Wednesday, March 26th, 2008 winlockpwn is a memory analysis tool released by Adam Boileau of storm.net.nz. This utility exploits firewire's direct memory access. The operating system allows firewire devices to directly read/write memory without having to go through the processor. Sounds handy right? I installed winlockpwn on Ubuntu 7.10 and a fully patched Windows ...
Posted in Internet, Linux, Privacy, Security, Windows | 2 Comments
Tuesday, March 18th, 2008 Hot on the heels of a recent hack in which 10,000 sites were compromised, researchers have disclosed a new large-scale attack..
Researchers at McAfee estimated that the attack has been active for roughly one week, and in that time frame has managed to place itself on roughly 200,000 web pages.Most of ...
Posted in Internet, Security | No Comments
Monday, March 17th, 2008 For those that don’t know, Inguma is an open source penetration testing and vulnerability research toolkit written completely in Python. The environment is mainly oriented to attack Oracle related systems but, anyway, it can be used against any other kind of systems.It’s becoming a mature and useful package! I’m glad ...
Posted in Internet, Networking, Privacy, Security | No Comments
Monday, March 17th, 2008 Cisco has reported a critical security hole in CiscoWorks Internetwork Performance Monitor (IPM), the network availability monitoring component of the CiscoWorks LAN Management Solution (LMS). According to the advisory, commands can be executed remotely on the underlying Solaris or Windows operating system without authentication.Cisco reports that the problem is due ...
Posted in Hardware, Internet, Networking, Security | No Comments
Saturday, March 8th, 2008 http://www.securityfocus.com/infocus/1780
1. Introduction
The threat of malicious software can easily be considered as the greatest threat to Internet security. Earlier, viruses were, more or less, the only form of malware. Nowadays, the threat has grown to include network-aware worms, trojans, DDoS agents, IRC Controlled bots, spyware, and so on. The infection vectors ...
Posted in Security | No Comments