Webscan is a web site fuzzer that checks for remote vulnerabilities such as sql injection, cross site scripting, remote code execution, file disclosure, directory traversal, php includes, shell escapes, and insecure perl open() calls.
eafcdbf028f048e0942fbbf8b91c58bc7470b0555231101283ddfcebf8e7b45f
Linux and BSD x86 local exploit for xtokkaetama that gives egid of games.
b520af024cb9003b4e1a42a73b3409332209fffab5a67095c1e394f14a9b173b
Linux x86 UDP shellcode. Reads from UDP port 13330 to retrieve other shellcode then executes it.
a19f2e0f5e3ed7c024fa5903d3b63b3001cc6d694f0a752097064021a0cea265
Remote exploit for Squid V2.4.DEVEL4 and below on linux/x86.
4d88b1cac25a2d926015a0a76de60258e2921cc54ee0b1bed4f093b1ee59cf9e
Proof of concept remote root exploit for atftpd version 0.6. Makes use of the filename overflow found by Rick Patel. Tested against Debian 3.0.
9f6808a16e0468c6d54152cfeec1e9d9af5e7c3678ec1fac83789785f111fae5
Simple patch to fix the overflow found in atftpd by Rick Patel.
bbb74dfb5d52103ab35a78f731663aae5244b396ecaa1b98451767508ae1c094
Local root exploit for Leksbot binary KATAXWR that was accidentally packaged setuid. Tested against Debian Linux 3.0.
ccefd74ac440c99d2929476f1ac0e07bf8e39606aab167acff5334c8834e26e8
oOps.c grabs hardcoded strings from binary files. Shows rootkit passwords and other information that is encoded character at a time to avoid binary examination like the strings command. Tested on Linux.
6ec922e0fecc9ff438d329269c632e0bdae94a19c0a176bb42b7160fa0bb0f73