerability discovered by Oliver Lavery http://www.securityfocus....
-
Oracle Internet Directory 10.1.4 Remote Preauth DoS Exploit
#!/usr/bin/python"""Oracle Internet Directory 10.1.4 preauthentication Denial Of ServiceNOTES: Under 32 bits platforms it crashes immediately. Under 64 bits it may take even hours.Sometimes you need 2 shoots to crash OID...
-
Wordpress Plugin Download Manager 0.2 Arbitrary File Upload Exploit
<a name="upload-file"></a><h2>WORDPRESS PLUGIN DOWNLOAD MANAGER 0.2 REMOTE FILE UPLOAD</h2><h3>SaO</h3><h4>BiyoSecurityTeam || www.biyosecurity.com</h4><i>Plugin URI: http://...
-
CoolPlayer m3u File Local Buffer Overflow Exploit
#!/usr/bin/perl# k`sOSe - 07/29/2008use warnings;use strict;# http://www.metasploit.com# EXITFUNC=seh, CMD=c:WINDOWSsystem32calc.exe# [*] x86/shikata_ga_nai succeeded, final size 169my $shellcode = "xd9xcaxd9x74x24xf4x5...
-
IntelliTamper 2.07 HTTP Header Remote Code Execution Exploit
/****** IntelliTamper 2.07 Location: HTTP Header Remote Code Execution exploit.**** Based on exploit by Koshi (written in Perl). This one should be more** stable. Just for fun and to learn more about win32 exploitation.**** by Wo...
-
传瑞星推 私有云 或再次震动杀毒行业
近日,一段关于瑞星 私有云 技术内部资料泄露的视频悄然出现于互联网。随即,该消息不胫而走,在微博上被迅速传播。一时间,关于杀软的话题再次成为大众关注的焦点。...
-
首次使用瑞星网络版杀毒软件要注意的问题
瑞星杀毒软件网络版可以对网络内的计算机进行统一的安装、设置、管理、维护和升级,从而为企业网络提供完善的病毒防范体系。对于初次接触瑞星杀毒软件网络版的用户来讲,使用经验的缺乏和对产品功能的不熟悉都可能导致工作量增加,甚至埋下安全隐患。...
-
中国移动WFIF疑遭破解 蹭WIFI网凸显管控难题
近日,一款名为“畅无线”的应用蹿红网络,原因在于,它利用中国移动的WiFi管理漏洞,为使用者提供免费的无线上网服务。...
-
廉价恶意程序 绑架你的电脑 逼你交 赎金
当代木马恶意软件的趋势并不仅仅是通过洪水般的广告让你电脑当机或者是偷取你的银行密码,而是会将你的电脑锁住,让你不能干任何事情,除非你交了赎金...
-
10种方式智能手机可获取你行踪
智能手机具备的最重要的功能之一就是知道它们在哪里。对于台式电脑、笔记本电脑、个人导航设备或者平板电脑,你比较难以随身携带,而智能手机可以随手放入口袋,它能够将其位置信息与很多其他数据相结合以提供新服务。...
-
世界顶尖的[白帽子] 全球TOP7 漏洞猎人
未来的互联网最重要的不是速度,不是容量,而是安全。黑客这个词很多人已经耳熟能详,虽然他们是一群神秘的人,但不能判断他们是不是好人,越厉害的往往威胁越大。其实有一群厉害的好人,他们就是“白帽子”,中国之前被告的那个,就是白帽...