what you don't know can hurt you
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 1 - 15 of 15 RSS Feed

Files Date: 2000-04-07

deffybomb.pl
Posted Apr 7, 2000
Authored by DrPhil

Deffybomb v0.7.1 is a demonstration of a perl mailbomber featuring random name, e-mail address, subject, x-mailer, based on specific relationship variables, for *nix systems.

Changes: More random, added a few more address randomisers and better error checking.
tags | denial of service, perl
SHA-256 | 55872aea6b489e56facfd95ac54443de399c7d89fe6c4bb82daf0e7a968c5ade
ypk.tar.gz
Posted Apr 7, 2000
Site hack.co.za

ypk.tar.gz exploits the remote root sunos 4.1.3 ypupdated / keyserv vulnerability.

tags | exploit, remote, root
systems | solaris
SHA-256 | 4c7783ed2a86bc488df0ca142c05ef885da86df6abf7835bf1fb963477f4a288
advisory-009.txt
Posted Apr 7, 2000
Authored by teso | Site team-teso.net

TESO Security Advisory #9 - BinTec router security and privacy weakness. By using SNMP brute-force-techniques for SNMP community-names one is able to remotely gain the management accounts passwords, which are the same as the SNMP community names. Additionally the MIB-Tree holds security related information which should not be accessible through read-only/SNMP. These routers also offer services which can be abused rather easily, like dialing out and getting full line access via a CAPI interface, or a debugging interface which gives you all information which is sent over the BRI-lines.

SHA-256 | 1e4c21598191f4df1d64c9019b1d5c2ae2c88d693bdec2cd20552f3e94bb6c36
ms00-019.info.txt
Posted Apr 7, 2000
Authored by rain forest puppy

Exploit information for the "Virtualized UNC Share" problem talked about in MS00-019 which yeilds the source of .asp's.

tags | exploit, asp
SHA-256 | 95fa2946c47ff7913a1492a8b887bb7d64476444f8a22f608baa88cefaf77142
mindtermsrc-v12.zip
Posted Apr 7, 2000
Authored by Mats Andersson | Site mindbright.se

MindTerm is a complete ssh-client in pure java. It can be used either as a standalone java-application or as a java- applet. The source-code is freely available (GPL). Three packages of importance are provided, terminal, ssh, and security. The terminal package is a rather complete vt102/xterm-terminal. The ssh-package contains the ssh- protocol and also "drop-in" socket replacements to use ssh- tunnels transparently from a java application/applet. It also contains functionality to realize a ssh-server. Finally the security package contains RSA, DES, 3DES, RC4 and Blowfish ciphers.

Changes: This release adds HTTP and SOCKS4/5 proxy-connection, a tunneling only client, improvements in the terminal (e.g. aixterm is now supported), encrypted saved settings.
tags | java, protocol
SHA-256 | 7b2ac91d1bd9578c2eef264a4cdd776c1b5f84b36cb4f31b4ab466c58c3211a3
mailform.txt
Posted Apr 7, 2000
Authored by Chopsui-cide | Site midgets.box.sk

MailForm v1.91 for Windows 95 and NT 4.0 allows potentially dangerous parameters to be specified by anyone who can execute it. The web interface allows remote users to execute arbitrary commands. Exploit code included.

tags | exploit, remote, web, arbitrary
systems | windows
SHA-256 | ec1657d7a461dfc355e9839059244543b53c114292ec4f73a2596f3a0c87c20c
ethereal-0.8.6.tar.gz
Posted Apr 7, 2000
Authored by Gerald Combs | Site ethereal.zing.org

Ethereal is a GTK+-based network protocol analyzer, or sniffer, that lets you capture and interactively browse the contents of network frames. The goal of the project is to create a commercial-quality analyzer for Unix and to give Ethereal features that are missing from closed-source sniffers.

Changes: We let a rather serious bug slip into 0.8.5, causing an application crash when attempting to capture more than once in a single Ethereal session.
tags | tool, sniffer, protocol
systems | unix
SHA-256 | 092cf622de3b82f2278042f10579a0b0bbdd9adbdba9000fc1f2060ac48a665c
tcpsee-1.1.c
Posted Apr 7, 2000
Authored by S

tcpsee is a tcpdump pipe written in C. It converts tcpdump's snarfed hex data to ASCII and has optional ANSI colors.

tags | tool, sniffer
SHA-256 | f87b03b194b80ebfd706405bdb319f02a5f85655b298e77077a0b816a8dcac19
rmp_query.c
Posted Apr 7, 2000
Authored by Alhambra | Site hack.co.za

This script exploits a vulnerability in the default installation of Caldera OpenLinux 2.3 which allows an attacker to obtain a listing of the packages, and versions of packages installed on this system, allowing an attacker to remotely determine vulnerabilities.

