News  |  Vulnerabilities  |  Papers  |  Projects  |  About  |  Contact
 
 

This paper presents technical details of the do_brk() bug and the results of our research done while writing the exploit code. It also describes the numerous techniques we have used to create a very effective exploit code that leads to full privilege escalation even on systems running a kernel secured with various security patches.

 
 

The following paper explores the possibilities of using certain properties of the Internet or any other large network to create a reliable, volatile distributed data storage of a large capacity.

 
 

This paper come into existence as a result of TRUSTSECURE 2002 conference speech. It covers information about basic methods of detecting, tracking, logging and preventing distributed denial of service attacks. Spoof-test, a system administrators utility used to test ingress filtering on polish ISPs is also available

 
 

This document covers information needed to write StrongARM Linux shellcode. It explains basics of ARM family architecture, registers and instructions to let you create assembly codes usable in vulnerabilities illustration 'proof of concept' programs. Examples presented in the paper was developed on Compaq iPAQ H3650 running Debian Linux.
Article was originaly published in Phrack magazine issue #58.

  Copyright © 2001-2011 iSEC Security Research. All rights reserved.