Quantcast
Channel: Another sysadmin hangout
Browsing latest articles
Browse All 13 View Live

Nmap NSE Script "x11-access.nse"

If a X server is listening on TCP port 6000+n (where n is the ...

View Article



Send password on /bin/su's stdin

Due to security reason, it is forbidden to pipe or redirect ...

View Article

Man-in-middle detection script

Here is a simple ARP spoofing detection script. It warns you ...

View Article

Crontab: How to hide a scheduled task

Here is an easy way to hide a task inside a crontab by using ...

View Article

Base64 scheme implementation in Bash

The Base64 encoding/decoding scheme has been implementing in ...

View Article


Keykass.so: Dynamic library for keystroke logging

Some articles about function interposition or syscall hooking ...

View Article

Isgate? A gateway disclosure script

I thought about a simple way to disclose gateways on a local ...

View Article

libvte9: Escape sequences of death (CVE-2011-2198)

While playing with terminals, I discovered several missing ...

View Article


Xorg: Two vulnerabilities (CVE-2011-4028 and CVE-2011-4029)

I recently discovered two vulnerabilities in the X server ...

View Article


Bzip2 (bzexe): race condition (CVE-2011-4089)

bzexe (a shell script provided by the bzip2 package) in used ...

View Article

X wrapper: Permission bypass (CVE-2011-4613)

While I was developing the exploit against CVE-2011-4029, I ...

View Article

Debian's x11-common init script weakness (CVE-2012-1093)

The init script issued from the x11-common Debian package is ...

View Article

Use /dev/ptmx to measure inter-keystroke timing (CVE-2013-0160)

As a reminder, the "/dev/ptmx" character device is used to ...

View Article

Browsing latest articles
Browse All 13 View Live




Latest Images