tags | exploit, vulnerability
SHA-256 | 3c7ca0ba908d5de2a6e1fd15fcf8f251ada7f3de55a0e5b71efffc12ecf0816b
ircii-4.4.c
Posted Apr 7, 2000
Authored by Bladi | Site hack.co.za

ircii-4.4 exploit - buffer overflow in ircii dcc chat's allows arbitrary code execution. Tested against SuSE 6.x and Redhat.

tags | exploit, overflow, arbitrary, code execution
systems | linux, redhat, suse
SHA-256 | 88d61d34ecad6ea393743dc89f4c5fee39942c513f990ff68ebb277181f1930b
Q-2.0.tgz
Posted Apr 7, 2000
Authored by Mixter | Site members.tripod.com

Q v2.0 is a client / server backdoor which features remote shell access with strong encryption for root and normal users, and a encrypted on-demand tcp relay/bouncer that supports encrypted sessions with normal clients using the included tunneling daemon. Also has stealth features like activation via raw packets, syslog spoofing, and single on-demand sessions with variable ports.

Changes: Security enhancments, easier usage, and better encryption.
tags | remote, shell, root, spoof, tcp
SHA-256 | 708411ad4b73a24961baed61737827818d04eda970f7ae85a0b814d5bf7def52
libmix-107.tgz
Posted Apr 7, 2000
Authored by Mixter | Site mixter.void.ru

LibMix v1.07 is a library that provides an API for various useful functions, including an AES encryption interface, various network front-ends and low level datagram functions, as well as functions for string manipulations and other miscellaneous utility functions. It also includes functions to transmit encrypted data via stateless spoofed datagrams (tfntransmit/tfnread).

Changes: Important bug fixes.
tags | spoof
SHA-256 | 81abb26a06a625cf09c0cef212cb1b761809502154a107cc2d39b61ff2b266a2
CISADV000330.txt
Posted Apr 7, 2000
Authored by David Litchfield | Site cerberus-infosec.co.uk

Cerberus Information Security Advisory (CISADV000330) - The Cerberus Security Team has found a third issue with Microsoft's Index Server that affects any web site running Internet Information Server 4 or 5 with Index Server even if the recent Index Server patch has been installed and even if no .htw files exist. These systems are at risk from having the source of ASP pages or other files such as the global.asa being revealed.

tags | web, asp
SHA-256 | 16498bff2cc18ac3aa8a8693229ee77d942225f291834076974c5fbdf2c6727a
cobalt.03.31.2000.txt
Posted Apr 7, 2000

Cobalt Networks -- Security Advisory -- 03.31.2000 - RaQ2 and RaQ3 allow remote users to view the contents of an .htaccess file contained within a public website.

tags | remote
SHA-256 | c967460eee20155823f669fd7909e40012a863514db5e64df0c4eec2616cf34d
fcheck.txt
Posted Apr 7, 2000
Authored by Matt Carothers

Fcheck, a file integrity checker written in perl, can be subverted by a malicious user to execute arbitrary commands as root by creating files with shell metacharacters in their names. Version v.2.7.45 and below is vulnerable.

tags | exploit, arbitrary, shell, root, perl
SHA-256 | 83567f032de695bd283111b491dcedee8d4e9a0f04b62c7ab4cd89cd545afe9d
Page 1 of 1
Back1Next

File Archive:

November 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Nov 1st
    30 Files
  • 2
    Nov 2nd
    0 Files
  • 3
    Nov 3rd
    0 Files
  • 4
    Nov 4th
    12 Files
  • 5
    Nov 5th
    44 Files
  • 6
    Nov 6th
    18 Files
  • 7
    Nov 7th
    9 Files
  • 8
    Nov 8th
    8 Files
  • 9
    Nov 9th
    3 Files
  • 10
    Nov 10th
    0 Files
  • 11
    Nov 11th
    14 Files
  • 12
    Nov 12th
    0 Files
  • 13
    Nov 13th
    0 Files
  • 14
    Nov 14th
    0 Files
  • 15
    Nov 15th
    0 Files
  • 16
    Nov 16th
    0 Files
  • 17
    Nov 17th
    0 Files
  • 18
    Nov 18th
    0 Files
  • 19
    Nov 19th
    0 Files
  • 20
    Nov 20th
    0 Files
  • 21
    Nov 21st
    0 Files
  • 22
    Nov 22nd
    0 Files
  • 23
    Nov 23rd
    0 Files
  • 24
    Nov 24th
    0 Files
  • 25
    Nov 25th
    0 Files
  • 26
    Nov 26th
    0 Files
  • 27
    Nov 27th
    0 Files
  • 28
    Nov 28th
    0 Files
  • 29
    Nov 29th
    0 Files
  • 30
    Nov 30th
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2024 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close