feeds2read
Latest Flows from this sub-category:
灰熊网

Computer Security

Internet Security and Programming

Blank89 - Technology Exposed

Talk to a Real Geek Podcast

RegCure Blog

Shon Harris' CISSP Blog

Spyware, Adware News

Information internet computer network security

BackTrack Box

random selection from this sub-category:
Arovax SmartHide News

Security Crawler

Daemon on Security

CryptGuard.com Security Alerts Service

Rootsecure.net

Information Security this Week (ISSN: 1600-1869)

Security Crawler

Wulab

Actualités Sécurité Informatique

Vigil@nce public

Rss Directory > Computer > Security > Security docs about Format String


This RSS feed lists the latest security papers, articles and tutorials about format string vulnerabilities that have been added on BugHunter Security Docs - http://doc.bughunter.net/
Copyright: http://doc.bughunter.net/
This text written by gera is about two tiny tricks that may help speeding up bruteforcing when exploiting format strings bugs.
This paper written by scut explains the nature of format string vulnerabilities. It describes how to find vulnerable C source code, and why format string vulnerabilities are more dangerous than common buffer overflows. Several exploitation techniques are detailled. After reading this article, the reader should be able to exploit almost any kind of format string vulnerability.
This short paper written by lamagra explains what are format bugs, and how to exploit these flaws to run arbitrary code when the attacker can control the content of the format string parameter.
This article shows various techniques that can be used in order to exploit format string vulnerabilities, through various examples.
This paper written by kalou tries to explain how to exploit a printf(userinput) format bug, reported in some recent advisories. The approach is primary, and more precisely does not take into account any existing exploit (wu-ftpd, ...). A general knowledge of C programming and assembler is assumed throughout this article (stack issues, registers, endian storage).
This paper written by riq present a way to deal with these format strings in a generic way within SPARC (and big-endian machines). It may be possible to use a similar technique for i386.
This article written by Seunghyun Seo describes how format string attack can be exploited, in limited situation, on alpha system.

Disclaimer|Rss Directory|Try a Feed|Suggest a Feed|F-A-Q|Partners
Links: Référencement internet | Annuaire Webmaster  | ubuntu/debian tips
Comparateur de Prix | Logos, Sonneries, Jeux Java | Sonneries pour portables | Ringtones and logos for mobile phone | Accéssoires pour téléphone portable | Sonneries Et Logos
© copyright feeds2read.net 2005-2008